Server Management - Remote Server Management
1752519 Members
4932 Online
108788 Solutions
New Discussion юеВ

Re: How to access iLO from external network?

 
wuitsung
Advisor

How to access iLO from external network?

Inside my network I can just type private ip or the dns name to go the iLO page, but how about if I am not in my network? Do I open ports on firewall? what's the port do i need to open? is there any other secure way of doing this?
8 REPLIES 8
Johan Guldmyr
Honored Contributor

Re: How to access iLO from external network?

I suppose you need to do some NAT as well if iLO is on a private IP.
Torsten.
Acclaimed Contributor

Re: How to access iLO from external network?

This really depends on your hardware (e.g. blade vs. non-blade) and infrastructure.

You normally access iLO via browser (http/https) or serial or telnet/ssh - so you need top "open" the appropriate ports.

Keep in mind, the iLO is just like a "normal" server from this point of view.

Hope this helps!
Regards
Torsten.

__________________________________________________
There are only 10 types of people in the world -
those who understand binary, and those who don't.

__________________________________________________
No support by private messages. Please ask the forum!

If you feel this was helpful please click the KUDOS! thumb below!   
Jimmy Vance
HPE Pro

Re: How to access iLO from external network?

You can open the required ports in your firewall, but that's not considered a best practice. The secure way would be to have a VPN connection to your internal network.

No support by private messages. Please ask the forum! 
wuitsung
Advisor

Re: How to access iLO from external network?

thank you, if i need to open port, what's the port do i need to open?

And VPN seems secure, but if my pc got virus infected it will also infect the server right? as they are in the same network...
Jimmy Vance
HPE Pro

Re: How to access iLO from external network?

get into the web interface of iLO and under the networking section it shows all the required ports (or search the forums, this subject has been discussed many times before)

I wouldn't worry about a virus infectin iLO, but if you expose it on the Internet by opening your firewall it can be attacked.

No support by private messages. Please ask the forum! 
Michael A. McKenney
Respected Contributor

Re: How to access iLO from external network?

I would only access them from a SSL VPN. Leave them inside the firewall. Come into your network from a SSL VPN, then access them. I placed mine in a 192.168.100.x subnet and gave DNS entries for each server. I would not allow them visibility to the outside world.
wuitsung
Advisor

Re: How to access iLO from external network?

how did you setup ssl vpn? do you use a hardware firewall? is it cisco or anything else? so do you need a vpn client on your external workstation or the ssl vpn can be done by going to https site?
fwalder48
Occasional Visitor

Re: How to access iLO from external network?

It seems no here is answering your question, but is telling you a lot of things you already know. The https port to enable is 443. I do agree that a VPN is a much safer option, which would have SSL built in. The question with your and my situation is how do you access a non-routable IP address from a different broadcast domain with transmission control (layer 3 and 4 respectively)? Your first responder is possibly correct that some sort of NAT is needed, or some type of RAS. Window Server has both option, but I have not been able to configure either correctly. Even my DNS will not work because it is misconfigured. FYI: I'm running Windows Server 2016 Standard on an HP DL380 Gen9.