- Community Home
- >
- Servers and Operating Systems
- >
- HPE BladeSystem
- >
- BladeSystem - General
- >
- Onboard Administrator (OA) Security best practice
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-20-2014 04:56 AM
06-20-2014 04:56 AM
Onboard Administrator (OA) Security best practice
Mohammed had a customer question onsetting up the OA:
**************
Dear Experts
We have a customer asking for the following due to security requirement …
· We have 16 Servers , 8 of them should be working in the DMZ network which physical isolated , and other 8 will be working in production network , can we have the ILO IP Address with different IP Address and Different VLAN , for example 8 Servers belong to DMZ will have ILO IP Address from DMZ Network and other 8 servers from Prod Network.
· Can we connect physical one OA to DMZ and other one to Prod without Redundancy to achieve the same.
***********
Reply from Dan:
************
You can use VLANs to segregate but this requires .1q VLAN tagging on the OA uplinks.
No, you cannot have both OAs operational and use different uplinks to access different networks.
*************
Other comments?