Electronic Design

  
Reprints     Printer-Friendly    Email this Article    RSS        Font Size     What's This?


[TechView: The Industry]
IPMI 2.0 Improves Security, Remote Management

Dave Bursky  |   ED Online ID #7728  |   April 12, 2004


An enhanced version of the Intelligent Platform Management Interface, IPMI 2.0, provides a more secure environment for the embedded manageability of servers, server blades, network storage, network systems, and telecommunications equipment.

Version 2.0 delivers enhanced security above the features that are incorporated in version 1.5. For example, console redirection supports both remote viewing of the boot process and emergency management consoles. The specification also enhances support for modular systems such as blade computer cards. Of course, it's backward-compatible with IPMI 1.5 systems.

The enhanced security is achieved by incorporating new authentication procedures based on the SHA-1 algorithm and encryption based on the AES standard. These enhancements reduce operational risk by securing the remote operations. Sensitive functions such as password configuration then can be completed without the fear that the new passwords will be intercepted.

The console redirection capability provides a standard way of remotely viewing server consoles, irrespective of vendor type, to diagnose and repair server related issues. This will reduce the number of midnight or weekend runs to the computer center to troubleshoot balky systems.

Improved support for modular systems enables the hardware to report the status of the blades during hot-swap operations or provide redundancy switchover by monitoring the secondary IPMI bus. This is very helpful in Advanced Telecom Computing Architecture (ATCA) products.

Local-area-network (LAN) sessions use a command set called the cipher suite discovery. These commands are used to determine which authentication, integrity, and confidentiality algorithm Cipher Suite(s) can be used to establish the connection to IPMI v1.5 or v2.0 systems.

Multiple types of payloads also can be carried over a single IPMI session. Or, payloads can be launched to a dedicated session. New packet formats are available in v2.0, like enhanced authentication and encryption, virtual-LAN addressing, and multiple payload types. The payload packets can carry secure and nonsecure traffic.

For more information, go to http://developer.intel.com/design/servers/ipmi/spec.htm.


Reprints   Printer-Friendly  Email this Article  RSS    Font Size   What's This?


  • A New Design Inflection Point
  • Forecasting Industry Growth For 2009 And Beyond
  • EDA Retools To Exploit Multicore Architectures
  • Design And Verification Move Up In Abstraction
  • EDA Retools To Exploit Multicore Architectures
  • A New Design Inflection Point
  • Design And Verification Move Up In Abstraction
  • Challenges Lurk For 22-nm Physical Implementation
    1) Transportation Guidelines For Lithium Batteries Get Updated
    (339 views today)
    2) Build A Smart Battery Charger Using A Single-Transistor Circuit
    (242 views today)
    3) 1-A Switching Regulators Operate With 96% Efficiency To Replace Linear Regulators
    (111 views today)
    4) 2008 BEST Electronic Design Winners
    (105 views today)
    5) What's All This Transimpedance Amplifier Stuff, Anyhow? (Part 1)
    (100 views today)
    ALL TOP 20



    POST YOUR COMMENTS HERE
    Name:

    Email:
    Your Comments:

    Enter the text from the image below


    Please refresh the page if you have trouble reading this text.

    Search Electronic Design
         
      
     
    Web Seminar
    Sponsored By:
    Title: Read Pacing: A Performance Enhancing Feature of PCI Express Gen 2 Switch Devices
    Speakers: 
    Date: 07/01/08
    Register: 

    Electronic Design Europe Electronic Design China EEPN Power Electronics Auto Electronics Microwaves & RF
    Mobile Dev & Design Schematics Find Power Products Military Electronics EE Events Related Resources