Securing DRAC/ILO
- by The Diamond Z
This might be a dumb question but DRAC/ILO both have HTTP server interfaces.
If I were trolling IP's port 80 on and I came across such a page I'd know it to be a high value target in the sense that if I can crack it, I can take control of the server to some extent (potentially installing another OS).
Other than changing the port, what are the best practices for securing DRAC/ILO on public Internet facing machines?