PowerEdge:將更多強 TLS 密碼套件新增至 iSM 存取的 iDRAC9 4.40.40

Summary: iDRAC9 4.40.40 和更新版本會新增下列適用於 iDRAC Service Module (iSM) 的強 TLS 密碼套件,以利用 iDRAC 的內部 USB 傳遞 NIC。

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

iDRAC9 4.40.40 和更新版本可新增下列 TLS 1.2 強密碼套件,讓 iDRAC Service Module (iSM) 透過 iDRAC 的內部 USB 傳遞 NIC 進行通訊:

  • TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
  • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
  • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
  • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
  • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
  • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
  • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
  • TLS_ECDHE_RSA_WITH_RC4_128_SHA

下列密碼套件存在於先前的 iDRAC9 版本中:

  • TLS_RSA_WITH_3DES_EDE_CBC_SHA
  • TLS_RSA_WITH_AES_128_CBC_SHA
  • TLS_RSA_WITH_AES_128_CBC_SHA256
  • TLS_RSA_WITH_AES_128_GCM_SHA256
  • TLS_RSA_WITH_AES_256_CBC_SHA
  • TLS_RSA_WITH_AES_256_CBC_SHA256
  • TLS_RSA_WITH_AES_256_GCM_SHA384
  • TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
  • TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
  • TLS_RSA_WITH_IDEA_CBC_SHA
  • TLS_RSA_WITH_RC4_128_MD5
  • TLS_RSA_WITH_RC4_128_SHA
  • TLS_RSA_WITH_SEED_CBC_SHA

Cause

這些更強的密碼在以前的 iDRAC9 版本中是沒有的。

Resolution

如果 iSM 使用 iDRAC 記錄 TLS 通訊錯誤,請確定作業系統原則中至少已啟用其中一個密碼套件。

 

注意: iSM 不依賴 iDRAC7 或 iDRAC8 的 TLS 交涉。

Affected Products

iDRAC Service Module, iDRAC9, iDRAC Service Module 4.x, iDRAC9 - 4.xx Series

Products

PowerEdge XR2, Poweredge C4140, PowerEdge C6420, PowerEdge R240, PowerEdge R340, PowerEdge R440, PowerEdge R540, PowerEdge R640, PowerEdge R6415, PowerEdge R740, PowerEdge R740XD, PowerEdge R740XD2, PowerEdge R7415, PowerEdge R7425, PowerEdge R840 , PowerEdge R940, PowerEdge R940xa, PowerEdge T140, PowerEdge T340, PowerEdge T440, PowerEdge T640, PowerEdge XE2420, PowerEdge XE7420, PowerEdge XE7440 ...
Article Properties
Article Number: 000181948
Article Type: Solution
Last Modified: 01 Jan 2025
Version:  6
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.