Integrated Dell Remote Access Controller 9 Version User's Guide

Configuring IP filtering using RACADM

You must have Configure privilege to perform these steps.
To configure IP filtering, use the following RACADM objects in the iDRAC.IPBlocking group:
  • RangeEnable
  • RangeAddr
  • RangeMask

The RangeMask property is applied to both the incoming IP address and to the RangeAddr property. If the results are identical, the incoming login request is allowed to access iDRAC. Logging in from IP addresses outside this range results in an error.

The login proceeds if the following expression equals zero:
RangeMask & (<incoming-IP-address> ^ RangeAddr)
Bitwise AND of the quantities
Bitwise exclusive-OR

Examples for IP Filtering

The following RACADM commands block all IP addresses except
racadm set iDRAC.IPBlocking.RangeEnable 1
racadm set iDRAC.IPBlocking.RangeAddr
racadm set iDRAC.IPBlocking.RangeMask
To restrict logins to a set of four adjacent IP addresses (for example, through, select all but the lowest two bits in the mask:
racadm set iDRAC.IPBlocking.RangeEnable 1
racadm set iDRAC.IPBlocking.RangeAddr
racadm set iDRAC.IPBlocking.RangeMask
The last byte of the range mask is set to 252, the decimal equivalent of 11111100b.

For more information, see the iDRAC RACADM CLI Guide available at www.dell.com/idracmanuals.

