Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Integrated Dell Remote Access Controller 9 Version 3.36.36.36 User's Guide

PDF

System Lockdown mode

System Lockdown mode helps in preventing unintended changes after a system is provisioned. This feature can help in protecting the system from unintentional or malicious changes. Lockdown mode is applicable to both configuration and firmware updates. When the system is locked down, any attempt to change the system configuration is blocked. If any attempts are made to change the critical system settings, an error message is displayed.

NOTE: After the System Lockdown mode is enabled, you cannot change any configuration settings. System Settings fields are disabled.

Lockdown mode can be enabled or disabled using the following interfaces:
  • iDRAC web interface
  • RACADM
  • WSMan
  • SCP (System Configuration Profile)
  • Redfish
  • Using F2 during POST and selecting iDRAC Settings

NOTE: To enable Lockdown mode, you must have iDRAC Enterprise license and System Control privileges.

Following are a few of the tasks that can be performed even if the system is in Lockdown mode:
  • Power cap setting
  • System power operations (power on/off, reset)
  • Power priority
  • Identify operations (Chassis or PERC)
  • Part replacement
  • Running diagnostics
  • Modular operations (FlexAddress or Remote-Assigned Address)
  • Group Manager passcode

NOTE: You may be able to access vMedia while system is in Lockdown mode but configuring remote file share is not enabled.

The following table lists the functional and nonfunctional features, interfaces, and utilities that are affected by Lockdown mode:

NOTE: Changing the boot order using iDRAC is not supported when Lockdown mode is enabled. However, boot-control option is available in vConsole menu, which has no effect when iDRAC is in Lockdown mode.

Table 1. Items affected by Lockdown modeThis table lists the impact of Lockdown mode on some of the features.
Disabled Remain functional
  • OMSA/OMSS
  • IPMI
  • DRAC/LC
  • DTK-Syscfg
  • Redfish
  • OpenManage Essentials
  • BIOS (F2 settings become read-only)
  • All Vendor tools that have direct access to the device
  • PERC
    • PERC CLI
    • DTK-RAIDCFG
    • F2/Ctrl+R
  • NVMe
    • DTK-RAIDCFG
    • F2/Ctrl+R
  • BOSS-S1
    • Marvell CLI
    • F2/Ctrl+R
  • Part replacement, Easy Restore, and system board replacement
  • Power capping
  • System power operations (power on, off, reset)
  • Identify devices (chassis and PERC)
  • ISM/OMSA settings (OS BMC enable, watchdog ping, OS name, OS version)
  • Modular operations (FlexAddress or Remote-Assigned Address)
  • Group Manager passcode

NOTE: When lockdown mode is enabled, OpenID Connect login option is not displayed in iDRAC login page.


Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\