<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Dell iDRAC configuration Assistance in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551128#M112272</link>
    <description>&lt;P&gt;I am having to step in during a transition and I cannot seem to get my configuration right, and I am hoping someone can provide me examples of what rules (NAT and Security) that I might need to allow iDRAC access to a couple of servers that reside in our untrusted zone from a specific public ip.&amp;nbsp; I have assigned the iDRAC controllers public ip's on the firewall, but I am unable to get them to show up via https.&amp;nbsp; Any help or pointers would be greatly appreciated.&lt;/P&gt;</description>
    <pubDate>Wed, 26 Jul 2023 17:24:26 GMT</pubDate>
    <dc:creator>SCS_BPotts</dc:creator>
    <dc:date>2023-07-26T17:24:26Z</dc:date>
    <item>
      <title>Dell iDRAC configuration Assistance</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551128#M112272</link>
      <description>&lt;P&gt;I am having to step in during a transition and I cannot seem to get my configuration right, and I am hoping someone can provide me examples of what rules (NAT and Security) that I might need to allow iDRAC access to a couple of servers that reside in our untrusted zone from a specific public ip.&amp;nbsp; I have assigned the iDRAC controllers public ip's on the firewall, but I am unable to get them to show up via https.&amp;nbsp; Any help or pointers would be greatly appreciated.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jul 2023 17:24:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551128#M112272</guid>
      <dc:creator>SCS_BPotts</dc:creator>
      <dc:date>2023-07-26T17:24:26Z</dc:date>
    </item>
    <item>
      <title>Re: Dell iDRAC configuration Assistance</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551835#M112335</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/305860"&gt;@SCS_BPotts&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you would like external iDRAC access you will need to create a DNAT policy and Security Policy.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The DNAT rule will translate the incoming public IP to the internal IP of the respective server. This will allow external access to the servers via their iDRAC IPs.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;DNAT Rule&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Src Zone: Untrust&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Dst Zone: Untrust&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Src Address: Enter the specific public IP&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Dst Address: Public i&lt;/SPAN&gt;&lt;SPAN&gt;DRAC IP&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Service: Specify which port&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Src Translation: dynamic ip and port, specify the internal address/interface&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Dst Translation: Specify the internal IP&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then create your security policy to allow the public IP to the internal IP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Src Zone: Untrust&lt;/P&gt;
&lt;P&gt;Src Address; Public IP&lt;/P&gt;
&lt;P&gt;Dst Zone: Zone where the server is in&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Dst Address: Internal IP&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Service: Port if you would like&lt;/P&gt;
&lt;P&gt;Application: Application you would like&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Hope this helps or gets you in the right direction.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2023 17:37:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551835#M112335</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2023-07-31T17:37:45Z</dc:date>
    </item>
    <item>
      <title>Re: Dell iDRAC configuration Assistance</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551894#M112344</link>
      <description>&lt;P&gt;Thank you.&amp;nbsp; I was able to figure it out, and set it up late last week, and was able to get it to show a bad request page initially. Then I was able to determine that the bad request page was due to the firmware on the iDRAC coupled with the iDRAC web server not liking the headers when the packets went from internal to external and vice versa via static ips.&amp;nbsp; Updating the firmware and setting a dns entry for the outside address in the iDRAC webserver fixed that and now it is working like it should.&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2023 23:05:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dell-idrac-configuration-assistance/m-p/551894#M112344</guid>
      <dc:creator>SCS_BPotts</dc:creator>
      <dc:date>2023-07-31T23:05:08Z</dc:date>
    </item>
  </channel>
</rss>

