# A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Dell OpenManage Network Integration Security Configuration Guide, Release 3.2 September 2022

Summary

This technical manual provides system administrators and IT security professionals with comprehensive guidance on securing complex virtual infrastructure environments. It covers essential controls, detailed best practices for authentication setup, network configuration, and data-at-rest encryption. Users can master topics ranging from user credential management to advanced auditing, ensuring robust operational security across integrated systems like vCenter instances.

📄 Preview 📖 Table of Contents Contents PAGE OF 32

Page 1 Text Content

Open Manage Network Integration Security Configuration Guide, Release 3.2 September 2022

September 2022 Rev. A00

Page Summary Contents For Dell OpenManage Network Integration Security Configuration Guide, Release 3.2 September 2022

Page 1 Open Manage Network Integration Security Configuration Guide, Release 3.2 September 2022 September 2022 Rev. A00
Page 2 Notes, cautions, and warnings NOTE: A NOTE indicates important information that helps you make better use of your product. CAUTION: A CAUTION indicates either potential damage to hardware or loss of d...
Page 3 Contents Chapter 1: Preface........................................................................................................................ Legal disclaimers......................................
Page 4 Chapter 7: IPv6 support ............................................................................................................. Appendix A: TLS Cipher Suites .......................................
Page 5 Preface The goals of a Security Configuration Guide are to help Dell customers in the following ways: Understand the security features and capabilities of the product. Learn how to modify the configur...
Page 6 Security resources The following are the links to Dell Security resources. Support for Dell Open Manage Network Integration Security Advisories and Notices Getting help To get answers to your question...
Page 7 Change history The following table provides an overview of the changes to this guide from a previous version. Table 2. Change history Revision Date Change A02 2022-09-29 Revamped the document. A01 202...
Page 8 Security Quick Reference Open Manage Network Integration (OMNI) is a management application that is designed to complement Smart Fabric Services (SFS) and Smart Fabric Storage Software (SFSS). OMNI pr...
Page 9 Product and subsystem security This chapter describes the components and settings that provide security. Security controls map The following figure describes the OMNI security controls map. Browser/GU...
Page 10 Authentication types and setup OMNI supports the following authentication types and setup. Configuring local authentication sources OMNI comes with two default user accounts: admin and root. You canno...
Page 11 2. Click Add to add a RADIUS or TACACS+ server. 3. Enter the IP address of the remote server. 4. Enter the shared secret (key) to access the RADIUS or TACACS+ server. 5. Click Add. Selecting authentic...
Page 12 User and credential management This section explains how to manage OMNI users and credentials. Pre-loaded accounts The following accounts are initialized during the installation of OMNI: Admin account...
Page 13 Changing password for admin. Current password: New password: Retype new password: Admin password change on demand You can change the appliance admin password from OMNI console. 1. Log in to the OMNI c...
Page 14 5. Upgrade appliance 6. Reboot appliance 7. Show EULA 8. Logout Enter selection [0 - 8]: 4 3. Enter 2 to change the root password. Password/SSL configuration menu 1. Change admin password 2. Change ro...
Page 15 OMNI uses basic authentication when adding SFS and SFSS instances to OMNI, and token-based authentication for each HTTP request made after connecting to SFS and SFSS instances. The use of token-based ...
Page 16 Data security OMNI microservices communicate with the Postgres SQL database to access policies and other persisted data. The database is password-protected and only accessible by the microservices tha...
Page 17 3. OMNI management service menu 4. Password/SSL configuration menu 5. Upgrade appliance 6. Reboot appliance 7. Show EULA 8. Logout Enter selection [0 - 8]: 4 3. Enter 3 to generate self-signed SSL cer...
Page 18 Enter selection [0 - 8]: 4 3. Enter 4 to install the certificate from remote server. Password/SSL configuration menu 1. Change admin password 2. Change root password 3. Generate self signed SSL certif...
Page 19 The system displays set log level success message. To change the log-level from OMNI console: NOTE: You can also change the log level from OMNI console. When you change the log level from ERROR to DEB...
Page 20 OMNI console displays the current log-level set for the services. 4. Enter y to change the log-level. The change is applied to all the services. 5. Press Enter to apply the log-level change. Download ...
Page 21 3. Enter 5 to create support bundle. OMNI management service menu 1. Start OMNI management service 2. View OMNI management service status 3. Stop OMNI management service 4. Restart OMNI management ser...
Page 22 Serviceability OMNI does not support the current implementation of Secure Remote Services (formerly ESRS). Security updates and patches The latest Linux and other third-party software security patches...
Page 23 4. Log in to the OMNI console using the admin user account. 5. Enter 5 to upgrade the appliance. Welcome to Dell EMC Open Manage Network Integration (OMNI) management 0. Full setup 1. Show version 2. ...
Page 24 Code signing adds a digital signature to product artifacts such as drivers, binary files, or configuration files to authenticate the origin of the artifact and provide a claim of integrity by Dell Tec...
Page 25 After running the command, you see the output: -->gpg --keyserver hkp://keyserver.ubuntu.com:80 --recv-keys 7FDA043B gpg: key 9FD5A00009E251BF: public key "Dell Technologies Inc. (Dell Network...
Page 26 Miscellaneous configuration and management elements This chapter provides information about ensuring the integrity of the OMNI appliance. . Installing client software Before upgrading OMNI to the late...
Page 27 4. Power On the OMNI VM after setting the required configurations. Protect authenticity and integrity Digital signing and cryptographic checksums ensure the authenticity and integrity of product modul...
Page 28 Internal security information Embedded component usage Container packages and Python packages are used as embedded components in OMNI. Internal security information
Page 29 IPv6 support OMNI supports configuring static IPv6 or DHCv6 address on the interfaces for the m DNS discovery of the external systems connected to OMNI. IPv6 support
Page 30 TLS Cipher Suites This appendix lists the TLS cipher suites supported by OMNI: A cipher suite defines a set of technologies to secure your TLS communications. The following table provides the Open SSL...
Page 31 Register v Center with OMNI Before registering the v Center, ensure that there is only one FQDN mapping for a v Center IP address in the DNS entry. Multiple DNS entries for the same IP address sometim...
Page 32 Unregister v Center You can unregister a v Center that is already registered with OMNI. When you unregister the v Center, OMNI stops the automation services for that v Center. NOTE: The unregister v C...

Manual Details

Brand Integration
Pages 32
File Size 1.27 MB
Published June 03, 2026
50 views

Enter the captcha to get the download link:

captcha

Frequently Asked Questions

How do I unregister a vCenter from OMNI?

Launch OMNI as a stand-alone UI, navigate to OMNI Home > vCenter instance, click the status, and then click Ok to unregister.

What is the difference between 'Registered' and manually adding a vCenter instance?

Selecting 'Registered=True' registers it with OMNI. Selecting False adds the instance without immediate registration; you can register later.

How can I prevent automatic service creation for a vCenter during setup?

Select 'Automation=False'. This will add the Vcenter and indicates that automation services should not be created/started automatically.