4 ms·
This is ridiculously stupid. First, your ipmi interface shouldn't be on the internet. Second, of course these will identify as Linux - you wouldn't run Window
by sofaofthedamned 8y ago
This is ridiculously stupid.
First, your ipmi interface shouldn't be on the internet.
Second, of course these will identify as Linux - you wouldn't run Windows in your ipmi server.
Third, encrypt your bootloader with a passphrase?! Good luck with that, and dealing with each software and hardware issue getting you out of bed.
Here's a better idea - put your ipmi interface behind a hardware VPN on its own blank and sleep soundly.
This is awful advice from an awful website.
- mavhc 8y agoThey're talking about putting a password on Grub to prevent booting into single user mode, not encryption
- viraptor 8y agoNot sure how effective that is, considering lots of iLOs give you the possibility to mount a boot cd over network, so you skip the whole grub.
- craftyguy 8y agoiLO is a (proprietary) HP out-of-band thing, it's not IPMI (an open specification out-of-band thing.)
- xyzzy123 8y agoYep, point stands though, you can mount a boot cd with e.g. supermicro’s ipmi as well. It’s still terrible advice (password protect your boot loader!) because you have lost pretty badly already at that point.
- deleted 8y ago[deleted]
- lima 8y ago> Second, of course these will identify as Linux - you wouldn't run Windows in your ipmi server. Windows Server is a thing and is used in the real world (widely).
- closeparen 8y agoIPMI might be a candidate for Windows Embedded, definitely not Server.
- zamadatix 8y ago"Second, of course these will identify as Linux - you wouldn't run Windows in your ipmi server." You're conflating what the IPMI itself runs with the systems affected by the attack (the article is talking about the infected servers behind IPMI being mostly Linux).