2 ms·
> by default utilising a special CLI program, you can logon to a DRAC from the host OS ... Therefore, if a host got compromised, even if Idrac is on a different
by EB66 7y ago
> by default utilising a special CLI program, you can logon to a DRAC from the host OS ... Therefore, if a host got compromised, even if Idrac is on a different network, you could in theory bruteforce from the host credentials and jump/attack the management network.
I'm not sure about a DRAC, but for standard BMC units on Dell/SuperMicro servers I am not aware of anyway that you can actually log into the BMC from the host OS.
You can certainly use tools like ipmicfg to reset passwords or configuration on the BMC unit from the host OS, but I don't know of any way that you could actually drop into the command prompt for the BMC and launch an attack on the management network.
As long as you have the BMC on a private IP in an entirely independent network (accessible only via VPN), then a utility like ipmicfg wouldn't help you break into it.