Back to News
Advertisement
Advertisement

⚑ Community Insights

Discussion Sentiment

100% Positive

Analyzed from 78 words in the discussion.

Trending Topics

#management#password#ethernet#connected#internet#ipmi#supposed#internal#exactly#wrote

Discussion (3 Comments)Read Original on HackerNews

londons_exploreβ€’about 15 hours ago
Who exactly wrote this spec?

How sure are we that it was an accident to share password hashes with the world?

adrian_bβ€’about 12 hours ago
The great mistake is that those servers have a management Ethernet interface connected to the Internet.

The management Ethernet port of a server, on which it listens for the IPMI protocol, is supposed to be connected only to a dedicated internal management network, which must be separated from the Internet, and also from the normal internal networks.

It is not expected that IPMI is secure. Security is supposed to be achieved by physical separation.

londons_exploreβ€’about 3 hours ago
If that were true, it wouldn't have a password at all.