Recommended settings for the remote management (IPMI) port
This section lists the recommended settings for the remote management (IPMI) port that is used to connect to the Veritas Remote Management Interface.
Cohesity recommends that you adhere to the following guidelines:
Do not create accounts with null usernames or passwords.
Add more than one administrative user so that you do not lose access if a password is lost.
Disable any anonymous users.
To mitigate the CVE-2013-4786 vulnerability:
Use Access Control Lists (ACLs) or isolated networks to limit access to the remote management interface.
Keep the IPMI protocol port (623) turned off when not in use to mitigate security risks associated with the IPMI protocol. For more information, see https://nvd.nist.gov/vuln/detail/CVE-2013-4786.