TLS/SSL version Factory default setting
TLS1.0 Enabled
TLS1.1 Enabled
TLS1.2 Enabled
Note:
1. CB 520X B1/B2 and CB 520H B3 do not provide setting items for SSL 3.0 because
they do not support SSL 3.0.
Table 2-37 Web console operation
Item Operation
Displaying TLS/SSL version
settings for management
modules
Resources
tab > Systems > Security strength
setting > TLS/SSL version tab
Editing TLS/SSL version settings
for management modules
Resources tab > Systems > Security strength
setting > TLS/SSL version tab > Edit
Displaying TLS/SSL version
settings for BMC
Resources tab > Modules > All Modules > Server
Blades > Server Blade x > BMC tab
Editing TLS/SSL version settings
for BMC
Resources tab > Modules > All Modules > Server
Blades > Server Blade x > BMC tab > Edit
Table 2-38 CLI console operation
Item Operation
Displaying TLS/SSL version settings for management
modules
show security setting
Editing TLS/SSL version settings for management
modules
set security tls mgmt-module
Note:
•
You cannot disable all TLS/SSL versions.
• When Security strength is set to high for a management module, only TLS
1.2 is enabled among TLS versions: SSL 3.0 and TLS 1.0/1.1 are
disabled. This setting cannot be changed.
• When Security strength is set to high or when Security strength is set to
default and communication is enabled only with TLS 1.2, connection with
HCSM not supporting TLS 1.2 is not available. See HCSM instruction
manuals for the operation.
• TLS/SSL versions for BMC can be set only on Web console.
• When Security strength is set to high, only TLS 1.2 is enabled for server
blade Web console and remote console, SSL 3.0 and TLS 1.0/1.1 are
disabled. This setting cannot be changed. For SMASH (WS-Management),
TLS 1.0 is used.
Functional detail
2-37
Hitachi Compute Blade 500 Series Management Module Setup Guide