通过安全的带外管理Digi Remote Manager

带外管理允许安全访问 IT 基础设施,通常是通过串行端口。这对于数据中心等要求设备实现接近 100% 正常运行时间的关键任务应用来说,意义重大。

Just as importantly, IT teams today need the ability to quickly access and troubleshoot devices in their care from multiple manufacturers, whether those devices are down the hall in a datacenter or installed hundreds of miles away in a deployed field application.

Let’s talk about the challenges facing the IT industry and how out-of-band management (OOBM) supports critical IT needs.

Support for Shifting IT Challenges

IT departments worldwide are increasingly required to accomplish more tasks with fewer resources, and this trend has accelerated over the course of many years. Additionally, IT infrastructure deployments are often highly distributed due to corporate acquisitions, branch locations, industrial edge installations, home-office employees, and other factors.

The challenge is considerable for companies seeking to maintain reliable management access to a broad array of managed IT hardware made by manufacturers like Digi International, Opengear, Palo Alto Networks, Juniper Networks and Cisco.

What Is the Definition of Out-of-Band Management?

Out of Band Management (OOBM) is a technique for remotely controlling and configuring the critical components of a network, often through use of a serial communication link. Examples of managed hardware include routers, switches, storage devices, servers and other network appliances.

How Digi Remote Manager Supports OOBM

Digi Remote Manager® — Digi’s network management solution — extends the security of Digi hardware. It achieves this through features like active configuration management, while providing a unique form of out-of-band management with a variety of network protocol options, including TCP/IP, UDP and others.

Other features include health and performance monitoring for cellular routers, gateways and console servers. There is even a comprehensive RESTful web services API for externalizing device data so users can create dashboards and trigger process workflows in other enterprise software platforms like Microsoft Azure, Amazon Web Services, Google Cloud and numerous ERP systems.

For more information on integration with these platforms, see my article, Digi Remote Manager, the IoT Stack, and Integration with AWS and Azure.

Console Access with Digi Remote Manager

Recently, Digi unveiled a particularly powerful feature with an update to the long-lived console feature in Digi Remote Manager.

While it has always been possible to issue command line instructions directly to Digi hardware through live console sessions, now customers can perform true out-of-band management with virtually any brand of enterprise hardware via serial connection through a combination of Digi Remote Manager 3.0 and cellular products running the Digi Accelerated Linux (DAL) operating system.

Digi products currently equipped with serial connectivity and the DAL operating system include:

An Improved Method for Network Security

How does this process work and why is it a more secure way of performing out-of-band management?

Customers have long leveraged Digi cellular devices for out-of-band management of enterprise hardware built by numerous vendors. There are a few methods:

  • Some approach this with a public, static cellular SIM / APN, allowing incoming traffic over the Internet, but this can be risky if the firewall is not properly configured to block all unwanted incoming IP traffic.
  • Other customers choose a private SIM / APN, but that can take months for a cellular carrier to build since it requires construction of a VPN tunnel between the data centers of both the carrier and the customer.

The new console features in Digi Remote Manager 3.0 protect network security by allowing customers to easily utilize dynamic SIM cards that automatically disallow incoming IP traffic by design.

Because Digi devices securely connect to Digi Remote Manager through a pre-configured, device-initiated tunnel using TLS 1.2 encryption, all communication passing through the console to Digi hardware is also secure.

When using a console server from the Digi Connect IT family for out-of-band management through Digi Remote Manager, the architecture looks similar to the following diagram:

Out of Band Management with Digi Remote ManagerWith the console feature in Digi Remote Manager 3.0, customers simply initiate a securely encrypted, live serial session with enterprise hardware from any vendor by creating a connection like the one shown:

The advent of secure out-of-band management through Digi Remote Manager represents a major shift in the way customers can access all types of IT assets wherever they may be located.

As networks are increasingly distributed, the need for this capability will be increasingly important.

Digi sales, support and professional services teams can help you with questions about cellular devices, remote management and OOBM. Contact a Digi expert for answers.

Watch the Digi Connect IT Video
Learn about secure, remote access with the Digi Connect IT family

相关内容

Empowering Network Resilience for Multi-Site Networks Empowering Network Resilience for Multi-Site Networks Digi Connect® IT 48 provides a crucial out-of-band solution for secure communications 查看 PDF 网络管理的单一窗口 网络管理的单一窗口 设备网络的复杂性与日俱增--设备可以部署在距离遥远的地方。如今... 观看视频 网络协调:它是什么,与网络管理有何不同,为什么需要它 网络协调:它是什么,与网络管理有何不同,为什么需要它 网络协调可让网络管理员专注于更具战略性的计划。此外,它还可以帮助减少... 阅读博客 单层玻璃:为何重要以及如何使组织受益 单层玻璃:为何重要以及如何使组织受益 单层玻璃概念描述了一种将操作数据和设备数据汇总到单个仪表板的方法,该仪表板... 阅读博客 IoT 重型土木工程解决方案 IoT 重型土木工程解决方案 重型建筑行业的大型项目都存在重大风险。例如,价值数百万美元的混凝土可能... 录制的网络研讨会 安全网络和专用 APN:Digi 专业服务如何提供帮助 安全网络和专用 APN:Digi 专业服务如何提供帮助 Digi 的专业服务部门定期向为客户提供远程监控服务的公司提供建议,以确保他们... 阅读博客 主要石油和天然气业务监控边缘IoT 设备,包括Digi Remote Manager 石油和天然气业务可能分布在全球各地,安装地点相隔数千英里,而且位于偏远地区... 阅读故事 建立弹性网络的备选方案 建立弹性网络的备选方案 查看 PDF Digi Remote Manager:您的IoT 指挥中心 Digi Remote Manager:您的IoT 指挥中心 IoT 网络的复杂性与日俱增,因此必须有相应的工具来管理这些网络。Digi Remote Manager... 观看视频 工业IoT :坚固应用的连接性 工业IoT :坚固应用的连接性 在充满挑战的环境中为应用程序选择连接解决方案需要经过深思熟虑。在本文中,我们... 阅读博客 带外管理Digi Remote Manager 带外管理Digi Remote Manager 虽然您可能知道Digi Remote Manager 是 Digi 设备网络的指挥中心,但您是否知道这个复杂的... 观看视频 网络管理员适应新常态 网络管理员适应新常态 简化网络管理任务,同时提高安全性和可靠性 查看 PDF 远程设备管理IoT 远程设备管理IoT Digi Remote Manager 为您的动态网络提供一个指挥中心,简化部署、管理和更新设备的各个环节。 查看 PDF Digi Remote Manager 旅游 Digi Remote Manager 旅游 Digi Remote Manager 它提供方便易用的仪表板和界面,让您可以轻松监控和管理设备... 观看视频 安全、可扩展的IoT 设备管理 安全、可扩展的IoT 设备管理 IoT 使企业、工业和公共部门组织能够以各种方式控制设备和提供服务。 阅读博客 Digi Remote Manager 101: 使用配置管理器 Digi Remote Manager 101: 使用配置管理器 您可能知道,Digi Remote Manager® (Digi RM)具有多种强大功能,可监控和管理您的... 观看视频 利用优化的 LTE 增强 SD-WAN 能力 利用优化的 LTE 增强 SD-WAN 能力 任何广域网 (WAN) 的主要目的都是将企业用户快速、安全地连接到其应用程序。SD-WAN... 阅读博客 降低远程工作人员的网络安全风险--现在和未来 降低远程工作人员的网络安全风险--现在和未来 远程工作人员的增加趋势给企业 IT 部门带来了压力,因为他们必须管理网络安全风险...... 阅读博客 安全、可靠的连接:远程工作者的网络策略 安全、可靠的连接:远程工作者的网络策略 如今,远程连接的员工越来越多,确保他们安全连接比以往任何时候都更加重要... 录制的网络研讨会 在家办公解决方案:安全的员工和安全的网络 在家办公解决方案:安全的员工和安全的网络 随着越来越多的员工从事远程工作,企业必须为员工提供安全的在家工作选择。最好的... 阅读博客 Enlazza Enlazza 使用Digi Remote Manager 安全管理 Digi 路由器机群 Enlazza 公司利用Digi Remote Manager API 开发了一种名为主机名解决方案(HNS)的创新服务。该... 阅读故事 带外管理和网络恢复能力 带外管理和网络恢复能力 需要安全远程访问和控制其基础设施的组织正在部署带外管理解决方案,以便为在... 了解更多 Digi Remote Manager 101: 自定义仪表板 Digi Remote Manager 101: 自定义仪表板 Digi Remote Manager®使您能够访问所有连接的Digi设备,以获得重要的洞察力,监控设备的运行。 观看视频 Digi Remote Manager 101: 添加新用户 Digi Remote Manager 101: 添加新用户 如果您正在管理贵组织的 Digi Remote Manager® 帐户,您需要确保您组织中正确的人员... 观看视频 带故障切换功能的无线带外管理 带故障切换功能的无线带外管理 网络设备的主要管理通常是通过网络设备所在的同一网络来进行的,这... 阅读博客 Digi Remote Manager Digi Remote Manager 安全配置、部署和管理远程资产 查看产品