beautypg.com

Proxy server issues, Two-factor authentication error, Troubleshooting alert and trap issues – HP Integrated Lights-Out 2 User Manual

Page 190

background image

Proxy server issues

If the Web browser software is configured to use a proxy server, it will not connect to the iLO 2
IP address. To resolve this issue, configure the browser not to use the proxy server for the IP address
of iLO 2. For example, in Internet Explorer, select Tools>Internet Options>Connections>LAN
Settings>Advanced, and then enter the iLO 2 IP address or DNS name in the Exceptions field.

Two-factor authentication error

When attempting to authenticate to iLO 2 using two-factor authentication, you might receive the
message The page cannot be displayed. This message might appear for the following
reasons:

No user certificates are registered on the client system. To correct this issue, register the
necessary user certificate on the client system, which might require software provided by the
smart card vendor.

The user certificate is stored on a smart card or USB token that is not connected to the client
system. To correct this issue, connect the appropriate smart card or USB token to the client
system.

The user certificate is not issued by the trusted CA. The trusted CA's certificate is configured
in iLO 2 on the Two-Factor Authentication settings page. The certificate configured as the
trusted CA, must be the public certificate of the CA that issues certificates in your organization.
To correct this issue, configure the appropriate certificate as the trusted CA on the iLO 2
Two-Factor Authentication settings page, or use a user certificate that is issued by the trusted
CA which is already configured.

The user certificate is expired or not yet valid. Regardless of whether the expired certificate
maps to a local user, or whether it corresponds to a directory user account, iLO 2 does not
allow authentication with a certificate that has expired or that is not yet valid. Check the
validity dates of the certificate to verify that this is the cause of the The page cannot be
displayed

message. To correct this, issue a valid certificate to the user. Map the certificate

to the local iLO 2 user account if you are authenticating local iLO 2 users and verify the iLO
2 time clock is set correctly.

The user certificate was not digitally signed with the same certificate that is specified as the
trusted CA. Even though the name on the trusted CA certificate might match the issuer of the
user certificate, the user certificate might have been digitally signed by a different certificate.
View the certification path of the user certificate, and ensure that the public key of the issuing
certificate is the same as the public key of the trusted CA certificate. To correct this issue,
configure the appropriate certificate as the trusted CA on the iLO 2 Two-Factor Authentication
settings page, or use a user certificate that was issued by the trusted CA.

Troubleshooting alert and trap issues

Explanation

Alert

This trap is generated by a user through the Web configuration page.

Test Trap

Server has lost power.

Server Power Outage

Server has been reset.

Server Reset

Remote user login attempt failed.

Failed Login Attempt

This is an error condition that is not predefined by the hard-coded
MIB.

General Error

Circular log has been overrun.

Logs

The state of the Security Override Switch has changed (On/Off).

Security Override Switch Changed: On/Off

190 Troubleshooting iLO 2