IPMI 2.0 Errata 4 has extended the list of supported algorithms with SHA256
(E431), resulting in more than 15 Cipher suites. The DCMI Spec lists only 17 as
new/additional value, leaving the other 2 possible values unconfirmed.
Errata 434 deals with Cipher Suite 0 and clarifies this one to be "no
I'm trying to understand cipher suites and ipmitool. The 2.0 spec says that
there are 15 suites plus an OEM specified one (and reserved space); ipmitool's
man page says cipher 0 is reserved in the cipher_privs option:
The format of privlist is as follows. Each character represents a
privilege
I'm finishing off a paper that discusses some security stuff around IPMI, the
BMC, and other issues surrounding OOB stuff.
It'll be freely available in the modestly near future, but if anyone has time
in the next week or two to read the thing and potentially give feedback I'd
welcome it; simply