Operational Defect Database

BugZero found this defect 74 days ago.

Hewlett Packard Enterprise | a00138070en_us

Advisory: (Revision) HPE Integrated Lights-Out 5 (iLO 5) and (iLO 6) - Secure (TLS/SSL) Emails Sent by iLO Are Not RFC 3207 Compliant and iLO Does Not Send an EHLO as the First Command After a Successful TLS/SSL Negotiation

Last update date:

3/8/2024

Affected products:

HPE ProLiant DL380 Gen10 server

Affected releases:

No affected releases provided.

Fixed releases:

No fixed releases provided.

Description:

Info

Document Version Release Date Details 2 March 7, 2024 Updated Resolution with fix, iLO 5 v3.02, iLO 6 v1.57. 1 February 26, 2024 Original Document Release. HPE Integrated Lights-Out (iLO 5) and iLO6 do not send an EHLO command as the first command after a successful SSL/TLS negotiation, resulting in some SMTP servers returning a 503 status and emails will not be delivered. According to https://www.ietf.org/rfc/rfc3207.txt, section "4.2 Result of the STARTTLS Command" - "The client SHOULD send an EHLO command as the first command after a successful TLS negotiation."

Scope

Any HPE system with iLO 5 or iLO 6.

Resolution

To download iLO 5 v3.02 or iLO 6 v1.57, perform the following steps: Click either of the following links: http://www.hpe.com/support/ilo5 or http://www.hpe.com/support/ilo6 The page should refresh to display the "DRIVERS AND SOFTWARE" tab and the components that support the selected product. From the "DRIVERS AND SOFTWARE" expandable filter menus on the left side of the page: For further filtering if needed - Select the specific Operating System from the Operating Environment. Locate and select the HPE Integrated Lights-Out 5 v3.02 Firmware or HPE Integrated Lights-Out 6 v1.57 Firmware . click the Revision History tab to locate the latest version. For more important information, review the Release Notes tab. Click the Download button. Disclaimer: One or more of the links above will take you outside the HPE website. HPE is not responsible for content outside of its domain. RECEIVE PROACTIVE UPDATES : Receive support alerts (such as Customer Advisories), as well as updates on drivers, software, firmware, and customer replaceable components, proactively in your e-mail through HPE Support Alerts. Sign up for Support Alerts at the following URL: HPE Email Preference Center. NAVIGATION TIP: For hints on navigating HPE.com to locate the latest drivers, patches and other support software downloads, refer to the Navigation Tips document. SEARCH TIP: For hints on locating similar documents on HPE.com, refer to the Search Tips document.

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

Unavailable

Learn More

Search:

...