Have a Question?

Secure Out-of-Band Management Through Digi Remote Manager

Out-of-band management allows secure access to IT infrastructure, typically via serial ports. The implications are enormous for mission critical applications such as data centers that require equipment to achieve near 100% uptime.

Just as importantly, IT teams today need the ability to quickly access and troubleshoot devices in their care from multiple manufacturers, whether those devices are down the hall in a datacenter or installed hundreds of miles away in a deployed field application.

Let’s talk about the challenges facing the IT industry and how out-of-band management (OOBM) supports critical IT needs.

Support for Shifting IT Challenges

IT departments worldwide are increasingly required to accomplish more tasks with fewer resources, and this trend has accelerated over the course of many years. Additionally, IT infrastructure deployments are often highly distributed due to corporate acquisitions, branch locations, industrial edge installations, home-office employees, and other factors.

The challenge is considerable for companies seeking to maintain reliable management access to a broad array of managed IT hardware made by manufacturers like Digi International, Opengear, Palo Alto Networks, Juniper Networks and Cisco.

What Is the Definition of Out-of-Band Management?

Out of Band Management (OOBM) is a technique for remotely controlling and configuring the critical components of a network, often through use of a serial communication link. Examples of managed hardware include routers, switches, storage devices, servers and other network appliances.

How Digi Remote Manager Supports OOBM

Digi Remote Manager® — Digi’s network management solution — extends the security of Digi hardware. It achieves this through features like active configuration management, while providing a unique form of out-of-band management with a variety of network protocol options, including TCP/IP, UDP and others.

Other features include health and performance monitoring for cellular routers, gateways and console servers. There is even a comprehensive RESTful web services API for externalizing device data so users can create dashboards and trigger process workflows in other enterprise software platforms like Microsoft Azure, Amazon Web Services, Google Cloud and numerous ERP systems.

For more information on integration with these platforms, see my article, Digi Remote Manager, the IoT Stack, and Integration with AWS and Azure.

Console Access with Digi Remote Manager

Recently, Digi unveiled a particularly powerful feature with an update to the long-lived console feature in Digi Remote Manager.

While it has always been possible to issue command line instructions directly to Digi hardware through live console sessions, now customers can perform true out-of-band management with virtually any brand of enterprise hardware via serial connection through a combination of Digi Remote Manager 3.0 and cellular products running the Digi Accelerated Linux (DAL) operating system.

Digi products currently equipped with serial connectivity and the DAL operating system include:

An Improved Method for Network Security

How does this process work and why is it a more secure way of performing out-of-band management?

Customers have long leveraged Digi cellular devices for out-of-band management of enterprise hardware built by numerous vendors. There are a few methods:

  • Some approach this with a public, static cellular SIM / APN, allowing incoming traffic over the Internet, but this can be risky if the firewall is not properly configured to block all unwanted incoming IP traffic.
  • Other customers choose a private SIM / APN, but that can take months for a cellular carrier to build since it requires construction of a VPN tunnel between the data centers of both the carrier and the customer.

The new console features in Digi Remote Manager 3.0 protect network security by allowing customers to easily utilize dynamic SIM cards that automatically disallow incoming IP traffic by design.

Because Digi devices securely connect to Digi Remote Manager through a pre-configured, device-initiated tunnel using TLS 1.2 encryption, all communication passing through the console to Digi hardware is also secure.

When using a console server from the Digi Connect IT family for out-of-band management through Digi Remote Manager, the architecture looks similar to the following diagram:

Out of Band Management with Digi Remote ManagerWith the console feature in Digi Remote Manager 3.0, customers simply initiate a securely encrypted, live serial session with enterprise hardware from any vendor by creating a connection like the one shown:

The advent of secure out-of-band management through Digi Remote Manager represents a major shift in the way customers can access all types of IT assets wherever they may be located.

As networks are increasingly distributed, the need for this capability will be increasingly important.

Digi sales, support and professional services teams can help you with questions about cellular devices, remote management and OOBM. Contact a Digi expert for answers.

Watch the Digi Connect IT Video
Learn about secure, remote access with the Digi Connect IT family

Related Content

IoT Solutions for Heavy Civil Construction IoT Solutions for Heavy Civil Construction Large projects in the heavy construction industry come with major risks. For example, millions of dollars-worth of concrete may... RECORDED WEBINAR Secure Networks and Private APNs: How Digi Professional Services Can Help Secure Networks and Private APNs: How Digi Professional Services Can Help Digi’s Professional Services regularly advises companies who provide remote monitoring to their customers to ensure they are... READ BLOG Major Oil and Gas Operation Monitors Edge IoT Devices with Digi Remote Manager Oil and gas operations can be globally distributed, with installations placed thousands of miles apart, and in remote areas... READ STORY Options to Build a Resilient Network Options to Build a Resilient Network VIEW PDF Digi Remote Manager: Your IoT Command Center Digi Remote Manager: Your IoT Command Center With the complexity of IoT networks growing daily, it’s important to get the tools in place to manage them. Digi Remote Manager... WATCH VIDEO Industrial IoT: Connectivity for Rugged Applications Industrial IoT: Connectivity for Rugged Applications Selecting the connectivity solution for an application in a challenging environment requires some thought. In this article we... READ BLOG Out-of-Band Management with Digi Remote Manager Out-of-Band Management with Digi Remote Manager While you may know Digi Remote Manager is the command center of your network of Digi devices, did you know this sophisticated... WATCH VIDEO Network Managers Adapt to the New Normal Network Managers Adapt to the New Normal Streamline network management tasks while increasing security and reliability VIEW PDF Remote Device Management for the IoT Remote Device Management for the IoT Digi Remote Manager gives you a command center for your dynamic network that simplifies every aspect of deploying, managing and updating your devices. VIEW PDF Digi Remote Manager Tour Digi Remote Manager Tour Digi Remote Manager provides a convenient, easy-to-use dashboard and interface so you can easily monitor and manage your device... WATCH VIDEO Secure, Scalable IoT Device Management Secure, Scalable IoT Device Management The IoT enables corporate, industrial and public sector organizations to control equipment and deliver services in ways that... READ BLOG Using the Configuration Manager in Digi Remote Manager Using the Configuration Manager in Digi Remote Manager Digi Remote Manager provides everything you need to monitor and manage your remote device network, including device mapping... WATCH VIDEO Empowering SD-WAN with Optimized LTE Empowering SD-WAN with Optimized LTE The main purpose of any wide-area network (WAN) is to connect business users to their applications quickly and securely. SD-WAN... READ BLOG Reducing Network Security Risks for the Remote Workforce — Now and in the Future Reducing Network Security Risks for the Remote Workforce — Now and in the Future The upward trend in remote workers has placed a strain on corporate IT departments, which must manage network security risks... READ BLOG Secure, Reliable Connections: Networking Strategies for Remote Workers Secure, Reliable Connections: Networking Strategies for Remote Workers With many more workers connecting remotely today, it is more important than ever to ensure they are connecting securely... RECORDED WEBINAR Work from Home Solutions: Safe Employees and Secure Networks Work from Home Solutions: Safe Employees and Secure Networks With more workers remote, it's critical that enterprises support their staff with secure work-at-home options. The best... READ BLOG Enlazza Enlazza Uses Digi Remote Manager to Securely Manage Fleet of Digi Routers The Enlazza Company developed an innovative service, called Host Name Solution (HNS), using Digi Remote Manager APIs. The... READ STORY Out-of-Band Management and Network Resilience Out-of-Band Management and Network Resilience Organizations that need secure, remote access and control of their infrastructure are deploying out-of-band management solutions to provide uninterrupted availability for devices operating at the... LEARN MORE Digi Remote Manager Dashboard Training Digi Remote Manager Dashboard Training Digi Remote Manager provides a wide variety of remote management capabilities. In this video we will cover the new and improved... WATCH VIDEO Digi Remote Manager User Management Digi Remote Manager User Management Digi Remote Manager provides a wide variety of remote management capabilities. In this video we will cover our User Management... WATCH VIDEO Wireless Out of Band Management with Failover Wireless Out of Band Management with Failover Primary management of network devices is typically performed using the same network on which the network device resides, which... READ BLOG Digi Remote Manager Digi Remote Manager Configure, Deploy and Manage Remote Assets Securely VIEW PRODUCT