So i am going to re-ip some devices in my network and am looking to make a proper OOB network. For things lke iDrac, ipmi, ups interface, and thinking about the proxmox interface as well.
on my L3 switch ill create the access list for certain machines on my network to gain access to that subnet and nothing else. but then i was thinking about it. if i do that then they will not have any internet access either. which is fine and what i ultimately want. but then how do you manage BIOS, firmware, and any general updates etc?
how are you guys/gals setting up the oob? are you even using one?
I run a completely separate switch for OOB, a separate vRouter in the firewall, with rules to allow those devices access to their update servers and nothing else
I just did a separate VLAN for my OOB devices and control the traffic through my pfsense firewall.
You could always open up internet for when you need to do updates. I cant imagine youll be letting firmwares update on its own 🤡