Skip to main content

Enabling encapsulation

When you manage Lenovo chassis and servers in Lenovo XClarity Administrator, you can configure Lenovo XClarity Administrator to change the firewall rules for the devices so that incoming requests are accepted only from Lenovo XClarity Administrator. This is referred to as encapsulation. You can also enable or disable encapsulation on chassis and servers that are already managed by Lenovo XClarity Administrator.

When enabled on devices that support encapsulation, Lenovo XClarity Administrator changes the device encapsulation mode to encapsulationLite, and changes the firewall rules on the device to limit incoming requests from only this Lenovo XClarity Administrator.

When disabled, the encapsulation mode is set to normal. If encapsulation was previously enabled on the devices, the encapsulation firewall rules are removed.

You can enable or disable encapsulation globally for all devices during the management process by selecting the Enable encapsulation on all future managed devices checkbox on the Discover and Manage New Devices page. The encapsulation is disabled by default.
Illustrates a list of manageable systems on the Discover and Manage page that were found by probing the IP subnet.

You can also enable or disable encapsulation individually for specific managed devices at any time by navigating to the device summary page, selecting the device, and clicking Actions > Enable Encapsulation or Actions > Disable Encapsulation.

Attention
If encapsulation is enabled and XClarity Administrator becomes unavailable before a device is unmanaged, necessary steps must be taken to disable encapsulation to establish communication with the device. For recovery procedures, see Recovering chassis management with a CMM after a management server failure and Recovering rack or tower server management after a management server failure.
Note
Encapsulation is not supported on switches, storage devices, and non-Lenovo chassis and servers.