Manuale d’uso / di manutenzione del prodotto Secure Device Servers del fabbricante Black Box
Vai alla pagina of 164
M a y 2010 LE S 1101 A LE S 1102 A 110 1 a nd 1102 Sec ure Device Ser vers Sec ure ly mon i tor , a cc e ss , and cont ro l th e co mpu ter s, networking dev ices , tel e communica t ions equipment, an d power suppli es in your dat a room or com munica tion s center s .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 2 Feder a l Comm unicatio ns Com m ission and Ind ustr y Ca nad a R adio Frequenc y Interfe rence Stat e ments This e quipm en.
FC C a n d IC RFI Sta tem ent s 724-746-5 5 00 | blackbox.co m 3 No r mas Ofi ciales Mexi canas ( NO M ) Elect ri cal S af ety Stat ement INSTRUC C IONES D E SE GURIDAD 1. T odas l as i n str u cci on es de se gu ri d ad y op eraci ón deberán ser leídas a nt es de que el a par at o eléct rico sea operado.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 4 Trade mar ks Used in thi s Manu a l Black Box and the Doub le Diamond logo are re g istered trademarks of BB Technologies, Inc. Mac is a registered trade mar k o f Apple Co mputers, Inc.
Ta bl e of C o nte n ts 724-746-5 5 00 | blackbox.co m 5 5 T able of C ontents 1. Sp eci fi c atio n s .............................................................................................................. .....................................
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 6 6 6.7 SD T Con n ecto r Pu bl ic K e y Au th en ti c atio n ................................................................................... ...............................
Ta bl e of C o nte n ts 724-746-5 5 00 | blackbox.co m 7 7 11 . S yst e m M an ag em ent .......................................................................................................... .......................................................
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 8 8 15 .6 .4 In st al lin g S SH Pu b lic K eys A u th ent i ca t ion ( Linu x ) ..................................................................... ..........................
C h a pt er 1 : S p e cif icat i o ns 724-746-5 5 00 | blackbox.co m 9 1 . S pecificat ions CPU: MIcrel KS8695P controller Memo r y: 16 MB SDRAM, 8 MB Flas h Seri a l Baud Ra tes: 2400 to 115 ,200 bps.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 10 2. Ov er vi e w 2 . 1 I nt roduct ion This U ser’s M anual w alks you through insta lling and c on fi gu ring your B lack Bo x Sec u re D evice Se rver s (L ES1101A or LES 1102A ).
C h a pt er 2 : Ov ervi e w 724-746-5 5 00 | blackbox.co m 11 devices ; and c on trol these devices u sing t h e speci fied serv ices (f o r example, Te lnet, HH TPS, RD P, IP M I, Se rial over L AN, Po w er Control).
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 12 Table 2 -1. LES 1101A front-pan el c ompon ents. Number Component Description ` 1 Barrel connect o r Power 2 RJ- 45 c onn e.
C h a pt er 2 : Ov ervi e w 724-746-5 5 00 | blackbox.co m 13 2.5. 3 LES 1102A F r o nt Pane l Fi gu re 2 -4 shows t h e front p anel o f t h e LES 1102A . Ta b le 2 -3 d escribes i ts components. Fi gu re 2-4. LES1102A front panel. Table 2 -3. LES 1102A front-pan el c ompon ents.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 14 2 . 6 W hat ’s Inclu d ed Your package should include the following items. If anyt h ing is missing o r damaged, contact Black Box Technica l Support at 724- 746-5500 or info @ b l a ckb o x .
Ch a p t er 3: Ins tallation 724-746-5 5 00 | blackbox.co m 15 3 . Ins ta lla t ion Make s ure you h ave every thing l isted in Cha pter 2, Section 2.6 for your 1101 o r 1102 Secure Device Server. 3.1 P o we r C on ne c ti o n The LES 1101A or LES1102A m od els are ea ch supplied w i th a n exter n al DC wall m oun t pow er s upp l y.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 16 Table 3-1. RS-232 DB9 connector pinouts. Signal Pi n Definition CD 1 Receive d Line Signal D etect o r RXD 2 Receive d Data.
Ch a p t er 3: Ins tallation 724-746-5 5 00 | blackbox.co m 17 We b m anagement cons o le. Two short cable loops ar e als o required b etwee n the RX+/T X + pin s and RX -/T X - pin s. This is b eca u se the LES1102A uses universa l di fferentia l transceiver s that support 4-wire (RS- 422 ) and 2-wire (RS-485) op eration.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 18 4 . System Co nfigurati on Th i s chapter provi d es ste p -by-ste p i n struct ions for t h e console server’s i n itial c onfigurati on , and f or connecting it to t h e Ma na ge me nt or Ope ra t i ona l LAN .
C h a pt er 4 : S ystem C o nf i g ur ati o n 724-746-5 5 00 | blackbox.co m 19 Fi gu re 4-1. Run screen. No w add a s ta t ic en tr y to the AR P tab l e an d ping th e console server to ass ign the IP a dd ress t o th e c on sole server .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 20 You will be prompted to log in. Enter t h e d efa u lt administ r ation user na me a nd adminis tra ti on passw ord: Username: r oot Passw ord: default F i gur e 4- 2. Lo gin sc re e n.
C h a pt er 4 : S ystem C o nf i g ur ati o n 724-746-5 5 00 | blackbox.co m 21 F igure 4-4. System : Ad mi n istra tion scree n . 1. Sel ect Syste m: Administra tion. 2. E nter a new System Pass word t h en re-e nter it in Confirm Sys t em Pass wo rd.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 22 F i gur e 4- 5. IP Se t ti ngs sc r ee n. I f y ou s e lec te d DHCP , t he co n sol e s e r v er wi ll lo ok f or c onf ig ura ti on d et ai ls fr om a D HCP se rv e r on y our ma na ge me nt L AN.
C h a pt er 4 : S ystem C o nf i g ur ati o n 724-746-5 5 00 | blackbox.co m 23 Fi gure 4-6. Sys t em: Se rvices scree n. Sel e c t th e S y s t em: S e rv i c es op tio n , th en s e l ec t /d es e l ec t fo r the se r vi c e to b e en ab l ed /d i s ab led .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 24 • Base: The cons o le ser ver us e s spe c if i c d e f aul t r an g e s fo r th e TC P/ I P po r t s fo r th e v a rio u.
C h a pt er 4 : S ystem C o nf i g ur ati o n 724-746-5 5 00 | blackbox.co m 25 4.5. 2 P uTTY You ca n also use c om municati on s p ackages l i ke Pu TTY to co nn e c t to th e c ons ol e s e rve r command l ine (and to c onnect seria lly attac h ed device s as co v er ed in Chapter 5 ).
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 26 5 . Se ria l Port, Host, Devi ce, and User Co nfig urat io n The Black Box LES1101A and LES1102A co n so l e s e r v er en abl e s a c c e ss an d con t rol of s er i al ly a tt a ch ed d ev i c es an d n etw o rk a t t ach ed d e vi c e s ( ho sts ).
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 27 F igure 5-2. Serial port scree n . Select Serial & Netw o rk: Seria l Port and y ou wil l see the c u rre n t la b els, modes, logging levels , and R S-232 protocol options th at are curre n tly s et up fo r each se rial port.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 28 Be fo r e pro ce ed ing w i th fu rth e r s e ri a l p o r t co n figu rat io n , con n ect t h e po r t s to th e s e ri a l d e v ic e s th e y w ill b e co n t ro l lin g , an d make sure they have matchi ng sett ings.
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 29 F i gur e 5- 5. Wi nd ows fe a tur es sc ree n.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 30 F i gur e 5- 6. P uTT Y Co nfi gur a ti on sc re e n. Pu T TY can b e downloaded at http://www.
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 31 TCP: RAW TC P allo w s connect ion s directly to a TCP socket. Comm unicat ions prog rams like Pu T TY also support RAW TCP. You would usually access t hi s pr otoc ol v ia a c us tom a ppl ic at io n.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 32 F i gur e 5- 9. S DT se tt i ngs . F or conf igurati on details , refer to Chapte r 6. 4—U si ng SDT C on nec to r to Te l ne t or SS H co nne ct t o de v ice s t ha t a re se ri a lly at tac he d t o th e c ons ole se rver .
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 33 Fi gu re 5-12. Serial bri d ge setti ng s.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 34 5.2 A d d/ Ed it Us er s Th e Adm inis trator u s es thi s m enu s el e ctio n to s e t up , ed it , an d d e le t e us er s , an d to d e fin e th e ac ce s s perm i ss ion s fo r e a ch of th e s e use rs .
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 35 Fi gu re 5-16. Add a n ew user screen. Click Add User to add a n ew user . Add a U sern ame a nd a c on firm ed Pass word for eac h new user.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 36 5.3 A ut h en ti c at io n Re fe r to Ch apt er 9. 1 —Au thenticati on Configuration for authenticat ion configurat ion details.
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 37 5 .5 T rusted Ne tw orks Th e T ru st ed N etw o r ks fac i l it y gi v e s yo u an op .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 38 Fi gu re 5 -19. Serial Por t re dir ecti on. This s erial port redirector s oftwar e is loaded i n your d esktop PC, a nd i.
Chap te r 5 : S e ri al Po r t, Ho s t, De vi ce, and Us e r Con figu ra ti on 724-746-5 5 00 | blackbox.co m 39 • Select t h e connecti on type for the new connecti on (Serial, Netw o rk Host, UPS, or R PC) and th en select the specific connecti on from the pr esented list of confi gu red un all ocated hosts/ports/ ou tlets.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 40 6 . S ecur e S SH Tu nn e l in g a nd S D T Conn ecto r Each B l ack Bo x c on sole se rver h as a n embedded SSH serve r a.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 41 • Usi ng SDT t o IP connect t o hosts t hat are se rially attac h ed t o the c on sole server (Section 6.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 42 O nc e the i nst a ll er c om pl et es yo u wi l l hav e a wor k in g SD T Co nne cto r c l ie nt i ns ta ll e d o n y our ma c hi ne a nd a n ic on on y ou r des k t op : Fi gu re 6 -3.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 43 F i gur e 6- 5. N ew S DT Gat e way sc re e n. O r, e nte r a De sc r i pti ve Na me t o dis pl ay i nst.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 44 F i gur e 6- 7. Ho sts . NOTE: The Retrieve Hosts function will auto-confi gu re all us er class es (th at is, th ey can be members of user or admin or som e o th er group or no group.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 45 F i gur e 6- 9. Ne w S DT Hos t sc ree n. E n t er t he IP or DNS Hos t Ad dre s s of the hos t (i f t his is a D NS a ddr es s , it mus t be a ble t o be re s ol ve d by t he gat e way ).
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 46 Select which Client a ppli cati on is associa ted wit h the n ew service. A range of c l ient a pp licati on options are p re-c on figured i n the d efau lt SDT Connector ( R D P client, VNC cl ient , HTTP browser, HTTPS browser, Telnet clie n t, etc.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 47 Fi gu re 6-13. Edit port r edire ction. NOTES: SDT Connect o r ca n als o tunnel UDP services. SDT Connector tunnels t h e UDP traf fi c t h rough t h e T C P SSH re d irect ion, so i t is a “t u nnel with in a tu nn el .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 48 Enter a Comm and Li n e ass ociated w i th la un chi ng the c lient a pplic ati on . S DT Connector ty p i cal ly la un ches a c li ent using com m and li n e ar gu ments t o point it at t h e l o cal e ndpo int o f the re direction.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 49 6 . 3 SD T Conn ecto r t o Ma n a g e m e nt Con so l e You ca n also configure S D T Connect o r f o r b rowser acce ss t o the cons ol e serve r’s Management Con sole —and f o r Tel n et or SS H acces s to th e command l ine.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 50 Fi gu re 6-18. Add po rt redirection. Assumi ng you have a lready se t up t h e tar g et c on sole se rver as a gateway i n your S D T Connector c lient (with u sername/pass wo rd et c) , select this gat eway a nd cl ick t h e H o st i co n to crea te a host.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 51 F i gur e 6- 19. Ou t- of - ba nd a c ce ss . To co n fi g ur e SD T Co n n ec to r for O o B a cc e s s: When a dd ing a n ew Gateway o r e d iti ng an existi ng Gateway se lect t h e Out O f Band ta b.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 52 Fi gu re 6 -20. OoB connecti on using SDT c onnector. When y ou c onn ect t o a se rvice on a host be h ind the c onso le se rver, o r to t h e cons o le serve r itself , SDT Connect o r will initiate t h e OoB connection usi ng the p rovided Star t Comm and.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 53 SDT Connector will now u se public key aut h enticati on wh en connecting through the SSH gateway (con sole serve r) . You m ay have to restar t SDT Connector t o shut dow n any exi sting tunnels that were esta b lished using password a uth enticat ion.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 54 Fi gu re 6-23. Remote D eskt op Us ers dial og bo x. To set the user(s) who can remotely access t he system with RDP, click A dd on the R emote Desktop Users di al og bo x.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 55 In Co m pu t e r , en t er t h e ap p rop r i at e I P A d d r es s and Po rt N u m b er : Where there i.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 56 You ca n use GUI front end tools l ike the GNOME Ter m inal Services Cl i ent t sclient t o c on figure and launc h the r d eskt op clie n t. (U sin g t s cl ien t al so ena bles you to store multiple configurati ons o f rdesktop for connecti on to m any servers.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 57 RealVNC ht tp:/ /www .realvnc.c om is fully cr o ss-platf o rm, so a desktop running on a Linux mac h ine may b e displayed on a Windows PC, on a Solar is machine, or on any numb er of other a rchitectu res.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 58 • E d i t / home/username/.v n c/xsta rtup if y ou want a mo re a d vanced se ssion than j u st t wm and a n xterm. F or M aci nt os h s erv er s (a nd cl ie nts ): OSX vn c h ttp : / /w w w .
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 59 F i gur e 6- 29. IP a ddr es s of co nso le s er ve r uni t. To establish t h e V NC connecti on , s i mply acti vate t h e VNC Viewer software on the Vie w er PC a nd enter the pass word.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 60 6.10. 1 Es tab l is h a PPP Conn ect ion b e t w e e n t h e Hos t C OM P o r t a nd Con so l e S e r v e r (T his ste p is on ly n ece ssary f or seria lly c onnecte d co mputers.
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 61 Fi gu re 6-32. User permi ssi on s. Specify which Users will be al lowed to u se t h is connecti on. This s ho uld b e t h e same Users who w ere give n Remote Deskt op access p riv il eg es in th e ea rlier ste p .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 62 NOTES (continued): T h e c onsole server default Username is port XX where X X is t h e se rial po rt numb er o n the c on sole server .
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 63 F igure 6 -35. S D T sett ings scree n. N OT E: Wh en y ou e na ble S DT, i t wi l l ov er r i de al l ot he r C onf ig ura t i on p rot oc ol s o n t hat por t.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 64 Fi gu re 6-36. PuTTY Con figuration screen. In th e S e s sio n men u , en ter th e I P ad d res s of th e co n s ol e se r v er in t h e Ho s t N am e or IP ad d res s fi eld .
Chap te r 6: Se c u re SS H Tun nel ing and SD T Con nec to r 724-746-5 5 00 | blackbox.co m 65 F i gur e 6- 37. Se t de st i nat io n. If y our destinati on computer is serially c onnected to t h e c on sole se rver, set the Desti n ati on as <port la bel>:3389.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 66 NOTE: How secure is VNC? VNC access general ly allows access to your whole com pu ter, s o securi ty is very import ant. VNC uses a ra ndo m challe ng e-res ponse system to provide t h e basic authentica tion that a llows y ou to c onn ect t o a VNC server .
Chap ter 7: A le r t s a nd Loggi ng 724-746-5 5 00 | blackbox.co m 67 7 . Alerts and L og gin g This c h apter describes t h e alert g enerat ion and loggi ng feat u res of t h e con sol e se r v er .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 68 You may als o e n ter a Use rname an d Pa ssword if the SMTP ser ver re quires aut h enticat ion. You ca n spec ify t he s pecif ic Subject L ine tha t w ill b e sen t wi th th e em ai l.
Chap ter 7: A le r t s a nd Loggi ng 724-746-5 5 00 | blackbox.co m 69 To con fi g ur e fo r SN M P v3 , yo u wil l ne ed to en t er an ID and au th en ti c a tio n p as sw o rd an d co n t ac t in fo r m at io n for th e lo c al Admin istrator (in th e Securit y Name ).
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 70 Select Aler ts & Logging: A lerts, which will display all the alerts c u rre n tly confi gured.
Chap ter 7: A le r t s a nd Loggi ng 724-746-5 5 00 | blackbox.co m 71 F igure 7-6. Gen eral a lert ty pes. Seri a l Port Signal A lert —This ale rt will b e tr iggered when t h e s p ecifie d si gn al c h anges state a nd applies to serial port s only.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 72 F i gur e 7- 8. Se ri al port pat te r n mat ch a ler t . UPS Power S tat u s A lert — T his al er t wi ll be tr ig ger e d w he n t he UP S p owe r s ta tus c ha nge s be t wee n o n l ine , o n ba t te ry , a nd l ow ba tt er y.
Chap ter 7: A le r t s a nd Loggi ng 724-746-5 5 00 | blackbox.co m 73 7 .3 Re mote Log S torage Bef ore acti vating Serial or Network Port Logging on any port or U PS logging, you must specify where .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 74 Level 2 L og s al l da ta tra n sferre d t o and f rom the port. Click Add th en c li c k App ly.
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 75 8 . Power Ma nage m ent Black Box co n sol e se r v er s ma na ge em be dde d s of twa re t hat y ou c an u se to ma na ge c onne ct.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 76 Click Add RPC . Connected Via pre se nts a l i st o f se ria l p or ts a nd ne tw or k H ost c onn ec ti ons t ha t y ou h .
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 77 F i gur e 8- 3. RP C des c ri pti ons . En te r th e User na me and Pa ssword u s ed to log in i nto th e R PC (N o t e th at th es .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 78 The ou tl et s tatus is displayed a nd you can init iat e t h e Ac ti on y ou want t o take by selec ting the appr op riate.
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 79 Fi gu re 8 -5. Connecti ng to re mo te UPS. 8 .2 .1 Ma n aged U PS Co nnec tions A Managed UPS is a UP S th at is di r e ct ly co nn e ct ed as a M an ag ed De vi c e to th e con so l e s e r v er .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 80 Seria l and net wo rk c onn ected UPSes must firs t be c onn ecte d to, a n d c onf igure d t o communicat e with the console se rver: Fo r seria l U PSes attac h the U PS to the selec ted serial port on the console s erv er .
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 81 F i gur e 8- 8. A dd ma na ge d UPS sc ree n. Select if the UPS w ill be Connected Via USB, over a pre-c on figured ser ial po rt, or via SNMP/HTTP/HTTPS over the preconfi gured n etwork Host connecti on.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 82 Click New Op tion s in Dr i ver Op ti ons if yo u ne e d t o s et dr ive r -s pec if ic op ti ons f or yo ur s e le cte d N UT dr ive r a nd ha r dwa re c om bi na tio n (mo re detai ls at h tt p ://www.
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 83 En te r th e I P Add re ss or DNS name of t he re m ot e console serv er * th at i s ma na gi ng t he re mot e UP S . ( *T his ma y be a not her Bla ck Box co n sol e s e r v er or i t may be a g eneric Li nu x server r unning Network U PS Tools.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 84 Fi gu re 8-11. UPS g raph. Cl i c k o n an y p ar t i cu l a r All Data for any U PS Sys tem in t h e ta ble for more stat us a nd confi gu rati on informati on about t h e sele cted UPS Syste m.
Chap te r 8 : Powe r Manage men t 724-746-5 5 00 | blackbox.co m 85 Fi gu re 8-13 . NU T. N UT is b ui l t o n a ne tw ork e d m ode l w it h a l ay ere d sc he me o f dr ive rs , se rve r a nd c li e.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 86 C e ntr al ma na ge me nt of mu lt ipl e NUT se rv er s : A c e ntra l NUT c l ie nt c a n m on it or m ult i ple NU T s e rv er s t ha t may be di str i bute d t hr ou gho ut the d a ta center, across a campus, or around t h e w o rld.
Chap te r 9 : Au then t ic a ti on 724-746-5 5 00 | blackbox.co m 87 9 . Aut henticati on Th e co ns ol e s e rve r is a dedica ted Linux computer with a myria d of popular a nd proven Li nux software.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 88 F i gur e 9- 2. T ACA CS sc re e n. En te r th e Se rver Addre ss (IP or ho st nam e) of the remote Auth enticat ion /Authorizati on server. M ultip le rem o te serve rs may be specif ie d in a c om ma-se parate d l ist.
Chap te r 9 : Au then t ic a ti on 724-746-5 5 00 | blackbox.co m 89 RADIUS: T h e Rem o te Au thenticati on Di al-I n User Service (RADIUS) prot o col was developed by L ivingston En te rprise s as a n access s erver authenti cation and acc oun ti ng protocol.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 90 Example 2: Use r Be n is onl y def i ne d on t he T AC ACS s er ve r, w hic h sa ys he has ac ce ss to p or ts 5 a nd 6 . Wh en he a tte m pts t o l og i n, a ne w us e r will be cr ea te d f or h im , a nd h e wi ll be a bl e t o acc e ss po rt s 5 a nd 6.
Chap te r 9 : Au then t ic a ti on 724-746-5 5 00 | blackbox.co m 91 9 .3 SSL Certifi cat e Th e co ns ol e s e rve r u ses t h e Sec ur e S o cket Laye r (SSL) protocol f o r enc rypted n etwork tra ffic betwee n itself a nd a connecte d user.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 92 Select System: SS L Certific ate and fi ll o u t th e f i eld s a s exp l ain ed b elo w: Common name T his is the netwo rk n ame of the co n sol e s e r v er o n ce it is in s t al l ed in th e n et w or k (u su a ll y th e fu ll y q u al if i ed d o m ain n am e).
Chap te r 9 : Au then t ic a ti on 724-746-5 5 00 | blackbox.co m 93 F i gur e 9- 6. Up l oa d bu tt on. Aft e r co m pl e tin g th es e st ep s , th e console se rver h as i ts o w n c er ti f ic a te th at i s u s ed fo r id en ti f yin g th e console s erver t o its users.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 94 1 0 . N agios Integra tio n Nagios is a pow erful, hi gh ly exte n sible open source t o ol for monitori ng n etwork hosts and servic es. The core N agi o s soft w are packag e w ill typically be insta ll ed on a server or virtual serve r, th e central Nagios server.
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 95 1 0 .2 Centra l Mana ge ment and S etting Up S D T for Na gios T he Bla ck Box Na gi os s olu ti on ha s th re e pa rts : t he Ce nt ra l Na gi os ser ve r, Dis tr i but e d Bla ck Box cons o le ser ver s, and th e SD T fo r N ag io s so f tw a re .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 96 2. Run the SDT for N agi o s Configuration Wizard on the centra l N agios server (Section 10.2. 1 — Set up SDT N agios on central N agi o s server) an d pe rf or m a ny a ddi ti ona l c on fi gu rat i on ta sk s.
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 97 Click Apply. Next, y ou must c on figure the attached Wi ndo w n etwork host a nd specify t h e ser vic es y ou will b e c h ecking w ith Na gi os (HTTP a nd H TTPS): Select N etwork Hosts f rom the Seria l & N etwork menu and click Add Ho st.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 98 F i nal ly, y ou ne e d t o a dd a User for t h e clie n t r unn ing S D T Connector: Select Us ers & Gr ou ps from th e Se r i al & N e two r k me nu. Click Add U s er.
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 99 10.3. 2 En ab le N R PE M o ni to r in g Figu r e 1 0 -5 . N R PE m on i to ri ng s tru c tu re.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 100 Re f er t o t he sa m ple Na gi os c onf ig ura ti on s ec t i on be low fo r s ome ex a mpl e s of c onf ig ur i ng s pec if ic NS CA che cks .
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 101 ho st_ n ame Bla ck Box a lias C onsole server address 192. 168 .254.147 } ; Ma nag ed Host defi n e host{ use g eneric -host ho st_ n ame se rver a lias se rver address 192.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 102 check_c omm and check_ po rt_l og } de fin e s e r vic e { se rv i ce_ des c ri pti on p or t- l og- se rve r hos t_name s.
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 103 use generic -service check_c o mmand check_c onn _via_ B lack Box !t cp !2 2 active_ checks_enable d 0 passive_ check.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 104 1 0 .4 . 4 Distrib uted Mo nito ring U sage Scenarios Bel o w ar e a number of distribute d mon itoring Nagios scenarios: Lo ca l o f fi ce In th i s scen ario , th e c ons ole se rv er is set up t o m on itor ea ch managed devic e’s c on sole.
C h a pt er 1 0 : N a g i os I nt e gr at i o n 724-746-5 5 00 | blackbox.co m 105 Remote sit e with restric tive f irewa ll In th i s s cen a rio , th e ro l e o f th e co nsol e se r ver will va r y. On e aspect may b e t o upload c h eck resu l ts t h rough NSCA.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 106 1 1 . Syste m Manage m ent Thi s ch ap t e r d e s cr ib e s h o w th e Administrat or can p erform a ra ng e of g eneral .
Chap te r 1 1: S y s te m M anage men t 724-746-5 5 00 | blackbox.co m 107 Th e har d e rase wil l clear al l c u stom sett ings and re turn t h e unit back to factory de fault sett ings ( i. e. the IP a ddress wil l be re set to 1 9 2 .1 6 8 .0 .1 ).
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 108 Cli ck A p p l y an d th e console server applia n ce w ill perf o rm a soft re b oot a nd star t upgradi ng t h e fir mw are. T his process will take severa l mi n utes. Af ter the firmware upgrade complete s, click here to ret u rn to th e Mana g ement Cons ole.
Chap te r 1 1: S y s te m M anage men t 724-746-5 5 00 | blackbox.co m 109 Fi gu re 11-6. Conf igurat ion b ackup screen. With a ll cons o le server s , you ca n save the backup f i le re mo tely on your P C and y ou can res tore confi gu rati on s from re mote locations: C li ck Sa ve Ba ck up i n t he Re mot e C onf i gur a ti on Bac k up m e nu.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 110 1 2 . St atus Reports Thi s ch ap t e r de s cr i b e s th e da sh b o ard f e atu r e an d th e s t atu s rep o r ts th a.
Chap te r 1 2: S ta tu s R e po rt s 724-746-5 5 00 | blackbox.co m 111 Figu r e 1 2-2 . S t ati st i cs st a tu s. You ca n find detai led statist i cs re po rts by selec ting t he various s ub menus.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 112 12.4 S ys l o g The Li nu x Sys tem Logger i n the c ons ole se rv er m ain t ain s a r eco rd o f a ll sy s t em me ss ag.
Chap te r 1 2: S ta tu s R e po rt s 724-746-5 5 00 | blackbox.co m 113 1 2 . 5 . 1 Con f i gu r ing th e D a s hbo a rd O nly use rs wh o a re mem be rs of t he ad m in g roup (and the root us er ) ca n c onf i gure a nd a c ce ss t he da s hb oar d.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 114 To configure what is to be displaye d b y each widget: Go to the Conf igure widgets pa ne l a nd c onf ig ure ea c h s el .
Chap te r 1 3: Man agemen t 724-746-5 5 00 | blackbox.co m 115 1 3 . Manage ment Th e co ns ol e s e rve r ha s a s mal l n um ber of Manage r e por ts a nd t ool s t hat a re a va il a ble to bot h Administrat o r s a nd Users : • Access and contr ol authorized devices.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 116 Fi gu re 1 3-3. P o rt logs. To d i sp l a y Ho st log s , sel e c t Manage : Host L og s a nd t he H ost to be d is pl aye d.
Chap te r 1 3: Man agemen t 724-746-5 5 00 | blackbox.co m 117 NOTE: You must insta ll SDT Conn ector on t h e com pu ter you are browsing fr om and a dd and t h e c ons ole ser ve r as a gateway as d etai led in Cha pter 6.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 118 1 4 . Co nfiguration fr om the Comma nd Line Fo r those who p refer to configure t h eir co n so l e s e r v er at t he Li.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 119 The config to ol Syntax c onfig [ -ahv ] [ -d id ] [ - g id ] [ -p pa th ] [ -r c onfi gurat o r ] [ -s i d.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 120 Th e r eg is t er ed co n f ig u rato r s a r e: al e r ts auth c as cad e c ons ole dhcp dialin even tlo g hosts ipaccess.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 121 NOTE: Supporte d serial port baud-rates are ‘50’, ‘75’, ‘ 110 ’, ‘134 ’, ‘ 150’ , ‘20.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 122 # co nfi g - s c onf i g. po rt s. por t 5. s dt. ss h= on T o c onf ig ur e a use r na me a nd pas sw or d w h e n ac ce ss in g th is p ort wi t h Us e r nam e = us er 1 a nd P a ss wor d = se cre t : # co nfi g - s c onf i g.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 123 Yo ur new User wi l l be t he ex i st ing t ot al plus 1. If t he pre v i ous c omm a nd ga ve y ou 0 , t he n y ou sta rt w it h us er nu mbe r 1. If y ou a lr e a dy hav e 1 user y ou r ne w use r wi ll be n um ber 2, e tc .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 124 1 4 . 4 Add i ng a nd R e m ov i ng U s e r G rou ps Th e co ns ol e s e rve r is configured with a few default user groups (even though onl y two of these groups are visible in th e Management Con sole GUI).
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 125 To con fi g ur e TA C AC S au th en ti c a tio n : # config -s co n fi g .aut h.tacacs .auth_se rver='c omma separate d list' (li st of remote a uthe n ticti on an d aut horizat ion server s.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 126 Add othe r network ho st T o ad d any ot her ty pe of net wor k h os t w it h the f ol low in g de tai ls: IP address/ D NS n ame 192.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 127 Th e fo llo w in g co mm an d w ill s ynch ron ize th e li v e s yst e m wi th th e n ew con f ig u ra t ion : # con f ig -r s er i al co n fig 1 4 .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 128 # c onf ig -s c onfig.ups.monitors.monit o r1.options. op tion1.opt=option # c onf ig -s c onfig.ups.monitors.monit o r1.options. op tion1.ar g = argument # c onf ig -s config.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 129 # c onf ig -s config.ports. po rt2.power.ty p e=A PC 7900 # co nfi g - s c onf i g. po rt s. por t 2. powe r. na me= My RPC # c onf ig -s "config.ports. po rt2.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 130 N o t i c e Warning A ss um e t he re mo te l og se rve r nee ds a us e r name ' na me 1' a nd pa ssw or d 'se c re t ': # co nfi g - s c onf i g.e ve ntl og .
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 131 # c on f ig -s "config.aler ts.alert 2 .pattern=. *0.0% i d " # con fig - s co n fig . al e rt s. al e rt2 .po rt1 0 =o n # config -s c onfi g .aler ts.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 132 # c on fig -s config.syste m .smt p .subject =SM TP ale rts T o set -up an SMTP SMS server with t h e same details as above: # config -s confi g .syste m .sm tp.server 2=mail .
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 133 # co nfi g - s c onf i g. i nte rfa ce s .w a n.m ode =s ta t ic # config -s config.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 134 Th e fo llo w in g co mm an d w ill s ynch ron ize th e li v e s yst e m wi th th e n ew con f ig u ra t ion : # con fig -r ti m e 14.
Chap ter 14: Con figu ra tion f ro m th e Co mm and L ine 724-746-5 5 00 | blackbox.co m 135 Th e fo llo w in g co mm an d w ill s ynch ron ize th e li v e s yst e m wi th th e n ew con f ig u ra t ion : # config –a 14.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 136 Black Box co n sol e se r v er s r un the embe d de d Linux ope rating system .
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 137 Fo r power and al arm sensor a lerts (pow er load, a nd battery c harge a l erts): /etc/ scri p ts/e n vir on mental -al.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 138 e m ail to m o re t h an on e ema il a dd ress, fi nd the l ines in the scr ipt res ponsible f or inv o king t he ale rt-email script, t hen a dd th e foll owi ng lines be low th e e xi s tin g li n e s: exp o r t TO A D DR = " em ail add r es s@ do m ain .
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 139 NE WT OT AL = $[ $ TOT AL -1 ] # Make backup copy of config file cp /et c/ confi g /config.xml /et c/ confi g /config.bak echo "backup of /etc/confi g /config.xml save d in / etc/c on fig/config.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 140 echo Done exit 0 el s e echo "er ror: i tem being d eleted has a n index g r eater than total items.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 141 slee p 30s fi if [ " $C OU NTE R" - e q 5 ] th en COUNTER=0 " $ @ " s l e e p 2 s fi done .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 142 To save the configurati on : # / et c /s cr i pt s/ back up - us b sa ve c onfi g- 20Ma y To c h eck if the backup was sav.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 143 Black Box’s portma ng er pr ogr a m ma na ges the console se rver serial ports .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 144 portm anage r daemon Th er e i s n o rm al l y n o n e ed to s top an d r es t a rt th e d aem o n .
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 145 fi </ e t c/ con fig /pm sh el l -s t a rt .s h > .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 146 If the sta nd ard system firewall confi guration is no t a d equate f o r your n eeds y ou can b ypass it s afe ly b y crea ting a fil e at /etc /config /filt e r-cust om contai ning comm ands t o build a s p ecial i zed fi rewall.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 147 T o s et t he Us er na me fi e l d (S N MP v ers i on 3 o nl y) : co n f ig - -s e t con fi g. sys t em . snm p .u se rn am e2 = yo u ru s e rn am e . . r e plac i ng your u sername wi th th e use rn am e conf ig .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 148 Th e k e y f in g erp ri n t i s : 28:aa: 29 :38:ba:40:f 4 :11:5e:3f:d4:fa:e 5:36:14:d6 u ser@serve r $ C rea te a new di re ct ory t o s t ore yo ur ge ne ra te d ke ys . Yo u ca n a ls o na me t he fi le s a fte r t he dev ic e t he y wi ll be us e d f or .
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 149 Figu r e 1 5 -1 . If th e Bl a c k B ox d evi c e s e l ect ed to b e th e s er v er w il l on ly h a ve o n e c li en t d e vi c e, th en th e aut ho rized_keys f ile is s imply a c op y of t he publ ic key f o r t ha t de v ic e .
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 150 htt p ://www.openbs d .org/cgi-bin/man.cgi?query=ss h& sektion=1 htt p ://www op enbs d .
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 151 U se Wi nSC P to co py t hi s "a uth or iz e d_ ke ys " fi le int o t he u se rs home dir e ct ory : e . g. /etc/confi g /users /test u ser/. ssh/authorize d_keys of the Black Box ga te w a y wh i ch w i ll be th e S SH s er v er.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 152 I f t he h os t key has bee n le git i mat e ly c ha nge d, i t ca n be re mov e d fr om t he ~/.ss h/k nown_hosts f ile a nd t he ne w fi nge r pr i nt a dde d. I f it ha s n ot chan g ed, this indicates a seri ou s problem that should be investi g ated imm ediately.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 153 Figu r e 1 6 -6 . K ey s . To ge n erate the keys using OpenBSD's OpenSSH suite, we us e the ssh-key gen pr ogra m: $ ssh-ke ygen -t [rsa |dsa] Generati ng pub lic/private [rsa |dsa] key pair.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 154 Each clie n t will then n eed its own set of keys upl o aded through the sam e page. Take care to ensure that the correct type of key s (DSA or R SA) go in th e co rr e ct sp o ts , and th at th e pu b li c an d p ri v a t e ke y s a r e in th e co rr e c t spo t.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 155 To crea te a 10 24 bit R SA key a nd a self - signe d certific ate, iss u e t h e followi n g openssl c omm a nd fr om t he hos t y ou ha ve op enssl installe d on: openssl re q -x509 -nodes -d ays 1000 -newkey rsa:1024 -key ou t ss l_key.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 156 Opti on s -1, - -o n Pow er O N t a rg et s . -0, - -o ff Pow e r OF F ta rg ets . -c , --cycle Pow e r c y cl e ta rg e ts . -r, --reset Asse rt ha rdware rese t for t argets ( if i mplemente d by RP C).
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 157 status Th i s acti on re t rie ve s t he cu rr e nt st at us of t he de v ice or ou t let Exa mp les: To turn outlet 4 of the pow er device connecte d to serial port 2 on : # pmpower -l port02 -o 4 on To turn an IPM I device off loca ted at IP a dd ress 192.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 158 Th e co ns ol e s e rve r i n cl ud es t h e ipmitool uti li ty f or managing a nd configuri ng devices that support the Inte llig en t Pl a tfo rm Man ag em en t Int e r f ace (IP M I) ver sion 1.
Chap te r 1 5: A dv anced Co n figu ra ti on 724-746-5 5 00 | blackbox.co m 159 -p < port > Rem o te ser ver UDP port to connect t o . D efault is 623. -P < pa ss w or d > Rem o te server p assw ord i s specified on the command line. If supported, it will be ob scure d in the process list.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 160 exec Run lis t of co m m and s fro m file set Set runti m e va r i ab l e fo r sh e ll and exec ipm i too l ch a ss i s h .
Appendi x A : Linu x Com ma nd s and Sou rc e Code 724-746-5 5 00 | blackbox.co m 161 App end i x A . L inux Com m a n d s a nd S ou rc e Cod e Th e co ns ol e s e rve r platf o rm is a dedicated Linu.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 162 ip6 ta ble s Admini strati on to ol for IPv 6 packet fi lteri ng ipta ble s -re s to re Rest o re IP Tables ipt a bles-sav.
Appendi x A : Linu x Com ma nd s and Sou rc e Code 724-746-5 5 00 | blackbox.co m 163 sl ee p * Delay f or a specif ied a mount of time s m bmnt Help er utility f or mounting SM B file sys tems sm b m.
1101 a n d 11 02 Secur e Devi ce Ser ve rs 724-746-5 5 00 | blackbox.co m 164 T h e re ar e a ls o a num ber of ot he r CL I c omm a nd s re la te d to othe r ope n s our ce to ol s e mbe dde d i n t he console serv er in cludi ng : PowerMan pr o vides po w er manageme n t fo r m any prec on fi gured rem o te p ow er co n trolle r (R PC) d evices .
Un punto importante, dopo l’acquisto del dispositivo (o anche prima di acquisto) è quello di leggere il manuale. Dobbiamo farlo per diversi motivi semplici:
Se non hai ancora comprato il Black Box Secure Device Servers è un buon momento per familiarizzare con i dati di base del prodotto. Prime consultare le pagine iniziali del manuale d’uso, che si trova al di sopra. Dovresti trovare lì i dati tecnici più importanti del Black Box Secure Device Servers - in questo modo è possibile verificare se l’apparecchio soddisfa le tue esigenze. Esplorando le pagine segenti del manuali d’uso Black Box Secure Device Servers imparerai tutte le caratteristiche del prodotto e le informazioni sul suo funzionamento. Le informazioni sul Black Box Secure Device Servers ti aiuteranno sicuramente a prendere una decisione relativa all’acquisto.
In una situazione in cui hai già il Black Box Secure Device Servers, ma non hai ancora letto il manuale d’uso, dovresti farlo per le ragioni sopra descritte. Saprai quindi se hai correttamente usato le funzioni disponibili, e se hai commesso errori che possono ridurre la durata di vita del Black Box Secure Device Servers.
Tuttavia, uno dei ruoli più importanti per l’utente svolti dal manuale d’uso è quello di aiutare a risolvere i problemi con il Black Box Secure Device Servers. Quasi sempre, ci troverai Troubleshooting, cioè i guasti più frequenti e malfunzionamenti del dispositivo Black Box Secure Device Servers insieme con le istruzioni su come risolverli. Anche se non si riesci a risolvere il problema, il manuale d’uso ti mostrerà il percorso di ulteriori procedimenti – il contatto con il centro servizio clienti o il servizio più vicino.