Instruction/ maintenance manual of the product ACS 5000 Avocent
Go to page of 161
C Y C L A D ES ® A C S 5 0 0 0 In s ta lla t io n/ A d m in is tr a tio n /U s e r G u id e.
FCC W a rn i n g Sta t e men t The C ycla de s AC S 50 00 a dva n ced co nso le se rver ha s be en tested a nd fou nd to comp ly w ith the l imi t s for Cl ass A di g ital d evi ces, p ursu an t t o Part 1 5 of t h e F CC ru le s.
Cycl ad es ® AC S500 0 I nsta ll atio n/ A d m in i s tr atio n/ Us e r Gu i de Avo c ent, the A vo ce n t l o g o, T he Powe r o f Be in g T h er e , D SVi ew and Cy cla d e s ar e r egister ed tr ademar k s o f A v o c ent Corpo r ati o n or its a f fil iate s in the U .
Symbols U se d NOT E: Th e fol l ow i ng sy mbols may appear w i thin the doc umen tati on or on th e appl ianc e. In str u c ti o ns Thi s s ymbol i s int ende d to al ert t he user to the presenc e of im porta nt ope rat i ng and ma i nte na nce (servi c ing) instruc t ions in the l i te ra ture a c com pa nying the a ppl ia nc e.
T A B L E O F C O N T E N T S Intr odu ct ion 1 O verview 1 Co nn ect ors on th e C on sole S erver 1 Accessin g t he Co n s o le S erver a nd C on nec ted D evi ces 2 Web Man ag er 3 Prer eq .
Perfo r m in g b asic n etw ork co n fi gu r a ti on u sin g th e w iz co mm a nd 18 Add in g u s ers a nd co n fi gu r i ng p o r t s usin g t he w eb m a na ge r 22 O th er Meth od s o f Acce s sin .
Co nf ig uri ng t he Co nso le S erver in Exp ert Mo de 51 O verview o f m en us a nd f orms 51 App li ca ti on s Menu a n d Fo rms 53 Co nn ect 5 3 I PDU Pow er Man ag em ent 54 App li ca ti on s - IP D U Po wer Mgm t . - Ou tl et s G r o up C trl 57 App li ca ti on s - IP D U Po wer Mgm t .
Co nf ig uri ng a ut h ent ica t io n f or c on sole server l og in s 93 Se curi ty Prof il es 98 Se curi ty cert if ica te s 10 1 Port s Me n u an d Forms 1 0 3 Physi cal Po r t s 10 3 Virtu a l P o .
I n t r o d uc t i o n 1 1 O ve rvi ew Each mod el i n t he C ycl ad es ® ACS 5 00 0 ad va nce d co n s o le server fam il y i s a 1 U ap pl ia nce ser vi ng a s a sin gl e access po in t f or accessin g an d admin ist er in g ser ve r s a nd o th er d ev ices, sup po r ti n g bo th IP v4 an d I P v 6 pr o to co ls.
F ig u r e 1 .2: AC S5000 C o n so le Server Co n n ect o rs NOT E: The number of s er i al por ts and pow er suppl i es depends on the model. Nu mber D escrip t io n 1 Powe r connecti on. T hi s may be s ingl e or dual po wer . Du al power r equ i re s two pow er cords.
• Co nn ect in g a ser v er run ni ng a t er min al emul ati on p r og r am enab le s a n ad m in i s t r ato r t o l og in t o t he co nso le server an d ei th er en ter c omm and s i n t he co nsol e server she ll o r use t he Co m m an d Lin e Inte r f ace (CLI ) to ol .
• A w eb m an age r u s er acco un t m u s t b e d ef in ed . The ad m i n has an acco un t by d ef au lt , a nd can ad d r eg ul ar - u ser acco u nt s t o g r ant ac cess t o th e con ne cted servers o r d ev ices usin g th e w eb man ager.
Au t h en t icat io n Typ e De fin it io n No ne No a uthentic ati on. DSView Authentic ation is per for med with a DSView ® 3 server . DSView/Local DSView mana gement softwar e auth enti cati on is tr ied fi r s t, then Lo c al . DSViewD ownLo c al Local authentic ation is per for med only i f th e D SVi ew 3 server is down.
I Pv6 The co nsol e s erver is co m pl ia nt w it h I P v 4, I P v6 a nd d ual st ack prot oco l s so t hat y ou c an en abl e I P v4 o nl y, I Pv6 o nl y or bo th p r ot oc ol s, w it h s u pp ort f or di al-up co nn ect io n s a nd primar y n etw ork c on nec ti on s.
• The v iew t ab le o f th e F i r ewa ll Co n f ig urati on form con ta in in g a l ist o f chai n s . • The ch ain s w hi ch co nt ain t he rul es co nt r ol li ng f i lt er in g.
F l ag a ny o f th e ab o ve e lement s w it h Inverte d to p er f o r m target act io n o n p ack ets n ot mat chi ng an y c r it er ia spe cified i n th at l in e.
SNM P The ad m in i s t r ato r can ac ti vat e t he S i m pl e N et wo r k Man ag em en t Pr ot oc ol (S NM P ) agen t t hat r esid es on t he c on s o le ser v er so t ha t th e S N MP a gen t sen ds no ti f ic ati on s abo ut si gn ifican t ev ent s o r traps t o a n SNMP man agemen t ap pl i cati on .
S ão Paul o con sol e s er v er i nt o th e lo cal1 facil i ty an d to ag g r egat e m ess ag es f r o m Fr em on t co nsol e server i nt o t h e l oc al2 faci li ty .
• S erver Tech no lo g y Sent r y™ f amil y o f S w it che d C abi net P o wer D i s t r ib ut io n U ni ts ( CD U s ) an d sw it che d C DU Ex pan sio n Mo du le (CW/ CX ) po we r dev ic es . • S erver Tech no lo g y Sent r y Pow er Tow er XL™ (P TXL) an d Pow er Tow er Exp an sion Mo du le (P T X M) p ow er de vi ces.
• W it h t he IP DU ID assig ned to t he I PDU • W it h t he p ort nu mber to w h ich th e I P D U i s con ne cted The I PDU an d p ort n umber a r e al way s fol lo we d b y o ne o r mor e o u tl et n u m bers i n brack ets: [ o ut let s] . Co m m as b et ween o ut let n u m bers i nd icat e mul ti pl e o ut le ts.
F o r I P MI p ow er m an ag em en t, t he d ef au lt h ot k ey i s C trl+Shi ft+I . For I P D U p ow er m an ag em en t, th e d efaul t h o tk ey i s C trl+p .
NOT E: Probe str i ng confi gur ation r equir es k now l edge of C - s ty le esc ape sequences . Ans w er str i ngs r equire k now l edge o f POSIX extended r egular expr es si ons . H os tname s l onger than 31 chara c ter s ar e tr uncated w hen the hostname is as s igned to the ser i al por t al ias .
I n s t a ll a t i on 2 1 5 I m p ort ant P re -in sta ll at i on R equi r em ent s Before inst all in g a nd c on f ig urin g t he co n s o le ser v er , e nsure yo u h ave t h e f ol lo wi ng : • Ro ot A ccess on y ou r l ocal U N I X m ach in e to u se th e s erial p orts.
F ig u r e 2.1: Placem en t o f M ou n t in g B racket s To ra c k mount t he c on s ole s e rv e r: 1. I n s t all t he b r ack et s o n t o t he fr on t o r b ack e dg es of t he c on sole server usin g a scr ew driv er an d t he scr ew s prov id ed w it h t he mou nt i ng k it .
Maki ng a d i rect c onn ecti on to co nfi gure the netw ork pa r ameter s. O n y ou r Mi cr o s o f t® W in do w s w orkstat i on , en s u r e th at a t er m i nal emul at io n p r o gram is in stal le d.
Tu r n i ng on the co nso l e server and the con nec t ed de vi ces P erf or m the fol lo w in g p r oce du r es in t he o r d er sho w n to av oi d p r ob le m s wi th co m po ne nt s on co nn ect ed dev i ces. To t ur n on t he co ns ole s e rv e r: 1.
** *** ** ** *** ** ** *** ** *** ** ** *** ** *** ** ** *** ** *** ** ** *** ** ** * * * * * * * * *CONFIGURATIONWIZARD* * * * * * * * * ** *** ** ** *** ** ** *** ** *** ** ** *** ** *** ** ** *** *.
NOT E: If y ou choos e to use DH CP and have s elec ted IPv4 enabl ed ( option 0 ), t he IPv 4 Cu rr ent C onfigura ti on v er ifi c ation sc r een w i l l be dis pl ayed a s s how n be l ow.
• S t atel ess On ly : Th e r ou ter wi ll mul ti cast t he IP v6 p r efix al o ng w it h t he c on s o le ser ve r ’ s MA C ad dress , th en l isten f o r t he o th er dev i ces on th e l oc al n et wo r k t o a ll ow th e r o ut er t o assig n t he IP v6 a dd r ess .
Sele c ting a se c ur i t y pr of il e S el ect a p r e-defin ed secu r it y p r ofil e or defin e a cust om pr o f il e f or s pe cific ser v ices. T h e pr o f il es are: • S ecu r ed - D isab le s al l p r ot o col s ex cep t ss h v2 , H TT P S an d S SH t o serial p orts.
3. Turn o n th e c on s o le ser ve r and c on nec ted d ev ice s . 4. Ent er th e co nso le server’ s I P ad dress in t he brow ser ’ s ad dres s f i eld . 5. Log i n t o t he co n s o le ser v er an d fin ish co n f ig urin g u s ers an d o t her s et ti ng s usin g t he w eb manag er .
To da i s y - c ha in P DU s t o th e co ns ole se r ve r : Thi s p r oc edu r e assumes t ha t y ou ha ve o n e A vo cen t PM P D U o r Cy cla des IP DU c on nec ted t o a ser ia l po r t o n t he c on sol e s erver. NOT E: Dais y - c haini ng is not poss i bl e w i th SPC pow er c ontr ol de v i ces .
W e b M a n a g e r f o r R e g u l a r U s e r s 3 2 5 Usi ng t he W e b M a nag er Co nso le server users perf or m m o s t t asks t hrou gh t he w eb manag er . The w eb man ager r u ns i n a brow ser an d p r ov i des a real-ti m e v ie w o f al l eq u ip m en t co nn ect ed t o t h e c on s o le ser ve r .
F ig u r e 3 .1: Re gu lar U ser F o rm NOT E: Th e for m are a c hanges ac cord i ng to wh i c h menu op ti on i s s el ected. Nu mber D escrip t io n 1 F or m ar ea.
Con nec t W hen yo u sel ect t h e Con ne ct op ti on , th e f o r m d isp lay ed w il l all ow y o u to co nn ect t o th e co nsol e server o r it s ser i al p o r ts. P erm issio n t o acce s s a p ort o r pe r f orm po we r m an agemen t i s g r an ted b y t he a dmin istrato r w hen yo u r user acco u nt i s create d.
C on necti on p r otoco l s for s eri al ports Y ou ca n acce s s a s erver or a d ev ice co n nect ed t o a ser i al p ort by u s i ng t he c on nec ti on p r ot o col speci f i ed for t he p o r t. T h e f ol lo wi n g ta bl e s h ow s th e pr o to co ls avai la bl e f or th e s erial po r ts.
I PDU Pow e r M a nage m e nt I P D U m an ag em en t a ll ow s y ou t o manag e t he p ow er o ut let s o n p ow er m an age m en t ap p li ance prod uc ts. I f y ou h av e pe r m issio n t o mana ge o u tl ets o n a p ow er manag ement ap p li ance , selec ti ng t he IPDU Po wer Mg mt .
• Edi t curr en t th r esho ld s - hi g h cr it ica l, hi gh w arnin g , l ow w arnin g an d lo w cr i ti cal ( av ail ab le for so m e mod els o f Av oc ent PM PDU s ). The fol lo wi ng ta bl e describ es th e corr espo nd in g b ut to n s t o p er f o r m t he p r ev io us op erati on s.
F o r m H ead in g De script io n Exam p le Model IPDU mod el number . Av ocent Cyc l ade s PM20i/30A PDU Nu mber of Outl ets IPDU num ber o f outl ets. 20 Nu mber of Banks IPDU num ber o f bank s/c i r c uits . 2 Si ngle-Phase/3- Phase IPDU num ber o f phas es.
F o r m H ead in g De script io n Exam p le T y pe ( Na me) T y pe of th e s ensor. T emper atur e- Inter nal Cu r r en t in f o r m at io n d ispl ay s t h e actu al a larm stat e of th e curr ent le vel b ased o n t he c on f ig ured th r esho l ds w hen a vai la bl e.
W e b M a n a g e r f o r A d m i ni s t ra t o r s 4 3 3 Thi s cha pt er i s for s yst em a dmin istrato r s wh o u se th e web m an ag er t o co nfig ure th e con sol e ser ve r and i ts u ser s.
Bu t t o n na m e Us e r el oad page Reloads the page. He l p Dis play s the onli ne help. next Onl y appear s in Wiz ar d mo de. Goes to the next for m.
Lo ggi ng I nt o t he W e b M an ager The fol lo wi ng proce du r e de s crib es th e lo gi n p r oc es s to t he w eb mana ger and w h at sho ul d b e ex pec ted t he firs t t ime yo u l og in to th e co nso le ser v er . To l og into t he w e b mana g e r: 1.
F ig u r e 4. 2: Exam p le o f Web M an age r F o rm in Wiz ard Mo d e E xpert mode Exp er t i s th e d ef au lt mod e w h en l o gg in g i n t o t h e co nso le server.
F ig u r e 4. 3: Exam p le o f Web M an age r F o rm in Exp ert M o de Ch apt er 4 : W eb M anag er for A dmin istrato r s 37.
3 8 Cy cl ades ® A CS 5 00 0 I n stal lat io n/ A dmin istrati on /U ser Gu i de.
C o n f i g u ri n g t h e C o n s o l e S e rv e r i n W i z a r d M o d e 5 3 9 St ep 1: S ecu ri ty Prof i le A secu r it y p r ofile co nsi s t s o f a set o f param et er s t hat can b e co n f ig ured i n o r der t o h ave mor e co nt r ol o v er th e ser v ices ac ti ve at an y t ime.
The fol lo wi ng ta bl es il lu str at e th e prop er t ies f or each o f t he secu r it y p r o f il es. The e nab le d ser vi ces i n e ach p r ofil e are de s i gn ate d.
The f irst step t o co nfig ure yo ur co nsol e s erver is to sel ect a s ecu r i ty p r ofil e. O n e of th e f o ll ow in g sit uat io n s is ap pl ic abl e w h en y o u b o ot t he co nso le server. • The co nsol e s erver is starti ng for t he f i r s t t ime or af t er a r eset to facto r y d ef au lt .
CA UT ION: T ake the r equired pr ecautions to unde rstand the po tenti al i mpacts of each i ndiv i dual s er v i ce c onfigure d under th e Custom pr ofi le. NOT E: It is not poss i ble to continue w or k i ng in th e w eb manag er w i thout sel ecti ng a sec ur i ty pr ofil e.
I n W i zar d mod e, the sy stem ass u m es tha t al l d evi ces wi ll b e co nn ect ed t o t he ser i al p orts wi th th e sam e p ar ameter val ue s .
Param et er O p t io ns De script io n Stop Bi ts 1 [Default] Opti ons ar e either 1 o r 2 Must m atc h the num ber o f stop bi ts used by the devi c es connected t o all por ts . Authentic ation Re qui r ed Check for enabled. Un c heck ed for dis abled.
The A ccess f o r m li sts t he cu r r en tl y d efin ed u ser s an d f eat ures Ad d , Ch an g e P a ss wo r d an d D elet e bu t to ns. I n t he Users l ist b y defaul t, th ere is a r oo t acco u nt t hat c ann ot b e del ete d.
6. Ent er c omm ent s to i de nt ify th e user’ s rol e or con f ig urati on i n th e Co m m en ts f i eld ( o pt io nal ) . 7. Cl ick O K . 8. Cl ick t h e apply change s button. To de l e t e a us e r: 1. S el ect S tep 3 : Access . The A ccess form di s p lay s.
The f ol l ow in g tab l e prov id es de s crip ti on for e ach f ie ld w het h er l oca l or rem o te dest in ati on i s sele cted . F ield n am e De fin it io n De s ti nation Wher e the buffer f i l es should be s tor ed. Local , for example, Flash or R emote on a ser v er .
NOT E: You c an per for m advanced c onfigura ti on i n Expert m ode i ncl uding the option of s etting up data b uffer i ng s epa rate l y for indi v idual or gr oups of ser i al por ts. To co nf igure da t a bu f f er ing: 1. S el ect S tep 4 : D at a Bu ff erin g.
Before sett in g up sysl og gi ng , m ak e sur e a p r e- co nfig ur ed sy s l og ser v er i s avai la bl e o n th e sam e ne tw ork as th e co nsol e ser ver. Fr om th e s y s l og server admin istrato r , ob tai n t he IP ad dress o f t he syslo g server and t h e f acil it y n u m ber f or m ess ag es comin g fr om th e app li an ce.
5 0 Cy cl ades ® A CS 5 00 0 I n stal lat io n/ A dmin istrati on /U ser Gu i de.
A p p li c a t i o n s 6 5 1 Con fi gur i ng t he Cons ol e Ser ver i n Expe rt M od e Mo st app li cat io ns r eq ui r e th at yo u set th e w eb m an ag er t o E x pert m od e.
F ig u r e 6.1: Expert M od e Screen Elemen ts Nu mber D escrip t io n 1 T op menu. Selec ting any on e of the top menu items wi ll change the left nav igati on menu a nd for m ar eas t o v i ew s tatus or c onfigur e the related cons ole s er v er options or pa ram eter s .
Nu mber D escrip t io n 6 Co mmand butt ons . T he c omm and buttons ar e c ommo n to al l w eb manag er sc r eens and ar e us ed to tr y changes , c anc el c hanges , appl y changes , reload pages or sel ec t the onl i ne hel p.
1. G o to App li ca ti on s - C on nec t i n Exp er t m o de. 2. Cl ick t h e Con ne ct to ACS 5 00 0 r ad io b ut to n . 3. Cl ick t h e Con ne ct bu tt on .
• Turn o u tl ets o n an d o f f • Cy cle p ow er • Lock o u tl ets to preve nt acc id ent al ch ang es i n po wer stat e ( Av oce nt P M P D Us an d Cy cla des IP DU s on l y) • U nl ock th e.
A v oc e nt PM PD U i nf o rmat ion di s pla ye d A vo cen t PM PDU s w il l di spl ay t he O u tl et N am e, Post O n D ela y, Post O f f De lay , Cu r r ent H ig h Criti cal Th r esho ld , Cu r r en t H ig h Wa r ni ng Th r esho ld , Cu r r en t Low W arni ng Thresho ld an d Cu r r en t L o w Cr i ti cal Thres h ol d.
NOT E: Fo r Avoc ent SPC pow er devi c es or Ser ver T echnol ogy IPD Us, an a l er t w i ndow pr ompts you that th e s cree n is automat i c all y reloaded. C l ic k O K and wait for confi rmation that the page has been r el oaded. A pp l i cati ons - I P DU P ower M gmt.
F o r m H ead in g De script io n Exam p le ID Ei ther a de faul t name o r ad mi nis tra tor -confi gur ed ID . i 1A Model IPDU mod el number . Av ocent Cyc l ade s PM20i/30A Nu mber of Outl ets IPDU num ber o f outl ets. 20 Nu mber of Banks IPDU num ber o f bank s/c i r c uits .
F o r m H ead in g De script io n Exam p le Powe r F actor Phase power factor . N/ A Environ me n ta l Sensors In form atio n T y pe ( Na me) T y pe of th e s ensor.
Sh own Elem en t T yp e De script io n ID : He adi ng Stat i c heading show s c ur ren t IPD U name a nd p ort as si gnment. Model: H eading Show s the m ak e and mod el of IPD U at the de s i gnate d por t. ID T ex t fiel d Enter w hatever n ame y ou w i sh for this IPDU .
Sh own Elem en t T yp e De script io n Phases thr es holds N umber fiel d Enter for each phase the curr ent th reshold: High Cr i tic al , H i gh War ni ng, Low War ni ng and Low Cr iti c al.
softw ar e i s av ail ab le an d for i nform ati on on h ow t o u pg r ade t he d evi ce. To up gra de s of t w a re o n a Avo c en t PM PD U: 1. D ow nl oa d th e n ew fir mware in / tmp d irecto r y . 2. U s e t he pmfwu p gra d e co m m an d t o p er f o r m t he u pg r ad e.
S p ecify g r o up s of ou tl et s usin g t he f o ll ow in g f o r m at : IP DU_ ID [ o utl et s ] W here I P DU _ I D i s th e name con f i gu r ed for th e I P DU ( suc h as il A) and o ut le ts ar.
3. I n t he U ser fiel d, ent er t h e user n am e. 4. I n t he O u tl ets f ie ld , en t er t he g r ou p n ame, IP DU n umbe r an d o ut let s th at t he u ser can co nt r ol .
Met h o d Desc r ip t io n By name If the out l et h as been ass i gned a n ame, s uch a s “myoutlet,” e nter i ng m yo u t let i s suffi ci ent a nd n o othe r pat h nam e is needed. By IPDU then out l et Enter i ng IPD UB [3] w i ll des i gnat e the same out l et.
6. Cl ick apply changes . 6 6 Cy cl ades ® A CS 5 00 0 I n stal lat io n/ A dmin istrati on /U ser Gu i de.
N e t w o r k M e n u a n d F o r m s 7 6 7 Thi s ch ap ter d escr ib es t he N et wo r k menu a nd relat ed for ms . The fol lo wi ng ta bl e p r ov id es a de s crip ti on o f th e l ef t menu p an el.
G en eral hos t sett i ng s The fol lo wi ng ta bl e describ es th e f iel ds o n t he N etw o r k - H o s t Sett in g s form . F ield n am e Fie ld ty pe D escrip t ion Mode Pul l-dow n menu Sel ect Inter net pr otocol fr om IPv4, IPv 6 or Du al - Stac k , w hi c h all ows c oncur re nt us e of both IPv4 and IPv 6 pr otocol s.
ta b w il l b e di s ab le d. NOT E: If ser v i ces not s upp orting IPv 6 ar e neede d, you wil l have t o sel ect D ual - Stac k ( IPv 4 and IPv6) an d thos e s er vi c es w i l l be avai l able o nl y for IPv4.
Ch eck D HCP (che cked b y d ef au lt ) to h av e t he c on sol e server p ul l n etw ork p aram ete r s f rom t he D HCP server. I f th is b ox is n ot c heck ed (DH CP d isab led ) , t he f o ll ow in g f i eld s are d ispl ay ed i n th e f o r m .
F ield n am e Fie ld Def in it io n Metho d Sel ect Statel ess onl y , S tatic or DHCP method s from the pull - down m enu for the desi r ed Ether net por t confi gur ation method. Selec ting one of these options c hoo s es the meth od u s ed to obtain a nd configur e IPv6 add ress es.
• S N MP • S en di ng S N MP trap • Remot e aut h ent ica ti on (exc ept t o N I S ) • A ccess to h o s t s • S t ateful an d sta tel ess pack et fil terin g (f irewa ll ) • S t ati c r ou.
a. Ent er t he IP ad dress o f t he c on s o le ser v er i n t he Pr imar y A dd r ess f iel d. b. Ent er t he n et m ask i n t he N etw o r k Mask fiel d. c. Ent er t he a dd r ess o f t he seco n dary co nso le ser ve r i n th e S eco n dary A dd r ess fiel d, if used .
Sys lo g Y ou ca n u s e t he Syslo g for m to co n f ig ure ho w t he co nso le ser v er h an dl es s y s t em - l og ged m essage s . The Syslo g f o r m all ow s y ou to p er f orm th e f o ll ow in g : • S p ecify on e or more syslo g ser ve r s t o r ecei v e syslo g m essage s relat ed t o po r ts.
VPN C onne ct io ns V ir t ual Pr iv at e N etw ork (VPN) en ab les a secu r ed c omm un ic ati on b et we en t he co nso le ser ve r an d a r emot e net w ork by u ti li zin g a g ate way an d creati ng a secured co n nect i on b et we en t he co nsol e ser ve r an d t he g ate way .
F ield N am e De fin it io n Ne x tHop T he r out er thr oug h whic h the cons ol e server ( on the left s i de) or th e rem ote host (on t he right si de) sends pac kets to the ho s t on the othe r s i de. Subnet T he netma s k of the subnetw or k w her e the host resi des.
c. Ent er t he IP ad dress o f t he rou ter th r ou gh w h ich th e h ost’s p ack ets r eac h th e I n ternet i n th e N ext H op fiel ds. d. Ent er t he n et m ask f o r t he sub n et i n t he Sub net fiel ds in CIDR n ot ati on . F or exampl e, 19 2 .
F ield o r Men u O p ti on De script io n Co mmunity SNMP v1 and v 2 only . A Comm uni ty defi nes an ac c ess envi r onment. T he type of ac ces s is cl as si fi ed unde r Per mis s i on: either r ead only or r ead w rite. T he most common commun i ty i s publi c .
4. F o r S NM P v1 o r v2 co nfig urati on , en ter o r ch ang e t he f o ll ow in g i nfor mati on : a. Ent er t he c omm un it y n ame in t he C omm un it y fiel d. b. Ent er th e so urce IP ad dr ess o r r an ge o f I P add r esses i n t h e Sou r ce fiel d.
• Edi t de f aul t ch ain s • D elet e user- add ed c hai ns • A dd n ew ch ain s • Edi t rul es for ch ai ns Edit but t on S el ect in g o ne o f t he d ef au lt ch ai ns an d press i ng t he Ed it b ut to n o pen s th e Ed it C hai n d ial og box.
F ig u r e 7.1: Expert - Fi r ewall Co n f ig u r at io n A dd Ru le an d Ed it R u le Dialo g B o xes Inve r te d c he c k bo x es I f t he Inve r t ed che ckb ox is e nab le d for th e c orr es p on di ng o pt io n, t he t ar g et act io n i s perf orm ed on p acke ts t hat d o no t m at ch an y of th e cr it er ia spe cified i n th at li n e.
N u meric pr ot oc ol fields I f Nu me r i c is s el ect ed as th e prot oc ol w h en spe cifyi ng a rul e, a t ex t f i eld a pp ear s to t he rig ht o f th e menu for t h e desired n umbe r .
IC MP pr ot oc ol f i e lds I f I CMP i s sel ect ed a s a p r ot o col , th e ICMP Typ e p ul l-do wn m en u i s di spl aye d i n t he ICMP O pt io ns S ect io n at th e b ot to m o f t he Fir ew al l Co nfig urati on form . Select th e I CM P t yp e nee ded f r o m th e l ist.
R EJ EC T t a rg et I f REJECT is select ed fr om th e Tar get pu l l- d ow n menu , th e f ol lo wi n g p ul l-do wn menu ap pea r s . A ny Rej ect w it h op ti on c auses th e in pu t pa cket t o b e drop pe d and a r ep ly p ack et of th e speci f i ed t yp e to b e sent .
NOT E: User- defined chai ns c annot be ed i ted. If you wis h to r ename a chain y ou added , del ete it and c r eate a new one. 1. G o to Net wo rk - Fi r ewa l l Co n fi gu rati o n. 2. S el ect o n e of t h e defaul t ch ai ns f r om Chai n l ist a nd t he n cl ick t h e E d it b ut to n.
Hos t Tab le The H ost Tabl e form enab l es y ou t o k eep a t ab le o f h ostn ames an d IP ad dr esses t hat co m po se yo u r lo cal n etw o r k an d p r ov id es i nfor mati on o n y ou r env iron m en t. To de f i ne t h e c ons ole se r v er ’s I P ad dre s s a nd hos t na me 1.
F ield o r Men u Nam e Def in it io n Ho s t IP Appear s only when H ost r oute is s el ected. T y pe the IP addr ess of the desti nation hos t. Go to Ch oi c es ar e Gatewa y or In terf ac e. [ Adj acent fi eld ] T y pe the IP addr ess of the g atewa y or the nam e of the i nter face.
8 8 Cy cl ades ® A CS 5 00 0 I n stal lat io n/ A dmin istrati on /U ser Gu i de.
S e c u r i t y M e n u a n d F o rm s 8 8 9 Use rs an d G ro ups The U s ers an d G r o up s f o r m all ow s y ou to p er f orm th e f o ll ow in g t asks: • S et u p u s er ac cess to t he c on s.
A d ding a U s e r I f y ou cl ic k t he Ad d bu tt on o n t he Secu r it y - U s ers and G r o up s f orm un der th e U ser s List, t he A dd U ser di alo g b ox a pp ear s. The f o ll ow in g t abl e d escr ib es th e fiel ds i n t h e A d d U ser di al og box.
2. S el ect t he n am e o f a u s er o r grou p to d elet e. 3. Cl ick D el ete . 4. Cl ick apply changes . To ch a nge a us e r’s pa s s wo rd: 1. G o to S ecu r i ty - U sers a nd G rou ps. The U ser s an d G r o up s for m d ispl ay s . 2. S el ect t he n ame of th e user w h ose pa s swo r d y o u w ish t o ch an ge.
f o r m t o vi ew w ho i s l o gg ed in to e ach po r t an d th e pr o cess es the y ar e r un ni ng . O p en ses sio ns ar e di spl ayed w i th t hei r i de nt if i cat io n and st ati stic al dat a, th e r el at ed dat a s u ch as CP U u s ag e f o r a sp eci f ic c li ent , JCP U p r oc ess es an d PCP U p r oc ess in g t ime.
C on f i gu r i n g au t h enti cati on for c ons ol e se r ver log i ns The d ef au lt au th en ti cat io n meth o d for t he c on sol e server i s Lo cal. Y ou ca n e it her ac cept th e de f aul t o r s el ect an ot h er aut h ent ica ti on meth o d fr om t he U ni t A ut hen ti cat io n p ul l-do wn menu on t he A ut hTy pe for m.
To co nf igure a RA D IU S au t he nt ica t ion s er v e r: P erf or m t he f o ll ow in g p r oc edu r e t o c on f ig ure a R AD I US au th ent i cati on ser ve r wh en t he co nsol e server o r any.
5. To sp eci f y a n umber o f ti m es t he u ser can requ est a ut hen ti cat io n v er ificat io n fr om t he ser ve r b ef ore send in g an au th en ti cati o n f ail ure m essage t o th e user, en te r a nu m be r i n th e Ret r ie s fiel d. 6.
• A n ac cou nt f o r admin . • I f LDA P au th en ti cati o n i s spe cified for t he co nso le server, acco un ts for al l u ser s w ho n eed to l o g in t o th e co nsol e s erver to ad m i ni s t er co n nect ed d evi ces.
• Real m n am e an d K DC ad dress • H ost n ame an d IP add r ess for t he K er be r os ser ve r A lso, w ork w it h t h e K erberos server’ s ad m i ni s t r ato r to en s u r e t hat fol lo w.
9. F i ll i n t he form acc or d in g t o y ou r l oca l setu p o f t he K er b er os ser ve r . 10 . Cl ic k apply c hanges . To co nf igure a NI S au t he nt ica t ion se r v er : P erf or m the fol.
C u st o m s e cu rity p rof il e The Cu sto m S ecu r it y P r o f il e o pen s u p a d ia lo g b o x t o a ll ow c usto m co nfig urati on o f i nd iv id ua l prot oc ol s o r s ervi ces.
Oth er Services Secu re Mo d erat e Open De fau lt SNMP N/ A N /A Yes N/ A RPC N/ A N /A Yes N/ A IC MP N/ A Yes Yes Yes F T P N/ A N /A N /A N/A IPSec N/ A N /A N /A N/A T ab le 8.5: Enab led Pr o t o col s f or Eac h Secu rity Prof ile The f irst step i n co nfig uring y o ur con sol e ser ve r i s t o de f in e a s ecu r i ty p r ofil e.
• I f y o u r eco nfig ure th e s ecu r i ty p r ofil e and r esta r t t he w eb mana ger, y ou n eed t o make su r e th e ser ia l p or t s p r o to col s and a ccess m eth o ds m at ch t he sel ecte d securit y p r ofil e.
U s e r c onf igur e d di g i t a l c e rt ifica t e Y ou ca n g enerate a sel f - sig ned di g it al certi f ica te. T h e proced u r es to co n f ig ure a s el f - sig ned di g it al certi f ica te i s d o cument ed i n t he C ycl ad es ACS 50 0 0 Co m m an d Re f er en ce Gu id e.
P o r t s M e n u a n d F o r m s 9 1 0 3 Phy si cal P ort s By sele cti ng Po rts - P h ysica l Po rts in Exp er t mod e, y ou c an e nab le o r di sabl e p or t s an d co nfig ur e pa r am et er s for i nd iv id u al o r a g r ou p o f ser ial p o r ts.
4. Cl ick apply changes . G en e ra l f orm U nd er P or t s - P h ysic al Ports i n Ex pert M od e, if yo u sele ct o ne o r more po r t s f r om th e p o r ts l ist an d cl ick th e Mod if y b ut to n, t he G ene r al f o r m app ears .
Prot o co l Name Re su lt Co ns ole (T elnetSSH) Author i zed us er s can use Telnet and/or SSH to connec t to the c onsol e of th e c onnected devi c e si multaneousl y . When mu l ti ple s ess i ons fe atur e is c onfigur ed, s imul taneo us Te l net and/o r SSH s ess i ons a re all ow ed t hro ugh the serial por t.
Prot o co l Name Re su lt SSHv2 De di c ates a ser v er ter minal c onn ec ted to the sel ected s er i al po rt to acc es s a s er v er usi ng the SSHv2 prot oc ol. Wh en the attached ter minal i s tur ned on, th e consol e ser v er open s a SSH v 2 s ess i on on the server .
Mod em and pow e r mana ge me nt c on ne c tion prot o co ls The f o ll ow in g t abl e sho w s t he c on nec ti on p r o to col s for mod em s o r I P D Us co n nect ed t o t h e ser ia l p orts. Prot o co l Name Re su lt PPP-N o Auth Star ts a PPP s ess i on w i thout inter ac tiv e a uthentic ation r equire d.
To co nf igure a s e rial por t co nne c t ion pro t oc ol f or a B idi r ec t iona l Telne t : The f o ll ow in g p r oce du r e assumes th at t he sele cted ser ia l p o r t i s ph y s i call y co nn ect ed t o a te r m in al .
2. Cl ick t h e Gen eral t ab . The G en er al for m app ear s wi th t he n u m be r ( s ) of th e s el ect ed p ort( s) ne xt t o t he D o ne b ut to n at t h e bo tt om of t h e f orm an d t he act iv e t abs ar e i n y ell ow .
5. To furth er con f i gu r e t he ser ia l p ort’ s co nn ect io n prot oc ol : • F o r user acce s s an d a ut hen ti cat io n meth od s, s ee Access o n p age 1 12 . • To c on f ig ure mod em in it ia li zati on an d PP P op t io ns see O th er o n p age 1 21 .
8. W hen f in i s h ed, cl i ck D o ne . 9. Cl ick apply changes . To as s oc iat e a n alias t o a se r i a l port : A n al ia s can be associ at ed to a p ort w h en i t i s i nd iv id ua ll y sel ecte d for mod ificat io n. To associ ate an a li as t o a p ort p er f o r m th e fol lo wi n g ste ps.
A c c e s s U nd er P or t s - P h ysic al Ports i n Ex pert M od e, s el ect o ne o r mor e serial p orts an d cl ick Mod if y Port(s) . S elec t Acce s s f o r m f r om t he t abb ed menu . The A ccess for m ap pe ar s. The fol lo wi ng ta bl e describ es th e m en u an d fiel ds on t he A cce s s f orm .
2. Cl ick t h e A cce s s t ab. Th e A cce s s form app ear s. 3. To restr i ct a ccess t o o n e o r mor e u ser s o r to a g r ou p o f user s, en ter p r ev io usl y d ef i ned u ser or g r ou p n am es i n t he A ut h or i zed U ser s / Grou ps fiel d, w it h n ames s ep ar at ed b y c omm as.
Au t h en t icat io n Typ e De fin it io n NI S D ownL oc al Local authentic ation is per for med only when t he N IS ser v er i s dow n. Ra di us Authentic ation is per for med usi ng a Ra di us authen ti c ation ser v er . Ra di us/Loc al R adi us auth enti cati on i s tr ied first, swi tchi ng to Local i f unsuc ces s ful.
F ield N am e D efi nit io n De s ti nation Locati on for the d ata f i l es. Ei ther L oc al or R emote. Mode ( Local De s ti nation) Wi ll be ei ther ci r c ular or l inear .
F ield N am e D efi nit io n T i meout ( sec onds) Amount of time in s econds that th e cons ole ser v er w i l l tr y to dis c over the hostname. If it c annot b e i dentifi ed i n tha t ti me, a defa ul t name w i ll b e as s ume d.
12 . Cl ic k t he r ad io bu t to n n ext t o o ne o f t he fol lo w in g o pt io ns: a. Bu f f er S y s l og a t al l ti mes b. Bu f f er o nl y w h en n o u ser is c on nec ted t o t he p or t 13 .
Men u Opt io n D escrip t io n Yes ( s how menu) Mor e than tw o s imul taneo us user s c an connect to the s ame ser i al por t. A Sniffer menu is pr es ented to the user a nd the y c an choos e t.
be av ai lab le i f t here i s at l east o ne p o r t c on f ig ured as Pow er Mgmt o r th er e i s at l east o n e I PMI ser ve r con f ig u r ed). The Pow er Man ag em en t f o r m app ears .
F ield N am e D efi nit io n Ne w User/Gr oup ( av ail abl e only i f Al l ow User s /Grou ps ra di o button is s elec ted) Entr y fi eld to add a new user/gr oup . Al l ow ed User s /Grou ps ( av ail abl e only i f Al l ow User s /Grou ps ra di o button is s elec ted) Vi ew li st box of a uthor i z ed user s or g rou ps .
8. Cl ick apply changes . NOT E: If y ou w i s h to confi gur e IPMI pow er man agement on t hi s por t, continue to the IPMI confi gur ation pr oc edur e below.
The O th er f o r m app ears . Y ou ca n u se t hi s for m t o co n f ig ure o th er sett in g s . The o pt io ns o n th i s f orm m ay b e l ess co m m o n sett in g s . The f o ll ow in g t ab le d escr ib es th e avai la bl e f iel d s i n t he O th er f orm .
4. To c han ge t he p ort n umber for t he ser ia l p ort, en te r ano th er n umber i n t he TCP Port fiel d. 5. To a s sig n a n ame t o th e p ort’s I P ad dres s, en ter an al ias i n t h e Port IP Al ias f i eld ( co nsol e co nn ect io n prot oco l on l y) .
10 . For a d ed ica ted t er min al, ent er t he IP ad dress o f t he d esired h ost i n t he H ost t o Co nn ect f i eld . 11 . En ter th e ty pe o f t er mina l i n th e Ter mina l Typ e f ie ld . 12 . Cl ic k Do ne . 13 . Cl ic k apply c hanges . Vi rt ual P ort s NOT E: Vi rtu al Ports i s avai l able o nl y for IPv4 pr otocol .
F ield N am e De fin it io n Re mote IP T he IP addr ess of the sl ave. F i r s t R emote T C P Por t Num ber T he first T CP p ort nu mber of th e s lav e. T he d efault i s 7001. Pr otoc ol T he communic ation pro toc ol us ed by th e Sl av e. T he options ar e T elnet or SSH.
Por t s Sta tus The in f o r m at io n in t he f ol lo w in g tab le i s a vai lab l e in Ports - Ports S ta tu s i n r ead - o nl y f orm . A ll users hav e a ccess to t hi s f o r m . T h e i nfor mati on o n t hi s pag e g et s up dat ed w he n y o u c li ck th e Refresh button.
Exp er t - Por ts - Host nam e D is cove ry A n ad mini strato r can u se t he Exp ert - Por t s - H ostn ame D i s co ve r y screen t o co nfig ure l i s t s o f prob e and an swer str i ng s th at ap pl y to al l ser ia l po r ts tha t hav e been c on f ig ured f o r h ostn ame di scov ery.
1 2 8 Cy cl ade s ® A CS 5 00 0 I n s t all ati o n/ Ad m i ni s t r ati on / User G ui de.
A d m i ni s t ra t i o n M e n u a n d F o rm s 10 1 2 9 Sys te m In for m at io n S el ect in g Adm in istra ti on - S ystem i nfor mati on i n Exp er t mod e d ispl ay s a for m co nt ai ni ng in f o r m at io n ab ou t al l o f t he sy s t em p ar ameters as s h ow n i n t he fol lo wi ng t ab le.
In f orm at io n Param et ers Memo ry In form ati on MemT ota l MemF r ee Buffer s Ca c hed Swap Cached Ac tiv e Inacti ve HighT otal HighF r ee Low T otal Low F ree Swap Tot al Swap Fr ee Dir ty Wr i.
F ield N am e Def in it ion No ti fi cati on Al ar m for D ata Buffer i ng Enab l e by plac ing a c heck mar k in thi s f i el d [unlabel ed vi ew ta bl e] Lis t of a l ar m types and tr igger s [unlabel ed dr opd own li st] Email , pa ger o r SN MP notifi c ation met hods T ab le 10.
To c onf igur e a tr igge r f or e mail not ifica t ion f or s e rial port s : 1. G o to Adm i ni s t r a ti on - N ot if ica t io ns i n Exp er t mod e an d sele ct Ema i l f r om t he p ul l-do wn m en u.
To c onf igur e a tr igge r f or pa ge r no t i f ica t ion f or s e rial port s : 1. G o to Adm i ni s t r a ti on - N ot if ica t io ns i n Exp er t mod e an d sele ct Pag er fr om t he p u ll - do wn m en u.
F ield n am e De fin it io n T r ap Numb er T he tr ap ty pe as defined i n the MIB. T he choi c es are : Co l d Star t War m Start Link Dow n Link Up Authentic ation F ai l ur e EG P N ei ghbor Lo s s Enter pr i s e Speci fi c Co mmunity T he pass w ord u s ed to authe nti c ate th e tra ps .
Ser ial port s a lar m not ific a tion Y ou ca n co nfig ure th e no ti f ica ti on en t r y f o r m t o mon it or the D CD sig nal so t ha t th e syste m w il l g en er ate an al ar m in an y o f th e fol lo wi ng ev ent s.
To co nf igure t ime and da t e us ing an N T P se rv e r: N T P i s d isab led b y d ef au lt . 1. G o to Adm i ni s t r a ti on - Tim e/ Da te i n Ex pert mod e. The Time/D at e f o r m di spl ays. 2. S el ect a t ime zo ne fr om t he Timezon e p u ll - do wn li st.
6. Cl ick apply changes . Boo t Conf i gur at io n Bo ot c on f ig urati on de f in es th e lo cati o n f r o m w hi ch t he c on sol e s erver lo ads th e o perati ng syste m . The c on sole ser v er can b oo t f r o m it s i nt er na l fir mware o r f r om t he n etw o r k.
F ield N am e D ef in it ion F as t Ether net T he s pee d of the Ether net connecti on. Sel ect the appr opr i ate Ether net setting i f y ou ne ed to c hang e the Auto Ne goti ation ( default v al ue) : 100BaseT Half- Duplex 100BaseT F ul l - Dup l ex 10BaseT Half-D uplex 10BaseT F ul l - Duplex F as t Ether net Ma x .
Bac kup Co nf ig ura ti on S el ect in g Adm in istra ti on - Ba cku p C on fi g i n Exp ert mod e d isp lay s th e B acku p Co nfig urati on f o r m . NOT E: Use an F TP server to sav e and r etr i eve y our cons ole s er v er c onfigur ati on. F or the back up c onfigur ation to wo rk, the F T P ser v er must be on the same s ubn et.
Upg rad e Fi rm w ar e S el ect in g Adm in istra ti on - U p grad e Fi r m ware i n Exp ert mod e d isp lay s th e U p gr ad e Firm ware f o r m .
Reb oot S el ect in g Adm in istra ti on - Reb oo t i n Ex pert mod e b r in gs u p a si m pl e for m co nt ain i ng o nl y a Reb oo t b ut to n. C li cki ng th e Reb oo t b ut to n rebo ot s t he c on s o le ser ve r . To re boo t th e c ons ole se r v er : 1.
To co nf igure t he loc a l onli ne h elp pat h : 1. Ext r act t he fil es usin g t he a pp r op r i ate u nzi p u ti l it y f o r y ou r O /S and pu t t he m i nt o t he de s i r ed d ir ect o r y u nd er t he w eb ser ve r ’ s roo t d irecto r y .
1 4 3 App end ix A : Tech ni cal Spe ci fi cat i ons Ha r d war e CPU MPC8 55T ( Power PC D ual - CPU ) Memo ry 128MB D IMM SD RAM min./ 16 MB Com pac t F las h min. Inter faces 1 Ether net 10/1 00BT on R - J 45 1 RS23 2 Consol e on R J - 45 RS23 2 Ser i al Por ts on R J - 45 Powe r Inter nal 100- 240VAC , 50 /60 H z Dimensi ons 17 x 8.
Ha r d war e Safety and EMC Standards Appr ov al s and Mar ki ngs F CC Par t 15, A IC E S- 003 C- T ic k VCC I C l ass A MIC Class A CE EN55 022, C l ass A EN55024 EN60950- 1 GS CB CSA/U L 60950- 1 Sol ar i s R eady™ NOT E: Some m ar k s may not a ppl y for all models of t he AC S 5000 cons ole ser v er .
App end ix B : Saf et y an d en vi ron m e nta l gui del i nes f or r ack - m oun ti ng t he co nso le s erv er NOT E: Eac h heading and i ts c ontents i n this secti on i s a l s o pr ovi ded i n Germ an ( D eutsc h ) in ital i cs i mmediatel y foll owing the Engli s h v er si on.
Mechan i cal loading Mo un ti ng o f th e eq ui pment i n th e r ack sho ul d b e such t ha t a ha zar d ou s c on di ti on is n ot ach iev ed d ue t o u n even m ech an ica l lo ad in g. S i cherer mech ani sc her A ufbau Bit te verm eid en S ie b eim Ei nb au d er Gerä te u ng lei ch mä ßi ge m ech an isch e Bel astu n g.
S i cherhe i t svo r keh rung en be i m B etri eb de s Cyc l ades A C S 5 000 A dvan ced C on sol e S erver Bi tt e l es en Sie all e f ol gen d en S ich erhei tsr ic ht li ni en u m sich u n d I hren Cycl ad es AC S 5 00 0 ad van ced c on s o le ser ve r vo r S ch äden zu b ew ahren.
CA UT ION: D o not push a ny obj ects thr ough the op eni ngs of the C yc l ades AC S 5000 ad v anced cons ole ser v er . Do i ng s o can c ause fi r e or electric shoc k b y shorting out inter i or c omp onents.
A r b ei t en am C yclades A C S 5 000 Bi tt e v er such en Sie n ich t d en A CS 50 0 0 sel bst zu w ar t en m i t A u s n ahme u nt er Befol gu ng d er A nw eisu ng en v on C ycl ad es t echn isch em P ers o nal . I n d iesem Fall b it te folg en den V ors ic ht s maßn ah m en ei nh alt en : 1.
A pag ue el C ycl ad es A CS 5 00 0 a dv anc ed c on s o le ser ve r . Aseg urase q u e e s t e t oc and o t ierr a an tes d e t ocar c ual qu ie r ot r a co sa, qu e p ue de ser al to car l a p ar te t r aser a d el eq ui po . B at erì a U na b ate r ìa n uev a pu ed e exp l ot ar , si n o e s t a in s t ala da co r r ect am en te.
App end ix C : Tech ni cal Sup por t O ur Tech ni cal Sup po r t staff is r ead y t o assist y ou w i th an y i nsta ll ati on or o p er ati n g i ss u es y ou en cou nt er w it h y ou r Av oc ent p r o du ct. I f an i ss u e sho ul d d evel o p, fol lo w t h e st eps b elo w for th e f aste s t p o s sib le servi ce.
1 5 2 Cy cl ades ® A CS 5 00 0 I n stal lat io n/ A dmin istrati on /U ser Gu i de.
590-815- 501B For T e ch nica l S up por t : w ww . avo ce nt. com/sup po rt.
An important point after buying a device Avocent ACS 5000 (or even before the purchase) is to read its user manual. We should do this for several simple reasons:
If you have not bought Avocent ACS 5000 yet, this is a good time to familiarize yourself with the basic data on the product. First of all view first pages of the manual, you can find above. You should find there the most important technical data Avocent ACS 5000 - thus you can check whether the hardware meets your expectations. When delving into next pages of the user manual, Avocent ACS 5000 you will learn all the available features of the product, as well as information on its operation. The information that you get Avocent ACS 5000 will certainly help you make a decision on the purchase.
If you already are a holder of Avocent ACS 5000, but have not read the manual yet, you should do it for the reasons described above. You will learn then if you properly used the available features, and whether you have not made any mistakes, which can shorten the lifetime Avocent ACS 5000.
However, one of the most important roles played by the user manual is to help in solving problems with Avocent ACS 5000. Almost always you will find there Troubleshooting, which are the most frequently occurring failures and malfunctions of the device Avocent ACS 5000 along with tips on how to solve them. Even if you fail to solve the problem, the manual will show you a further procedure – contact to the customer service center or the nearest service center