Citrix Systems CITRIX NETSCALER 9.3 To add a TCP profile by using the NetScaler command line

Page 139

Citrix NetScaler Administration Guide

Built-in profile

nstcp_default_tcp_lan

nstcp_default_tcp_lfp_thin_stream

nstcp_default_tcp_lnp_thin_stream

nstcp_default_tcp_lan_thin_stream

nstcp_default_tcp_interactive_stream

nstcp_internal_apps

nstcp_defualt_profile

Description

This profile is useful for back-end server connections, where these servers reside on the same LAN as the NetScaler appliance.

This profile is similar to the

nstcp_default_tcp_lfp profile; however, the settings are tuned for small size packet flows.

This profile is similar to the

nstcp_default_tcp_lnp profile; however, the settings are tuned for small size packet flows.

This profile is similar to the

nstcp_default_tcp_lan profile; however, the settings are tuned to small size packet flows.

This profile is similar to the

nstcp_default_tcp_lan profile; however, it has a reduced delayed ACK timer and ACK on PUSH packet settings.

This profile is useful for internal applications on the NetScaler appliance (for example, GSLB sitesyncing). This contains tuned window scaling and SACK options for the desired applications. This profile should not be bound to applications other than internal applications.

This profile represents the default global TCP settings on the NetScaler appliance.

To add a TCP profile by using the NetScaler command line

At the NetScaler command prompt, type the following commands to add a TCP profile and verify the configuration:

139

Image 139
Contents Citrix NetScaler Administration Guide Copyright and Trademark Notice Page Page Contents Snmp Vii Audit Logging Web Server Logging 105 Advanced Configurations Contents Web Interface AppFlow Reporting Tool Contents Xvi This Preface Formatting Conventions for NetScaler DocumentationFormatting Conventions Meaning Boldface Convention Documentation Available on the NetScaler ApplianceTo view the documentation NetScaler Documentation Feedback Getting Service and SupportTo provide feedback at the Knowledge Center home Preface Topics Authentication and AuthorizationConfiguring User Accounts Configuring Users and GroupsShow system user Example UserName User Name Parameters for configuring a user accountPassword Password Timeout CLI Idle Session Timeout SecsTo create a user group by using the NetScaler command line Configuring User GroupsShow system group Example Show system group groupName Example UserName Parameters for configuring a user groupShow system group groupName GroupName Group NameBuilt-in Command Policies Configuring Command PoliciesCLI Prompt CLI Idle Session Timeout Secs Runningconfig, and sh gslb Creating Custom Command PoliciesBuilt-in Command Policies Policy name Allows Except show runningconfig, showCommand specification regular expression Matches these commandsAction Parameters for configuring a command policySh system cmdPolicy Example PolicynameBinding Command Policies to Users and Groups Priority Parameters for binding a command policy to a userSh system user userName Example Sh system user userNameGroupName Parameters for binding a command policy to a groupSh system group groupName Example Sh system group groupNameTo reset the nsroot password Resetting the Default Administrator nsroot PasswordFsck /dev/ad0s1a Mount /dev/ad0s1a /flash Example of a User ScenarioSample Values for Creating Entities Field Configuration stepsConfiguring External User Authentication Configuring Ldap Authentication Examples of Bind Distinguished Name Ldap server Examples of Base Distinguished Name Ldap server Base DNBind DN Authentication Type, select LDAP. Next to Server, click New Determining attributes in the Ldap directory Choosing Radius authentication protocols Configuring Radius AuthenticationAuthentication Type, select Radius Configuring IP address extraction Configuring NT4 Authentication Configuring TACACS+ AuthenticationAuthentication Type, select Tacacs Authentication Type, select NT4 Authentication and Authorization Snmp Importing MIB Files to the Snmp Manager and Trap Listener Enable snmp alarm alarm name Sh snmp alarm alarm name Enabling or Disabling an Snmp AlarmSeverity Configuring AlarmsTo configure an Snmp alarm by using the command line Parameters for configuring Snmp alarmsTo configure Snmp alarms by using the configuration utility Configuring TrapsTo add an Snmp trap by using the NetScaler command line To configure Snmp Traps by using the configuration utility Parameters for configuring Snmp trapsEnabling Unconditional Snmp Trap Logging SnmpTrapLogging Snmp Trap Logging Configuring the NetScaler for Snmp v1 and v2 QueriesSpecifying an Snmp Manager Parameters for unconditional Snmp trap loggingShow snmp manager To add an Snmp manager by using the NetScaler command lineIPAddress Parameters for configuring an Snmp managerTo add an Snmp manager by using the configuration utility Permissions Parameters for configuring an Snmp community stringSpecifying an Snmp Community Sh snmp communityConfiguring an Snmp Alarm for Throughput or PPS Configuring Snmp Alarms for Rate LimitingCommunity String*-communityName Show snmp alarm PF-RL-RATE-THRESHOLD State Show snmp alarm PF-RL-PPS-THRESHOLDThresholdValue NormalValueAlarm Threshold-thresholdValue Normal Threshold-normalValue Configuring Snmp Alarm for Dropped PacketsParameters for configuring an Snmp alarm for dropped packets Configuring the NetScaler for SNMPv3 QueriesSetting the Engine ID To set the engine ID by using configuration utility Configuring a ViewTo set the engine ID by using the NetScaler command line Parameters for setting the engine IDParameters for configuring an Snmp view Configuring a GroupTo add an Snmp group by using the NetScaler command line SecurityLevel Configuring a UserParameters for configuring an Snmp group To configure a user by using the NetScaler command lineParameters for configuring an Snmp user Citrix NetScaler Administration Guide Snmp Audit Logging Audit Logging Configuring Audit Servers Configuring the NetScaler Appliance for Audit LoggingShow audit syslogAction name ServerPort Parameters for configuring auditing serversShow audit nslogAction name ServerIPLog levels defined To configure an auditing server action Configuring Audit PoliciesTo configure a Syslog policy by using the command line Parameters for configuring audit policies To configure an Nslog policy by using the command lineRule Name* name Server* action To configure an audit server policyBinding the Audit Policies Globally Parameters for binding the audit policies globallyPre Requisites Configuring Policy-Based LoggingConfiguring an Audit Message Action To globally bind the audit policyStringBuilderExpr BypassSafetyCheckLogtoNewnslog Binding Audit Message Action to a Policy Installing and Configuring the Nslog ServerSupported Platforms for the Nslog Server Operating system Installing Nslog Server on the Linux Operating SystemSoftware requirements Installing Nslog Server on the FreeBSD Operating System Pkgdelete NSaudserver Pkginfo grep NSaudserverOn the system, where you have downloaded the Nslog package To install Nslog server on a Windows operating systemAudserver -stop Nslog Server Command OptionsTo uninstall the Nslog server on a Windows operating system Audserver -removeAudserver -remove Specifies To add the IP addresses of the NetScaler applianceRunning the Nslog Server Verifying the Nslog Server Configuration FileTo start audit server logging Creating Filters Customizing Logging on the Nslog ServerTo create a filter Specifying Log Properties Default Settings for the Log Properties Following is a sample configuration file Sample Configuration File audit.confWeb Server Logging Enabling or Disabling Web Server Logging Configuring the NetScaler Appliance for Web Server LoggingBuffer Size Modifying the Default Buffer SizeParameter for modifying the buffer size Sh weblogparam ExampleSupported Platforms for the Nswl Client Operating system To modify the buffer size by using the configuration utilityHardware requirements Installing Nswl Client on a Solaris Operating SystemCp pathtocd/Utilities/weblog/Solaris/NSweblog.tar /tmp Pkginfo grep NSweblog Installing Nswl Client on a Linux Operating SystemCd /tmp Tar xvf NSweblog.tarTo view the installed Web server logging files Installing Nswl Client on a FreeBSD Operating SystemTo get more information about the NSweblog RPM file Pkgdelete NSweblog Installing Nswl Client on a Mac OS Operating SystemCp pathtocd/Utilities/weblog/macos/NSweblog.tgz /tmp To install the Nswl client on a Windows system Installing Nswl Client on a Windows Operating SystemRpm -i NSweblog.rpm Installing Nswl Client on an AIX Operating SystemTo uninstall the Nswl client on a Windows system Cp pathtocd/Utilities/weblog/AIX/NSweblog.rpm /tmpNswl Command Options Nswl command Specifies Nswl Client Command OptionsTo add the Nsip address of the NetScaler appliance Adding the IP Addresses of the NetScaler ApplianceNswl -addns -f directorypath \log.conf Customizing Logging on the Nswl Client System Verifying the Nswl Configuration FileTo verify the configuration in the Nswl configuration file Running the Nswl ClientOn OFF Parameters for Creating a Filter SpecifiesTo create a filter for a virtual server LogFormat Ncsa Ncsa Common Log Format Understanding the Ncsa and W3C Log FormatsNcsa Common Log Format Argument Specifies W3C Extended Log FormatDirectives EntriesDirective Descriptions Examples FieldsIdentifiers Prefix Descriptions SpecifiesDescription W3C Extended Log Format Identifiers No Prefix RequiredCreating a Custom Log Format Creating a Custom Log Format by Using the Nswl LibraryField Description Creating a Custom Log Format Manually To create the custom log format by using the Nswl LibraryCreating Apache Log Formats Sample Configuration FileNcsa 11.Custom Log Format Argument Specifies Arguments for Defining a Custom Log FormatFoobari Foobaro Formatt 12.Time Format Definition Argument Specifies Time Format DefinitionArgument Specifies 123 Web Server Logging 124 Advanced Configurations To add an NTP server by using the NetScaler command line Configuring Clock SynchronizationShow ntp server Example Maxpoll Parameters for configuring an NTP serverServerName MinpollEnable ntp sync Disable ntp sync Configuring Clock Synchronization ManuallyStarting or Stopping the NTP Daemon Show ns config Example Usr/sbin/ntpd -c /nsconfig/ntp.conf -l /var/log/ntpd.logViewing the System Date and Time Configuring TCP Window Scaling Show ns tcpParam Example Parameters for configuring window scalingWSVal Enabled Configuring Selective AcknowledgmentTo enable Sack by using the Configuration Utility Clearing the ConfigurationLevel Parameters for clearing a configurationTo clear a configuration by using the configuration utility Viewing the Http Band StatisticsRespBandSize ReqBandSizeBuilt-in Http Profiles Built-in profile Description Configuring Http ProfilesTo modify the band range by using the configuration utility To add an Http profile by using the NetScaler command lineParameters for adding an Http profile To add an Http profile by using the configuration utility Configuring TCP ProfilesBuilt-in TCP Profiles Built-in profile Description To add a TCP profile by using the NetScaler command line Parameters for creating a TCP profile To add a TCP profile by using the configuration utility Specifying a TCP Buffer Size Example BufferSize Parameters for setting the TCP buffer size in a TCP profileParameters for specifying the MSS value in a TCP profile Specifying the MSS Value in a TCP ProfileMss Learn MSS for VServer LearnVsvrMSS Advanced Configurations 148 Web Interface Prerequisites How Web Interface WorksInstalling the Web Interface Web Interface tar file path Configuring the Web InterfaceJRE tar file path Parameters for configuring Web interface sites Port Gateway Direct ModeAuthentication Point Access Gateway URLTransport Configuring a Web Interface Site for LAN Users Using HttpXML Service Addresses XML Service PortSite Type Published Resource Type Kiosk Mode A Web Interface Site Configured for LAN Users Using HttpVirtual Server Protocol select Https IP Address Port Add service WILoopbackService 127.0.0.1 Http A Web Interface Site Configured for LAN Users Using Https Configuring a Web Interface Site for LAN Users Using Https160 161 Add lb vserver Httpswi SSL 10.102.29.3 Configuring a Web Interface Site for Remote Users Using Agee A Web Interface Site Configured for Remote Users Using Agee 165 166 AppFlow NetScaler Flow Sequence How AppFlow WorksTemplates Flow RecordsConfiguring the AppFlow Feature To specify a collector by using the NetScaler command line Enabling or Disabling the AppFlow FeatureSpecifying a Collector Parameters for specifying a collector Configuring an AppFlow ActionTo remove a collector by using the NetScaler command line To specify a collector by using the configuration utilityCollectors Parameters for configuring an AppFlow actionComment Show appflow policy name Configuring an AppFlow PolicyRule Action Parameters for configuring an AppFlow policyHttp To add an expression by using the Add Expression dialog boxShow appflow global Binding an AppFlow PolicyLabelName Parameters for binding an AppFlow policyGotoPriorityExpression Invoke Invoke flag LabelTypeClick Apply Changes Enabling AppFlow for Virtual ServersSetting the AppFlow Parameters Enabling AppFlow for a ServiceAppFlow Parameters HttpHost HttpCookieHttpReferer HttpMethodReporting Tool To invoke the Reporting tool Using the Reporting ToolWorking with Reports Creating and Deleting Reports Using Built-in ReportsTime Intervals Time interval Displays Modifying the Time IntervalExporting and Importing Custom Reports Setting the Data Source and Time ZoneAdding a Chart Working with ChartsModifying a Chart To change the graph type of a chart Viewing a ChartTo view numeric data for a graph To change the color and graph type of a data set To export chart data to Excel Deleting a ChartExamples Limits on Entity Numbers Retrieved by nscollect Entity name Stopping and Starting the Data Collection UtilityNetscaler/nscollect stop To stop nscollectTo start nscollect on the local system Entity name LimitNetscaler/nscollect start To start nscollect on the remote system