8/16/32 PS/2 KVM over IP switch

Unblocking users

There are two possibilities to unblock a blocked user.

A parent user may go to the user management settings (see the Section called Users And Groups) and press the button “ Unblock ” for the user.

It is also possible to use the serial console as for the initial configuration (see Table 4-1) and login as the user “unblock“. The PS/2 IP-KVM switch will ask for the super user password and present a list of blocked users, which may be unblocked.

6.4.4Certificate

Figure 6-23. Certificate Settings

The PS/2 IP-KVM switch uses the Secure Socket Layer (SSL) protocol for any encrypted network traffic between itself and a connected client. During the connection establishment the PS/2 IP-KVM switch has to expose its identity to a client using a cryptographic certificate. Upon delivery, this certificate and the underlying secret key is the same for all PS/2 IP-KVM switch ever produced and certainly will not match the network configuration that will be applied to the PS/2 IP-KVM switch cards by its user. The certificate's underlying secret key is also used for securing the SSL handshake. Hence, this is a security risk (but far better than no encryption at all).

However, it is possible to generate and install a new certificate that is unique for a particular PS/2 IP-KVM switch card. In order to do that, the PS/2 IP-KVM switch is able to generate a new cryptographic key and the associated Certificate Signing Request (CSR) that needs to be certified by a certification authority (CA). A certification authority verifies that you are the person who you claim you are, and signs and issues a SSL certificate to you.

The following steps are necessary to create and install a SSL certificate for the PS/2 IP-KVM switch:

Create a SSL Certificate Signing Request using the panel shown in Figure 6-23. You need to fill out a number of fields that are explained below. Once this is done, click on the button “ Create ” which will initiate the Certificate Signing Request generation. The CSR can be downloaded to your administration machine with the “Download CSR” button (see Figure 6-24).

Send the saved CSR to a CA for certification. You will get the new certificate from the CA after a more or less complicated traditional authentication process (depending on the CA).

Upload the certificate to the PS/2 IP-KVM switch using the “Upload” button as shown in Figure 6-24.

51

Page 51
Image 51
Avocent PS/2 IP user manual Unblocking users, Certificate

PS/2 IP specifications

The Avocent PS/2 IP KVM (Keyboard, Video, Mouse) switch is a sophisticated solution designed to provide remote access and management capabilities for servers and devices located in data centers or remote locations. As IT environments grow increasingly complex, the need for seamless and efficient management tools becomes essential. The Avocent PS/2 IP addresses this need by integrating high-end features and technologies that streamline operation and enhance productivity.

One of the standout features of the Avocent PS/2 IP is its ability to facilitate secure, remote access to connected devices through an IP network. This enables administrators to control servers and troubleshoot issues from virtually anywhere, eliminating the need to be physically present in the server room. The system supports multiple simultaneous user sessions, allowing multiple administrators to connect and manage devices at the same time, which is crucial for teamwork in large IT environments.

In terms of security, the Avocent PS/2 IP employs robust authentication mechanisms, including user-level access control and encrypted remote sessions. This ensures that only authorized personnel can access sensitive systems, significantly reducing the risk of unauthorized access or data breaches.

The Avocent PS/2 IP is designed to support a wide range of operating systems and server hardware, making it an extremely versatile solution for diverse IT infrastructures. It is compatible with various PS/2 devices and incorporates advanced video quality technologies to deliver high-definition video output, ensuring that administrators receive a clear and accurate representation of the connected systems.

Additionally, the device features built-in monitoring and alerting capabilities. These functionalities allow IT teams to keep track of device status, receive notifications of potential issues, and proactively address problems before they escalate into major outages. The ease of integration with existing management software also enhances its effectiveness.

Another significant characteristic of the Avocent PS/2 IP is its scalability. Organizations can easily expand their KVM infrastructure as their needs grow, allowing for the addition of more servers or devices without requiring a complete system overhaul. This flexibility makes it a cost-effective choice for businesses aiming to future-proof their IT operations.

In conclusion, the Avocent PS/2 IP KVM switch combines advanced remote access capabilities, strong security features, and broad compatibility, making it an essential tool for efficient IT management in today’s fast-paced technological landscape. Its design focuses on enhancing productivity and minimizing downtime, proving beneficial for organizations seeking streamlined operations and superior control over their server environments.