Value-Line and Advanced Console Servers User’s Manual
Value-Line and Advanced Console Servers Manual
Blackbox.com
Value-Line and Advanced Console Servers Manual
Value-Line and Advanced Console Servers Manual
Administrator Password
Power connection
System Services
Management network configuration
Configuring for SSH Tunneling to Hosts
FIREWALL, Failover and OoB DIAL-IN OoB Dial-In Access
SDT Connector Client Configuration
Serial Port Redirection Managed Devices IPsec VPN
SDT Connector Public Key Authentication
SDT Connector to Management Console
Setting up SDT for Remote Desktop access
SSH Tunneling using other SSH clients e.g. PuTTY
Uninterruptible Power Supply Control UPS
Remote Power Control RPC
Authentication Configuration
PAM Pluggable Authentication Modules
203
13.4 Power Management 212
209
213
Modifying Snmp Configuration
Raw Access to Serial Ports
Secure Shell SSH Public Key Authentication
Power Strip Control
Appendix
This Manual
Chapter Introduction
Manual Organization
Server
Types of users
Management Console
Console server
Publishing history
Manual Conventions
Date Revision Update details
Copyright
Chapter Installation
Introduction
Models
Kit components LES1508A Console Server
Blackbox.com
Power connection
1 LES1508A power
Kit components LES1108A Console Server
2 LES1116A, LES1132A and LES1148A power
4 LES1108A power
Network connection
Serial Port connection
USB Port Connection
PIN Signal Definition Direction
Antenna and SIM
Before powering on the console server
Chapter Initial System Configuration
Management console connection
IP address
Browser connection
Blackbox.com
Administrator Password
Set up new administrator
Network IP address
Name the console server
Configuration Method
Dynamic DNS Ddns configuration
1 IPv6 configuration
Service Access
System Services
Blackbox.com
Select the Service Settings tab on the System Services
Message Changes to configuration succeeded Service Settings
Communications Software
PuTTY
SDT Connector
SSHTerm
Management network configuration
Enable the Management LAN
Check Enable Dhcp Server
Configure the Dhcp server
Select Failover or broadband OOB
Blackbox.com
Aggregating the network ports
Static routes
To add to the static route to the route table of the system
Configure Serial Ports
Serial Port, Host, Device & User Configuration
Common Settings
Console Server Mode
Blackbox.com
Blackbox.com
Blackbox.com
Blackbox.com
SDT Mode
Terminal Server Mode
Device RPC, UPS, EMD Mode
Serial Bridging Mode
Cisco USB console connection
Add/ Edit Users
Pptpd
Admin
Dialin
Ftp
Blackbox.com
Blackbox.com
Network Hosts
Authentication
Select Serial & Network Trusted Networks
Trusted Networks
Automatically generate and upload SSH keys
Serial Port Cascading
Check Generate SSH keys automatically and click Apply
Select RSA Keys and/or DSA Keys
Manually generate and upload SSH keys
# ssh remhost
Configure the slaves and their serial ports
Managing the Slaves
Serial Port Redirection
Select Serial & Network Managed Devices
Managed Devices
Add Connection
IPsec VPN
Select IPsec VPN on the Serial & Networks menu
Enable the VPN gateway
Select OpenVPN on the Serial & Networks menu
Enable the OpenVPN
Configure as Server or Client
Windows OpenVPN Client and Server set up
Windows client/server configuration file options are
AES
Blackbox.com
Pptp VPN
None
Set up a remote Pptp client
Click Apply Settings Add a Pptp user
Blackbox.com
OoB Dial-In Access
Chapter Firewall, Failover and OoB Dial Access
Check Enable Dial-In
Configure Dial-In PPP
MSCHAPv2
Set up Windows XP/ 2003/Vista/7 client
Using SDT Connector client
OoB broadband access
Set up earlier Windows clients
Set up Linux clients for dial-in
Broadband Ethernet Failover
Always-on dial-out
Dial-Out Failover
Blackbox.com
Connect to the GSM HSUPA/UMTS carrier network
Failover dial-out
Blackbox.com
Connect to the Cdma EV-DO carrier network
Otasp Activation
Manual Activation
Cellular modem watchdog
Verify cellular connection
Cellular failover setup
OOB access set up
Cellular CSD dial-in setup
Check Enable Dial-In and configure the Dial-In Settings
Cellular routing
Firewall & Forwarding
Configuring network forwarding and IP masquerading
Configuring client devices
Manual Configuration
Dhcp Configuration
Click Add New Port Forward
Port forwarding
Firewall rules
Click New Firewall Rule
Dialout/Cellular, VPN, Network Interface, Dial-in etc
Interface Dialout/Cellular Port Range
Port Range
Interface
Source IP
Destination IP
Chapter Secure SSH Tunneling & SDT Connector
SDT Connector Client Configuration
Configuring for SSH Tunneling to Hosts
Run the set-up program
SDT Connector installation
Blackbox.com
Blackbox.com
Make an SDT connection through the gateway to a host
Manually adding hosts to the SDT Connector gateway
Manually adding new services to the new hosts
Blackbox.com
Adding a client program to be started for the new service
Blackbox.com
Dial in configuration
SDT Connector to Management Console
Blackbox.com
Click Add, then scroll to the bottom and click Apply
Blackbox.com
Pon networkconnection
Importing and exporting preferences
OpenSSH Windows http//sshwindows.sourceforge.net/download
SDT Connector Public Key Authentication
Setting up SDT for Remote Desktop access
Configure the Remote Desktop Connection client
Blackbox.com
Option Description
Click Connect
On a Macintosh client
SDT SSH Tunnel for VNC
Install, configure and connect the VNC Viewer
Blackbox.com
Blackbox.com
Blackbox.com
From
Select Allow calling computer to specify its own address
Set up SDT Serial Ports on console server
SSH Tunneling using other SSH clients e.g. PuTTY
Blackbox.com
Blackbox.com
Chapter Alerts, Auto-response Logging
Configure Auto-Response
Blackbox.com
Click on UPS / Power Supply as the Check Condition
UPS / Power Supply
Check Save Auto-Response UPS Status
Click on UPS Status as the Check Condition
Serial Login/Logout
Click on Icmp Ping as the Check Condition
Check Save Auto-Response Cellular Data
Check Save Auto-Response SMS Command
Click on SMS Command as the Check Condition
Click on Custom Check as the Check Condition
Send Email
Action Delay Time
Send SMS
Click Save New Action
Send Email alerts
Select Alerts & Logging Smtp &SMS
SMS via Email Gateway
Send SMS alerts
SMS via Cellular Modem
Select Cellular Modem In the SMS Settings field
Select Alerts & Logging Snmp
Send Snmp trap alerts
Nagios alerts
Logging
Network Serial Ports refer to Chapter
Log storage
Serial port logging
Power device logging
Network TCP and UDP port logging
Auto-Response event logging
Chapter Power & Environmental Management
Remote Power Control RPC
RPC connection
Blackbox.com
Blackbox.com
RPC access privileges and alerts
User power management
Turn on
Uninterruptible Power Supply Control UPS
Turn OFF Cycle Status
RPC status
Managed UPS connections
Blackbox.com
Blackbox.com
Remote UPS management
Controlling UPS powered computers
Monitor managedups@192.168.0.1 1 username password slave
UPS alerts
UPS status
Overview of Network UPS Tools NUT
Blackbox.com
Environmental Monitoring
Connecting the EMD
Blackbox.com
Environmental status
Environmental alerts
Authentication Configuration
Chapter Authentication
Tacacs authentication
Radius authentication
Ldap authentication
Enter the Server Password
Blackbox.com
Group support with remote authentication
RADIUS/TACACS User Configuration
Remote groups with Radius authentication
Remote groups with Ldap authentication
Network
Administration Group DN
Idle timeout
Remote groups with TACACS+ authentication
Select Serial and Network Authentication
Kerberos authentication
Authentication testing
PAM Pluggable Authentication Modules
TACACS+
SSL Certificate
Blackbox.com
Blackbox.com
Chapter Nagios Integration
Nagios Overview
Central management and setting up SDT for Nagios
Distributed console servers Black Box console servers
Set up central Nagios server
Description, for example Windows 2003 IIS Server
Set up distributed console servers
Select Serial Port from the Serial & Network menu
In Description enter Administrator connection
Click Console server Mode, and select Logging Level
Check Nagios Nsca
Enable Nagios on the console server
Configuring Nagios distributed monitoring
Enabled
Select Users & Groups from the Serial & Network menu
Enable Nrpe monitoring
Select System Nagios and check Nrpe Enabled
Enable Nsca monitoring
Configure Selected Serial Ports for Nagios Monitoring
Select System Nagios and check Nsca Enabled
Configure Selected Network Hosts for Nagios Monitoring
Permitted Service
Advanced Distributed Monitoring Configuration
Configure the upstream Nagios monitoring host
Sample Nagios configuration
Hostname Black Box
CheckpingviaBlack Box
Checkportlog
Executionfailurecriteria SSH Port Define command
CheckconnviaBlack Box
Basic Nagios plug-ins
Number of supported devices
Additional plug-ins
Local office
Distributed Monitoring Usage Scenarios
Remote site with restrictive firewall
II. Remote site
Remote site with no network access
Chapter System Management
System Administration and Reset
Configure Date and Time
Upgrade Firmware
Configuration Backup
Blackbox.com
Blackbox.com
Delayed Configuration Commit
Select the System Administration menu option
Fips Mode
Select the Status Port Access
Port Access and Active Users
Chapter Status Reports
Statistics
Syslog
Support Reports
Select the Status Statistics
Select Status Syslog
Dashboard
Configuring the Dashboard
Blackbox.com
Blackbox.com
Echo table
Creating custom widgets for the Dashboard
Device Management
Chapter Management
Web Terminal to Command Line
Port and Host Logs
Web Terminal
SDT Connector access
Check Web Terminal and click Apply
Select Manage Terminal
Select Manage Power
Power Management
Accessing config from the command line
Chapter Command Line Configuration
Syntax
Description
Options
Run=configurator
At /etc/config/config.xml
# /bin/config -d element name
Listed below
Serial Port configuration
Device Mode
Console server mode
# config -s config.ports.port5.mode=bridge
Serial bridge mode
Config.ports.port5.bridge.ssh.enabled=on
Syslog settings
# config -g config.users.total
# config -d config.users.user2.port1
Adding and Removing Users
# config -r users
# ./delete-node config.users.user2
# config -g config.groups.total
Adding and removing user Groups
# config -r auth
# config -a
# config -s config.sdt.hosts.total=4
# config -g config.sdt.hosts.total
Add power device host
Add other network host
# config -hosts
# config -g config.devices.total
# config -g config.portaccess.total
Cascaded Ports
# config -r cascade
UPS Connections
Managed UPSes
# config -s config.ups.monitors.total=1
RPC Connections
Remote UPSes
Environmental
# config -d config.devices.device8
Port Log
User Syslog Mail News
General settings for all alerts
Error
Signal Alert
Alerts
UPS Power Status Alert
Environmental and Power Sensor Alert
Pattern Match Alert
# config -r alerts
Alarm Sensor Alert
# config -s config.system.smtp.server2=mail.Black Box.com
Smtp & SMS
Administration
IP settings
Snmp
Date & Time Settings
# config -s config.system.timezone=US/Eastern
Dial-in settings
# config -r time
# config -s config.console.ppp.defaultroute=on
Services
Blowfish Twofish RIJNDAEL-256 Serpent Gost
Nagios
Using IPMItools
Chapter Advanced Configuration
Custom script to run when booting
Custom Scripting
# dos2unix /etc/config/rc.local
Running custom scripts when alerts are triggered
# cd
Deleting Configuration Values from the CLI
Example script Power Cycling on Pattern Match
Example script Multiple email notifications on each alert
Bin/sh /etc/scripts/alert-email $suffix
Delete-node script
# ./delete-node config.users.user3
While $COUNTER != $TOTAL-NUMBER+1 do
NEWTOTAL=$ $TOTAL
Power Cycle any device when a ping request fails
Ping-detect script
Running custom scripts when a configurator is invoked
# /etc/scripts/backup-usb list
# /etc/scripts/backup-usb load filename
Backing-up the configuration off-box
Advanced Portmanager
Portmanager commands
Pmshell
Pmchat
Pmusers
Signals
Portmanager daemon
External Scripts and Alerts
Access to serial ports
Raw Access to Serial Ports
Accessing the console/modem port
Etc/config/ipfilter
IP- Filtering
Modifying Snmp Configuration
15.5.1 /etc/config/snmpd.conf
Sysdescr Black Box Syscontact
Adding more than one Snmp server
Secure Shell SSH Public Key Authentication
Config --set config.system.snmp.password2=yourpassword
SSH Overview
Generating Public Keys Linux
Installing the SSH Public/Private Keys Clustering
$ ssh-keygen -t rsadsa
28aa2938ba40f4115e3fd4fae53614d6 user@server
Chown fred /etc/config/users/fred/.ssh/authorizedkeys
Installing SSH Public Key Authentication Linux
Blackbox.com
Generating public/private keys for SSH Windows
Blackbox.com
Fingerprinting
Ab7e33bd85505a430be0bd433f1ca5f8
Offending key in /.ssh/knownhosts1
Client Keys
SSH tunneled serial bridging
Authorized Keys
Public key to refer to either idrsa.pub or iddsa.pub
Secure Sockets Layer SSL Support
SDT Connector Public Key Authentication
$ ls /home/user/keys
Uploading Keys
Generating an encryption key
Https
Openssl genrsa -des3 -out sslkey.pem
Generating a self-signed certificate with OpenSSL
Installing the key and certificate
Power Strip Control
Launching the Https Server
Kill -HUP `cat /var/run/inetd.pid`
PowerMan tool
Target Specification
Synopsis
Powerman --on foo0,4-5
Pmpower tool
Adding new RPC devices
Blackbox.com
P-f password -o oemtype command
IPMItool
Ipmitool -c-h-v-V-I lan -H hostname -p port
Cciphersuite
Aauthtype
Iinterface
Lprivlvl
Ipmitool help
Help
Custom Development Kit CDK
Ipmitool chassis power help
Scripts for Managing Slaves
Ipmitool chassis help
Select Alerts & Logging Port Log
Select Serial & Network Serial Port, Edit the serial ports
Select Status Support Report
Appendix a Linux Commands & Source Code
Blackbox.com
Blackbox.com
Blackbox.com
Commands
Sigspec -n signum -si let arg arg
Feature Value
Appendix B Hardware Specifications
FCC Warning Statement
Appendix C Safety & Certifications
Appendix F End User License Agreement
Read Before Using the Accompanying Software
JSch License
SDT Connector License
Blackbox.com
No Warranty
Blackbox.com
Blackbox.com
Black Box Tech Support FREE! Live /7