Cisco NAC3350-PROF-K9 Hardware Installation Guide - Page 81

Access the CAM Web Console, Access the CAM Web, Console, CAM CLI Commands

Page 81 highlights

Chapter 3 Installing the Clean Access Manager and Clean Access Server Installing the Clean Access Manager Card(s) check passed Step 21 After the configuration is complete, press Enter to reboot the CAM. After rebooting, the CAM will be accessible from the web console. Configuration is complete. Changes require a REBOOT of Clean Access Manager. Enter the following command to reboot the CAM after configuration is complete: # reboot Step 22 The CAM initial configuration is now complete. After restarting, test the CAM installation: a. Ping the eth0 interface address from a command line. If working properly, the interface should respond to the ping. b. For a FIPS-compliant CAM, verify FIPS functionality as follows: - Ensure the FIPS card operation switch is set to "O" (for operational mode). - Log into the CAM console interface as root. - Navigate to the /perfigo/common/bin/ directory. - Enter ./test_fips.sh info and verify the following output: Installed FIPS card is nCipher Info-FIPS file exists Info-card is in operational mode Info-httpd worker is in FIPS mode Info-sshd up c. If the CAM does not respond, try connecting to the CAM using SSH (Secure Shell). Connect with the root username and password. Once connected, try pinging the default gateway to see if the CAM can reach the external network. If after installation you need to reset the initial configuration settings for the CAM, connect to the CAM machine directly or through SSH and use the CLI command service perfigo config. Once the CAM is configured, you will be able to access the CAM web console to add product licenses, and add initially configured Clean Access Servers to the CAM for management and further configuration, as described in Access the CAM Web Console, page 3-11. If both tests fail, make sure that you have configured the IP address correctly and that the other network settings are correct. The CAM should now be accessible through the web console, as described in Access the CAM Web Console, page 3-11. • For the commands to manually stop and start the CAM, see CAM CLI Commands, page 3-42. • For network card configuration issues, see Configuring Additional NIC Cards, page 3-37. Access the CAM Web Console The Clean Access Manager web administration console is the primary interface for administering the Cisco NAC Appliance deployment. After initial configuration is complete, use the following steps to access the CAM web console. OL-20326-01 Cisco NAC Appliance Hardware Installation Guide 3-11

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176

3-11
Cisco NAC Appliance Hardware Installation Guide
OL-20326-01
Chapter 3
Installing the Clean Access Manager and Clean Access Server
Installing the Clean Access Manager
Card(s) check passed
Step 21
After the configuration is complete, press Enter to reboot the CAM. After rebooting, the CAM will be
accessible from the web console.
Configuration is complete.
Changes require a REBOOT of Clean Access Manager.
Enter the following command to reboot the CAM after configuration is complete:
# reboot
The CAM initial configuration is now complete.
Step 22
After restarting, test the CAM installation:
a.
Ping the eth0 interface address from a command line. If working properly, the interface should
respond to the ping.
b.
For a FIPS-compliant CAM, verify FIPS functionality as follows:
Ensure the FIPS card operation switch is set to “O” (for operational mode).
Log into the CAM console interface as
root
.
Navigate to the
/perfigo/common/bin/
directory.
Enter
./test_fips.sh info
and verify the following output:
Installed FIPS card is nCipher
Info-FIPS file exists
Info-card is in operational mode
Info-httpd worker is in FIPS mode
Info-sshd up
c.
If the CAM does not respond, try connecting to the CAM using SSH (Secure Shell). Connect with
the
root
username and password. Once connected, try pinging the default gateway to see if the CAM
can reach the external network.
If after installation you need to reset the initial configuration settings for the CAM, connect to the
CAM machine directly or through SSH and use the CLI command
service perfigo config
.
Once the CAM is configured, you will be able to access the CAM web console to add product
licenses, and add initially configured Clean Access Servers to the CAM for management and further
configuration, as described in
Access the CAM Web Console, page 3-11
.
If both tests fail, make sure that you have configured the IP address correctly and that the other
network settings are correct.
The CAM should now be accessible through the web console, as described in
Access the CAM Web
Console, page 3-11
.
For the commands to manually stop and start the CAM, see
CAM CLI Commands, page 3-42
.
For network card configuration issues, see
Configuring Additional NIC Cards, page 3-37
.
Access the CAM Web Console
The Clean Access Manager web administration console is the primary interface for administering the
Cisco NAC Appliance deployment. After initial configuration is complete, use the following steps to
access the CAM web console.