Tripp Lite B0930082E4U Owners Manual for B093- B097- and B098-Series Console S - Page 223

Trusted Networks, 1.7 Cascaded Ports

Page 223 highlights

14. Configuration from the Command Line Assuming we already have one managed device, our new device will be device 2. Issue the following commands: # config -s config. devices.device2.connections.connection1.name=192.168.3.10 # config -s config. devices.device2.connections.connection1.type=Host # config -s config. devices.device2.name=OfficePC # config -s config. devices.device2.description=MyPC # config -s config.devices.total=2 The following command will synchronize the live system with the new configuration: # config -hosts 14.1.6 Trusted Networks You can further restrict remote access to serial ports based on the source IP address. To configure this via the command line, do the following: Determine the total number of existing trusted network rules. If you have no existing rules, assume this is 0. # config -g config.portaccess.total This command should display config.portaccess.total 1. If you see config.portaccess.total , you have 0 rules configured. Your new rule will be the existing total, plus 1. For example, if the previous command gave you 0, you start with rule number 1. If you already have rule 1, your new rule will be number 2, etc. To restrict access to serial port 5 to computers from a single class C network (e.g., 192.168.5.0), issue the following commands (assuming you have a previous rule in place). Add a trusted network: # config -s config.portaccess.rule2.address=192.168.5.0 # config -s "config.portaccess.rule2.description=foo bar" # config -s config.portaccess.rule2.netmask=255.255.255.0 # config -s config.portaccess.rule2.port5=on # config -s config.portaccess.total=2 The following command will synchronize the live system with the new configuration: # config -r serialconfig 14.1.7 Cascaded Ports To add a new Secondary device with the following settings: IP address/DNS name 192.168.0.153 Description CM in office 42 Label b098-16 Number of ports 16 The following commands must be issued: # config -s config.cascade.Secondarys.Secondary1.address=192.168.0.153 # config -s "config.cascade.Secondarys.Secondary1.description=B098-16 in office 42" # config -s config.cascade.Secondarys.Secondary1.label=b098-16 # config -s config.cascade.Secondarys.Secondary1.ports=16 The total number of Secondary devices must also be incremented. If this is the first Secondary device being added, type: # config -s config.cascade.Secondarys.total=1 Increment this value when adding more Secondary devices. Note: If a Secondary device is added using the CLI, the Primary SSH public key will need to be manually copied to every Secondary device before cascaded ports will work. Refer to 4. Serial Port, Host, Device and User Configuration. The following command will synchronize the live system with the new configuration: # config -r cascade 223

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288

223
14. Configuration from the Command Line
Assuming we already have one managed device, our new device will be device 2. Issue the following commands:
# config -s config. devices.device2.connections.connection1.name=192.168.3.10
# config -s config. devices.device2.connections.connection1.type=Host
# config -s config. devices.device2.name=OfficePC
# config -s config. devices.device2.description=MyPC
# config -s config.devices.total=2
The following command will synchronize the live system with the new configuration:
# config -hosts
14.1.6 Trusted Networks
You can further restrict remote access to serial ports based on the source IP address. To configure this via the command line,
do the following:
Determine the total number of existing trusted network rules. If you have no existing rules, assume this is 0.
# config -g config.portaccess.total
This command should display
config.portaccess.total 1
.
If you see
config.portaccess.total
, you have 0 rules configured.
Your new rule will be the existing total, plus 1. For example, if the previous command gave you 0, you start with rule number 1.
If you already have rule 1, your new rule will be number 2, etc.
To restrict access to serial port 5 to computers from a single class C network (e.g., 192.168.5.0), issue the following
commands (assuming you have a previous rule in place).
Add a trusted network:
# config -s config.portaccess.rule2.address=192.168.5.0
# config -s “config.portaccess.rule2.description=foo bar”
# config -s config.portaccess.rule2.netmask=255.255.255.0
# config -s config.portaccess.rule2.port5=on
# config -s config.portaccess.total=2
The following command will synchronize the live system with the new configuration:
# config -r serialconfig
14.1.7 Cascaded Ports
To add a new Secondary device with the following settings:
IP address/DNS name
192.168.0.153
Description
CM in office 42
Label
b098-16
Number of ports
16
The following commands must be issued:
# config -s config.cascade.Secondarys.Secondary1.address=192.168.0.153
# config -s “config.cascade.Secondarys.Secondary1.description=B098-16 in office 42”
# config -s config.cascade.Secondarys.Secondary1.label=b098-16
# config -s config.cascade.Secondarys.Secondary1.ports=16
The total number of Secondary devices must also be incremented. If this is the first Secondary device being added, type:
# config -s config.cascade.Secondarys.total=1
Increment this value when adding more Secondary devices.
Note:
If a Secondary device is added using the CLI, the Primary SSH public key will need to be manually copied to every Secondary device
before cascaded ports will work. Refer to
4. Serial Port, Host, Device and User Configuration
.
The following command will synchronize the live system with the new configuration:
# config -r cascade