Tripp Lite B0930082E4UM Owners Manual for B093- B097- and B098-Series Console - Page 20

Power, Environment & Digital I/O

Page 20 highlights

3. System Configuration Telnet By default, the Telnet service is running. However, by default, the service is disabled on all network interfaces. Telnet can be used to give the Administrator access to the system command line shell. While this may be suitable for a local direct connection over a management LAN, it is recommended this service be disabled if the console server is to be remotely administered. This service may also be useful for local Administrator and User access to selected serial consoles. The Enable telnet command shell checkbox will completely enable or disable the telnet service. An alternate telnet port to listen on can be specified in Alternate Telnet Port (default port is 23). SSH This service provides secure SSH access to the console server and attached devices. By default, the SSH service is running and enabled on all interfaces. It is recommended you choose SSH as the protocol where the Administrator connects to the console server over the Internet or any other public network. This will provide authenticated communications between the SSH client program on the remote computer and the SSH server in the console server. For more information on SSH configuration, refer to section 9. Authentication. The Enable SSH command shell checkbox will completely enable or disable this service. An alternate SSH port to listen on can be specified in SSH command shell port (default port is 22). • Enable and configure other services: TFTP/FTP If a USB flash drive or internal flash memory is detected on a console server, then checking Enable TFTP (FTP) service will enable this service and set up default tftp and ftp server on the USB flash. These servers are used to store config files, maintain access and transaction logs, etc. Files transferred using tftp and ftp will be stored under /var/mnt/storage.usb/tftpboot/ (or /var/mnt/storage.nvlog/tftpboot/ on B093 devices). Unchecking Enable TFTP (FTP) service will completely disable the TFTP (FTP) service. DNS Relay Checking Enable DNS Server/Relay will enable the DNS relay feature so clients can be configured with the console server's IP for their DNS server setting. The console server will forward the DNS queries to the real DNS server. Web Terminal Checking Enable Web Terminal will allow web browser access to the system command line shell via Manage -> Terminal. • Specify alternate port numbers for Raw TCP, direct Telnet/SSH and unauthenticated Telnet/SSH services. The console server uses specific default ranges for the TCP/IP ports for the various access services that Users and Administrators can use to access devices attached to serial ports (refer to 4.1 Configure Serial Ports for more information). The Administrator can also set alternate ranges for these services, and these secondary ports will then be used, in addition to the defaults. The default TCP/IP base port address for telnet access is 2000, and the range for telnet is IP Address: Port (2000 + serial port #) i.e. 2001 - 2048. So if the Administrator were to set 8000 as a secondary base for telnet, then serial port #2 on the console server can be telnet accessed at IP Address:2002 and at IP Address:8002. The default base for SSH is 3000; for Raw TCP is 4000; and for RFC2217 it is 5000 • A number of other services can be enabled and configured indirectly from this menu by selecting Click here to configure: Nagios Access to the Nagios NRPE monitoring daemons (refer to 8. Power, Environment & Digital I/O). NUT Access to the NUT UPS monitoring daemon (refer to 10. Nagios Integration). SNMP This will enable netsnmp in the console server. SNMP is disabled by default (refer to 7. Alerts, Auto-Response and Logging and 15.5 SNMP Status Reporting). NTP Refer to 11. System Management. • Click Apply. As you apply your services selections, the screen will be updated with a confirmation message: Message Changes to configuration succeeded. 20

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288

20
Telnet
By default, the Telnet service is running. However, by default, the service is disabled on all network interfaces.
Telnet can be used to give the Administrator access to the system command line shell. While this may be suitable
for a local direct connection over a management LAN, it is recommended this service be disabled if the console
server is to be remotely administered. This service may also be useful for local Administrator and User access to
selected serial consoles.
The
Enable telnet command shell
checkbox will completely enable or disable the telnet service. An alternate
telnet port to listen on can be specified in
Alternate Telnet Port
(default port is 23).
SSH
This service provides secure SSH access to the console server and attached devices. By default, the SSH service is
running and enabled on all interfaces. It is recommended you choose SSH as the protocol where the Administrator
connects to the console server over the Internet or any other public network. This will provide authenticated
communications between the SSH client program on the remote computer and the SSH server in the console
server. For more information on SSH configuration, refer to section
9. Authentication
.
The
Enable SSH command shell
checkbox will completely enable or disable this service. An alternate SSH port to
listen on can be specified in
SSH command shell port
(default port is 22).
• Enable and configure other services:
TFTP/FTP
If a USB flash drive or internal flash memory is detected on a console server, then checking
Enable TFTP
(FTP) service
will enable this service and set up default tftp and ftp server on the USB flash. These servers
are used to store config files, maintain access and transaction logs, etc. Files transferred using tftp and ftp
will be stored under /var/mnt/storage.usb/tftpboot/ (or /var/mnt/storage.nvlog/tftpboot/ on B093 devices).
Unchecking
Enable TFTP (FTP) service
will completely disable the TFTP (FTP) service.
DNS Relay
Checking
Enable DNS Server/Relay
will enable the DNS relay feature so clients can be configured with the
console server’s IP for their DNS server setting. The console server will forward the DNS queries to the real
DNS server.
Web Terminal
Checking
Enable Web Terminal
will allow web browser access to the system command line shell via
Manage
->
Terminal
.
• Specify alternate port numbers for Raw TCP, direct Telnet/SSH and unauthenticated Telnet/SSH services. The console server
uses specific default ranges for the TCP/IP ports for the various access services that Users and Administrators can use to
access devices attached to serial ports (refer to
4.1 Configure Serial Ports
for more information). The Administrator can
also set alternate ranges for these services, and these secondary ports will then be used, in addition to the defaults.
The default TCP/IP base port address for telnet access is 2000, and the range for telnet is IP Address: Port (2000 + serial
port #) i.e. 2001 – 2048. So if the Administrator were to set 8000 as a secondary base for telnet, then serial port #2 on
the console server can be telnet accessed at IP Address:2002 and at IP Address:8002. The default base for SSH is 3000;
for Raw TCP is 4000; and for RFC2217 it is 5000
• A number of other services can be enabled and configured indirectly from this menu by selecting
Click here to configure
:
Nagios
Access to the Nagios NRPE monitoring daemons (refer to
8. Power, Environment & Digital I/O
).
NUT
Access to the NUT UPS monitoring daemon (refer to
10. Nagios Integration
).
SNMP
This will enable netsnmp in the console server. SNMP is disabled by default (refer to
7. Alerts, Auto-Response
and Logging
and
15.5 SNMP Status Reporting
).
NTP
Refer to
11. System Management
.
• Click
Apply
. As you apply your services selections, the screen will be updated with a confirmation message:
Message
Changes to configuration succeeded
.
3. System Configuration