Chapter 6:
Alerts, Auto-Response & Logging
106
5.1
Configuring for SSH Tunneling to Hosts
To set up the console server for SSH tunneled access a network attached host, add the new host and the
permitted services using the
Serial & Network > Network Hosts
menu as detailed in
Network Hosts
.
Only
these permitted services are forwarded through by SSH to the host. All other services (TCP/UDP ports)
are blocked.
Some of the TCP Ports used by SDT in the console server:
22
SSH (All SDT Tunneled connections)
23
Telnet on local LAN (forwarded inside tunnel)
80
HTTP on local LAN (forwarded inside tunnel)
3389 RDP on local LAN (forwarded inside tunnel)
5900 VNC on local LAN (forwarded inside tunnel)
73XX RDP over serial from local LAN – where XX is the serial port number (i.e. 7301to 7348 on
a 48 port console server)
79XX VNC over serial from local LAN – where XX is the serial port number
Add new users using
Serial & Network > Users & Groups
menu as detailed in Network Hosts. Users can
be authorized to access the console server ports and specified network-attached hosts. To simplify
configuration, an administrator can first set up groups with group access permissions, users can be
classified as members of particular groups.
5.2
SDT Connector Client Configuration
The SDT Connector client works with all Opengear console servers. Each of these remote console servers
have an embedded OpenSSH based server which can be configured to port forward connections from the
SDT Connector client to hosts on their local network as detailed in the previous chapter. The SDT
Connector can also be pre-configured with the access tools and applications that are available to run
when access to a particular host has been established.
SDT Connector can connect to the console server using an alternate OOB access. It can also access the
console server and access devices connected to serial ports on the console server.
To operate SDT Connector, add new gateways to the client software by entering the access details for
each console server and let the client auto-configure with all host and serial port connections from each
console server. Point-and-click to connect to the Hosts and serial devices.
Or you can add network connected hosts and configure new services to be used in accessing the console
server and the hosts and configure clients to run on the PC that uses the service to connect to the hosts