Alteon Application Switch Operating System Application Guide
ADC-VX Management
Document ID: RDWR-ALOS-V2900_AG1302
407
Delegating System Services
If the Global Administrator wants to enforce a global policy across vADCs, the Global Administrator
can enforce specific service usage. For example, an organization that requires authentication using
AAA servers, or requires information collection for security purpose, might want to both enforce
(delegate) these settings globally and lock them for modification by the vADC Administrator. For
each of these system services, the Global Administrator can either enable or disable them for
modification.
The system services that the Global Administrator can delegate include:
•
Syslog server
•
AAA Services
—
RADIUS server
—
TACACS server
•
Time Services (NTP)
•
Timeout for idle CLI sessions
•
vADC Management IP settings
•
Management access protocols
•
SMTP services
For more details, see the section on the
/cfg/vadc/sys
menu in the Alteon Application Switch
Operating System Command Reference.
Synchronizing vADCs
Environments using ADC-VX usually take advantage of a least one additional Alteon for redundancy
purposes. ADC-VX supports solution designs constructed with up to six peers for redundancy and
risk distribution. A Global Administrator managing the system is required to define a vADC only
once, while the system synchronizes all the settings to one of the peers. The system is aware of the
location of all vADCs and their peers at all times and performs the configuration synchronization
based on the location of the target vADC. Therefore, there is no need to keep track of or make
modifications in multiple locations. The synchronization mechanism creates new vADCs,
synchronizes changes, and adapts to any modification.
Each ADC-VX platform supports synchronization with up to five peers. Each system is aware of the
location of each vADC at any given time. This enables the contextual synchronization of all changed
configuration information to the relevant Alteon without manual intervention or any unnecessary
operations. To use this feature, you perform the following tasks:
•
Define the IP information of Alteons in the system. The IP address that is used for
synchronization is the IP address of the Global Administrator management access.
•
Assign each vADC with a peer ID using
/cfg/vadc #/sys/sync
.
For more details, see the section on the
/cfg/sys/sync
and
/oper/sync
commands in the
Alteon Application Switch Operating System Command Reference.
Note:
ADC-VX also supports bulk vADC peer configuration using the
range
command available
under
/cfg/sys/sync/peer #/range
. For more details, see the Alteon Application Switch
Operating System Command Reference.