Version 5.2
Sourcefire 3D System Installation Guide
93
Setting Up a Sourcefire 3D System Appliance
Initial Setup Page: Devices
Chapter 4
In most cases, you must provide the Defense Center’s hostname or the IP
address along with the registration key, for example:
configure manager add DC.example.com my_reg_key
However, if the device and the Defense Center are separated by a NAT device,
enter a unique NAT ID along with the registration key, and specify
DONTRESOLVE
instead of the hostname, for example:
configure manager add DONTRESOLVE my_reg_key my_nat_id
To register a device to a Defense Center:
A
CCESS
:
CLI Configuration
1.
Log in to the device as a user with Configuration CLI access level:
•
If you are performing the initial setup from the console, you are already
logged in as the
admin
user, which has the required access level.
•
Otherwise, SSH to the device’s management IP address or host name.
2.
At the prompt, register the device to a Defense Center using the
configure
manager add
command, which has the following syntax:
configure manager add {
hostname
|
IPv4_address
|
IPv6_address
| DONTRESOLVE}
reg_key
[
nat_id
]
where:
•
{
hostname
|
IPv4_address
|
IPv6_address
| DONTRESOLVE}
specifies either the fully qualified host name or IP address of the
Defense Center. If the Defense Center is not directly addressable, use
DONTRESOLVE.
•
reg_key
is the unique alphanumeric registration key required to register
a device to the Defense Center.
•
nat_id
is an optional alphanumeric string used during the registration
process between the Defense Center and the device. It is required if
the hostname is set to
DONTRESOLVE.
3.
Log out of the appliance.
The device is ready to be added to a Defense Center.
Initial Setup Page: Devices
For all managed devices (except Series 3 devices that you configured using the
Performing Initial Setup on a Series 3 Device Using the CLI
you must complete the setup process by logging into the device’s web interface
and specifying initial configuration options on a setup page.
You must change the administrator password, specify network settings if you
have not already, and accept the EULA. You can also preregister the device to a
Defense Center and specify a detection mode; the detection mode and other
options you choose during registration determine the default interfaces, inline