data:image/s3,"s3://crabby-images/e94dd/e94dda6eb3cfda0c9cc272a69bd08f4f9dfa07d0" alt="Clavister NetWall 6000 Series Скачать руководство пользователя страница 69"
If the
admin
account password has not been changed earlier to a strong password and strong
passwords are enabled (by default, they are) then activating configuration changes will not be
allowed by cOS Core. The solution to this is either to change the
admin
account password to a
strong one or turn off strong passwords with the following command:
Device:/> set Settings MiscSettings EnforceStrongPasswords=No
Note that if activation fails because of a weak password, the old
admin
password must be reset
anyway, even if the new value is the same as the old.
DHCP Server Setup
Any interface on the NetWall 6000 Series can be set up with a DHCP server so connecting clients
can be automatically allocated an IP address from a predefined range.
First, define an IPv4 address object which has the address range that can be handed out. In this
example, we will use the IPv4 range
192.168.1.10 - 192.168.1.20
and this will be made available on
the
G1
interface which is connected to the protected network
G1_net
.
Device:/> add Address IP4Address dhcp_range
Address=192.168.1.10-192.168.1.20
The DHCP server is then configured with this IP address object on the appropriate interface. In
this case we will call the created DHCP server object
my_dhcp_server
.
Device:/> add DHCPServer my_dhcp_server
IPAddressPool=dhcp_range
Interface=G1
Netmask=255.255.255.0
DefaultGateway=InterfaceAddresses/G1_ip
DNS1=dns1_address
It is important to specify the default gateway for the DHCP server since this will be handed out to
DHCP clients on the internal network so that they know where to find the public Internet. The
default gateway is always the IP address of the interface on which the DHCP server is configured.
In this case,
G1_ip
.
NTP Server Setup
Network Time Protocol
(NTP) servers can be configured to maintain the accuracy of the system
date and time. By default, no time server is configured. Clavister provides its own time server
which can be used with the following command:
Device:/> set DateTime TimeSynchronization=Clavister
Alternatively, a custom time server can be configured. Suppose that synchronization is to be
setup with the two NTP servers at hostname
pool.ntp.org
and IPv4 address
203.0.113.5
. First, an
FQDNAddress
object needs to set up for the hostname:
Device:/> add Address FQDNAddress ts1_fqdn Address=pool.ntp.org
Next, set the servers to use for date and time synchronization:
Device:/> set DateTime TimeSynchronization=Custom
TimeSyncServer1=ts1_fqdn
TimeSyncServer2=203.0.113.5
External Syslog Server Setup
Chapter 4: cOS Core Configuration
69
Содержание NetWall 6000 Series
Страница 1: ...Clavister NetWall 6000 Series Getting Started Guide...
Страница 15: ...Chapter 1 NetWall 6000 Series Overview 15...
Страница 37: ...Chapter 3 Installation 37...
Страница 78: ...Chapter 4 cOS Core Configuration 78...