background image

C

HAPTER 

7:

 

A

DDING 

A

 

P

ARAGON 

II

 

S

YSTEM 

T

C

OMMAND

C

ENTER 

S

ECURE 

G

ATEWAY

 39 

1.

 

Click on the 

Users

 tab. 

2.

 

On the 

Users 

menu, click 

User Group Manager

, and then 

Add User Group

. Alternatively, 

right-click on the space next to the list of user groups and select 

Add User Group

. The 

Add 

User Group

 screen appears. 

3.

 

Type the group name in the 

User Group Name 

field. 

4.

 

Type the group description (for example, based on department, region, or assignment) in the 

Description

 field. 

5.

 

Click on the 

Privileges 

tab, and select the checkbox that corresponds with each privilege you 

want to assign to the user group. Most user groups should have 

Node Access

 privilege(s) 

enabled to allow them to access systems and servers. 

6.

 

Click on the 

Device/Node Policies

 tab. A policy represents a rule allowing or denying access 

to a group of nodes. 

7.

 

Click on a line item in the 

All Policies

 list (under the 

All Policies 

panel) that you wish to 

assign to the group. 

8.

 

Click 

Add

 to add the policy to the 

Selected Policies

 list. Policies in the Selected Policies list 

allow or deny access to the nodes or devices controlled by the policy.  

9.

 

To remove an assigned policy from the 

Selected Policies

 list, select the policy line item and 

click 

Remove

10.

 

Click 

OK

 to add the group. 

11.

 

Repeat steps 1 through 7 to add other groups. 

 

Create/Edit Device and Node Groups 

CC-SG uses device and node groups to control user access. Policies can be applied to specific 
device or node groups that allow or deny access to those devices or nodes specified in the group. 
For example, if you wanted to restrict user access to only UNIX ports, you would create a node 
group that included only UNIX ports. Then you would create a policy that included this node 
group and apply it to the desired user group. 

Device/node groups and associated policies can be created with the 

Guided Setup

 command. See 

CommandCenter Secure Gateway Administrator Guide

 for more information if you want to 

add more specific rules. 

 

Add Users to User Group 

You now need to add users or drag and drop an existing user to the user group that has been 
assigned a policy. These users will then be able to login to the CC-SG and have access or be 
denied access to the ports as specified in the policy. 

1.

 

Click on the 

Users

 tab and select the user group you wish to add the user to. 

2.

 

On the 

User

 menu, click 

User Manager

, and then 

Add User

. Alternatively, right-click on a 

user group and select 

Add User

. The 

Add User 

screen appears.  

3.

 

Type the user’s name in the 

Username 

field.  

4.

 

Check the 

Check Remote Authentication 

check box only if the user should be 

authenticated by an external server, such as , RADIUS, LDAP, or AD.  

Note

Checking the 

Check Remote Authentication 

box implies that a remote server is being used 

for authentication. If so, a local password is not needed and the 

New Password

 and 

Retype 

New Password 

fields are greyed out. 

5.

 

If using local authentication, type the new password into the 

New Password 

field. 

6.

 

If using local authentication, re-type password in 

Retype New Password 

field. 

7.

 

Type the user’s telephone number in the 

Telephone Number 

field, if needed. 

8.

 

Check the 

Login Enabled

 check box to authenticate against the system (if not, user cannot 

enter the system). 

 

 

 

Содержание Paragon II

Страница 1: ...Paragon II CommandCenter Integration Solutions Deployment Guide Release 1 2 Copyright 2009 Raritan Inc PSD 0D E April 2009 255 80 8003 00...

Страница 2: ...emarks are the property of their respective holders FCC Information This equipment has been tested and found to comply with the limits for a Class A digital device pursuant to Part 15 of the FCC Rules...

Страница 3: ...oducts which require Rack Mounting please follow these precautions Operation temperature in a closed rack environment may be greater than room temperature Do not exceed the rated maximum ambient tempe...

Страница 4: ......

Страница 5: ...P Reach Initial Configuration 18 Physical Connections for the IP Reach Unit s 20 A Note About IP Reach Passwords 20 UST IP Installation and Physical Connection 21 UST IP Initial Configuration 21 Chapt...

Страница 6: ...hes in PCCI 50 Stacked Paragon switches in PCCI 51 Appendix C Powering On and Changing Your PCCI Configuration53 Recommended PCCI Power Up Sequence 53 Power Cycling A PCCI Setup 53 Changing the Config...

Страница 7: ...Front and Rear Views 25 Figure 20 Paragon II System Controller Splash Screen 26 Figure 21 Paragon II System Controller Setup Screen 26 Figure 22 E1 1 CommandCenter Secure Gateway Back panel 29 Figure...

Страница 8: ......

Страница 9: ...d area represents a sample Paragon II System This configuration would allow users to log in remotely to CommandCenter Secure Gateway and provide access to all servers targets in the Paragon II System...

Страница 10: ...eature they must be set to 10Mbps half duplex 2 Paragon II Stacking S Units optional are paired or stacked to a Main Unit and extend the number of targets that can be connected In the illustration the...

Страница 11: ...up to eight base Paragon switches The IP Reach USTs and Paragon switches in the illustration could theoretically be duplicated seven times and still be administered by a single Paragon II System Contr...

Страница 12: ...4 PARAGON II COMMANDCENTER INTEGRATION SOLUTIONS DEPLOYMENT GUIDE...

Страница 13: ...mmandCenter Secure Gateway with the latest CC SG firmware Important If you are moving from CommandCenter Secure Gateway version 2 x to 3 0 or later please read the release specific instructions on the...

Страница 14: ...e firmware file in your system When you find the firmware select it and click Open The firmware name will appear in the Firmware Name field of the Firmware Manager 5 Click Close to close the Firmware...

Страница 15: ...ears when the P2SC has finished the upgrade process and rebooted However the P2SC will continue to be inaccessible for several minutes as it rediscovers and catalogs Paragon II systems in its manageme...

Страница 16: ...rade Device screen appears 5 Click on the Firmware Name drop down arrow and select the appropriate firmware from the list for your UST IP or IP Reach 6 Click OK to upgrade the device or Cancel to clos...

Страница 17: ...the FUNC button on the front panel of the associated Main Unit Use the S and T buttons to scroll through the menu until the Stacking Support item appears then press the ENT button Use the S button to...

Страница 18: ...File to bring up the Open window 12 Find the firmware loader upgrade package in the Open window and click Open to select it 13 Click Send To Paragon to update the Firmware Loader of the selected Parag...

Страница 19: ...Upgrade Device screen Performing a Partial Reset 26 When all the Paragon switches have been successfully upgraded you will need to perform a partial reset Connect a keyboard and monitor to a User Sta...

Страница 20: ...t the associated P2SC from the Device tree in CommandCenter Secure Gateway 35 On the Devices menu click Device Manager and then click Launch Admin Figure 7 The Paragon II System Controler Admin 36 Aft...

Страница 21: ...steps 2 19 in the previous section above to update the Firmware Loader and then the firmware of your base tier Paragon switches 40 Follow steps 26 33 in the previous section above to perform a partial...

Страница 22: ......

Страница 23: ...el of the P2 UMT Main Unit 3 Connect the other end of the stacking cable to the Expansion Port Out A port on the back of the Stacking Unit 4 Connect the second stacking cable to the Expansion Port In...

Страница 24: ...onding Stacking Unit ID for any connected units If there are no Stacking Units connected the LCD will display None If there are Stacking Units connected the LCD will read OK for each unit Press ESC to...

Страница 25: ...to ready them for Paragon II and CommandCenter Integration IP Reach Installation and Physical Connection 1 Connect the included AC power cord to the IP Reach Unit and plug it into an AC power outlet F...

Страница 26: ...k Configuration screen and the SPACE BAR or the or keys to toggle between available entries Press the ENTER TAB or keys when your entry on each line is complete A Name Designate a unique name for this...

Страница 27: ...ttings must enable two way communication through the default port 5000 or a non default port configured above Important The Paragon II System Controller communicates with the IP Reach units through TC...

Страница 28: ...n be connected to a user station to provide an additional path of access in your PCCI setup A Note About IP Reach Passwords When adding an IP Reach unit to a PCCI system the password for the admin acc...

Страница 29: ...SCII Settings and make sure that Wrap Lines is the only option selected 3 Connect a straight through CAT5e cable from the Paragon Port to a User Port on the Paragon II switch If the UST IP has a secon...

Страница 30: ...btain IP address automatically DHCP YES Enables dynamic IP addressing for UST IP Each time UST IP boots it requests an IP address from the local DHCP server Note that this setting can make remote acce...

Страница 31: ...e the UST IP units are associated Otherwise the P2SC unit cannot auto discover the UST IP units 5 Press Ctrl S to save entries The Main Menu will appear 6 On the Main Menu select R Restart or shutdown...

Страница 32: ......

Страница 33: ...ers Please note that each Paragon II System Paragon II System Controller Paragon switches and IP Reach must be on separate subnets P2SC Installation Figure 19 Paragon II System Controller Front and Re...

Страница 34: ...ragon II System Controller unit and the connected monitor Paragon II System Controller may take a short while to boot Upon completion the Paragon II System Controller splash screen appears followed by...

Страница 35: ...x 10 Mbps Half Duplex 100 Mbps Full Duplex or 100 Mbps Half Duplex ii Obtain IP address automatically DHCP set this to NO This assigns a fixed IP address to the Paragon II System Controller which Para...

Страница 36: ...28 PARAGON II COMMANDCENTER INTEGRATION SOLUTIONS DEPLOYMENT GUIDE...

Страница 37: ...Chapter 6 CommandCenter Secure Gateway Installation and Configuration CC SG Installation E1 Models Figure 22 E1 1 CommandCenter Secure Gateway Back panel Figure 23 E1 0 CommandCenter Secure Gateway B...

Страница 38: ...rd video and mouse cables to the corresponding ports on the rear panel of the CommandCenter Secure Gateway unit When prompted login with the username admin and password raritan to access the Diagnosti...

Страница 39: ...guide and login using the default login username and password Username admin Password raritan Verifying IP Address 1 On the Administration menu click Configuration When the Configuration Manager windo...

Страница 40: ......

Страница 41: ...ccess Paragon targets from within CommandCenter Secure Gateway 1 Launch and log on to CommandCenter Secure Gateway as an Administrator 2 Click on the Devices tab 3 On the Devices menu click Device Man...

Страница 42: ...Window a To add a new Base Unit click New When the blank line appears in the table click in the IP Address cell and type the IP address of the new Base Unit Press the TAB key on your keyboard to adva...

Страница 43: ...21 To rename your targets devices in the Device View window and make them identifiable from CommandCenter Secure Gateway first expand a Base Unit to display its channel ports 22 Right click on a chan...

Страница 44: ...tree by clicking on the corresponding checkboxes or select all of them at once by clicking on the topmost checkbox then click OK The selected ports now appear in the Nodes tab as well as the Devices...

Страница 45: ...Port Groups and Policies for those elements 1 In CC SG from the Administration menu click Guided Setup The Guided Setup screen appears 2 Click Associations and then click Create Categories in the left...

Страница 46: ...e Add User Group command to create specific user groups and assign them privileges based on the needs of your work environment Groups can help you keep your system organized Assign privileges to Group...

Страница 47: ...d in the group For example if you wanted to restrict user access to only UNIX ports you would create a node group that included only UNIX ports Then you would create a policy that included this node g...

Страница 48: ...to CC SG 10 Check the Force Password Change Periodically check box if you want this user to have to change his or her password from time to time 11 Type the expiration period for this user s password...

Страница 49: ...u click Connect and then click the interface name 3 Raritan Remote Client RRC launches in a new window 4 When you finish using RRC to manage the port on the RRC Connection menu click Exit 5 Repeat ste...

Страница 50: ...42 PARAGON II COMMANDCENTER INTEGRATION SOLUTIONS DEPLOYMENT GUIDE...

Страница 51: ...1st 2nd and 3rd P2 UMT832 8 users and 32 targets 1st 2nd and 3rd P2 UMT832S 32 additional targets 1st 2nd and 3rd P2 UMT1664 16 users and 64 targets 1st 2nd and 3rd P2 UMT1664S 64 additional targets 1...

Страница 52: ...COMMENT P2CIM AUSBDUAL Paragon II release 4 4 or later P2CIM APS2DUAL Paragon II release 4 2 or later P2CIM SER series Paragon II release 4 2 or later For the latest changes see the Compatibility Mat...

Страница 53: ...APPENDIX A P2SC COMPATIBILITY LIST 45...

Страница 54: ...ches Only Paragon II switches can be used on the base tier Paragon II switches cannot be tiered off of HW3 Paragon I switches A UST IP can be substituted for the combination of an IP Reach and UST Use...

Страница 55: ...tier a single P2 SC device can handle eight such multi tiered configurations on a given subnet Again this configuration does not need to be duplicated exactly The tiers do not need to be built linear...

Страница 56: ...iple Paragon switches with a common second tier This increases the number of simultaneous users to the first tier targets in this example more UST IP2s could be given to each base tier Paragon switch...

Страница 57: ...ar to a multi base tier a diamond configuration contains multiple paths from second tier Paragon switches to a single third tier Paragon switch A diamond configuration however starts with a single bas...

Страница 58: ...firmware HW3 Paragon I switches can be added to a PCCI configuration or existing HW3 Paragon I configurations can be used in PCCI However Paragon I switches should NOT be used to form the base tier of...

Страница 59: ...ble Units that are stacked together are considered a single unit neither tiered no multi based thus the example above is essentially a Single Paragon switch PCCI configuration with up to 16 users and...

Страница 60: ......

Страница 61: ...2nd Tier Paragon switches 3 After all upper tiered Paragon switches have been powered on power on all Base Tier Paragon switches 4 Power on all UST1s IP Reach units and USTIP units 5 Power on any Par...

Страница 62: ...you want to exit the screen without resetting e When Clear All appears on the LCD press the ESC button to perform a partial reset The channel configuration will be cleared and will be rebuilt later by...

Страница 63: ......

Страница 64: ...iday 9 a m 6 p m local time Phone 91 124 410 7881 Japan Monday Friday 9 30 a m 5 30 p m local time Phone 81 3 3523 5994 Email support japan raritan com Europe Europe Monday Friday 8 30 a m 5 p m GMT 1...

Отзывы: