Linux Diagnostic Tool for Mcafee Appliances
Total Page:16
File Type:pdf, Size:1020Kb
Linux Diagnostic Tool for McAfee Appliances Overview This document provides information about the Linux Diagnostic Tool (LDT), including instructions for obtaining and running the LDT. The diagnostic tests are performed only if McAfee Support requests them, in situations where they suspect the appliance has encountered a problem. The LDT checks the status and integrity of any McAfee® hardware appliance based on an Intel platform. The LDT-getlogs command collects information from the hardware components. McAfee Support then uses the information to evaluate the health of the appliance. The LDT does not repair any errors, nor does it announce any conclusions. When you supply the resulting LDT log .zip file to McAfee Support, they will use the data to diagnose any problems. LDT can also provide the mechanism to update RAID and disk firmware. The LDT can be run on a live system (online) or in its own environment (offline). The online mode should only be used with the guidance of Support. The offline mode requires a reboot of the appliance, but can be run on any supported hardware appliance. • LDT-getlogs-ZIP Version X.X => online method => used on running appliance • LDT-getlogs-ISO Version X.X => offline method => used with LDT environment Using the LDT Run the LDT only as directed by McAfee Support. We recommend using a USB flash drive because you can save system and hard disk logs directly to the USB drive. You can then share the USB drive with McAfee Support. The CD saves the logs to RAM. You can view them, but you cannot copy them off the disk to share. If a CD is used, you may bring up a network interface and use SCP or FTP to transfer files off the appliance. 2 Offline method Using the LDT Bootable USB Media There are many utilities to create a bootable USB media. In this document, we use Rufus, a small utility that is an open source program licensed under the GPL. Rufus is a standalone program and does not require installation. Follow the instructions below to create an LDT bootable USB media. The LDTISO image can work directly from CDROM or USB flash drive. Any program used to copy it to a USB drive should be configured to not change the image in any way. Changing the image is not needed and may result in the LDT software not operating as expected. Note: For Linux or MacOS, you may choose UNetbootin utility: http://unetbootin.github.io/. For Command Line users, use the dd utility to burn the ISO image to a USB drive. Also: • Use sudo credentials • Use “fdisk -l” to find the USB device (i.e. /dev/sdb) • Ensure the USB device is unmounted (to unmount USB: umount /dev/sdX) • Use the command: dd bs=4M if=/path/LDT-getlogs-version.build.iso of=/dev/sdX Prerequisites • A PC running Windows 7+ or later • Rufus application • A USB flash drive with at least 2 GB of space Tasks There are four tasks to prepare for using LDT. • Download LDT • Verify LDT ISO SHA256 • Download Rufus • Create the LDT USB media To download LDT: Access the McAfee Downloads website. Log on with your Grant ID and download the LDT tool in the format LDT-getlogs-ISO Version X.X. To verify the LDT ISO SHA256: Use LDT-getlogs-ISO Version and verify the SHA256 of the ISO file downloaded based on the following instructions. For Linux: Most Linux distributions come with the sha256sum utility. 3 • Open a terminal window. • Type the following command: sha256sum [type file name with extension here] [path of the file] • You will see the sha256 sum of the ISO file. • Match it against the original value showing on the download site. For Windows 10: There are few options to verify the SHA256 file. • Download one of the Windows utilities, such as Hash Tool. • Use Windows 10 built-in command line utility: o CerUtil utility: From windows command prompt, type: certutil -hashfile "drive:\path\LDT-getlogs-ISO Version X.X" SHA256 o PowerShell - There is a command “get-Filehash” to generate the file hash to help validate the ISO file integrity. Open the PowerShell window and type: get-filehash drive:\path\LDT-getlogs – ISO Version X.X -Algorithm SHA256 . Match it against the original value showing on the download site. To download Rufus: Access the site http://rufus.akeo.ie/ and download the utility. To create the LDT USB Media: 1. Insert a flash drive. 2. Launch the Rufus program from where the downloaded file was saved. 3. Click Yes for Windows User Account Control (UAC). 4 4. Click No for the Rufus message. Note that this only appears when running Rufus for the first time. Rufus detects the drive and handles various partition schemes and file structures. 5. Ensure the correct settings are set. Keep the default settings. Then click Start. Click here to change the language Click the optical drive button to select the ISO file. 5 6. The File dialog opens. Browse to the location of LDT-getlogs-ISO Version X.X. Select the ISO file and click Open. Rufus displays the selected image at the bottom of the user interface. 6 7. Click Start. 8. Select OK when prompted with the Rufus image detection. 9. Confirm Rufus disk erase prompt by selecting OK. The LDT-getlogs-ISO Version X.X files are copied to the flash drive. This process can take several minutes. The Rufus progress bar will give you some indication of how long it will take. 7 Rufus completes the write process and silently drops-back to its default window. 8 10. When Rufus is done, close the program. 11. When complete, double-check the external drive to verify the files were copied over. 12. Safely remove hardware and eject media . From this dialog box you can click on the device you want to remove, and press “Eject”. Wait for few seconds, this might take some time depending on the PC; Windows will display a notification that it is "Safe to Remove Hardware". The USB media can then be safely removed. The LDT USB media is now ready to use. 9 Start the LDT 1. Insert the LDT USB media into the appliance. 2. If the hardware appliance is powered down, press the power button to turn it on. If the appliance is running, request a graceful reboot through the CLI window or management interface. 3. During the start of the boot process, as McAfee logo appears, press “F6” to enter the boot menu. Note: Some McAfee products prompt for the BIOS password before entering the boot menu. See the documentation for your product, at https://support.mcafee.com or https://docs.mcafee.com. 4. A list of available devices for booting the system is displayed. Select your USB device name displayed in the boot menu and click Enter. In the example below, it shows “USB Flash MemoryPMAP”. 10 5. Wait for the system to boot to McAfee LDT Linux OS. The boot process takes a few minutes. The system then displays the LDT Menu. Select L) Capture System and Disk Logs to collect the log files. 11 6. Enter any additional Information that will help with the Service request. After adding additional Information to the case, press Ctrl-D to continue The LDT compiles a zip file saved to the /logs directory on the USB drive. 7. Press Enter to return to the LDT menu. 8. Select U from the LDT menu to unmount the LDT USB media. 9. To reboot the appliance, select R from the LDT menu. 10. To power down the system, select P from the LDT menu. LDT Output LDT produces a single zip file as output, stored on the USB drive under the /logs directory. This file contains many hardware diagnostic log files and any notes you entered (notes.txt). Provide this file to McAfee Support so they can investigate hardware issues. 12 Using RMM Media Redirector The Intel® Remote Management Module (Intel® RMM) allows users to securely gain access and control servers from any machine on the network. The port location varies by platform. Intel platforms might be configured with Intel® RMM3 or Intel® RMM4 module. Make sure that you have deployed an Intel® Remote Management Module (RMM) for remote access. You must have remote access to a supported Intel® hardware appliance. Prerequisites • RMM access. To configure and enable RMM access, see the documentation for your product, at https://support.mcafee.com/ or https://docs.mcafee.com. • Client system with operating system with java enabled web browser. • Client system with Java Runtime Environment (JRE) version 8 or higher. • Client system browser must allow pop-up windows from the integrated BMC Web Console IP address. Tasks There are four tasks to prepare for using the RMM Media Redirector: • Download LDT. • Verify LDT ISO SHA256. • Update Java Security configuration by adding the Intel® RMM IP to allow access. • Configure the RMM Media Redirector. To download LDT: Access the McAfee Downloads website. Log on with your Grant ID and download the LDT tool in the format LDT-getlogs-ISO Version X.X. To verify the LDT ISO SHA256: Use LDT-getlogs-ISO Version and verify the SHA256 of the ISO file downloaded based on the following instructions. For Linux: Most Linux distributions come with the sha256sum utility. • Open a terminal window. • Type the following command: sha256sum [type file name with extension here] [path of the file] • You will see the sha256 sum of the ISO file. • Match it against the original value showing on the download site. For Windows 10: There are few options to verify the SHA256 file.