Owner's Manual for Console Servers
Total Page:16
File Type:pdf, Size:1020Kb
Owner’s Manual Console Server Management Switch Models: B096-016 / B096-032 / B096-048 Console Server with PowerAlert Model: B092-016 Console Server Models: B095-004-1E / B095-003-1E-M / B094-008-2E-M-F / B094-008-2E-V PROTECT YOUR INVESTMENT! Register your product for quicker service and ultimate peace of mind. You could also win an ISOBAR6ULTRA surge protector—a $100 value! www.tripplite.com/warranty 1111 W. 35th Street, Chicago, IL 60609 USA • www.tripplite.com/support Copyright © 2016 Tripp Lite. All rights reserved. All trademarks are the property of their respective owners. 1 FCC Information, Class A This device complies with part 15 of the FCC Rules. Operation is subject to the following two conditions: (1) This device may not cause harmful interference, and (2) this device must accept any interference received, including interference that may cause undesired operation. Note: This equipment has been tested and found to comply with the limits for a Class A digital device, pursuant to part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference when the equipment is operated in a commercial environment. This equipment generates, uses, and can radiate radio frequency energy and, if not installed and used in accordance with the instruction manual, may cause harmful interference to radio communications. Operation of this equipment in a residential area is likely to cause harmful interference in which case the user will be required to correct the interference at his own expense. The user must use shielded cables and connectors with this equipment. Any changes or modifications to this equipment not expressly approved by Tripp Lite could void the user’s authority to operate this equipment. RoHS This product is RoHS compliant. User Notice All information, documentation and specifications contained in this manual are subject to change without prior notification by the manufacturer. The manufacturer makes no representations or warranties, either expressed or implied, with respect to the contents hereof and specifically disclaims any warranties as to merchantability or fitness for any particular purpose. Any of the manufacturer's software described in this manual is sold or licensed `as is'. Should the programs prove defective following their purchase, the buyer (and not the manufacturer, its distributor, or its dealer), assumes the entire cost of all necessary servicing, repair and any incidental or consequential damages resulting from any defect in the software. The manufacturer of this system is not responsible for any radio and/or TV interference caused by unauthorized modifications to this device. It is the responsibility of the user to correct such interference. The manufacturer is not responsible for any damage incurred in the operation of this system if the correct operational voltage setting was not selected prior to operation. Please take care to follow the safety precautions below when installing and operating the Console Server: • Do not remove the metal covers. There are no operator-serviceable components inside. Opening or removing the cover may expose you to dangerous voltage which may cause fire or electric shock. Refer all service to Tripp Lite qualified personnel • To avoid electric shock the power cord protective grounding conductor must be connected through to ground • Always pull on the plug, not the cable, when disconnecting the power cord from the socket • Do not connect or disconnect the Console Server during an electrical storm • Also it is recommended you use a surge suppressor or UPS to protect the equipment from transients Table of Contents Introduction 10 Installation 14 2.1 Models 14 2.1.1 Kit components: B096-048, B096-032 and B096-016 Console Server Management Switch 14 2.1.2 Kit components: B092-016 Console Server with PowerAlert 15 2.1.3 Kit components: B095-004-1E and B095-003-1E-M Console Server 15 2.1.4 Kit components: B094-008-2E-M-F and B094-008-2E-V Console Server 16 2.2 Power Connection 17 2.2.1 Power: Console Server Management Switch 17 2.2.2 Power: Console Server with PowerAlert 17 2.2.3 Power: Console Server 17 2.3 Network Connection 17 2.4 Serial Port Connection 18 2.5 USB Port Connection 18 2.6 Rackmount Console / KVM Connection (B092-016 only) 18 Initial System Configuration 19 3.1 Management Console Connection 19 3.1.1 Connected computer set up 19 3.1.2 Browser connection 20 3.1.3 Initial B092-016 connection 21 3.2 Administrator Password 22 3.2.1 Set up new administrator 23 3.3 Network IP Address 24 3.3.1 IPv6 configuration 25 3.3.2 Dynamic DNS (DDNS) configuration 26 3.4 System Services and Service Access 27 3.4.1 Brute force protection 30 3.5 Communications Software 31 3.5.1 SDT Connector 31 3.5.2 PuTTY 31 3.5.3 SSHTerm 32 3.6 Management Network Configuration 33 3.6.1 Enable the Management LAN 33 3.6.2 Configure the DHCP server 34 3.6.3 Select Failover or broadband OOB 35 3.6.4 Bridging the network ports 35 3.6.5 Wireless LAN 36 3.6.6 Static routes 37 Serial Port, Device & User Configuration 38 4.1 Configuring Serial Ports 38 4.1.1 Common Settings 39 4.1.2 Console Server Mode 40 4.1.3 SDT Mode 44 4.1.4 Device (RPC, UPS, EMD) Mode 44 4.1.5 Terminal Server Mode 44 4.1.6 Serial Bridging Mode 45 4.1.7 Syslog 45 4.2 Add/ Edit Users 46 4.3 Authentication 48 4.4 Network Hosts 48 3 Table of Contents 4.5 Trusted Networks 49 4.6 Serial Port Cascading 50 4.6.1 Automatically generate and upload SSH keys 50 4.6.2 Manually generate and upload SSH keys 51 4.6.3 Configure the slaves and their serial ports 52 4.6.4 Managing the slaves 52 4.7 Serial Port Redirection 53 4.7.1 Install VirtualPort client 53 4.7.2 Configure the VirtualPort client 54 4.7.3 To remove a configured port 56 4.7.4 Configure the remote serial device connection 56 4.8 Managed Devices 57 4.9 IPsec VPN 58 4.9.1 Enable the VPN gateway 58 4.10 OpenVPN 60 4.10.1 Enable the OpenVPN 61 4.10.2 Configure as Server or Client 62 4.10.3 Windows OpenVPN Client and Server set up 64 4.11 PPTP VPN 67 4.11.1 Enable the PPTP VPN server 68 4.11.2 Add a PPTP user 69 4.11.3 Set up a remote PPTP client 70 4.12 IP Passthrough 71 4.12.1 Downstream router setup 71 4.12.2 IP Passthrough pre-configuration 71 4.12.3 IP Passthrough configuration 72 4.12.4 Service intercepts 72 4.12.5 IP Passthrough status 72 4.12.6 Caveats 72 Firewall, Failover & Out-of-Band 73 5.1 OoB Dial-In Access 73 5.1.1 Configure dial-in PPP 74 5.1.2 Using SDT Connector client for dial-in 75 5.1.3 Set up Windows XP/2003/Vista/7 client for dial-in 75 5.1.4 Set up earlier Windows clients for dial-in 76 5.1.5 Set up Linux clients for dial-in 76 5.2 OoB Broadband Access 77 5.3 Broadband Ethernet Failover 77 5.4 Dial-Out Access 78 5.4.1 Always-on dial-out 78 5.4.2 Dial-Out Failover 79 5.5 Firewall & Forwarding 80 5.5.1 Configuring network forwarding and IP masquerading 80 5.5.2 Configuring client devices 82 5.5.3 Port/Protocol Forwarding 83 5.5.4 Firewall Rules 84 5.6 Internal Cellular Modem Connection 85 5.6.1 Connecting to a 4G LTE carrier network 85 5.6.2 Verifying the cellular connection 86 5.6.3 Cellular modem watchdog 87 4 Table of Contents 5.7 Cellular Operation 88 5.7.1 OOB access set up 88 5.7.2 Cellular failover setup 89 5.7.3 Cellular routing 89 Secure SSH Tunneling & SDT Connector 90 6.1 Configuring for SDT Tunneling to Hosts 91 6.2 SDT Connector Configuration 92 6.2.1 SDT Connector client installation 92 6.2.2 Configuring a new gateway in the SDT Connector client 93 6.2.3 Auto-configure SDT Connector client with the user’s access privileges 94 6.2.4 Make an SDT connection through the gateway to a host 95 6.2.5 Manually adding hosts to the SDT Connector gateway 96 6.2.6 Manually adding new services to the new hosts 97 6.2.7 Adding a client program to be started for the new service 99 6.2.8 Dial-in configuration 100 6.3 SDT Connector to Management Console 101 6.4 SDT Connector - Telnet or SSH Serial Device Connection 102 6.5 SDT Connector OoB Connection 103 6.6 Importing (and Exporting) Preferences 104 6.7 SDT Connector Public Key Authentication 105 6.8 Setting up SDT for Remote Desktop Access 106 6.8.1 Enable Remote Desktop on the target Windows computer to be accessed 106 6.8.2 Configure the Remote Desktop Connection client 107 6.9 SDT SSH Tunnel for VNC 110 6.9.1 Install and configure the VNC Server on the computer to be accessed 110 6.9.2 Install, configure and connect the VNC Viewer 111 6.10 SDT IP Connection to Hosts 113 6.10.1 Establish a PPP connection between the host COM port and Console Server 113 6.10.2 Set up SDT Serial Ports on Console Server 116 6.10.3 Set up SDT Connector to SSH port forward over the Console Server Serial Port 116 6.11 SSH Tunneling using other SSH clients (e.g.