Hyper-V Installation Guide. Version 8.0.0



Similar documents
Internet Redundancy How To. Version 8.0.0

axsguard Gatekeeper Internet Redundancy How To v1.2

DIGIPASS as a Service. Google Apps Integration

IPS How To. Version 8.0.0

axsguard Gatekeeper Open VPN How To v1.4

MIGRATION GUIDE. Authentication Server

IDENTIKEY Appliance Administrator Guide

axsguard Gatekeeper System Administration How To v1.7

IPSec XAUTH How To. Version 8.0.0

INTEGRATION GUIDE. DIGIPASS Authentication for F5 FirePass

INTEGRATION GUIDE. DIGIPASS Authentication for Google Apps using IDENTIKEY Federation Server

axsguard Gatekeeper IPsec XAUTH How To v1.6

Reverse Proxy How To. Version 8.0.0

INTEGRATION GUIDE. DIGIPASS Authentication for Juniper SSL-VPN

INTEGRATION GUIDE. DIGIPASS Authentication for Office 365 using IDENTIKEY Authentication Server with Basic Web Filter

INTEGRATION GUIDE. DIGIPASS Authentication for VMware Horizon Workspace

DIGIPASS Authentication for GajShield GS Series

INTEGRATION GUIDE. IDENTIKEY Federation Server for Juniper SSL-VPN

INTEGRATION GUIDE. DIGIPASS Authentication for Salesforce using IDENTIKEY Federation Server

INTEGRATION GUIDE. DIGIPASS Authentication for Cisco ASA 5505

DIGIPASS Authentication for Citrix Access Gateway VPN Connections

DIGIPASS Authentication for Windows Logon Getting Started Guide 1.1

PHD Virtual Backup for Hyper-V

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication

Identikey Server Getting Started Guide 3.1

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access

Upgrade Guide. CA Application Delivery Analysis 10.1

Citrix XenServer Workload Balancing Quick Start. Published February Edition

DIGIPASS Authentication for Cisco ASA 5500 Series

Check Point FDE integration with Digipass Key devices

Interworks. Interworks Cloud Platform Installation Guide

INTEGRATION GUIDE. DIGIPASS Authentication for SimpleSAMLphp using IDENTIKEY Federation Server

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Installation Guide

INTEGRATION GUIDE. General Radius Config

DIGIPASS Authentication for Check Point Connectra

INTEGRATION GUIDE. DIGIPASS Authentication for Citrix NetScaler (with AGEE)

OVERVIEW. DIGIPASS Authentication for Office 365

DIGIPASS as a Service. Product Guide

IDENTIKEY Server Windows Installation Guide 3.2

XenClient Enterprise Synchronizer Installation Guide

DIGIPASS Authentication for SonicWALL SSL-VPN

Hyper-V Installation Guide for Snare Server

axsguard Gatekeeper Reverse Proxy How To 1.5

formerly Help Desk Authority Upgrade Guide

DIGIPASS Authentication for Check Point Security Gateways

INTEGRATION GUIDE. DIGIPASS Authentication for Microsoft Exchange ActiveSync 2007

DameWare Server. Administrator Guide

HOTPin Integration Guide: Microsoft Office 365 with Active Directory Federated Services

Identikey Server Windows Installation Guide 3.1

Installing and Configuring vcenter Multi-Hypervisor Manager

DIGIPASS CertiID. Getting Started 3.1.0

SC-T35/SC-T45/SC-T46/SC-T47 ViewSonic Device Manager User Guide

Foglight. Foglight for Virtualization, Free Edition Installation and Configuration Guide

How to Test Out Backup & Replication 6.5 for Hyper-V

Secure your business DIGIPASS BY VASCO. The world s leading software company specializing in Internet Security

DIGIPASS Authentication for Sonicwall Aventail SSL VPN

EMC Data Domain Management Center

Virtual Web Appliance Setup Guide

DIGIPASS Authentication for Windows Logon Product Guide 1.1

Radius Integration Guide Version 9

Deploying Microsoft RemoteFX on a Single Remote Desktop Virtualization Host Server Step-by-Step Guide

Digipass Plug-In for IAS. IAS Plug-In IAS. Microsoft's Internet Authentication Service. Getting Started

Dell One Identity Cloud Access Manager Installation Guide

Netwrix Auditor. Virtual Appliance Deployment Guide. Version: 8.0 8/1/2016

Sharp Remote Device Manager (SRDM) Server Software Setup Guide

DIGIPASS Authentication for Juniper ScreenOS

GRAVITYZONE HERE. Deployment Guide VLE Environment

SolarWinds Migrating SolarWinds NPM Technical Reference

DIGIPASS Pack for Citrix on WI 4.5 does not detect a login attempt. Creation date: 28/02/2008 Last Review: 04/03/2008 Revision number: 2

RealPresence Platform Director

Dell Statistica Statistica Enterprise Installation Instructions

SOFTWARE LICENSE LIMITED WARRANTY

Arcserve Cloud. Arcserve Cloud Getting Started Guide

Quick Start Guide. for Installing vnios Software on. VMware Platforms

Virtual Managment Appliance Setup Guide

HOTPin Integration Guide: Google Apps with Active Directory Federated Services

RSA Authentication Manager 8.1 Virtual Appliance Getting Started

IDENTIKEY Server Windows Installation Guide 3.1

Installing and Using the vnios Trial

SafeNet Authentication Manager Express. Upgrade Instructions All versions

Deploying Personal Virtual Desktops by Using RemoteApp and Desktop Connection Step-by-Step Guide

LifeSize Transit Virtual Appliance Installation Guide June 2011

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and October 2013

Integrated Citrix Servers

Dell One Identity Cloud Access Manager How to Configure for High Availability

Setting Up a Unisphere Management Station for the VNX Series P/N Revision A01 January 5, 2010

Acronis Backup & Recovery 11.5 Quick Start Guide

Clearswift SECURE Exchange Gateway Installation & Setup Guide. Version 1.0

axsguard Gatekeeper Command Line Interface How To v1.6

Application Note. Intelligent Application Gateway with SA server using AD password and OTP

VERITAS Backup Exec 9.1 for Windows Servers Quick Installation Guide

Virtual Appliance Setup Guide

Acronis and Acronis Secure Zone are registered trademarks of Acronis International GmbH.

Application Note. Citrix Presentation Server through a Citrix Web Interface with OTP only

Symantec Backup Exec 2010 R2. Quick Installation Guide

Foglight. Foglight for Virtualization, Enterprise Edition 7.2. Virtual Appliance Installation and Setup Guide

efolder BDR for Veeam Cloud Connection Guide

Transcription:

Hyper-V Installation Guide Version 8.0.0

Table of Contents 1. Introduction... 1 1.1. About this Document... 1 1.2. Documentation and Training... 1 1.3. About the AXS GUARD... 1 1.3.1. Introduction... 1 1.3.2. Spare Units... 2 1.3.3. Licensed Units... 2 1.3.4. Configuration Wizards... 2 1.4. About VASCO... 2 2. Getting Started... 3 2.1. Prerequisites and Requirements... 3 2.2. Creating a new VM... 3 2.3. Adding Network Adapters... 5 3. Installing the AXS GUARD OS... 7 3.1. Starting Up Your Appliance... 7 3.2. Partitioning the Hard Drive... 7 3.3. Umounting the Installation ISO... 7 3.4. Network Configuration... 8 3.5. Accessing the Configuration Tool... 9 4. Troubleshooting... 10 5. Support... 11 5.1. If you encounter a problem... 11 5.2. RMA Procedures for Replacement... 11 5.2.1. Information needed by VASCO Support... 11 5.2.2. How to request an RMA Number... 11 Alphabetical Index... 13 VASCO Data Security 2014 ii

VASCO Products VASCO Data Security, Inc. and/or VASCO Data Security International GmbH are referred to in this document as VASCO. VASCO Products comprise Hardware, Software, Services and Documentation. This document addresses potential and existing VASCO customers and has been provided to you and your organization for the sole purpose of helping you to use and evaluate VASCO Products. As such, it does not constitute a license to use VASCO Software or a contractual agreement to use VASCO Products. Disclaimer of Warranties and Limitations of Liabilities VASCO Products are provided as is without warranty or conditions of any kind, whether implied, statutory, or related to trade use or dealership, including but not limited to implied warranties of satisfactory quality, merchantability, title, non-infringement or fitness for a particular purpose. VASCO, VASCO DISTRIBUTORS, RESELLERS AND SUPPLIERS HAVE NO LIABILITY UNDER ANY CIRCUMSTANCES FOR ANY LOSS, DAMAGE OR EXPENSE INCURRED BY YOU, YOUR ORGANIZATION OR ANY THIRD PARTY (INCLUDING, WITHOUT LIMITATION, DAMAGES FOR LOSS OF PROFITS, BUSINESS INTERRUPTION OR LOSS OF DATA) ARISING DIRECTLY OR INDIRECTLY FROM THE USE, OR INABILITY TO USE VASCO SOFTWARE, HARDWARE, SERVICES OR DOCUMENTATION, REGARDLESS OF THE CAUSE OF THE LOSS, INCLUDING NEGLIGENCE, EVEN IF VASCO HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES, OR IF THEY WERE FORESEEABLE. OUR MAXIMUM AGGREGATE LIABILITY TO YOU, AND THAT OF OUR DISTRIBUTORS, RESELLERS AND SUPPLIERS SHALL NOT EXCEED THE AMOUNT PAID BY YOU FOR THE PRODUCT. THE LIMITATIONS IN THIS SECTION SHALL APPLY WHETHER OR NOT THE ALLEGED BREACH OR DEFAULT IS A BREACH OF A FUNDAMENTAL CONDITION OR TERM, OR A FUNDAMENTAL BREACH. THIS SECTION WILL NOT APPLY ONLY WHEN AND TO THE EXTENT THAT APPLICABLE LAW SPECIFICALLY REQUIRES LIABILITY DESPITE THE FOREGOING EXCLUSIONS AND LIMITATIONS. Intellectual Property and Copyright VASCO Products contain proprietary and confidential information. VASCO Data Security, Inc. and/or VASCO Data Security International GmbH own or are licensed under all title, rights and interest in VASCO Products, updates and upgrades thereof, including copyrights, patent rights, trade secret rights, mask work rights, database rights and all other intellectual and industrial property rights. No part of these Products may be transferred, disclosed, reproduced or transmitted in any form or by any means, electronic, mechanical or otherwise, for any purpose, except as expressly permitted by VASCO or its authorized licensee in writing. This document is protected under US and international copyright law as an unpublished work of authorship. No part of it may be transferred, disclosed, reproduced or transmitted in any form or by any means, electronic, mechanical or otherwise, for any purpose, except as expressly permitted in writing by VASCO or its authorized licensee. VASCO Trademarks VASCO, VACMAN, IDENTIKEY, axsguard, AXS GUARD, GATEKEEPER, DIGIPASS, DIGIPASS as a Service, MYDIGIPASS.COM and the logo are registered or unregistered trademarks of VASCO Data Security, Inc. and/or VASCO Data Security International GmbH in the U.S. and other countries. Other company brand or product names or other designations, denominations, labels and/ or other tags, titles, as well as all URLs (Internet addresses) linked to such designations or communications (irrespective of whether protected by intellectual property law or not), mentioned in VASCO Products may be the trademarks or registered trademarks or be part of any other entitlement of their respective owners. Other Trademarks Citrix and XenServer are trademarks or registered trademarks of Citrix Systems, Inc. VMware and vsphere are registered trademarks or trademarks of VMware, Inc. Hyper-V is a registered trademark of Microsoft Corporation. Copyright 2014 VASCO Data Security, VASCO Data Security International GmbH. All rights reserved. VASCO Data Security 2014 iii

Chapter 1. Introduction 1.1. About this Document This document has been written for AXS GUARD version 8.0.0 and is based on changes and features that have been implemented since version 7.7.3. This document was last updated on 21 Nov 2014. This manual is intended for system administrators. It explains how to install the AXS GUARD virtual appliance using the Hyper-V Manager. 1.2. Documentation and Training A complete, searchable documentation set is available in HTML and the Adobe Portable Document Format (PDF) on http://documentation.axsguard.net/manuals/gatekeeper/8.0.0/. You can also access this documentation by clicking on the Documentation button in the appliance s web-based administrator tool. Documents in the set of the AXS GUARD documentation include: The AXS GUARD Installation Guide, where we explain how to set up an AXS GUARD appliance from scratch. The AXS GUARD System Administration How To, where we explain how to administer and maintain the appliance, e.g. how to schedule backups, install upgrade packages and how to configure various network components. Other manuals, where we provide detailed information on how to configure each of the available features, for example: AXS GUARD Authentication services AXS GUARD Virtual appliances AXS GUARD Firewall rules and policies AXS GUARD Single Sign-On for Firewall and Web Access AXS GUARD VPN solutions AXS GUARD Reverse Proxy AXS GUARD Directory Services (LDAP Sync) Other resources are also available, including: Context-sensitive help, via the web-based AXS GUARD administrator tool (the Help button). Training courses which cover each of the features in detail. These courses are organized on demand and address all levels of expertise. Please see http://www.vasco.com for further information. 1.3. About the AXS GUARD 1.3.1. Introduction The AXS GUARD is an authentication appliance, intended for small and medium sized enterprises. In addition to strong authentication, the AXS GUARD has the potential to manage all of your Internet security needs. Its modular design means that optional features can be purchased at any time to support, for example, e-mail and Web access control. The AXS GUARD can easily be integrated into existing IT infrastructures as a standalone authentication appliance or as a gateway providing both authentication services and Internet Security. Authentication and other features such as firewall, e-mail and Web access, are managed by security policies, which implement a combination of rules, for example, whether a user must use a DIGIPASS One-Time VASCO Data Security 2014 1

Chapter 1. Introduction Password in combination with a static password for authentication. Security Policies are applied to specific users or groups of users and can also be applied to specific computers and the entire system. 1.3.2. Spare Units A Spare Unit is an unlicensed appliance, with limited configuration possibilities and allows you to swiftly replace a defective appliance. It can also be licensed as a new appliance. In fact, all appliances can be considered spare units until they are licensed. Restoring to a Spare Unit is restricted to: the same hardware version (e.g. AG-3XXX, AG-5XXX or AG7XXX) as the unit being replaced. the same software version as the appliance being replaced (or a higher version on which data migration is supported; please contact VASCO support (support@vasco.com) for guidance. Once a backup is restored on a Spare Unit, full functionality is available. The configuration tool of the appliance can then be accessed by any user with administrative privileges (see the AXS GUARD System Administration How To.) The license from the backup is also restored on the Spare Unit. However, an appliance with a restored license only remains operational for a grace period of 30 days, during which the System Administrator needs to acquire a new license. If a new license has not been issued after this grace period, all services on the appliance will be stopped. Only the Administrator Tool will remain accessible. Contact VASCO support (support@vasco.com) to release the restored license of the original appliance. To relicense the appliance, follow the same procedure as used during first-time licensing. 1.3.3. Licensed Units With a licensed appliance, a user with full administrative privileges has access to all the configuration options on the AXS GUARD. Use the sysadmin account to create a user with administrative privileges. Since the sysadmin user can create new administrators, you should change the default password of this account when you log in to the appliance for the first time. Licensing and accessing a fully operational in-service appliance requires the following steps: 1. Logging on to the AXS GUARD as the default sysadmin user and changing the sysadmin password 2. Creating a new user with full administration rights, which is required to configure the AXS GUARD 3. Licensing the appliance 1.3.4. Configuration Wizards Wizards are available for easy configuration. 1.4. About VASCO VASCO is a world leader in strong authentication and e-signature solutions, specializing in online accounts, identities and transactions. As a global software company, VASCO serves a customer base of approximately 10,000 companies in over 100 countries, including approximately 1,500 international financial institutions. In addition to the financial sector, VASCO s technologies secure sensitive information and transactions for the enterprise security, e-commerce and e-government industries. For further information, please visit http://www.vasco.com. VASCO Data Security 2014 2

Chapter 2. Getting Started 2.1. Prerequisites and Requirements You must enable the Hyper-V Manager on your Windows server. See your Microsoft documentation for instructions. VM Requirements System memory: assign at least 512 MB. More is recommended. Only 1 HDD is allowed with a capacity of at least 40 GB. At least 1 NIC. Up to 8 NICs are supported. System Clock The system clock of the host operating system must be accurate and preferably synchronized with a time server in order to correctly compute one-time passwords. Also see the troubleshooting section at the end of this manual. 2.2. Creating a new VM 1. Start Hyper-V Manager. 2. Under Actions, click New > Virtual Machine. Figure 2.1. New Virtual Machine 3. This will start the new virtual machine wizard. Follow the steps as indicated. Enter a name for your virtual appliance, e.g. AXS GUARD. Change the default location of the machine (optional) and click next. VASCO Data Security 2014 3

Chapter 2. Getting Started Figure 2.2. Name and Location 4. Specify the amount of memory that must be allocated for the new virtual machine. 512 MB is the required minimum. Figure 2.3. Memory to be Allocated 5. Select the appropriate virtual switch and click next. Figure 2.4. Network Connection Settings 6. Create a new virtual hard disk. 40 GB is the required minimum. VASCO Data Security 2014 4

Chapter 2. Getting Started Figure 2.5. Creating a new Hard Disk 7. Select the AXS GUARD ISO file as the installation source. Figure 2.6. Selecting the Installation Source 8. You will be shown an installation summary. Go back if you need to adjust your settings or click finish to create the virtual machine. 2.3. Adding Network Adapters 1. Right-click on the virtual machine you have created and select "settings" to add the amount of required network adapters. Figure 2.7. VM Settings 2. Click on "add hardware" 3. Select "network adapter" 4. Click "add" VASCO Data Security 2014 5

Chapter 2. Getting Started Figure 2.8. Adding Network Adapters 3. Connect the new network adapter to the appropriate virtual switch and apply your settings. Figure 2.9. Selecting the Virtual Switch Repeat the procedure to add more network adapters. VASCO Data Security 2014 6

Chapter 3. Installing the AXS GUARD OS 3.1. Starting Up Your Appliance 1. Right-click on your appliance. 2. Select "start". Figure 3.1. Starting Up 3.2. Partitioning the Hard Drive 1. When starting up for the first time, the system will ask you to partition your hard drive. Simply enter yes. 2. After partitioning the appliance s hard drive, the software packages will be installed automatically. Figure 3.2. Partitioning the System HDD Please be patient. Do not turn off your virtual appliance while the hard drive is being partitioned. The installation of the packages takes a while. The machine will halt when the installation is finished. 3.3. Umounting the Installation ISO As soon as the machine halts, you must unmount the AXS GUARD ISO file to prevent it from loading when your reboot. VASCO Data Security 2014 7

Chapter 3. Installing the AXS GUARD OS 1. Right-click and select "Settings". Figure 3.3. Unmounting the Installation ISO 2. Select "DVD drive". 3. Specify "none" as the media to use with your virtual DVD drive and apply. Figure 3.4. Unmounting the Installation ISO 4. Reboot the VM and configure the network for remote management. Figure 3.5. Restarting your VM 3.4. Network Configuration The factory default LAN IP of the appliance is 192.168.250.254/24. 1. Press Alt F2 to go to a console. VASCO Data Security 2014 8

Chapter 3. Installing the AXS GUARD OS 2. Log in with the following credentials: User: sysadmin Pass: sysadmin 3. Select Interfaces and configure your network settings as explained in the AXS GUARD CLI How To. Figure 3.6. Network Settings You must reboot the appliance after changing your network settings. 3.5. Accessing the Configuration Tool 1. Start your favorite browser 2. Enter the following in the URL field: https://appliance_lan_ip:82, where the LAN IP is the one as configured in Section 3.4, Network Configuration. 3. Accept the self-signed certificate 4. Log in with the following credentials: User: sysadmin Pass: sysadmin Figure 3.7. AXS GUARD Login Screen 5. Follow the instructions in the System Installation Guide and the other documentation sources listed in the indroduction to further configure your appliance. VASCO Data Security 2014 9

Chapter 4. Troubleshooting Time Synchronization in Hyper-V Time synchronization functions pretty simply in Hyper-V, but there are a few scenarios where you may want to modify this behavior. Any virtual machine with integration services, such as the AXS GUARD Virtual Appliance will, by default, synchronize its clock with that of the host operating system it is running on. This functionality can be disabled by viewing the properties of a virtual machine, navigating to the Integration Services section, and unchecking the Time Synchronization box. Hyper-V Time Synchronization Blog There are multiple problems that exist around keeping time inside of virtual machines. Hyper-V tackles these problems in different ways. Visit http://blogs.msdn.com/b/virtual_pc_guy/archive/2010/11/19/timesynchronization-in-hyper-v.aspx for additional information. VASCO Data Security 2014 10

Chapter 5. Support 5.1. If you encounter a problem If you encounter a problem with a VASCO product, follow the steps below: 1. Check the troubleshooting section of the feature-specific manual. 2. Check the knowledge base for information on known issues, i.e. http://www.vasco.com/support. 3. Check the white papers section on http://documentation.axsguard.net/manuals/gatekeeper/8.0.0/ for information about special configurations. 4. If no solution is available in any of the above sources, contact your VASCO supplier. For additional information about support capabilities, visit: http://www.vasco.com/support/ support_services/types_of_customes.aspx 5.2. RMA Procedures for Replacement 5.2.1. Information needed by VASCO Support Prior to contacting VASCO Support, we kindly ask you to collect the information below. This will allow our services to save time and ensure a swift replacement of the defective unit. Customer s Name / Company Name Serial number of the defective AXS GUARD License number of the defective AXS GUARD Reseller s Name Serial number of the spare unit License number of the spare unit Return delivery address for the spare unit 5.2.2. How to request an RMA Number If your AXS GUARD appliance has a hardware defect and you have collected all the information listed above, contact the VASCO support department either by phone or by e-mail to request an RMA number. Once your request has been received by VASCO, it will be carefully examined by our support engineers before an RMA number is assigned. Please note that replacement requests must have a valid RMA number before they can be processed by our production facility. VASCO Support Phone: (+32) 2-609-9770 VASCO Support E-mail: support@vasco.com VASCO Data Security 2014 11

List of Figures 2.1. New Virtual Machine... 3 2.2. Name and Location... 4 2.3. Memory to be Allocated... 4 2.4. Network Connection Settings... 4 2.5. Creating a new Hard Disk... 5 2.6. Selecting the Installation Source... 5 2.7. VM Settings... 5 2.8. Adding Network Adapters... 6 2.9. Selecting the Virtual Switch... 6 3.1. Starting Up... 7 3.2. Partitioning the System HDD... 7 3.3. Unmounting the Installation ISO... 8 3.4. Unmounting the Installation ISO... 8 3.5. Restarting your VM... 8 3.6. Network Settings... 9 3.7. AXS GUARD Login Screen... 9 VASCO Data Security 2014 xii

Alphabetical Index A AXS GUARD, 1 D Documentation, 1 L Licensed appliance, 2 R RMA, 11 S Spare unit, 2 Support, 11