XC-240 Lod Blner Appline Quik Strt Guide Revision D MAfee Network Seurity Pltform This quik strt guide explins how to quikly set up nd tivte your MAfee Network Seurity Pltform XC-240 Lod Blner. The SFP+ (Smll Form-ftor Pluggle) Gigit Ethernet fier ports re used. The SFP+ modules re undled long with your XC-240 devie. All produt doumenttion referened in this quik strt guide is found on the MAfee Servie Portl. The XC-240 front pnel 1 SFP+ 10 Gigit Ethernet Monitoring ports (16) 2 SFP+ 10 Gigit Sensor ports (8) 3 Console port (1) 4 10/100/1000 Mngement port (1) The XC-240 rer pnel 1 Power supply 1 2 Power supply 2 XC-240 Lod Blner setup overview This setion explins how to position nd le the vrious ports of your XC-240. This setion lso riefly explins how to instll the Mnger nd then dd the XC-240 to the Mnger. 1
1 Position the XC-240 Instll the XC-240 in 19-inh rk using the rk mount ers. Instll SFP+ modules in the XC-240. 2 Cle the Mngement nd Console ports Plug Ctegory 5e Ethernet le in the Mgmt (Mngement) port of XC-240. d Plug the other end of the le into network swith. Plug the RS232 RJ45 le supplied in the XC-240 ox into the Console port. Connet the other end of the Console port le diretly to COM port of the omputer or terminl server you will e using to onfigure the XC-240 (for exmple, omputer running orretly onfigured Windows Hyperterminl softwre). RJ45 to DB9 dpter hs een provided. You must onnet diretly to the onsole for initil onfigurtion. The required settings for Hyperterminl re: Bud rte: 115200 Stop Bits: 1 Numer of Bits: 8 Control Flow: None Prity: None e Plug the power le into the power inlet nd plug the other end into power soure. The XC-240 ships with stndrd U.S. power nd interntionl les. 2
3 Cle the Monitoring ports This proedure desries how to le n XC-240 to run in In-line mode. Plug the le pproprite for use with the SFP+ module into one of the Monitoring ports leled xa (for exmple, 1A). Plug nother le into the peer of the port used in 3. This port will e leled xb (for exmple, 1B). Connet the other end of eh le to the network devies tht you wnt to monitor. (For exmple, if you pln to monitor trffi etween swith nd router, onnet the le onneted to 1A to the router nd the one onneted to 1B to the swith.) For instrutions on how to le the XC-240 to run in other operting modes, see the MAfee Network Seurity Pltform XC Cluster Administrtion Guide. 4 Cle the Sensor ports This proedure desries how to onnet the M-8000XC Sensor to the XC-240 Lod Blner. Plug the fier le pproprite for use with the SFP+ module into the Sensor port of the XC-240. Connet the other end of the fier le used in into 10G monitoring port, for exmple port 1A of the M-8000XC Sensor. 3
5 Configuring the XC-240 Configure the XC-240 following the steps given elow: Log on to the XC-240 using the terminl onneted to the Console port. At the prompt, log on using the defult XC-240 usernme (dmin) nd pssword (dmin123). d e [Optionl, ut reommended]. Chnge the XC-240 pssword. At the prompt, type: user mod nme=dmin pw=<new pssword> priv=2. where <new pssword> is the new pssword. Set the XC-240 IP ddress. To onfigure n IPv4 ddress, type sysip set ipddr=<ip ddress> msk=<netmsk> gw=<gtewy>, where <ip ddress> is the IPv4 ddress for XC-240, <netmsk> is the netmsk, nd <gtewy> is the IP ddress of the gtewy. To onfigure n IPv6 ddress, type sysip inet6_set ipddr=<ip ddress> prefixlen=<prefix length>, where <ip ddress> is the IPv6 ddress for XC-240. Type sysip ommit to tivte the new IP ddress. By defult, the XC Cluster is onfigured with High Avilility support in the 60G N+1 mode. Port S8 is reserved for the peer XC-240 devie. At the prompt, type: lg show. View the numer of Sensor ports onfigured to lod lne nd the sttus of these ports, The ports re down if they re displyed in res, exmple, (s1),(s2),(s3) (s6). The ports re up if they re not displyed in res, exmple, s1,s2,s3 s6. 4
f Configure the mode of opertion for the XC-240. At the prompt, type: lg set ports. Exmple for onfigurtion in HA mode without Sensor redundny (70G N):lg set ports=s1,s2,s3,s4,s5,s6,s7 group =1 OR lg set ports=s1-s7 group=1. Exmple for onfigurtion in HA mode with Sensor redundny (60G N+1):lg set ports=s1,s2,s3,s4,s5,s6 spres=s7 group =1 OR lg set ports=s1-s6 spre=s7 group=1. While using the lg ommnd, ensure tht the Sensor ports eing onfigured mth with the Sensors onneted to the XC-240 in Step 4. To hnge the mode of opertion, see the MAfee Network Seurity Pltform XC Cluster Administrtion Guide. g Enle SNMP. The SNMP gent is disled y defult. To enle nd onfigure the SNMP gent: At the prompt, type snmp set dmin=<enle>. To dd the Mnger IP to the XC-240, t the prompt type snmp trp_dd nme=<snmp user onfigured on the NSM while dding the XC-240> uthproto=<uthentition protool> uthpss=<uthentition pssword> privproto=<privy protool> privpss=<privy pssword> ess=<rw> ip=<ip of the Mnger> port=<4169> dmin=<enle> Exmple: snmp trp_dd nme=nsmuser type=v3 ip=172.25.70.140 port=4169 uthproto=sha uthpss=dmin123 privproto=aes privpss=test123 dmin=enle ess=rw. To sve nd lod the onfigurtions, type snmp ommit. d To view the SNMP user onfigurtions, t the prompt type snmp user_show. h To exit the session, type exit. 6 Instll the Mnger softwre For detiled instrutions, refer to MAfee Network Seurity Pltform Instlltion Guide. You must hve dministrtor privileges on the trget Windows server to instll the Mnger softwre. A MySQL dtse is inluded with the Mnger nd is instlled (emedded) utomtilly on your trget Windows server during this proess. The following steps riefly explin the Mnger instlltion: Prepre the system ording to the requirements outlined in MAfee Network Seurity Pltform Instlltion Guide nd the MAfee Network Seurity Pltform Relese Notes. Close ll open pplitions. Go to the MAfee Updte Server nd log on, using the grnt numer nd pssword. 5
d e f Go to the Mnger Softwre Updtes folder nd selet the ltest Mnger softwre version ville. Downlod the.zip file to the trget Windows server nd extrt the setup file. Doule-lik Mnger_<version>_setup.exe nd follow the on-sreen prompts. 7 Strt the Mnger Clik Strt Progrms MAfee Network Seurity Mnger Network Seurity Mnger. You do not require liense file for using Mnger/Centrl Mnger version 5.1.17.2 or ove, nd 6.0.7.x or ove. 8 Add the XC-240 to the Mnger The Mnger displys the Login pge. d Log on to the Mnger. The defult Login ID is dmin nd the defult Pssword is dmin123. Clik Configure. To dd n XC-240 in the Mnger, lik Devie List Devies nd then lik New. Updte informtion in the pproprite fields nd lik Sve. 6
Repet steps 8-8d to dd n M-8000XC Sensor. To dd n M-8000XC Sensor, see the M-8000XC Sensor Quik Strt Guide. Rememer the vlues entered for the IP Address, SNMPv3 User, Authentition Pssword nd Privy Pssword should mth the ones onfigured in Step 8d. 9 Add n XC Cluster To dd n XC Cluster: To rete n XC Cluster t lest one M-8000XC Sensor nd one XC-240 Lod Blner should hve een dded. Clik Devie List XC Clusters nd then lik New. Move the dded XC-240 Lod Blner nd M-8000XC Sensor into the XC Cluster. Updte informtion in the pproprite fields nd lik Sve. For more informtion on dding the XC-240 Lod Blner, M-8000XC Sensors nd XC Clusters, see the MAfee Network Seurity Pltform XC Cluster Administrtion Guide. 7
10 Verify suessful instlltion After you hve onneted XC-240, verify tht it is funtioning orretly y heking the link LEDs for eh of the onneted ports. The link LEDs should e illuminted to indite tht the links re up. At the prompt, type: port show or lg show, to verify ll the ports re up nd stts show to verify trffi is present. 11 You're up nd running! Your XC-240 Lod Blner is tively monitoring onneted segments nd lod lning the trffi to the onfigured Sensors. Red the MAfee Network Seurity Pltform XC Cluster Administrtion Guide for n overview of the Lod Blning mehnism nd detiled usge instrutions. Clik the Detiled Help uttons in the upper-right orner of eh window in the Mnger. Red the MAfee Network Seurity Pltform M-8000XC Produt Guide nd MAfee Network Seurity Pltform M-8000XC Sensor Quik Strt Guide for detiled usge instrutions on the Sensor funtions in n XC Cluster. Hving prolems? Chek the MAfee Network Seurity Pltform XC Cluster Administrtion Guide for trouleshooting informtion. Copyright 2014 MAfee, In. www.intelseurity.om Intel nd the Intel logo re trdemrks/registered trdemrks of Intel Corportion. MAfee nd the MAfee logo re trdemrks/ registered trdemrks of MAfee, In. Other nmes nd rnds my e limed s the property of others. 8 700-3503D00