©2002, David K. Z. Harris1Pg. 1© 2002 David K. Z. Harris Console Servers (T9)Getting Up To SpeedWith Console Servicesversion 1.6David K. Z. Harriszonk
©2002, David K. Z. Harris10Pg. 10© 2002 David K. Z. Harris Who are the vendors?Ø Many players are still in the game² Cisco, Cyclades, Digi, LantronixØ
©2002, David K. Z. Harris11Pg. 11© 2002 David K. Z. Harris New or old? New or used?Ø Do you need support?Ø Do you need software?Ø Are you trying to ex
©2002, David K. Z. Harris12Pg. 12© 2002 David K. Z. Harris Evaluating the HardwareØ Cost per port is just one metric² Wiring, adapters, patch panelsØ
©2002, David K. Z. Harris13Pg. 13© 2002 David K. Z. Harris Is Serial BREAK a problem?Ø Serial BREAK can halt serversØ The answer varies, site to siteØ
©2002, David K. Z. Harris14Pg. 14© 2002 David K. Z. Harris Connecting Serial DevicesØ Most Console Server hardware vendors don’t have a wide variety o
©2002, David K. Z. Harris15Pg. 15© 2002 David K. Z. Harris Basic Architectures (#1)Ø Basic Reverse TCP sessions² CS = console server² CC = console cli
©2002, David K. Z. Harris16Pg. 16© 2002 David K. Z. Harris Simple InstallationsØ Simple Console Servers² One, or many, around the network² Clients acc
©2002, David K. Z. Harris17Pg. 17© 2002 David K. Z. Harris Think About SecurityØ Do you have a security policy that covers remote access to consoles?Ø
©2002, David K. Z. Harris18Pg. 18© 2002 David K. Z. Harris Security ConcernsØ Which network will you connect your console server(s) to?Ø Do you have a
©2002, David K. Z. Harris19Pg. 19© 2002 David K. Z. Harris Anonymous BioTechØ Integrity of log data was more important than access rights.Ø A secondar
©2002, David K. Z. Harris2Pg. 2© 2002 David K. Z. Harris About BigBand NetworksBigBand Networks makes Digital Video grooming hardware for Cable and Sa
©2002, David K. Z. Harris20Pg. 20© 2002 David K. Z. Harris Console Server ApplicationsØ Commercial Applications² Aurora Technology• Control Tower² ASP
©2002, David K. Z. Harris21Pg. 21© 2002 David K. Z. Harris Open Source ApplicationsØ Low-cost, or no-cost² Software is free, but the host?² Serial Int
©2002, David K. Z. Harris22Pg. 22© 2002 David K. Z. Harris Console Server CostsØ Software can be freeØ Can run on an existing machineØ Security policy
©2002, David K. Z. Harris23Pg. 23© 2002 David K. Z. Harris Advanced Architectures (#2)Ø Addressing Security Concerns² Add a management Network² Put co
©2002, David K. Z. Harris24Pg. 24© 2002 David K. Z. Harris Advanced Architectures (#3)Ø Distributed console servers² One master configuration file² Cl
©2002, David K. Z. Harris25Pg. 25© 2002 David K. Z. Harris www.conserver.comØ Latest codeØ Pointers to FAQ and mailing listsThe Conserver.com website
©2002, David K. Z. Harris26Pg. 26© 2002 David K. Z. Harris Conserver BackgroundØ Presented at LISA in 1990² Tom Fine – Ohio State UniversityØ Identica
©2002, David K. Z. Harris27Pg. 27© 2002 David K. Z. Harris Latest Features (in 2001-2)Ø Always check the ‘changes’ file² http://www.conserver.com/CHAN
©2002, David K. Z. Harris28Pg. 28© 2002 David K. Z. Harris Your Conserver Host ShouldØ Be “stand-alone”² No boot dependencies, NFS mounts² Should be a
©2002, David K. Z. Harris29Pg. 29© 2002 David K. Z. Harris More Server FeaturesØ Support for distributed servers² Servers redirect clients automatical
©2002, David K. Z. Harris3Pg. 3© 2002 David K. Z. Harris Pertinent Job History Ø Network Equipment Technologies ² (Comdesign, Bridge Communications)Ø
©2002, David K. Z. Harris30Pg. 30© 2002 David K. Z. Harris Client FeaturesØ Status information² Users: who, what, when, idle² Consoles: up/down, locat
©2002, David K. Z. Harris31Pg. 31© 2002 David K. Z. Harris More Client FeaturesØ One-write, many-read² Force read/write mode² Control goes into a stac
©2002, David K. Z. Harris32Pg. 32© 2002 David K. Z. Harris Where To Get ConserverØ Download the tar file² http://www.conserver.com/² ftp://ftp.conserv
©2002, David K. Z. Harris33Pg. 33© 2002 David K. Z. Harris Conserver DistributionCHANGES INSTALLLICENSE READMEFAQ TODOautologin/ con
©2002, David K. Z. Harris34Pg. 34© 2002 David K. Z. Harris The Important DocumentsØ The INSTALL fileØ The CHANGES fileØ The Man Pages² console(1)² con
©2002, David K. Z. Harris35Pg. 35© 2002 David K. Z. Harris Easy Default InstallationØ Uses auto-configuration² Detects/reports system settingsØ Custom
©2002, David K. Z. Harris36Pg. 36© 2002 David K. Z. Harris Recommended InstallationØ If you have a build process, use it…Ø Create /etc/conserver direc
©2002, David K. Z. Harris37Pg. 37© 2002 David K. Z. Harris conserver.cf console entriesØ The console.cf [name] entries…² Conserver clients connect to
©2002, David K. Z. Harris38Pg. 38© 2002 David K. Z. Harris Distributed ConserversØ One ‘Master’ conserver.cf file² Refers to all available consoles² A
©2002, David K. Z. Harris39Pg. 39© 2002 David K. Z. Harris WebTV/MSNTVØ Three data centers (distributed)² Dedicated management networkØ 2000+ console
©2002, David K. Z. Harris4Pg. 4© 2002 David K. Z. Harris What We’ll Cover TodayØ Overview of Hardware² Terminal and Console Servers² Vendors, sources,
©2002, David K. Z. Harris40Pg. 40© 2002 David K. Z. Harris conserver.cf ACL entriesØ Access Control Lists² Access granted/rejected on a ‘first-match’
©2002, David K. Z. Harris41Pg. 41© 2002 David K. Z. Harris Single Conserver ExampleØ conserver.cf fileLOGDIR=/var/consoleh1:!ts1:2001:&:1hh2:!ts1:
©2002, David K. Z. Harris42Pg. 42© 2002 David K. Z. Harris Multiple Conserver ExampleØ One conserver.cf file and one conserver.passwd file for all con
©2002, David K. Z. Harris43Pg. 43© 2002 David K. Z. Harris Multiple Conserver example #2Ø Same Domains on each LAN?² You need to do a bit of extra wor
©2002, David K. Z. Harris44Pg. 44© 2002 David K. Z. Harris Client-Server InteractionØ Finding the right server² Client has a default master² Override
©2002, David K. Z. Harris45Pg. 45© 2002 David K. Z. Harris SynopsysØ Multiple distributed data centersØ 35+ field officesØ Field sites host a Conserve
©2002, David K. Z. Harris46Pg. 46© 2002 David K. Z. Harris Synopsys Basic Field OfficeØ WAN for main trafficØ PSTN (ISDN) for field dialup² (Public Sw
©2002, David K. Z. Harris47Pg. 47© 2002 David K. Z. Harris Starting ConserverØ Conserver flags² -C : Configuration file override² -d : Become a daemon
©2002, David K. Z. Harris48Pg. 48© 2002 David K. Z. Harris Stopping ConserverØ Signaling conserver² “console –q” command² SIGTERM to master conserver
©2002, David K. Z. Harris49Pg. 49© 2002 David K. Z. Harris How To Test ItØ Deploy your terminal servers² Connect hosts² Check them with reverse-telnet
©2002, David K. Z. Harris5Pg. 5© 2002 David K. Z. Harris Real World ExamplesThere are many interesting sites and applications for Conserver. During th
©2002, David K. Z. Harris50Pg. 50© 2002 David K. Z. Harris Client CommandsØ The default escape sequence is:Ø [CTRL]-[e] then [c] then:² ? : brings up
©2002, David K. Z. Harris51Pg. 51© 2002 David K. Z. Harris Updating Conserver FilesØ When do I need to restart it?Ø Modify conserver.cf?² Send SIGHUPØ
©2002, David K. Z. Harris52Pg. 52© 2002 David K. Z. Harris Time SynchronizationØ Important for logging² backup and file sharing tooØ Comparing logs fr
©2002, David K. Z. Harris53Pg. 53© 2002 David K. Z. Harris TellmeØ Two main data centersØ 1700+ consolesØ Secure access to each centerØ Not distribute
©2002, David K. Z. Harris54Pg. 54© 2002 David K. Z. Harris Other sites?Ø Who wants to give a quick summary of their deployment?Ø What are the importan
©2002, David K. Z. Harris55Pg. 55© 2002 David K. Z. Harris Operational Best Practices #1Ø Add hostnames before connecting the hosts² Newer versions al
©2002, David K. Z. Harris56Pg. 56© 2002 David K. Z. Harris Operational Best Practices #2Ø Mentoring² One person can control a session (read-write), bu
©2002, David K. Z. Harris57Pg. 57© 2002 David K. Z. Harris Operational Best Practices #3Ø Logging useful information² Syslog can capture similar types
©2002, David K. Z. Harris58Pg. 58© 2002 David K. Z. Harris Best Practices #3, cont’d.Ø Turn on timestamps² Conserver can insert timestamps for gear th
©2002, David K. Z. Harris59Pg. 59© 2002 David K. Z. Harris Operational Best Practices #4Ø Proactive monitoring² You can create your own scripts or use
©2002, David K. Z. Harris6Pg. 6© 2002 David K. Z. Harris Terminal Server ReviewØ How terminal servers provide remote access to consoles² Reverse Telne
©2002, David K. Z. Harris60Pg. 60© 2002 David K. Z. Harris Operational Best Practices #5Ø Forensics data² When a machine crashes, your conserver log b
©2002, David K. Z. Harris61Pg. 61© 2002 David K. Z. Harris Operational Best Practices #6Ø Hostname Usage² Conserver host(s) should have names other th
©2002, David K. Z. Harris62Pg. 62© 2002 David K. Z. Harris Wrap-upØ Did we cover everything?² Vendors, features, sources² Conserver information² Best
©2002, David K. Z. Harris63Pg. 63© 2002 David K. Z. Harris Suggested ReadingØ Aurora Technologies² http://www.auroratech.com/guide_request/guide-form.
©2002, David K. Z. Harris64Pg. 64© 2002 David K. Z. Harris Web LinksØ Stokely Consulting² http://www.stokely.comØ Conserver.Com² http://www.conserver.
©2002, David K. Z. Harris65Pg. 65© 2002 David K. Z. Harris Vendor LinksØ Systems² The 2600 and 3600 series.² Use the NM-32A 32-port modules.² Americab
©2002, David K. Z. Harris66Pg. 66© 2002 David K. Z. Harris Vendor Links, cont’d.Ø Cyclades² Built-in Linux core² TS2000 is a great device!² PC multi-p
©2002, David K. Z. Harris67Pg. 67© 2002 David K. Z. Harris Vendor Links, cont’d.Ø Perle (Perle Systems Ltd.)² CS9000 is Sun-safe² Cables, status LEDs
©2002, David K. Z. Harris68Pg. 68© 2002 David K. Z. Harris Accessory Vendor InfoØ Nu-Data non-BREAK adaptersØ PC Weasel in-server cardsØ ASP Technolog
©2002, David K. Z. Harris69Pg. 69© 2002 David K. Z. Harris Accessory Vendor InfoØ Weeder Technologies² Serial interfaces for process control² Counters
©2002, David K. Z. Harris7Pg. 7© 2002 David K. Z. Harris Basic Serial HookupsØ Console Server connected to the same LAN with the hostsØ Serial connect
©2002, David K. Z. Harris70Pg. 70© 2002 David K. Z. Harris Remote Power ControlØ American Power Conversion² MasterSwitch lineØ BayTech² RPC product li
©2002, David K. Z. Harris71Pg. 71© 2002 David K. Z. Harris AmericableØ Custom cables and adapters² Serial adapter kits for consoles• Annex/Bay/Nortel•
©2002, David K. Z. Harris8Pg. 8© 2002 David K. Z. Harris Terminal & Console ServersØ Terminal Servers were designed to allow ‘dumb terminals’ to a
©2002, David K. Z. Harris9Pg. 9© 2002 David K. Z. Harris An Important DistinctionØ Console Server Application² A host running software for controlling
Kommentare zu diesen Handbüchern