The network settings, including IP address, subnet mask, and default gateway, and the Domain Name Service (DNS) server addresses, are defined manually.
There are two management Ethernet interfaces on the NDR: Eth0 and Eth1. Eth0 is configured for management, which allows a user to SSH to the device and use a browser to interact with the NDR. Eth1 is used for internal communications between the NDR and Packet Capture. To change network settings, use the CLI.
Important
Trellix highly recommends using the CLI to modify your NDR appliance configuration settings. Trellix does not provide technical support for configuration changes made using the shell. (DOC-958)
To manually configure the management interface, you must use the Eth1 interface.
Configuring Eth0 and Eth1
To configure Eth0 and Eth1:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # networkTo set the Eth0, type
7. When prompted, enter the address for eth0.To set the Eth1, type
8. When prompted, enter the address for eth 1.Type
qto save your settings and exit.Type
yornto confirm your changes.Type
yto restart the network.
Configuring the hostname
To configure the hostname:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter into “Cluster setup” option in cli menu
hostname # cluster setupType
Yto open to Cluster configuration menu.Type
Eto edit the cluster configuration.Type
Nto edit the node name and typeyto change the node name.Clear the existing name completely and type the new required hostname and then press
Enter.Type
qto save the configuration.Type
qto save and sync the configuration.Press
Enterwith the configuration file name and typeyto install the configuration on the machine. Press any key to continue.To view the updated hostname, type
Show Hostnamein CLI menu to check the updated hostname.
Configuring the DNS Server
To configure the DNS server:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # networkTo set DNS name servers, type
2. When prompted, enter the space-separated list of DNS server addresses and pressEnter.Type
qto save your settings and exit.Type
yornto confirm your changes.Type
Yto restart the network.
Configuring the DNS search domain
To configure the DNS search domains:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # networkTo set DNS search domains, type
4. When prompted, enter the space-separated list of DNS search domains and press enter.Type
qto save your settings and exit.Type
yornto confirm your changes.Type
restart networkingto restart the network.
Configuring the IP network parameters
To configure the IP network parameters:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # networkTo set IP network parameters, type 5. When prompted, enter the address, netmask, and gateway of the NDR.
IPv6 is supported.
Type
qto save your settings and exit.Type
yornto confirm your changes.Type
restart networkingto restart the network.
Configuring SFP management interface for x600 appliances
Prerequisite: Disconnect the cable from the 10G-T port and connect it to the SFP management port.
To configure the SFP management interface:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # network
1: Node name = 2600-12: DNS Server(s) = 10.128.11.1003: NTP Server(s) = 0.pool.ntp.org4: Search Domains(s) =5: IPv4 Default GW = 10.128.58.1936: IPv6 Default GW =Available7: ETH0 Address Configuration8: ETH1 Address Configuration9: IPMI Configuration10: Change interfaceTo change the network interface, type
10and pressEnter. Available interfaces are: Currently selected interface - 15FF:10G-T 1) 15FF : 10G-T 2) 104E : SFP By default, 10G-T is selected.Select
2to change the interface to SFP.Type
qto save your settings and exit.Type
yornto confirm your changes.The system restarts after the interface is changed.
Configuring the IPMI
IPMI is used as a remote troubleshooting interface and allows you to reboot or reimage the unit if it becomes unresponsive. You can set an IP address for this interface during the initial network settings. See See "Initial Configuration". The IPMI configuration is optional.
To configure the IPMI:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemEnter the network settings:
hostname # networkTo set the IPMI, type
9. When prompted, enter the IPMI IP address, netmask, and gateway.Type
qto save your settings and exit.Type
yor n to confirm your changes.Type
restart networkingto restart the network.
Testing connectivity
To test connectivity:
Log in to the NDR as npadmin using the NDR IP address or FQDN. For example:
$ ssh npadmin@10.1.0.1or
$ ssh npadmin@exampleFQDNEnter privileged mode:
npadmin@ia> enableEnter the npadmin password. The password can be 5 to 24 characters long.
[sudo] password for npadmin: <password>Enter configuration mode:
npadmin@ia# configure systemTest your connectivity and name resolution by pinging a machine with a fully qualified hostname. Use ping from the CLI, for example ping www.google.com.
Press
ctr > cto return to the CLI.Example: ia(config)# ping trellix.com