The only warranties for HP products andservices are set forth in the express warranty statements
accompanying such products and services. Nothing herein should be construed as constituting an
additional warranty. HP shall not be liable for technical or editorial errors oromissions contained herein.
The information containedherein is subject to change without notice.
Restricted Rights Legend
Confidential computersoftware. Valid license from HP required for possession, use or copying.
Consistent with FAR 12.211 and 12.212, Commercial Computer Software, Computer Software
Documentation, and Technical Data for Commercial Items are licensed to the U.S. Government under
vendor's standard commercial license.
Microsoft® and Windows® are U.S. registered trademarks of Microsoft Corporation.
UNIX® is a registered trademark of The OpenGroup.
Page 2 of 65HP Remote Device Access 8.1:vCAS User Guide
Contents
Contents3
About This Document6
Document Revision History6
Chapter 1: Understanding the vCAS7
About Remote Device Access (RDA)8
About the Customer Access System (CAS)8
Chapter 2: Installing the vCAS9
Summary of Network Ports for Virtual CAS (vCAS) Installation10
Install the vCAS on VMware ESX/ESXi12
Verifying Prerequisites12
Importing to VMware ESX/ESXi12
Install onOracle VM VirtualBox18
Verifying Prerequisites18
Importing to VirtualBox18
Install onVMware Player21
Verifying Prerequisites21
Importing to VMware Player22
Install onVMware Server24
Chapter 3: Configuring Your vCAS25
Verify Prerequisites25
Configure YourvCAS25
Add the Virtual CAS to the RAP27
Chapter 4: Managing your vCAS29
Monitor HP's Activity29
Understanding the Activity Graph29
Active Tunnels30
Logins30
Blocked Tunnels31
Blocked Logins32
Controlling Access33
Page 3 of 65HP Remote Device Access 8.1:vCAS User Guide
Contents
Tunnel Access Control33
Grant Access34
Login Access Control35
PerformingOptional Configuration36
Authentication36
Email Alerts37
Preferences38
Send Logs to a Remote Log Server40
Become a Central Logs Collector40
Software Updates41
Managing Automatic Settings42
Managing Software Channels43
Managing Optional SoftwarePackages43
Managing Manual Actions44
Downloading Source Code44
Viewing the Log45
LogRefresh Rate46
Chapter 5: Troubleshooting Information47
Test the Virtual CASNetwork Check Tool47
Run the Virtual CASNetwork Check Tool47
Check Manual Setup48
Logging on to the Console48
Changing yourPassword48
Running the Manual Setup Command48
Repeat Setup49
Preserve and Restore vCAS Settings49
Start Fresh49
Appendix A: Starting a Virtual CAS at System Startup using VirtualBox50
Configure Linux Hosts50
Configure Windows Hosts50
VirtualBox Extension Pack51
VirtualBox Control Service51
HP Remote Device Access 8.1:vCAS User GuidePage 4 of 65
Contents
VirtualBox Control Service system tray application52
Use VBoxVmService53
Create a scheduledtask54
Test the autostart55
Appendix B: Release Notes57
Fixed Problems and Enhancements57
Known Issues57
Apply the Update57
Access the Kit57
HP RDA CAS New Packages58
HP RDA CAS Ubuntu Changelog Summary58
hp-rdacas58
hp-rdacas (1:14.06-37604) stable; urgency=low58
hp-rdacas (1:14.04-37038) stable; urgency=low58
libterm-emit-perl59
libterm-emit-perl (0.0.3-1)59
Appendix C: License60
HP Remote Device Access 8.1:vCAS User GuidePage 5 of 65
About This Document
The vCAS User Guide provides the necessary information to install, manage, and troubleshoot your
Virtual Customer Access System (vCAS).
Document Revision History
EditionSoftware VersionPublication Date
Edition 1RDA 7.1June 2012
Edition 2RDA 7.2December 2012
Edition 3RDA 7.3June 2013
Edition 4RDA 8.1June 2014
Page 6 of 65HP Remote Device Access 8.1:vCAS User Guide
Chapter 1: Understanding the vCAS
The Virtual Customer Access System (vCAS) is a pre-packaged virtual appliance. It is a small but
complete operating system, with HP's CAS softwarepre-installed.
The vCAS contains the software necessary for HP to securely access your network (depending on your
access control settings) and provides support for your systems and devices. In addition to its service
gateway capabilities, it includes advanced forms of the following:
ComponentsDescription
Authentication The vCAS uses a single sign-on authentication mechanism based on HP's
DigitalBadge infrastructure - an X.509 certificate-basedpublic key
infrastructure.When an HP Support Agent logs on to orthrough a virtual CAS, the
strong authentication is performed at HP's perimeter servers and at your vCAS.This
helps protect you from unwanted intrusion.
Access
Control
Audit LogsView detailed audit logs of activity on the vCAS. The log details the HP Support
ManageabilityThe vCAS has an integrated patch and update mechanism.Select to have patches
OpenSSH
Software and
X.509
Extensions
Control who can access your network and what systems, ports, and protocols you
allow. The intuitive web interface enables you to disable all access or enable wideopen access as desired.
Agent's e-mail address, the date andtime of the support session, and the details of
the target to which the HP Support Agent is connected.
andupdates applied automatically, or manually apply them. Youcan also view
changelogs of all updates and get the source codefor the entire appliance.
The vCAS is based on a stripped-down Ubuntu server Linux distribution. It contains
the following HP supplied software components:
Note: To allow updates, the customer has to allow https access to a
specific server in HP, if not the client will have to manually perform this
step.
The OpenSSH software provides basic SSH connectivity and is enhanced by adding
a digital certificate authentication and other security extensions (see RDA Security
Extensions). Currently, a modified version 6.1p1 with the X.509 patches (written by
Roumen Petrov)is used.
RDA Security
Extensions
RDA CAS
User Interface
and
Management
Includes components for secure auditing, logging, and access control functionality.
The primary components of this package are NSS and PAM libraries which enable
the CAS to automatically create accounts for authenticated DigitalBadge users and
to containtheir activities.
A web-based user interface and the code to automatically create accounts for
authenticated DigitalBadge users. The web UI supports both Firefox and Internet
Explorer browsers and should work on other popular browsers. The lighttpd web
server is used to host the pages. The user interface provides initial configuration
features, access control, audit logs, software updates, and appliance setup.
Page 7 of 65HP Remote Device Access 8.1:vCAS User Guide
Chapter 1: Understanding the vCAS
About Remote Device Access (RDA)
Remote Device Access (RDA) is an HP solution that allows HP Support Agents to connect securely from
the HP network to systems on a customer's network. RDA provides problem diagnosis, troubleshooting,
andproactive support activities.
About the Customer Access System (CAS)
A CustomerAccess System (CAS) acts as a gateway for HP to access your network. HP Support
Agents use your CAS to provide support to you. It is a single point of control for you. You decide who from
HP can access what parts of your network, and when.
A CAS comes in many forms. A CAS can be as simple as one of yourown servers on which you allow HP
to access the SSH. It could be the lightweight instant CAS that you run in yourweb browser or be a
dedicated server where you have installed a full physical CAS kit. It may even be a virtual appliance, for
example, the vCAS.
HP Remote Device Access 8.1:vCAS User GuidePage 8 of 65
Chapter 2: Installing the vCAS
This chapter describes installing the vCAS on the following systems:
l VMware ESX/ESXi 4.0 or later
l Oracle VM VirtualBox 4.2 or later
l VMware Player 5.0.0 or later
l VMware Server(we highly recommend NOT to use VMware Server as it is unsupported since 2011)
The two main steps to running your vCAS are:
1. Import the virtual appliance
2. Configure the virtual appliance
Page 9 of 65HP Remote Device Access 8.1:vCAS User Guide
Summary of Network Ports for Virtual CAS (vCAS) Installation
The following table summarizes all ports that might be used for a vCAS installation. Seefor ports that are required for basic system operation.
TCPotherVirtual CASTarget SystemCustomer-specified TCP port and
application protocol SSH-forwarded from
HP via the relay application
UDPotherVirtual CASTarget SystemCustomer-specified TCP port and
application protocol SSH-forwarded from
HP via the relay application
YesOptional
YesOptional
HP Remote Device Access 8.1:vCAS User GuidePage 11 of 65
Install the vCAS on VMware ESX/ESXi
You can install the vCAS on a VMware ESX or ESXi server using a VMware vSphere Client.
Verifying Prerequisites
Beforeyou install the vCAS, verify the following prerequisites:
l Make sure you have access to a VMware VSphere Server and that VMware vSphereClient is installed
l Make sure to downloadthe vCAS .ova image or that it is available via URL
l Make sure you have access to a VMware vSphere Server
Importing to VMware ESX/ESXi
To import the vCAS on a VMwareESX/ESXi Server, complete the following steps:
1. To launch the VMware vSphere client, double-click the VMwarevSphere Client icon.
The VMware vSphere Client login window appears.
2. Log on to the vSphere Client. Use any Windows account that has administrator rights.
3. Click Login. ThevSphere Client main window appears.
Page 12 of 65HP Remote Device Access 8.1:vCAS User Guide
4. Click File, then Deploy OVF Template. The Deploy OVF Template wizard appears.
5. Select source location.
6. Click Browse to search yourfile system for the ovf or.ova file, or entera URL to the .ova file located
on the Internet. TheOVF Template Details page appears.
HP Remote Device Access 8.1:vCAS User GuidePage 13 of 65
7. Verify OVF template details. Click Next.
8. The Name andLocation page appears.
HP Remote Device Access 8.1:vCAS User GuidePage 14 of 65
9. Enter the name of the deployed template and select the location. Click Next. The Disk Format page
appears.
10. Select the disk format to storethe virtual machine disks, and click Next.TheReady to Complete page
appears.
HP Remote Device Access 8.1:vCAS User GuidePage 15 of 65
11. Review the deployment settings and click Finish.The Deploying dialog box appears.
Note: The new vCAS takes a few minutes to create.
12. The progress of the import task appears in the vSphere Client Status panel.
The vSphere Client window appears.
13. Select the newly created vCAS appliance andclick Power on the virtual machine.The vCAS
appliance starts and the console output displays in the Console tab.
HP Remote Device Access 8.1:vCAS User GuidePage 16 of 65
Note: The first time it starts, it reconfigures itself and then reboots.
Once it completes rebooting, the URL for the management UI appears.
14. Enter the URL into a web browser and follow the vCAS initial configuration instructions.
HP Remote Device Access 8.1:vCAS User GuidePage 17 of 65
Install on Oracle VM VirtualBox
You can install the vCAS on a VirtualBox Hypervisor. It takes less than five minutes to complete.
Verifying Prerequisites
Beforeyou install the vCAS, verify the following prerequisites:
l Make sure VirtualBox is installed. For more information about VirtualBox, go to:
https://www.virtualbox.org/wiki/Downloads.
l Make sure to downloadthe vCAS .ova image.
Importing to VirtualBox
To import the vCAS into a VirtualBox Hypervisor, complete the following steps:
1. Launch the Oracle VM VirtualBox Manager. The Oracle VM VirtualBox Manager appears.
2. Click File, then Import Appliance. The Import Virtual Appliance wizard appears.
HP Remote Device Access 8.1:vCAS User GuidePage 18 of 65
3. Click Open appliance to select and import the vCAS .ova file, then click Next.
The Appliance settings pageappears.
4. Select the Reinitialize the MAC address of all network cards check box, and then click Import.
The Importing Appliance dialogbox appears.
HP Remote Device Access 8.1:vCAS User GuidePage 19 of 65
Note: The new vCAS takes a few minutes to create.
The Oracle VM VirtualBox Manager window appears.
5. Select the newly created vCAS appliance and click Start.
The vCAS appliance starts and the console output displays in a new window. The first time it starts, it
reconfigures itself and then reboots. Once it completes rebooting, the URL for the management UI
appears.
HP Remote Device Access 8.1:vCAS User GuidePage 20 of 65
Loading...
+ 45 hidden pages
You need points to download manuals.
1 point = 1 manual.
You can buy points or you can get point for every manual you upload.