Lantronix 100-120 VAC SLB, 200-240 VAC SLB User Manual

100-120 VAC
200-240 VAC
SLB™ Branch Office Manager
User Guide
Part Number 900-671-R
Revision K April 2019

Intellectual Property

© 2019 Lantronix, Inc. All rights reserved. No part of the contents of this publication may be transmitted or reproduced in any form or by any means without the written permission of Lantronix. Printed in the United States of America.
Lantronix is a registered trademark of Lantronix, Inc. in the U.S. and certain other countries. Lantronix Spider is a registered trademark, and SLB, SLC, SLP, vSLM, Spider and DeviceInstaller are trademarks of Lantronix, Inc.
Patented: http://patents.lantronix.com
Windows and Internet Explorer are registered trademarks of Microsoft Corporation. Mozilla and Firefox are registered trademarks of the Mozilla Foundation. Chrome is a trademark of Google,
Inc. All other trademarks and trade names are the property of their respective holders.

Open Source Software

Some applications are Open Source software licensed under the Berkeley Software Distribution (BSD) license or the GNU General Public License (GPL) as published by the Free Software Foundation (FSF). Lantronix grants you no right to receive source code to the Open Source software; however, in some cases, rights and access to source code for certain Open Source software may be available directly from Lantronix’ licensors. Upon request, Lantronix will identify the Open Source components and the licenses that apply to them. Your use of each Open Source component or software is subject to the terms of the applicable license. The GNU General Public License is available at http://www.gnu.org/licenses/gpl.html
Open Source Software is distributed WITHOUT ANY WARRANTY, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. See the GPL and BSD for details.

Warranty

For details on the Lantronix warranty policy, please go to our Web site at
www.lantronix.com/support/warranty
; additional patents pending.
.

Contacts

Lantronix, Inc.
7535 Irvine Center Drive Suite 100 Irvine, CA 92618, USA Phone: 949-453-3990 Fax: 949-453-3995
Technical Support
Online: www.lantronix.com/support
Sales Offices
For a current list of our domestic and international sales offices, go to the Lantronix web site at
www.lantronix.com/about/contact
SLB™ Branch Office Manager User Guide 2

Disclaimer & Revisions

All information contained herein is provided “AS IS.” Lantronix undertakes no obligation to update the information in this publication. Lantronix does not make, and specifically disclaims,
all warranties of any kind (express, implied or otherwise) regarding title, non-infringement, fitness, quality, accuracy, completeness, usefulness, suitability or performance of the information provided herein. Lantronix shall have no liability whatsoever to any user for any damages, losses and causes of action (whether in contract or in tort or otherwise) in connection with the user’s access or usage of any of the information or content contained herein. The information and specifications contained in this document are subject to change without notice.
Operation of this equipment in a residential area is likely to cause interference, in which case the user, at his or her own expense, will be required to take whatever measures may be required to correct the interference.
Note: This equipment has been tested and found to comply with the limits for Class A
digital device pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference when the equipment is operated in a commercial environment. This equipment generates, uses, and can radiate radio frequency energy and, if not installed and used in accordance with this user guide, may clause interference to radio communications. Operation of this equipment in a residential area is likely to cause interference, in which case the user will be required to correct the interference at his own expense.
The user is cautioned that changes and modifications made to the equipment without approval of the manufacturer could void the user's authority to operate this equipment.
Changes or modifications to this device not explicitly approved by Lantronix will void the user's authority to operate this device.

Revision History

Date Rev. Comments
April 2013 A Initial Release (6.0).
June 2014 B Added the new 200-240 VAC SLB model.
August 2014 C Updated for firmware release 6.1.
January 2015 D Updated technical specification information.
May 2016 E Updated safety information.
December 2016 F Updated to firmware revision 6.3.0.0, which includes:
June 2018 G Updated to firmware revision 6.5.0.0RC19.
October 2018 H Updated to firmware revision 6.6, which includes:
Removal of java from the WebSSH and WebTelnet applicationAddition of transport security layer (TLS) 1.1 and 1.2Upgrade of web SSL certificate to 2048 bitsOption to disable SSH DSA keysZero touch provisioningCustom SSL certificate for the webCompliance information updates
Sierra gateway LTE modem integration
SLB™ Branch Office Manager User Guide 3
March 2019 J Updated to firmware revision 6.7.0.0RC12, which includes:
Support for custom Expect scripts that can be connected to the SLB CLI
or a device port
Web and SSH support for SHA2 and higherConsoleFlow access timeout settings
April 2019 K Updated to firmware revision 6.8.0.0RC8, which includes support for Tcl and
Python custom scripts.
SLB™ Branch Office Manager User Guide 4

Table of Contents

Intellectual Property ________________________________________________________2 Open Source Software ______________________________________________________2 Warranty _________________________________________________________________2 Contacts _________________________________________________________________2 Disclaimer & Revisions ______________________________________________________3 Revision History ___________________________________________________________3 List of Figures ____________________________________________________________14 List of Tables _____________________________________________________________17
1: About this Guide 18
Purpose and Audience _____________________________________________________18 Summary of Chapters ______________________________________________________18 Additional Documentation ___________________________________________________19
2: Introduction 20
Features ________________________________________________________________20
Console Management __________________________________________________20 Power Management Outlets for Power Connectivity ___________________________ 20 Power Inlets __________________________________________________________20 Integration with Other Secure Lantronix Products _____________________________20 Internal Temperature Sensor _____________________________________________ 21 Designed for Branch Offices and Similar Environments _________________________ 21 Typical Equipment _____________________________________________________ 22 Types of Business _____________________________________________________22
Benefits ______________________________________________________________ 22 Models __________________________________________________________________23 System Features __________________________________________________________24
Protocols Supported ____________________________________________________24
Access Control ________________________________________________________25
Power Outlet Control ___________________________________________________25
Device Port Buffer _____________________________________________________25
Configuration Options ___________________________________________________25 Application Example _______________________________________________________26 Hardware Features ________________________________________________________27
Serial Connections _____________________________________________________28
Network Connections ___________________________________________________29
USB Interface ________________________________________________________29
Modem Interface _______________________________________________________ 30
SLB™ Branch Office Manager User Guide 5
3: Installation 31
What's in the Box _________________________________________________________31
Product Information Label _______________________________________________32 Technical Specifications ____________________________________________________32 Safety Precautions ________________________________________________________33
Cover _______________________________________________________________ 33
Power Plug ___________________________________________________________33
Input Supply __________________________________________________________ 34
Grounding ____________________________________________________________34
Fuses _______________________________________________________________34
Rack ________________________________________________________________34
Port Connections ______________________________________________________ 35 Physical Installation ________________________________________________________35
Connecting to a Device Port ______________________________________________36
Connecting to Network Ports _____________________________________________36
Connecting Terminals ___________________________________________________ 37
Connecting to the Internal Modem _________________________________________37
Power _______________________________________________________________37
AC Input _____________________________________________________________ 37
Connecting Devices to Power Outlets ______________________________________ 38 Typical Installations ________________________________________________________39
4: Quick Setup 41
Recommendations ________________________________________________________41 IP Address _______________________________________________________________41 Method #1 Using the Front Panel Display _______________________________________42
Front Panel LCD Display and Keypads _____________________________________ 42
Navigating ____________________________________________________________ 43
Entering the Settings ___________________________________________________44
Restoring Factory Defaults _______________________________________________45
Limiting Sysadmin User Access ___________________________________________45 Method #2 Quick Setup on the Web Page ______________________________________ 46
Network Settings ______________________________________________________48
Date & Time Settings ___________________________________________________ 48
Administrator Settings __________________________________________________48 Method #3 Quick Setup on the Command Line Interface ___________________________49 Next Step _______________________________________________________________51
5: Web and Command Line Interfaces 52
Web Interface ____________________________________________________________52
Logging in ____________________________________________________________53
Logging Out __________________________________________________________ 54
SLB™ Branch Office Manager User Guide 6
Web Page Help _______________________________________________________54 Command Line Interface ____________________________________________________54
Logging In ____________________________________________________________54
Logging Out __________________________________________________________ 55
Command Syntax ______________________________________________________55
Command Line Help ____________________________________________________56
Tips _________________________________________________________________56
General CLI Commands _________________________________________________57
6: Basic Parameters 58
Requirements ____________________________________________________________58
Eth1 and Eth2 Settings __________________________________________________60
Hostname & Name Servers ______________________________________________61
DNS Servers __________________________________________________________61
DHCP-Acquired DNS Servers ____________________________________________ 62
GPRS-Acquired DNS Servers ____________________________________________ 62
TCP Keepalive Parameters ______________________________________________ 62
Gateway _____________________________________________________________62
Fail-Over Settings _____________________________________________________62
Fail-Over Cellular Gateway Configuration ___________________________________ 63
Advanced Cellular Gateway Configuration ___________________________________64
Fail-Over Cellular Gateway Firmware _______________________________________64
Load Cellular Gateway Firmware Options ___________________________________64
Ethernet Counters _____________________________________________________64
Network Commands ____________________________________________________64 IP Filter _________________________________________________________________65
Viewing IP Filters ______________________________________________________65
Enabling IP Filters _____________________________________________________65
Configuring IP Filters ___________________________________________________ 66
Rule Parameters _______________________________________________________ 67
Updating an IP Filter ____________________________________________________69
Deleting an IP Filter ____________________________________________________ 69
Mapping a Ruleset _____________________________________________________ 69 IP Filter Commands _______________________________________________________69 Routing _________________________________________________________________69
Dynamic Routing ______________________________________________________70
Static Routing _________________________________________________________70
Routing Commands ____________________________________________________70 VPN ____________________________________________________________________71 Performance Monitoring ____________________________________________________74
Performance Monitoring - Add/Edit Probe ___________________________________77
Performance Monitoring - Results _________________________________________ 79
Performance Monitoring Commands _______________________________________83
SLB™ Branch Office Manager User Guide 7
7: Services 84
System Logging and Other Services ___________________________________________84 SSH/Telnet/Logging _______________________________________________________85
System Logging _______________________________________________________85
Audit Log ____________________________________________________________86
SMTP _______________________________________________________________ 86
SSH ________________________________________________________________86
Telnet _______________________________________________________________ 87
Web SSH/Web Telnet Settings ___________________________________________87
Phone Home __________________________________________________________87 SNMP __________________________________________________________________88
Communities __________________________________________________________89
Version 3 ____________________________________________________________90
V3 Read-Only User ____________________________________________________90
V3 Read-Write User ____________________________________________________90
SNMP, SSH, Telnet, and Logging Commands ________________________________ 90 NFS and SMB/CIFS _______________________________________________________91
SMB/CIFS Share ______________________________________________________ 92
NFS and SMB/CIFS Commands __________________________________________ 92 Secure Lantronix Network ___________________________________________________92 Troubleshooting Browser Issues ______________________________________________96
Web SSH/Telnet Copy and Paste _________________________________________98
Secure Lantronix Network Commands ______________________________________98 Date and Time ____________________________________________________________99
Date and Time Commands ______________________________________________ 100 Web Server _____________________________________________________________100
Administrative Commands ______________________________________________ 102
Services - Web Sessions _______________________________________________ 102
Services - SSL Certificate _______________________________________________ 103
SSL Certificate Commands _____________________________________________105 ConsoleFlow ____________________________________________________________106
ConsoleFlow Commands _______________________________________________109
8: Device Ports 110
Connection Methods ______________________________________________________110 Permissions _____________________________________________________________110 Device Status ___________________________________________________________111 Global Port Settings ______________________________________________________111
Telnet/SSH/TCP in Port Numbers ________________________________________ 112
Global Commands ____________________________________________________113 Device Ports - Settings ____________________________________________________113
Device Port Settings ___________________________________________________115
SLB™ Branch Office Manager User Guide 8
IP Settings __________________________________________________________115
Data Settings ________________________________________________________ 116
Hardware Signal Triggers _______________________________________________117
Modem Settings ______________________________________________________ 117
Modem Settings: Text Mode _____________________________________________ 118
Modem Settings: PPP Mode ____________________________________________118
Port Status and Counters _______________________________________________120
Device Ports - SLP Units _______________________________________________ 120
Status/Info __________________________________________________________121
Commands __________________________________________________________122
Device Port - Sensorsoft Device __________________________________________ 122
Device Port Commands ________________________________________________ 123 Interacting with a Device Port _______________________________________________123 Device Ports - Logging ____________________________________________________124
Local Logging ________________________________________________________124
NFS File Logging _____________________________________________________124
USB Flash Drive Logging _______________________________________________124
Email/SNMP Notification _______________________________________________125
Sylogs Logging _______________________________________________________125
Local Logging ________________________________________________________126
Email/SNMP Traps ____________________________________________________126
Log Viewing Attributes _________________________________________________127
NFS File Logging _____________________________________________________128
USB Logging ________________________________________________________128
Syslog Logging _______________________________________________________128
Logging Commands ___________________________________________________128 Console Port ____________________________________________________________128
Console Port Commands _______________________________________________130 Power Outlets ___________________________________________________________130
Power Commands ____________________________________________________ 132 Host Lists ______________________________________________________________132
Host List Commands __________________________________________________134 Scripts _________________________________________________________________134
Scripts ______________________________________________________________ 136
User Rights __________________________________________________________137
Batch Script Syntax ___________________________________________________142
Interface Script Syntax _________________________________________________142
Custom Script Syntax __________________________________________________147
Example Scripts ______________________________________________________ 149 Sites __________________________________________________________________165
Site Commands ______________________________________________________ 167 Modem Dialing States _____________________________________________________ 167
Dial-In ______________________________________________________________167
SLB™ Branch Office Manager User Guide 9
Dial-Out ____________________________________________________________168
Dial-Back ___________________________________________________________168
Dial-On-Demand ______________________________________________________ 169
Dial-In & Dial-On-Demand ______________________________________________169
Dial-Back & Dial-On-Demand ____________________________________________169
Dial-In/Host List ______________________________________________________170
CBCP Server and CBCP Client __________________________________________170
CBCP Server ________________________________________________________ 170
CBCP Client _________________________________________________________171
9: USB Port 172
Set Up of USB Storage ____________________________________________________172
Data Settings ________________________________________________________ 175
GSM/GPRS Settings __________________________________________________175
Modem Settings ______________________________________________________ 175
Text Mode ___________________________________________________________ 177
PPP Mode __________________________________________________________177
IP Settings __________________________________________________________178 Manage Firmware and Configuration Files _____________________________________179
USB Commands ______________________________________________________179
10: Connections 180
Typical Setup Scenarios for the SLB _________________________________________180
Terminal Server ______________________________________________________ 180
Remote Access Server _________________________________________________181
Reverse Terminal Server _______________________________________________ 181
Multiport Device Server ________________________________________________182
Console Server _______________________________________________________182
Connection Configuration _______________________________________________183
Connection Commands ________________________________________________ 185
11: User Authentication 186
Authentication Commands ______________________________________________188 Local and Remote User Settings ____________________________________________189
Adding, Editing or Deleting a User ________________________________________191
Shortcut ____________________________________________________________194
Local Users Commands ________________________________________________194 NIS ___________________________________________________________________194
NIS Commands ______________________________________________________197 LDAP __________________________________________________________________197
LDAP Commands _____________________________________________________201 RADIUS ________________________________________________________________202
SLB™ Branch Office Manager User Guide 10
RADIUS Commands ___________________________________________________205
User Attributes & Permissions from LDAP Schema or RADIUS VSA _____________ 205 Kerberos _______________________________________________________________207
Kerberos Commands __________________________________________________ 209 TACACS+ ______________________________________________________________210
TACACS+ Groups ____________________________________________________210
TACACS+ Commands _________________________________________________213 Groups ________________________________________________________________214 SSH Keys ______________________________________________________________217
Imported Keys _______________________________________________________217
Exported Keys _______________________________________________________217
Imported Keys (SSH In) ________________________________________________ 219
Host & Login for Import _________________________________________________ 219
Exported Keys (SSH Out) _______________________________________________ 219
Host and Login for Export _______________________________________________220
SSH Key Commands __________________________________________________ 222 Custom Menus __________________________________________________________223
Custom User Menu Commands __________________________________________225
12: Maintenance 226
SLB Maintenance ________________________________________________________226
Internal Temperature __________________________________________________ 228
Site Information ______________________________________________________228
SLB Firmware ________________________________________________________228
Boot Banks __________________________________________________________229
Load Firmware Via Options _____________________________________________ 229
Configuration Management _____________________________________________230
Zero Touch Provisioning Configuration Restore ______________________________ 231
Administrative Commands ______________________________________________ 232
System Logs _________________________________________________________232
System Log Commands ________________________________________________234 Audit Log _______________________________________________________________234 Email Log ______________________________________________________________235 Diagnostics _____________________________________________________________236
Diagnostic Commands _________________________________________________238 Status/Reports __________________________________________________________238
View Report _________________________________________________________239
Status Commands ____________________________________________________ 241 Emailing Logs and Reports _________________________________________________ 241 Events _________________________________________________________________242
Events Commands ____________________________________________________244 LCD/Keypad ____________________________________________________________244
LCD/Keypad Commands _______________________________________________246
SLB™ Branch Office Manager User Guide 11
Banners ________________________________________________________________246
Banner Commands ____________________________________________________ 247
13: Application Examples 248
Telnet/SSH to a Remote Device _____________________________________________248 Dial-in (Text Mode) to a Remote Device _______________________________________ 250 Local Serial Connection to Network Device via Telnet ____________________________251
14: Command Reference 253
Introduction to Commands _________________________________________________253
Command Syntax _____________________________________________________253
Command Line Help ___________________________________________________254
Tips ________________________________________________________________254 Administrative Commands _________________________________________________255 Audit Log Commands _____________________________________________________266 Authentication Commands _________________________________________________267 ConsoleFlow Commands __________________________________________________268 Kerberos Commands _____________________________________________________269 LDAP Commands ________________________________________________________270 Local Users Commands ___________________________________________________271 NIS Commands __________________________________________________________275 RADIUS Commands ______________________________________________________276 TACACS+ Commands ____________________________________________________ 277 User Permissions Commands _______________________________________________278 CLI Commands __________________________________________________________281 Connection Commands ____________________________________________________283 Console Port Commands __________________________________________________286 Custom User Menu Commands _____________________________________________287 Date and Time Commands _________________________________________________289 Device Commands _______________________________________________________290 Device Port Commands ___________________________________________________291 Diagnostic Commands ____________________________________________________295 Top Command Synopsis ___________________________________________________297 End Device Commands ___________________________________________________298 Events Commands _______________________________________________________299 Global Commands _______________________________________________________300 Group Commands ________________________________________________________301 Host List Commands ______________________________________________________302 IP Filter Commands ______________________________________________________303 Logging Commands ______________________________________________________304 Network Commands ______________________________________________________307 NFS and SMB/CIFS Commands _____________________________________________310 Performance Monitoring Commands _________________________________________312
SLB™ Branch Office Manager User Guide 12
Power Commands ________________________________________________________316 Routing Commands ______________________________________________________318 Script Commands ________________________________________________________318 Services Commands ______________________________________________________ 321 Site Commands __________________________________________________________323 Secure Lantronix Network Commands ________________________________________324 SSH Key Commands ____________________________________________________325 Status Commands ________________________________________________________328 System Log Commands ___________________________________________________329 USB Storage Commands __________________________________________________330 USB Modem Commands __________________________________________________331
Appendix A: Bootloader 335
Accessing the Bootloader __________________________________________________335 Bootload Commands ______________________________________________________335
Appendix B: Security Considerations 337
Security Practice _________________________________________________________337 Factors Affecting Security __________________________________________________337
Appendix C: Adapters and Pinouts 338
Appendix D: Protocol Glossary 341
Appendix E: Compliance Information 343
SLB™ Branch Office Manager User Guide 13

List of Figures

Figure 2-1 Branch to Enterprise Integration Concept _____________________________________21
Figure 2-3 100-120 VAC SLB Unit ___________________________________________________23
Figure 2-4 200-240 VAC SLB Unit ___________________________________________________24
Figure 2-5 Example Deployment_____________________________________________________27
Figure 2-6 Device Port Connections _________________________________________________ 29
Figure 2-7 Console Port Connection__________________________________________________ 29
Figure 2-8 Network Connection _____________________________________________________29
Figure 2-9 USB Interface __________________________________________________________29
Figure 2-10 Modem Interface _______________________________________________________ 30
Figure 3-5 Inlet Pin Assignment _____________________________________________________34
Figure 3-6 CAT 5 Cable Connection__________________________________________________36
Figure 3-7 AC Power Input _________________________________________________________38
Figure 3-8 100-120 VAC SLB - Branch Office Manager Power Outlets _______________________38
Figure 3-9 200-240 VAC SLB - Branch Office Manager Power Outlets _______________________39
Figure 3-10 100-120 VAC SLB Installation Diagram______________________________________39
Figure 3-11 200-240 VAC SLB Installation Diagram______________________________________40
Figure 4-2 Front Panel LCD Display and Five Button Keypads (Enter, Up, Down, Left, Right) _____ 42
Figure 4-5 Quick Setup ___________________________________________________________47
Figure 4-6 Beginning of Quick Setup Script ____________________________________________49
Figure 4-7 Completed Quick Setup___________________________________________________ 50
Figure 5-1 Web Page Layout _______________________________________________________ 52
Figure 6-1 Network > Network Settings (top of page)_____________________________________59
Figure 6-2 Network > Network Settings (bottom of page)__________________________________60
Figure 6-3 Network > IP Filter ______________________________________________________65
Figure 6-4 Network > IP Filter Ruleset (Adding/Editing Rulesets) ___________________________67
Figure 6-5 Network > Routing _______________________________________________________70
Figure 6-6 Network > VPN _________________________________________________________71
Figure 6-7 Network > Perf Monitoring _________________________________________________ 75
Figure 6-8 Performance Monitoring - Add/Edit Probe_____________________________________77
Figure 6-10 Performance Monitoring - Operations _______________________________________82
Figure 7-1 Services > SSH/Telnet/Logging_____________________________________________85
Figure 7-2 Services > SNMP _______________________________________________________88
Figure 7-3 Services > NFS/CIFS ____________________________________________________91
Figure 7-4 Services > Secure Lantronix Network ________________________________________93
Figure 7-5 IP Address Login Page ___________________________________________________94
Figure 7-6 SSH or Telnet CLI Session ________________________________________________ 94
SLB™ Branch Office Manager User Guide 14
Figure 7-7 Disabled Port Number Popup Window _______________________________________95
Figure 7-8 Services > Secure Lantronix Network > Search Options__________________________96
Figure 7-9 Services > Date & Time __________________________________________________99
Figure 7-10 Services > Web Server ________________________________________________101
Figure 7-11 Web Sessions ________________________________________________________ 103
Figure 7-12 SSL Certificate________________________________________________________ 104
Figure 7-13 Services > ConsoleFlow ________________________________________________107
Figure 8-1 Devices > Device Status _________________________________________________111
Figure 8-2 Devices > Device Ports __________________________________________________112
Figure 8-3 Device Ports List _______________________________________________________ 113
Figure 8-4 Device Ports > Settings _________________________________________________114
Figure 8-6 Device Ports > SLP _____________________________________________________121
Figure 8-7 Devices > Device Ports > Sensorsoft _______________________________________122
Figure 8-8 Devices > Device Ports - Logging __________________________________________126
Figure 8-9 Devices > Console Port __________________________________________________ 129
Figure 8-10 Devices > Power Outlets ________________________________________________131
Figure 8-11 Devices > Host Lists ___________________________________________________133
Figure 8-12 Devices > Scripts______________________________________________________135
Figure 8-13 Adding or Editing New Scripts ____________________________________________136
Figure 8-14 Devices > Scripts - Scheduler ____________________________________________138
Figure 8-15 Custom Scripts - Operations _____________________________________________140
Figure 8-16 View Custom Script Results _____________________________________________141
Figure 8-21 Devices > Sites _______________________________________________________165
Figure 9-1 Devices > USB ________________________________________________________172
Figure 9-2 Devices > USB > Configure_______________________________________________ 173
Figure 9-3 Devices > USB > Modem ________________________________________________174
Figure 9-4 Firmware and Configurations - Manage Files (Top of Page)______________________ 179
Figure 10-1 Terminal Server _______________________________________________________181
Figure 10-2 Remote Access Server _________________________________________________181
Figure 10-3 Reverse Terminal Server________________________________________________ 181
Figure 10-4 Multiport Device Server _________________________________________________182
Figure 10-5 Devices > Connections _________________________________________________183
Figure 10-6 Current Connections ___________________________________________________184
Figure 11-1 User Authentication > Authentication Methods _______________________________187
Figure 11-2 User Authentication > Local/Remote Users__________________________________189
Figure 11-3 User Authentication > Local/Remote User > Settings __________________________191
Figure 11-4 User Authentication > NIS _______________________________________________195
Figure 11-5 User Authentication > LDAP _____________________________________________198
SLB™ Branch Office Manager User Guide 15
Figure 11-6 User Authentication > RADIUS ___________________________________________202
Figure 11-7 User Authentication > Kerberos___________________________________________207
Figure 11-8 User Authentication > TACACS+__________________________________________211
Figure 11-9 User Authentication > Group _____________________________________________215
Figure 11-10 User Authentication > SSH Keys_________________________________________218
Figure 11-11 Current Host Keys ____________________________________________________221
Figure 11-12 User Authentication > Custom Menus _____________________________________ 223
Figure 12-1 Maintenance > Firmware & Configurations __________________________________227
Figure 12-2 Manage Configuration Files______________________________________________231
Figure 12-3 Maintenance > System Logs _____________________________________________232
Figure 12-4 System Logs _________________________________________________________234
Figure 12-5 Maintenance > Audit Log________________________________________________235
Figure 12-6 Maintenance > Email Log _______________________________________________236
Figure 12-7 Maintenance > Diagnostics ______________________________________________237
Figure 12-8 Diagnostics Report ____________________________________________________238
Figure 12-9 Maintenance > Status/Reports ___________________________________________239
Figure 12-10 Generated Status/Reports______________________________________________240
Figure 12-11 Emailed Log or Report_________________________________________________ 242
Figure 12-12 Maintenance > Events _________________________________________________ 243
Figure 12-13 Maintenance > LCD/Keypad ____________________________________________245
Figure 12-14 Maintenance > Banners________________________________________________246
Figure 13-1 SLB - Branch Office Manager Configuration _________________________________248
Figure 13-2 Remote User Connected to a SUN Server via the SLB_________________________248
Figure 13-3 Dial-in (Text Mode) to a Remote Device ____________________________________250
Figure 13-4 Local Serial Connection to Network Device via Telnet _________________________251
Figure C-1 RJ45 Receptacle to DB25M DCE Adapter for the SLB (PN 200.2066A) ____________338
Figure C-2 RJ45 Receptacle to DB25F DCE Adapter for the SLB (PN 200.2067A) ____________339
Figure C-3 RJ45 Receptacle to DB9M DCE Adapter for the SLB (PN 200.2069A) _____________339
Figure C-4 RJ45 Receptacle to DB9F DCE Adapter for the SLB (PN 200.2070A) _____________340
Figure C-5 RJ45 to RJ45 Adapter for Netra/Sun/Cisco and SLP (PNs 200.2225 and ADP010104-01)
340
SLB™ Branch Office Manager User Guide 16

List of Tables

Table 2-2 SLB Models ____________________________________________________________23
Table 3-1 Part Numbers and Descriptions for Adapters and Cables _________________________31
Table 3-2 Part Numbers and Descriptions for Power Cords _______________________________31
Table 3-3 SLB Technical Specifications _______________________________________________32
Table 3-4 Max Current per Power Cord Used __________________________________________33
Table 4-1 Methods of Assigning an IP Address _________________________________________41
Table 4-3 LCD Arrow Keypad Actions ________________________________________________43
Table 4-4 Front Panel Setup Options with Associated Parameters __________________________43
Table 5-2 Actions and Category Options _____________________________________________55
Table 6-9 Error Conditions _________________________________________________________81
Table 8-5 Port Status and Counters _________________________________________________120
Table 8-17 Definitions ___________________________________________________________143
Table 8-18 Primary Commands ____________________________________________________144
Table 8-19 Secondary Commands _________________________________________________145
Table 8-20 Control Flow Commands ________________________________________________146
Table 14-1 Actions and Category Options ___________________________________________ 253
Table A-1 User Commands _______________________________________________________335
Table A-2 Administrator Commands ________________________________________________336
SLB™ Branch Office Manager User Guide 17

1: About this Guide

Purpose and Audience

This guide provides the information needed to install, configure, and use the Lantronix® SLB™ branch office manager. The SLB device is for IT professionals who must remotely and securely configure and administer servers, routers, switches, telephone equipment, or other devices equipped with a serial port for facilities that are typically remote branch offices or “distributed” IT locations.

Summary of Chapters

The remaining chapters in this guide include:
Chapter Description
Chapter 2: Introduction Describes the SLB models, their main features, and the protocols they
support.
Chapter 3: Installation Provides technical specifications; describes connection formats and power
supplies; provides instructions for installing the SLB unit in a rack.
Chapter 4: Quick Setup Provides instructions for getting your SLB device up and running and for
configuring required settings.
Chapter 5: Web and Command Line Interfaces
Chapter 6: Basic Parameters Provides instructions for configuring network ports, firewall and routing
Chapter 7: Services Provides instructions for enabling and disabling system logging, SSH and
Chapter 8: Device Ports Provides instructions for configuring global device port settings, individual
Chapter 9: USB Port Provides instructions for using the USB port.
Describes the web and command line interfaces available for configuring the SLB branch office manager.
The configuration chapters (6-12) provide detailed instructions for using the web interface and include equivalent command line interface commands.
settings, and the date and time.
Telnet logins, SNMP, SMTP, and the date and time.
device port settings, and console port settings.
Chapter 10: Connections Provides instructions for configuring connections and viewing, updating, or
disconnecting a connection.
Chapter 11: User Authentication
Chapter 12: Maintenance Provides instructions for upgrading firmware, viewing system logs and
Chapter 13: Application Examples
Chapter 14: Command Reference
Provides instructions for enabling or disabling methods that authenticate users who attempt to log in via SSH, Telnet, or the console port. Provides instructions for creating custom menus.
diagnostics, generating reports, and defining events. Includes information about web pages and commands used to shut down and reboot the SLB unit.
Shows how to set up and use the SLB branch office manager in three different configurations.
Lists and describes all of the commands available on the SLB command line interface
SLB™ Branch Office Manager User Guide 18
Chapter (continued) Description
Appendix A: Bootloader Lists and describes the commands available for the bootloader command
line interface.
Appendix B: Security Considerations
Appendix C: Adapters and Pinouts
Appendix D: Protocol Glossary
Appendix E: Compliance Information
Provides tips for enhancing SLB security.
Includes adapter pinout diagrams.
Lists the protocols supported by the SLB unit with brief descriptions.
Provides information about the SLB device’s compliance with industry standards.

Additional Documentation

Visit the Lantronix Web site at www.lantronix.com/support/documentation for the latest documentation and the following additional documentation.
Document Description
SLB Branch Office Manager Quick Start Describes the steps for getting the SLB unit up and running.
SLB Branch Office Manager Online Help for the Command Line Reference
SLB Branch Office Manager Online Help for the Web Interface
1: About this Guide
Provides online help for configuring the SLB device using commands.
Provides online help for configuring the SLB unit using the web page.
SLB™ Branch Office Manager User Guide 19

2: Introduction

The SLB branch office manager enables IT system administrators to manage remote servers and IT infrastructure equipment securely over the Internet. This innovative hybrid device combines the capabilities of the award-winning secure console manager with an 8-port remote power management solution into a compact, 1U rack-mountable appliance.

Features

Console Management
8 serial ports for console connectivity
Enables system administrators to remotely manage devices with serial console ports, e.g.,
Linux, Unix, and recent versions of Windows servers, routers, switches, telecom, and building access equipment.
Provides data logging, monitoring, and secure access control via the Internet
Power Management Outlets for Power Connectivity
8 outlets for power connectivity
Provides ability to control power individually to all attached equipment
Provides on/off/reboot control
Per port power consumption monitoring
SLB882KIT-15P and SLB882KIT-20P outlets support NEMA 5-15P & 5-20P plugs
SLB8824KIT-AP and SLB8824KIT-EU outlets support C14 plugs
Ensures safe power distribution and reduces in-rush current overload
Power Inlets
SLB882KIT-xx Dual 100-120 VAC power inlets
SLB8824KIT-xx Dual 200-240 VAC power inlets
Provides automatic power switch-over when both primary and secondary power inlet sources
are used
Integration with Other Secure Lantronix Products
Can integrate seamlessly with the ConsoleFlow™ or vSLM™ management appliance
software for a complete end-to-end Out-of-Band (OOB) management solution.
SLB™ Branch Office Manager User Guide 20
Internal Temperature Sensor
System administrators can be alerted if temperature goes out of range.
Figure 2-1 Branch to Enterprise Integration Concept
2: Introduction
Designed for Branch Offices and Similar Environments
Designed to meet the specific needs of the remote branch offices and environments alike, the SLB branch office manager conserves rack space and reduces costs by enabling system administrators at a main corporate facility to manage the IT equipment distributed among branch offices simply and cost-effectively.
Branch offices are facilities that are typically remote or "distributed IT" locations, likely located off­site of corporate headquarters or large-scale enterprise facilities. These distributed facilities typically do not have an on-site maintenance staff or IT System Administrator.
Typically, the branch office environment has some of the following characteristics:
Space is limited to 1U rack space or shelf mounted desktop unit
Closet-mounted or wall-attached rack
Limited air and power conditioning
Limited number of network devices and servers
No on-site maintenance staff
Ethernet or dial-up modem access is required
SLB™ Branch Office Manager User Guide 21
2: Introduction
Typical Equipment
You can configure, administer, and manage IT equipment in a variety of ways, but most devices have one method in common: an RS-232 serial port, sometimes called a console, auxiliary, or management port. These ports are often accessed directly by connecting a terminal or laptop to them, meaning that the user typically must be in the same physical location as the equipment. Eliminating the need for a physical presence, the Lantronix SLB unit provides remote access to the equipment from anywhere there is a network or modem connection.
The SLB branch office manager can access and administer many types of equipment, such as:
Servers: Unix, Linux, Windows Server 2003 or higher, and others
Networking equipment: Routers, switches, storage networking
Telecom: PBX, voice switches
Other systems with serial interfaces: Heating/cooling systems, security/building access
systems, UPS, medial device.
Types of Business
The SLB unit is used in many types of environments, for example:
Banking and finance
Insurance companies
Healthcare
Retail Sales
Information Technology
Education and campus style facilities
Hospitality
Manufacturing Facilities
Base Station Control and Management
Benefits
The key benefits of using the SLB branch office manager:
Saves space: Compact design merges the functionality of two solutions into a 1U rack
solution, reducing required rack space and total cost of ownership.
Saves money: Enables remote management and troubleshooting without sending a technician
onsite, resulting in reduced travel costs and increased network uptime.
Saves time: Provides instant access and reduces response time, improving efficiency.
Simplifies access: Enables 24/7 access to your equipment securely and remotely after hours
and on weekends and holidays-without having to schedule visits or arrange for off-hour access.
Protects assets: Provides the highest levels of encryption and security features
(authentication, authorization, and IP filters) to ensure that your IT infrastructure and data assets are protected.
The SLB unit also provides features such as convenient text menu systems, break-safe operation, port buffering (logging), remote authentication, and Secure Shell (SSH) access. Dial-up modem support ensures access when the network is not available.
SLB™ Branch Office Manager User Guide 22

Models

The SLB branch office manager has the following hardware components:
The 100-120 VAC SLB model is available in 100-120 VAC (50-60 Hz) NEMA 5-20R type
The 200-240 VAC SLB model is available in 200-240 VAC (50-60 Hz) IEC C13 type outlets.
Chassis: The SLB unit has a 1U tall, self-contained rack-mountable chassis.
Power Outlets: Eight outlets allow power management and control (on/off/reboot) of the
Serial Device Ports: Eight serial RS-232C (EIA-232) device ports are for remote console
2: Introduction
outlets. This model also includes a USB port.
This model also includes a USB port.
Note: This model is EU style with one switched hot line, not a US style with two hot
lines. It is intended for use on power systems where the 200-240VAC is provided on a single hot line.
attached equipment using a simple web or command line interface.
management of the attached equipment. These match the RJ45 pin-outs of the console ports of many popular devices found in a network environment, and where different can be converted using Lantronix adapters. See the appendix, Appendix C: Adapters and Pinouts for more information on serial adapters and pin-outs.
Ports and Modem: The SLB branch office manager has two 10/100 Ethernet ports (referred
to in this user guide as Eth1 and Eth2) in the back and a front panel serial console port (RJ45). The SLB unit also includes a USB type A port in the front panel and an internal v.92 modem.
Table 2-2 SLB Models
Model Description
100-120 VAC SLB Branch Office Manager, 8 device ports, 8 power outlets (100-120 VAC, NEMA 5-
20R type), 2 AC power inlets
200-240 VAC SLB Branch Office Manager, 8 device ports, 8 power outlets (200-240 VAC, IEC C13
type), 2 AC power inlets
Figure 2-3 100-120 VAC SLB Unit
SLB™ Branch Office Manager User Guide 23

System Features

The SLB firmware has the following basic capabilities:
Connects up to eight RS-232 serial consoles
Controls power (on/off/reboot) of up to eight attached devices
Per port current consumption monitoring
Dual power inlets for failover. Both power inlets must be on the same phase.
2: Introduction
Figure 2-4 200-240 VAC SLB Unit
Dual 10Base-T/100Base-TX Ethernet network compatibility
Buffer logging to file
Email and SNMP notification
ID/Password security, configurable access rights
Secure shell (SSH) security; supports numerous other security protocols
Network File System (NFS) and Common Internet File System (CIFS) support for
configuration files
TCP, Telnet or SSH to a serial port by IP address per port or by IP address and TCP port
number
Configurable user rights for local and remotely authenticated users
Built-in internal modem
External USB modem and Flash Storage supported
Sun break-safe (no unintentional break ever sent to attached servers)
Simultaneous access on the same port-- "listen" and "direct" connect mode
Local access through a console port
Web administration (using most browsers)
Protocols Supported
The SLB branch office manager supports the TCP/IP network protocol as well as:
TCP, SSH, Telnet, PPP and NFS for connections in and out of, and CIFS for incoming
connections to the \\<hostname>\public\config directory of the SLB unit
SMTP for mail transfer
DNS for text-to-IP address name resolution
SLB™ Branch Office Manager User Guide 24
2: Introduction
SNMP with custom traps for remote monitoring and management
FTP and SFTP for file transfers and firmware upgrades
TFTP and HTTPS for firmware upgrades
DHCP and BOOTP for IP address assignment
HTTPS (SSL) for secure browser-based configuration
NTP for time synchronization
LDAP, NIS, RADIUS, CHAP, PAP, Kerberos, and TACACS+ for user authentication
IPsec for VPN access
For brief descriptions of these protocols, see Appendix D: Protocol Glossary.
Access Control
The system administrator controls access to attached servers or devices by assigning access rights to up to 128 user profiles. Each user has an assigned ID, password, and access rights. Other user profile access options may include externally configured authentication methods such as RADIUS, TACACS+, NIS, and LDAP. Groups are supported in LDAP, RADIUS (via VSA), and TACACS+ (using priv_lvl).
Power Outlet Control
With the SLB unit's built-in power management capability, system administrators can remotely control the power (on/off/reboot) individually to all IT equipment in the branch office, ensure safe power distribution, and reduce "in-rush" current overload. If SNMP traps are enabled, a trap (alarm) is sent if the total current for all outlets exceeds a threshold.
Device Port Buffer
The SLB branch office manager supports real-time data logging for each device port. The port can save the data log to a file, send an email notification of an issue, or take no action.
You can define the path for logged data on a port-by-port basis, configure file size and number of files per port for each logging event, and configure the device log to send an email alert message automatically to the appropriate parties indicating a particular error.
Configuration Options
You may use the backlit front-panel LCD display for initial setup and configuration and to view current network, console, and date/time settings, and get power outlet status.
Both a web interface viewed through a standard browser and a command line interface (CLI) are available for configuring the SLB settings and monitoring performance.
SLB™ Branch Office Manager User Guide 25

Application Example

The figure below is an example deployment. An SLB unit is deployed in each branch office and an (optional) vSLM management appliance at the main office. The branch offices are interconnected (always on) by VPN routers overlaid on the Internet, and also interconnected (on demand) through the analog phone system.
2: Introduction
The SLB unit provides remotely controlled and monitored AC power (orange), console management (green), and traditional, wired telephone network (PSTN) access (yellow).
SLB™ Branch Office Manager User Guide 26
Figure 2-5 Example Deployment
2: Introduction
A system administrator, upon losing IP connectivity to a server, takes the following steps:
1. Views the server's Ethernet interface state information provided by the SLB branch office manager.
2. If the Ethernet interface is faulty, connects to the server's console port by means of the SLB web page or CLI (optionally via the vSLM management appliance) and checks the server's system parameters.
3. If the server is not responsive on the console port, commands the SLB to reboot the server's power.
4. If the entire branch office loses IP connectivity, dial in to the SLB to perform the diagnostic functions

Hardware Features

Caution: To avoid physical and electrical hazards, please read Safety Precautions
before installing the SLB unit.
The SLB hardware includes the following:
1U-tall (1.75 inch) rack-mountable appliance
SLB™ Branch Office Manager User Guide 27
2: Introduction
Two 10Base-T/100Base-TX network ports
One front panel serial console port for VT100 terminal or PC with emulation
One USB Port
Front panel LCD display and keypad
One RJ-11 Internal Modem Port
256 KB-per-port buffer memory for serial device ports
Eight RS-232 serial device ports connected via Category 5 (RJ45) wiring
Note: Max input/output is rated at 80% of the circuit max, per typical electrical codes.
Dual AC Power Input
100-120 VAC SLB Model Dual IEC-60320/C20 inlets, 100-120 VAC, 50/60Hz
(20A Branch Circuit) 16A max input current
200-240 VAC SLB Model
Power Outlets (Total Switched Power)
Dual IEC-60320/C20 inlets, 200-240 VAC, 50/60Hz(20A Branch Circuit) 16A max input current
100-120 VAC SLB Model
200-240 VAC SLB Model
(8) NEMA 5-20R outlets, 100-120 VAC, 50/60Hz16A max per outlet, 16A total for SLB
(8) IEC C13 outlets, 200-240 VAC, 50/60Hz10A max per outlet, 16A total for SLB
(15.9A max total for China CCC)
Note: The outlet voltage equals the input voltage.
Convection cooled, silent operation, low power consumption
Note: For more detailed information, see Technical Specifications (on page 32).
Serial Connections
All devices attached to the device ports and the console port must support the RS-232C (EIA-232) standard. Category 5 cabling with RJ45 connections is used for the device port connections and for the console port. (For pinout information, see Adapters and Pinouts on page 338.)
Note: RJ45 to DB9/DB25 adapters are available from Lantronix.
Device ports and the console port support the following baud-rate options: 300, 600, 1200, 2400, 4800, 9600, 19200, 38400, 57600, 115200, and 230400 baud.
SLB™ Branch Office Manager User Guide 28
2: Introduction
Figure 2-6 Device Port Connections
Figure 2-7 Console Port Connection
Network Connections
The SLB network interfaces are 10Base-T/100Base-TX connectors for use with a conventional Ethernet network. Use standard RJ45-terminated Category 5 cables. Network parameters must be configured before the SLB branch office manager can be accessed over the network.
Note: One possible use for the two Ethernet ports is to have one port on a private,
secure network and the other on a public, unsecured network.
Figure 2-8 Network Connection
USB Interface
The SLB unit has a USB port. Lantronix qualifies USB devices continuously.
Figure 2-9 USB Interface
SLB™ Branch Office Manager User Guide 29
2: Introduction
Modem Interface
The SLB branch office manager has one v92 modem RJ11 interface to allow configuration and control of the unit via dialing into the unit.
Caution: To reduce the risk of fire, use only No. 26 AWG or larger (e.g., 24 AWG)
UL Listed or CSA Certified Telecommunication Line Cord.
Attention: Pour réduire les risques d’incendie, utiliser uniquement des
conducteurs de télécommunications 26 AWG au de section supérleure.
Figure 2-10 Modem Interface
SLB™ Branch Office Manager User Guide 30
Loading...
+ 314 hidden pages