Shanghai Representative Office of
Raritan Computer, Inc.
RM 19C-1 Shanghai Shiye Building
18 Caoxi North Road
Shanghai China 2000030
Tel. 86-21-64680475
Fax. 86-21-64627964
E-mail: sales.asia@raritan.com
http://www.raritan.com.tw
Copyright and Trademark Information
This document contains proprietary information that is protected by copyright. All rights reserved. No part
of this document may be photocopied, reproduced, or translated into another language without express
prior written consent of Raritan Computer, Inc.
Dominion SX models contain 128-bit encryption software. Export of this product is restricted under U.S.
law. Information is available from the U.S. Department of Commerce, Bureau of Export Administration at
www.bxa.doc.gov.
For assistance in the U.S., please contact the Raritan Technical Support Team
by telephone (732) 764-8886, by fax (732) 764-8887), or by e-mail tech@raritan.com
Ask for Technical Support – Monday through Friday, 8:00am to 8:00pm, EST.
For assistance outside the U.S., please contact your regional Raritan office.
History .............................................................................................................................................16
Sending a Break/Null.......................................................................................................................18
User List ..........................................................................................................................................19
Close ...............................................................................................................................................20
Figure 2 Rear Panel of 32-port single power supply model .............................................................................3
Figure 3 Default Settings for Factory Reset Mode...........................................................................................4
Figure 4 Hardware Setup for Initial Software Configuration.............................................................................5
Figure 5 Initial Configuration showing Physical Installation was successful.....................................................6
Figure 6 Initial Configuration screen for the First Administrator Account .........................................................6
Figure 7 Initial Configuration screen for Network Settings ...............................................................................7
Figure 8 End of Initial Setup.............................................................................................................................7
Figure 9 Time Configuration Display................................................................................................................8
Figure 40 Sample of Network Configuration Display......................................................................................36
Figure 41 Modem Connection to a Dominion SX unit....................................................................................38
Figure 42 Port Configuration Display .............................................................................................................39
Figure 43 Port Editing Display........................................................................................................................39
Figure 45 New User Creation......................................................................................................................... 42
Figure 46 User Modification Screen...............................................................................................................43
Figure 47 Inserting a rule into the browser-based IP ACL configuration screen. ...........................................45
Figure 48 GUI User Interface.........................................................................................................................45
Figure 57 User Certificate..............................................................................................................................54
Figure 58 Schematic of External Certificate Utilization ..................................................................................55
Figure 62 Current Users List..........................................................................................................................59
Figure 63 Time Configuration Display............................................................................................................59
The Dominion SX Series of Serial over IP Console Servers offers convenient and secure, remote access and
control via LAN/WAN, Internet or Dial-up modem of all networking devices. Dominion SX connects to
any networking device (servers, firewalls, load balancer, etc.) via the serial port and provides the ability to
remotely and securely manage the device using any Web browser. Dominion SX provides a non-intrusive
solution for managing network elements and does not require any software agents to be installed on the
target device.
Product Photos
Dominion SX is a fully configured stand-alone product in a standard 1U high 19” rack mount chassis.
Figure 1 Dominion SX32 Unit
Product Features
Comprehensive Console Management
•Remote Management: Access, monitor, administer, and troubleshoot up to 32 target devices
(depending on model) from any SSH-client Web browser while consuming only one IP address.
• Scripting: Create, store and execute scripts either on demand or on a continuous basis.
• Notification: Create notification messages via email alerts.
• Collaborative Management and Training: Access ports simultaneously; up to 10 users per port (four
users per port on DSX4 and DSX8) at any time.
•SecureChat™: “Instant message” other SSL users securely and collaborate on device management,
troubleshooting, and training activities.
• Get History: Get up to 64 KB of recent console history to assist with debugging.
• VT100 Console Window: View VT100/ANSI terminal emulation including copy/paste and
record/playback functionality.
• Local port access
• Telnet
• SNMP traps
• SYSLOG
• Logging to NFS Server
• Three Levels of User Access:
− Administrator: Has read and write access to the console window; can modify the configuration of
unit.
−Operator: Has read and write access to the console window; cannot modify the configuration of
unit (except own password).
2 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
−Observer: Has read-only access to the console window; cannot modify the configuration of unit
• User Authentication Security: Login Name and Password scheme (MD5 Hash) with global Access
Control List (ACL).
•Supports RADIUS (can be configured as a RADIUS client), TACACS+, LDAP, LDAP(S), Microsoft
Active Directory, and NTP.
•Supports User-defined and installable security Certificates.
Reliable Connectivity
• Modem Connectivity: For emergency remote access if the network has failed.
• Target Device Connectivity: Simplified RJ45-based CAT5 cable scheme; serial port adapters are
available from Raritan.
•Local Access for “crash-cart” applications.
Simplified User Experience
• SSH.
• Browser-based Interface: Graphical User Interface provides intuitive access to target devices (click on
the appropriate button to select the desired target device).
• Upgrades: Built-in firmware upgrade capability via FTP/Internet.
• Ability to load specific applications per console port for ease of use; specific applications are available
from Raritan.
Package Contents
Each Dominion SX ships with the following:
• (1) Dominion SX unit with mounting kit (Rack-mount kit is optional on some units)
• (1) Raritan User Manual CD-ROM containing the Dominion SX Installation and Operations Manual
• (1) Printed Dominion SX Quick Setup Guide
• (1) Power cord
• (1) Release Notes
• (1) Packing List page
• (1) RJ45 serial loop-back plug.
• A DB9 Factory Reset Adapter is included on some units (other units have a reset switch, and do not
require an adapter)
CHAPTER 2:INSTALLATION3
Chapter 2: Installation
This section describes the steps necessary to configure Dominion SX for use on a local area network (LAN).
All new Dominion SX units come with default network settings, illustrated in the table below. Once units
are connected to the network, these default settings will allow the user to configure Dominion SX for
normal use.
There are three separate tasks you must complete to use Dominion SX on the network: Hardware
Installation, Initial Software Configuration, and Dominion SX Deployment, usually completed in this order,
and each described in this chapter.
Hardware Installation describes how to connect the Dominion SX unit to a computer to perform the initial
configuration of the unit. This step requires an additional computer that will be used to log into the
Dominion SX unit and configure it for the first time in the next section.
Initial Software Configuration describes how to connect to Dominion SX in its default state and to
configure it for use in a specific network environment.
Dominion SX Deployment describes how to install a Dominion SX unit on the network once the Initial
Software Configuration is complete.
Pre-Configuration Notes
The following list includes information that you will be required to supply to complete the configuration of
the Dominion SX. Obtain all required configuration information prior to performing the configuration steps
outlined below. If you are uncertain of any information, contact your system administrator for assistance.
Network Information:
•Raritan Unit Name: The name of this unit, a generic term for the Dominion SX unit. This can be 64
characters maximum, no minimum, no spaces.
• IP address: The IP address of the unit, as directed by your network administrator.
• IP subnet mask: The IP subnet mask for the unit, as directed by your network administrator.
• IP gateway: The IP gateway for the unit, as directed by your network administrator.
• Port Address: As directed by your network administrator (range is 51000-64000, or other port number
higher than 1024); default value is 51000.
Hardware Installation
SelfTest and Factory Reset LED
Terminal/Factory Reset (RESERVED)
Primary LAN Connection
Figure 2 Rear Panel of 32-port single power supply model
Modem
Physical Installation of Dominion SX for Initial Configuration:
1. Obtain a computer with a network card and crossover network cable. This computer will be referred to
as the ‘installation computer.’
2. Physically mount the unit in an ergonomically sound manner. The unit is designed to be easily rack-
mounted, and rack mounting is recommended.
3. Connect the crossover network LAN cable to the primary LAN connection on the back of the chassis.
Connect the other end to the network card in the installation computer.
RJ45 serial ports
4 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
4. Connect the female end of the external power cord to the back of the chassis.
5. Connect the male end of the external power cord to the power supply outlet. Power ON the Dominion
SX unit.
Note: The unit will perform a hardware and firmware self-test, indicated by the green light on the back of
the chassis, and then start the software boot sequence. The boot sequence takes approximately 30-60
seconds, and is complete when the green light illuminates and remains on.
6. Each unit comes with a certain set of configuration defaults henceforth referred to as Factory Reset
Mode. The default network settings for this mode are:
Internet Address (IP)
192.168.0.192
Gateway Address 192.168.0.192
Subnet Mask 255.255.255.0
Port Address 51000
Figure 3 Default Settings for Factory Reset Mode
7. Ensure that your installation computer can communicate with IP address 192.168.0.192. First, verify
that the installation computer has the route for 192.168.0.192:
a. On the command line interface of the installation computer, enter the command route print.
b. If 192.168.0.192 is on the gateway list, proceed to the next step. Otherwise, add 192.168.0.192 to
the gateway list: type the following commands into either a DOS or UNIX command line interface
on the installation computer where your browser is running:
i. On a Windows NT/95/98/2000 system: route add 192.168.0.192 <client_host IP address>
Example:
route add 192.168.0.192 15.128.122.12
ii.On a UNIX (incl. Sun Solaris) system: route add 192.168.0.192 <client_host IP address> -
interface
Example:
route add 192.168.0.192 15.128.122.12 -interface
8. On the command line interface, type: ping 192.168.0.192.
a. If this command successfully produces a reply from the Dominion SX unit, please proceed to step
10.
b. If this does not produce a reply, verify that the default IP address is entered correctly and there is a
route to that IP address.
9. Use the installation computer to connect to the unit, typing the factory default IP address
192.168.0.192 in the installation computer Web browser’s address line. Once you have reached the
unit’s initial configuration screen, proceed to the Initial Software Configuration section that follows.
CHAPTER 2:INSTALLATION5
Initial Software Configuration
Crossover
Network
Cable
Dominion SX Unit
Browser
Installation
Computer
Figure 4 Hardware Setup for Initial Software Configuration
User Information:
This information should be entered for each user, up to 50 user accounts, with at least one administrator for
each Dominion SX unit:
• User Name: 32 characters maximum, one character minimum, spaces permitted.
• Login Name: 20 characters maximum, one character minimum, no spaces.
• User Type:
− Administrator
− Operator
: Can modify configuration of the unit, has read/write access to the console window.
: Cannot modify configuration of the unit (except own password), has read/write access to
the console window.
− Observer
: Cannot modify configuration of the unit (except own password), has read-only access to
the console window.
•Information: Any additional information (text) you want associated with this user. Can be 64
characters maximum, no minimum, spaces permitted.
•Password: Alphanumeric text, 6–16 characters in length, no spaces. The first six characters of the
password must contain at least two alpha and one numeric character; the first four characters cannot be
the same as the user name.
Configuration
1. Disable Proxies in the installation computer Web browser.
Use “no Proxies” or temporarily add 192.168.0.192 to the list of URLs for which no proxy is
configured.
2. Enable Java™ Applet Execution in the installation computer Web browser.
3. Access the unit through your installation computer Web browser on the same subnet by typing the
URL https://192.168.0.192 into the address/location field.
4. Follow the configuration instructions on the screen.
Note: At this point you will enter all of the initial configuration information listed in Pre-Configuration
Notes.
5. The unit will reboot automatically once it has been configured. The unit now has the user-defined
configuration settings, including a new IP address and is ready to be powered off, disconnected from
the installation computer, and moved to its intended location.
6 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
Step-by-Step Configuration
1. Access the unit through your Web browser on an installation computer that is on the same subnet by
typing the URL: https://192.168.0.192.
Figure 5 Initial Configuration showing Physical Installation was successful
2. Click on the [Next] button to add users.
3. When the User Configuration Window appears, enter the information for the first user for Dominion
SX. By default, the first user will have Administrator privileges. All fields except for the Information
field are required.
− Name: User’s (real) name
− Information: Descriptive information about this user
− Login Name: Unique login identifier
− Password: User’s password
− Re-enter Password: Confirm password by re-typing it
Figure 6 Initial Configuration screen for the First Administrator Account
4. Click on the [Next] button to proceed to the Network Configuration window.
CHAPTER 2:INSTALLATION7
5. The Network Configuration Window allows the user to specify the network settings for the unit. A
network administrator typically assigns the values for these parameters. All fields are required:
− Raritan Unit Name: Descriptive name for this unit
− IP Address: Network address for this unit
− Subnet Mask: Subnet mask for the network where this unit will reside
− IP Gateway: Default gateway for this unit
− Port Address: Default application communication port – if accessing the unit through a firewall,
the TCP port specified during installation must be open.
Figure 7 Initial Configuration screen for Network Settings
6. Click on the [Finish] button to complete the initial configuration of Dominion SX. You will see a
screen that indicates successful configuration of the unit. The system will reboot and apply the new
settings.
Figure 8 End of Initial Setup
8 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
Time and Date Configuration
We recommend that you configure the local Date and Time in the Dominion SX unit as soon as it is
configured. Some features in Dominion SX, such as certificate generation depend on the correct Timestamp,
which is used to check the validity period of the certificate. Additionally, the Syslog and NFS logging
features also use the system time for time-stamping log entries.
Figure 9 Time Configuration Display
Configuration
1.Set the Current Date and Current Time using the drop-down arrows to select the Month, Day, Year,
Hour, Min. and Sec. field values.
2. To use NTP (Network Time Protocol), click on the Enable NTP check-box and enter valid IP
addresses for the Primary Time Server and, if required, Secondary Time Server.
3. Click on the [Update] button.
4. Click on the [Save] button.
CHAPTER 2:INSTALLATION9
Deployment
After the Initial Software Configuration phase, a Dominion SX unit is configured for operation on the LAN.
Ethernet
Connection
Dominion SX Unit
LAN
Installation
Computer
Browser
Figure 10 Deployment
1. Make sure you have an allocated Ethernet cable connected to the network for use with the unit.
2. Physically mount the unit in an ergonomically sound manner.
3. Connect the LAN cable to the primary LAN connection on the back of the chassis. Connect and/or
verify that the other end of the cable is connected to the proper network. If the unit has a failover
module, connect the secondary network LAN connection as well.
4. Connect the female end of the external power cord to the back of the chassis.
5. Serial Connection to Target Devices: This manual contains detailed information on connecting the
Dominion SX unit to the console port of target devices.
6. Modem Connection (optional): Connect a phone line to the modem port. Remember to write down
the phone number for this line, as it will be necessary later when the user configures a client for dialup
networking.
7. Connect the male end of the external power cord to the power supply outlet and power ON the
Dominion SX unit.
Note: The unit will perform hardware and firmware self-test, indicated by the green light on the back of
the chassis, and then start the software boot sequence. The boot sequence takes approximately 30-60
seconds and is complete when the green light illuminates and remains on.
8. Perform a quick connectivity check by connecting to the device using either IE or Netscape. In the
address line, enter https://<IPAddress> where IPAddress is the IP address of the unit as previously
configured. The login display should appear verifying that the unit has been properly configured and
can be accessed from the network.
9. Enter the Configuration window and enter the various configuration parameters for each console port.
Enter specific operational parameters for the unit (please see Chapter 4: Console Features for
additional information).
10 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
CHAPTER 3:OPERATION11
Chapter 3: Operation
Overview
Once the Dominion SX unit has been deployed in its final destination, you can access the console of the
target device. This chapter explains the normal operational procedures.
Accessing the Remote Device
The remote device can be accessed in one of two ways, either browser-based or by direct port access, used
either as a user based remote device access method or used for application programs to access the target
device programmatically.
Note: For the purpose of illustration, all discussion in this manual is based on using Internet Explorer as
the browser.
Browser-Based Access
1. Using a browser such as IE, Netscape, Mozilla, or other supported browsers, on your client desktop,
enter the IP address of the unit. A security alert window will appear.
Figure 11 Security Alert Display
The unit is always SSL enabled. When you try to connect to the Dominion SX unit, a Security Alert is
displayed ; this is because the CA root certificate is not installed in the browser. Please see Appendix C: Certificates for additional information.
2. Click on the [Yes] button to continue.
12 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
3. When the login screen appears, enter your Login Name and Password, and click on the [Login] button.
Figure 12 Login Display
4. When the main display page appears, click on the desired [Port#] button to launch that port’s console
display.
Figure 13 Main Display with Available Ports
CHAPTER 3:OPERATION13
Security Dialog for Console Display
RaritanConsole, an applet included with your Dominion SX unit, is designed by Raritan to enable the
applet to access the resources of the user’s computer. In addition, the default code set preferences are stored
on the user’s computer.
Internet Explorer
Before the RaritanConsole window appears, a Security Warning screen requests permission to access
computer resources. The dialog indicates that the authenticity of the signer, Raritan, has been verified by
VeriSign, Inc., and it specifies the permissions requested from the user.
Figure 14 Security Dialog in Internet Explorer
•Click on the [Yes] button to accept all requested permissions. These permissions will not be requested
again in the same session. Check the [Always trust content from…] checkbox to avoid being asked
for permissions at the start of every new session.
•Click on the [No] button on the dialog box cancels the RaritanConsole window.
Important! Once [No] is selected, the console will not pop up until the browser is closed and a
new session is started.
14 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
Netscape Navigator
RaritanConsole loads without displaying a Security Warning window. When actions that require user
permissions are performed, a security dialog will appear. Each operation requires a unique permission.
Once permissions are granted, they will not be requested again in the same session. Users can also check
the [Remember this decision] checkbox to avoid being asked for permissions every new session.
Once the Security screens are completed, the console window appears, and the user can begin working with
the remote target system.
Figure 17 Console Window
Sending a Break / Null
From a Browser:
Some target systems, such as Sun Servers, require a null character (Break) to be sent from the console. To
send a break / null, verify that you have write access. If not, use the drop-down menu to obtain write access,
as described in the Write Access section of Chapter 4: Console Features. Then, select Send Break from
the Emulator drop-down list to send a break to the Server running Solaris.
CHAPTER 4:CONSOLE FEATURES15
Chapter 4: Console Features
There are six drop-down menus available in the menu bar of the console window:
• Emulator
• Edit
• Chat
• Tools
• Script
• Help
Emulator
Settings
The Settings window displays the Terminal Type and Cursor Type for the console window.
• Currently the unit supports Terminal Type VT100/ANSI, which cannot be changed.
• The Cursor Type can be either Line or Block, depending on your preference. The default cursor is Line
type, but can be changed by clicking on the appropriate radio button.
To View Settings:
1. Click on Emulator in the main menu.
2. Select Settings from the drop-down menu.
3. Adjust settings as needed.
4. Click on the [OK] button to close the Settings window.
Figure 18 Settings Command and Settings Window
16 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
History
The History feature allows you to view the recent history of console sessions by displaying the console
messages to and from the target device. This function displays up to 64 kilobytes of recent console message
history, allowing a user to see target device events over time. When the size limit is reached, the text will
wrap, overwriting the oldest data with the newest. History information can be useful when debugging,
troubleshooting, or administering a target device.
Note: History data is displayed only to the user who requested the history.
To View Session History:
1. Click on Emulator in the main menu.
2. Select History from the drop-down menu.
Figure 19 History Command
CHAPTER 4:CONSOLE FEATURES17
Write Access
The user with Write Access can send commands to the target device. Write Access can be transferred
among users working in RaritanConsole via the Get Write Access command from the Emulator drop-down
menu.
To Obtain Write Access:
1. Click on Emulator in the main menu.
2. Select Get Write Access from the drop-down menu.
Figure 20 Get Write Access Command
3. You now have Write Access to the target device, as indicated by the green block located before Write
Access in the status bar.
4. When another user assumes Write Access from you, loss of Write Access is indicated by a red block
before Write Access in the status bar. A message alerting the user who currently has Write Access
appears to tell that user that another user has taken over access to the console.
18 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
Sending a Break/Null
To get access to a certain commands, Sun Solaris servers require a null character (Break) to be sent from
the console to get to an OK prompt. This is the equivalent of issuing a STOP-A from the Sun keyboard.
Only users with Operator and Administrator privileges can send a “break”; users who are Observers cannot
send a “break.”
To send an intentional “break” to a Sun Solaris server:
1. Verify that you have the Write Access. If not, please follow the instructions in the previous section to
obtain write access.
2. Click on Emulator in the main menu.
3. Select Send Break from the drop-down menu to send a null character to the target Sun Solaris server.
Figure 21 Send Break
CHAPTER 4:CONSOLE FEATURES19
User List
The User List command allows you to view a list of other users who are accessing the same port. An
asterisk (*) appears before the user who has Write Access to the console.
To View the User List:
1. Click on Emulator in the main menu.
2. Select User List from the drop-down menu.
Figure 22 User List Command and User List Window
3. Click on the [Close] button to close the User List window.
20 DOMINION SXINSTALLATION AND OPERATIONS MANUAL
Close
To Close RaritanConsole:
1. Click on Emulator in the main menu.
2. Select Close from the drop-down menu.
Figure 23 Close Command
Loading...
+ 142 hidden pages
You need points to download manuals.
1 point = 1 manual.
You can buy points or you can get point for every manual you upload.