Novell Zenworks Network Access Control To Infoblox Connector; Configuring The Infoblox Server - Novell ZENWORKS NETWORK ACCESS CONTROL 5.0 - 09-22-2008 User Manual

Table of Contents

Advertisement

To remove the WinPcap software:
Windows server
1 Select Start>>Settings>>Control Panel>>Add or Remove Programs.
2 Click once on the WinPcap listing.
3 Click Remove.
4 Click Yes when asked if you want to completely remove the application and features. When
the uninstallation is complete, the Uninstall Complete window appears:
5 Select one of the options and click Finish.
13.2 Novell ZENworks Network Access Control
to Infoblox Connector
Infoblox
is a DHCP server appliance that writes to syslog when it vends IP addresses. These
TM
syslog messages (DHCPACK syslog lines) are translated and forwarded to the Novell ZENworks
Network Access Control Device Activity Capturer (DAC) by way of the connector (syslog-to-
dac.py).
NOTE: Please verify that your Infoblox software is current (NIOS
TIP: After you upgrade or perform a new installation, the connector file (syslog-to-dac.py) is in the
following directory:
/usr/local/nac/bin
The following sections contain more information:
Section 13.2.1, "Configuring the Infoblox Server," on page 307
Section 13.2.2, "Configuring Novell ZENworks Network Access Control," on page 308

13.2.1 Configuring the Infoblox Server

You must configure syslog on the Infoblox server to send debug level DHCP logs to the Novell
ZENworks Network Access Control ES IPs on TCP port 514, using the local3 facility. The actual
steps to set this up may vary by NIOS. Contact Infoblox support for assistance
www.infoblox.com/support/
If the Infoblox DHCP is clustered, there is a floating/management IP and multiple LAN IPs (one for
each of the nodes in the DHCP cluster). In this configuration:
The switches must be configured to forward DHCP requests (using iphelper, for example) to
the floating/management IP (not the individual LAN IPs)
The iptables firewall on the ESs should be configured to allow syslog traffic from the
individual LAN IPs (one entry per Infoblox DHCP node).
(http://www.infoblox.com/support/)).
4.1r5-0 or later).
TM
(http://
Remote Device Activity Capture 307

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zenworks network access control 5.0

Table of Contents