e Modify the
IPADDR
f
Save and exit the file.
g Restart the network interface by entering the following at the command line:
service network restart
2 Change the interface the EDAC listens on:
a Log in to the MS using SSH or directly with a keyboard.
b For 802.1X mode, enter the following command at the command line:
setProperty.py -c <cluster name>
Compliance.ObjectManager.NACModeTcpdumpInterface=eth1.1
3 Verify the change:
a Log in to each ES using SSH or directly with a keyboard.
b Enter the following command at the command line:
ifconfig
c Verify that the virtual interface you created is listed.
d Open the following file:
/var/log/nac/nac-es.log
e Verify that the EDAC is using the virtual interface you created. The log should contain a line
similar to the following:
[070509-MDT 10:53:11.366 DeviceActivityCapture-INFO ] Listening on: eth1.1
iptables Wrapper Script
To avoid creating conflicts between
commands manually:
●
/etc/init.d/iptables
●
service iptables start
●
service iptables stop
●
service iptables restart
Sentriant AG Software Users Guide, Version 5.3
line if needed.
and the
iptables
service, do not run the following
nac-es
System Administration
353