Alcatel-Lucent Security Management Server (SMS) Installation Manual page 79

Release 9.4
Table of Contents

Advertisement

managed by the SMS can be homed to one of the associated CSs or the managing SMS for
logging purposes.
Up to five Compute Servers can be configured for a Primary or Secondary SMS.
Implementing Primary SMS/Secondary SMS configurations
During the installation of the Secondary SMS, there is a point at which the Secondary SMS
attempts to contact the Primary SMS to replicate the Primary SMS database on the
Secondary SMS. If the Secondary SMS cannot contact the Primary SMS, correct the
problem and retry the operation on the Secondary SMS.
For reasons of security, we strongly recommend that you deploy a Brick device "in front"
of the Primary and Secondary SMS(s) to protect all servers.
To ensure that the Primary SMS and Secondary SMS(s) can contact each other through
both Brick devices, follow the course of action outlined below when you order the
installation:
1. Install the Primary SMS first. The two installation procedures in this chapter provide
step-by-step instructions for a new installation and an upgrade installation.
2. Once the Primary SMS is operational, use it to configure two Bricks and assign the
pre-configured ruleset administrativezone to the ports that will be connected to the
SMS. Refer to the Configuring Brick Ports section in the SMS Administration Guide
for instructions on how to do this.
3. Connect the Primary SMS to the port on one Brick, and the host that will be the
Secondary SMS to the port on the other. Then, deploy the two Bricks: the primary
SMS and the host that will be the Secondary SMS in the network.
4. To ensure that the Primary SMS and remote host can communicate, add a ping rule
(dir=both, source=*, dest=*, service=ping_request,action=pass) to the
administrativezone ruleset, and then ping the host from the SMS. Once the ping is
successful, remove the rule for security reasons. (Refer to the Brick Zone Rulesets
section in the SMS Policy Guide for instructions on how to create a rule.)
5. When you have established that the two SMS servers can communicate, install the
Secondary SMS.
...................................................................
Introduction
67

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security management server 9.4

Table of Contents