To avoid potentially fatal shock hazard and possible damage to Raritan equipment: • • Do not use a 2-wire power cord in any product configuration. • • Test AC outlets at your computer and monitor for proper polarity and grounding. •...
Features and Benefits Next-Generation Console Server Raritan's Next-Generation The Dominion SX II is Raritan's next-generation Serial Console Server (also known as Serial Console Server Terminal Server) that provides IT and network administrators secure IP access and control of serial devices, anytime, anywhere. The new SX II is the most powerful, secure, reliable, easy-to-use and manageable serial-over-IP console server on the market.
Page 7
Powerful Serial The Dominion SX II with its powerful hardware platform provides high-powered serial processing Processing Engine for the most extreme use cases. Up to 10 users can simultaneously connect to a serial device connected to a SX II port. Up to 200 simultaneous user sessions are supported by a given SX II console server.
Page 8
Port Logging to Port activity to and from serial devices can be logged to a Syslog server, Network File System Syslog, NFS and Local (NFS) server or locally to the SX II device with up to 8 Gb of storage. File NFS Logging Features Allows logging of all user keystrokes and server/device responses to NFS server(s).
Page 9
Validated FIPS 140-2 For government, military and other high security applications, the Dominion SX II utilizes a Cryptographic Module validated FIPS 140-2 Cryptographic Module for enhanced encryption. Modules tested and validated as conforming to FIPS 140-2 are accepted by federal agencies of the U.S. and Canada for the protection of sensitive information.
Page 10
TCP/IP Port Management Can disable TELNET and SSH access if desired. Ability to change these ports in addition to HTTP, HTTPS and discovery ports Prevent Man In The Middle Enhanced security of communication channels by using client and server SSL Attacks certificates.
Configurable Event The SX II generates a large variety of device and user events including: device operation, Management and device management changes, security, user activity and user administration. These can be selectively delivered to: SNMP, Syslog, email (SMTP) as well as stored on the SX II in the audit Logging log.
SX II Models The following SX II models are available. Models with an M include an internal modem in addition to the standard features that are provided on all SX II models. For a list of standard features, see Features and Benefits (on page 6).
Appliance diagram key J USB port K LED port indicators L Power status (Note SX II 48 port models have their power status located above the front-panel USB port.) Supported Serial Devices • • Routers • • LAN switches • •...
All admin functions available in the Remote Console are available in the Admin-Only Interface. iOS Support SX II supports iOS SSH apps, both with and without VPN, to allow users access via iOS mobile devices. Access SX II Using an iOS Device (on page 26)
Configure SX II for the First Time SX II can be configured from the Remote Console or command line interface (CLI). In This Chapter Default Login Information..........15 Initial SX II Configuration from the Remote Console.
Next, connect SX II to your network and configure your network settings for the first time. Initial SX II Configuration Using Command Line Interface (Optional) (on page 16) or Configure SX II Network Settings from the Remote Console. Connect a Laptop to SX II Using a Cross-Over Cable (Optional) The first time you configure SX II, if you are connecting from the LAN port on laptop to the LAN1 port on SX II using a crossover cable, do the following - 1.
6. At the admin > config > network > prompt, enter interface if lan1 ipauto none ip <ip address> mask <mask> gw <gateway ip address> To use DHCP, enter interface if lan1 ipauto dhcp 7. Give the device a name to help identify it. Enter "name devicename <DSX2 name>".
™ ™ For example, if the character set on a Sun Solaris server is set to ISO8859-1, the target device should also be set to ISO8859-1. Ensure that the terminal emulation on the target host connected to SX II serial port is set to VT100, VT220, VT320 or ANSI.
Access and Use Remote Console Features The Remote Console is a browser-based interface accessed when you log in to SX II via a network connection. See. Log In to SX II and HSC (on page 24) Administrator Functions in the Remote Console Administrators perform SX II configuration and maintenance functions from the Remote Console, such as configuring network access, adding and managing users, managing device IP addresses and so on.
1. Open a browser, then log in to SX II. 2. Click More Information on the first warning. 3. Click View Certificate Details on the More Information dialog. You are prompted to install the certificate. Follow the wizard steps. Note: If you are not prompted by the browser, manually select the Settings or Options for your browser, and import the certificate.
Page 22
1. Open an IE browser, then select Tools > Internet Options to open the Internet Options dialog 2. Click the Security tab. 3. Click on Trusted Sites. 4. Disable Protected Mode, and accept any warnings. 5. Click Sites to open the Trusted Sites dialog. 6.
1. Open an IE browser, then log in to SX II. 2. Click More Information on the first Java™ security warning. 3. Click View Certificate Details on the More Information dialog. You are prompted to install the certificate. Follow the wizard steps. For details see, Example 1: Import the Certificate into the Browser (on page 20).
4. The Certificate Export Wizard opens. Click Next to start the Wizard. 5. Select "Base-64 encoded X.509" in the second Wizard dialog. 6. Click Next to save the file as a Base-64 encoded X.509. You can now install the certificate on your SX II. Log In to SX II and HSC This login procedure gives you access to the default HTML Serial Client (HSC) for target connections.
1. Launch a supported web browser. 2. Enter the SX II HTTP, HTTPS or DNS address provided to you by your Administrator. Note: You are always redirected to the IP address from HTTP to HTTPS. 3. Enter your username and password, then click Login. 4.
Additional Security Warnings Even after an SSL certificate is installed in the SX II, depending on your browser and security settings, additional security warnings may be displayed when you log in to SX II. It is necessary to accept these warnings to launch the SX II Remote Console. Reduce the number of warning messages during subsequent log ins by checking the following options on the security and certificate warning messages: •...
openssl x509 -req -sha256 -in sx2.req -out sx2.cer -CAkey localCA.key -CA localCA.cer -days 355 -CAcreateserial -CAserial serial 3. Email the localCA.cer and sx2.cer files created to an email account that can be opened on the IOS device. 4. Open the email through the iOS device mail app and click on the localCA.cer to install the certificate. Follow prompts and trust the certificate.
SX II Port Access Page After a successful login, the Port Access page opens listing all ports along with their status and availability. Note that target access is not enabled in the Admin-Only Interface version of the Remote Console. Ports are numbered from 1 up to the total number of ports available for the SX II. For example, Port_1 - Port_48, Port_1 - Port_32.
SX II Left Panel The left panel contains the following information. Note that some information is conditional - meaning it is displayed based on your role, features being used and so on. Conditional information is noted here. Information Description Displayed when? Time &...
Port Action Menu Options - Connect, Disconnect, Power On, Power Off and Power Cycle Targets Once you log in to SX II via a web browser, the SX II Port Access page displays. For more information on the Port page, see SX II Port Access Page (on page 28).
Alternatively, you can connect via Direct Port Access, if SX II is configured for Direct Port Access. Note that you can also connect to targets via command line interface. See Connect to Targets Using CLI - Connect, Disconnect, Power On, Power Off and Power Cycle Targets (on page 34).
Disconnect from a Target Once connected to a target, the Disconnect menu option is available in the Port Action menu. Clicking on the Disconnect option disconnects from a target, and closes the HSC window. You can also click the X icon on the window or use the Exit menu option. Connect to Targets Using CLI - Connect, Disconnect, Power On, Power Off and Power Cycle Targets (on page 34).
Power Off a Target Power off the target through the associated outlet. This option is visible only when - • • there are one or more power associations to the target or power strip • • you have permission to manage the power You can also perform these actions through HSC, and command line interface.
Connect to Targets Using CLI - Connect, Disconnect, Power On, Power Off and Power Cycle Targets Before connecting to a target, the terminal emulation and escape sequence must be configured. See Terminal Emulation on a Target (on page 17) and Set the CLI Escape Sequence (on page 18).
Page 35
For example, if a monitor with a native resolution of 2048x1600@60Hz is connected to SX II, SX II detects that it is not an SX II supported resolution and selects a resolution it does support, such as 1280x1024@60Hz. Note that you can connect to targets using the Remote Console and manage them using HTML serial console.
Send a break to the connected target. admin > [portname] > sendbreak Lock write access to this port. admin > [portname] > writelock Unlock write access to this port. admin > [portname] > writeunlock Query Power status of this port. admin >...
Many SSH/TELNET applications are available such as PuTTY, SSH Client and OpenSSH Client. These can be located and downloaded from the Internet. Command Line Interface Partial Searches Enter the first few characters of command and press the Tab key on your keyboard in order to locate a specific command.
Command Line Interface High-Level Commands The CLI is menu based. Some commands move to a menu with a different command set. The following common commands can be used at all levels of the command line interface (CLI): • • top - Return to the top level of the CLI hierarchy, or the username prompt. •...
Page 39
Access Emulator Options 1. Select the Emulator drop-down menu to display a list of options. Settings Note: KX3 administrators can set Terminal emulation settings in Setup > Serial Port Configuration. KX4-101 administrators can set terminal emulation settings in DSAM Serial Ports > Settings. SX2 administrators can set terminal emulation settings in Device Settings >...
Page 40
2. Set the terminal size by selecting the number of Columns and Rows. Default is 80 by 25. 3. Set the Foreground and Background colors. Default is white on black. 4. Set the Font size. Default is 11. 5. Set the Scrollback number to indicate the number of lines available for scrolling. 6.
Page 41
History information can be useful when debugging, troubleshooting, or administering a target device. The Get History feature: • • Allows you to view the recent history of console sessions by displaying the console messages to and from the target device. •...
1. Verify that you have Write Access. If not, follow the instructions in the previous section to obtain write access. 2. Choose Emulator > Send Break. A Send Break Ack (Acknowledgement) message appears. 3. Click OK. Reset Port Reset Port resets the physical serial port on the SX2 and re-initializes it to the configured values regarding bps/bits, and so on.
▶ Browser-specific behaviors When copying from IE or Edge browsers, there are no end of line characters in the copied data. The pasted data appears to be all in one line and contains many spaces. When pasting back into a HSC window, the data may appear to be misaligned, but the data is complete.
Tools: Start and Stop Logging The Tools menu contains options for creating a data history file and downloading it. 1. Choose Tools > Start Logging to start the storage of serial port data in memory. 2. Click Stop Logging to save the log file. A pop up message appears with a download link. Click to download the memory buffer into a text file.
Power on a Target Use this option to power on a target from HSC. This option is visible only when there are one or more power associations to the target, and when you have permission to manage the target's power. 1.
Power Cycle a Target Power cycling allows you to turn a target off and then back on through the outlet it is plugged into. This option is visible only when - • • there are one or more power associations to the target •...
Connect a Rack PDU to SX II and Configure Power Control Options SX II provides the following options when connecting a Raritan PX PDU to a SX II: • • Connect SX II to the PX PDU Serial port. In this configuration, access to the PX PDU is done through the PX PDU command line interface (CLI).
PX appliance SX II Connecting the SX II to the PX PDU FEATURE Port In this configuration, the PX is managed from the SX II interface like any other powerstrip. See Power Control. Note: Make sure that the PX PDU's Feature Port is configured to the PowerCIM setting. Note that the appliances used in the diagram may not match your specific models.
• • HTTPS • • RADIUS • • LDAP/LDAPS • • • • Telnet • • TACACS+ • • • • SNTP Supported Number of Ports and Remote Users per SX II Model Model Number of ports SX2-04 and SX2-04M SX2-08 and SX2-08M SX2-16 and SX2-16M SX2-32 and SX2-32M...
Page 52
Protocol Port Communication direction Port 443 This port can be configured as needed. See HTTP and HTTPS Port Settings. By default, this port is used for multiple purposes, including the web server for the HTML client, the download of client software onto the client's host, and the transfer of data streams to the client.
Protocol Port Communication direction For FTP Port 21 Outgoing upgrades Port 21 must be open. SYSLOG on Port 514 Outgoing Configurable By default UDP port 514 is used. Configurable to a port of your choice. UDP Port SNTP (Time Port 123 Both Server) on The SX II offers the optional capability to synchronize its internal clock to a central...
Network Speed Settings SX II network speed setting Network Auto 1000/Full 100/Full 100/Half 10/Full 10/Half switch Auto port Highest 1000/Full SX II: 100/Full 100/Half SX II: 10/Full 10/Half Available setting Switch: 100/Half Switch: 10/Half Speed 1000/ 1000/Full 1000/Full Full Communication Communication Communication Communication...
Note: For reliable network communication, configure the SX II and the LAN switch to the same LAN Interface Speed and Duplex. For example, configure the SX II and LAN Switch to Autodetect (recommended), or set both to a fixed speed/duplex such as 100MB/s/Full. Default User Session Timeouts •...
• • When you physically disconnect a target from a port on an SX II, the port channel's LED turns off. • • When you log in to SX II and connect to a target via either HSC, SSH or the Local Console, the port channel's LED blinks.
Page 58
Index Access and Use Remote Console Features 19 Emulator 38 Access SX II Using an iOS Device 26 Example 1: Import the Certificate into the Browser Additional Security Warnings 26 Example 2: Add the SX II to Trusted Sites and Allow Pop-Ups 20 Import the Certificate 21 Browser Tips for HSC 46...
Page 59
Power Cycle a Target 33, 46 Power Off a Target 33, 45 Power on a Target 45 Power On a Target 32 Power Status 44 Security Warnings and Validation Messages 25 Send Text File 43 Set Terminal Emulation on a Target 17 Set the CLI Escape Sequence 18 Supported Number of Ports and Remote Users per SX II Model 51...
Need help?
Do you have a question about the Raritan Dominion SX II and is the answer not in the manual?
Questions and answers