Nortel Threat Protection System Threat Protection System Troubleshooting Guide Release: 4.7 Document Revision: 01.01 www.nortel.com NN47240-700 324442-A...
Page 2
Users must take full responsibility for their applications of any products specified in this document. The information in this document is proprietary to Nortel Networks. Export This product, software and related technology is subject to U.S.
Gathering critical information 49 Getting help from the Nortel Web site 50 Getting help over the phone from a Nortel Solutions Center 50 Getting help from a specialist by using an Express Routing Code 51 Getting help through a Nortel distributor or reseller 51...
Each tool is described by purpose, usage procedures, and how to interpret the output. Prerequisites Nortel recommends you to use one or more of the following commercially available troubleshooting tools as well as the tools described in this document.
Enabling proxydebug will use more CPU resource. Make sure to disable it after you finish debugging. Transmit the event log from the Nortel VPN Gateway to a file on a TFTP, FTP, or SFTP server. Specify the IP address or host name of the server as well as the file name.
“Ports to open in a firewall” (page 16) TPS Hardware This section provides information to troubleshoot hardware problems related to the TPS 2050, TPS 2070 and TPS 2150 devices. The table Front Panel LEDs describes the Front Panel LED indicators on the TPS device.
16 Hardware Troubleshooting ATTENTION Call Nortel for RMA if Amber System status LED can not be cleared. Ports to open in a firewall If there are one or more firewalls in between the Defense Center and Intrusion Sensors, then you will need to open one or more ports on the firewall, depending on the software version of the TPS devices.
Software Troubleshooting The TPS 2070 Defense Center (DC), TPS 2050 Intrusion Sensor (IS), TPS 2070 Intrusion Sensor, TPS 2150 Intrusion Sensor, and TPS 2170 Intrusion Sensor products are pre-loaded with version 4.1 of the software. The software is available on a CD-ROM that is shipped with the hardware and is also available on the Nortel website, for contracted customers.
Procedure 1 Procedure steps Step Action Open a case with Nortel Enterprise Technical Support (NETS). Enter the following command to go to the default location. /usr/local/sf/bin Run the script sf_troublshoot.pl Enter the following command to obtain the default configuration filetroubleshoot.conf.
Obtaining the troubleshoot file following a failed software upgrade Use this procedure to obtain a troubleshoot file from a TPS device in case of a failed Nortel TPS Defense Center Upgrade. An upgrade on a TPS device is done by customers or support personnel.
ATTENTION Press any arrow key during the boot sequence when the LILO boot menu appears, if the device is a 2070 model. Enter the following command at the LILO boot prompt to load the linux operating system. linux -s System response: Loading linux...
Reset the administrator password for a TPS device if it is lost or forgotten. Procedure 4 Procedure steps Step Action Go to root prompt on the TPS device (2070 model). Enter the following command: root@DC2070: ~#resetadmin Enter the root login password at the password prompt. Please enter the root login password:<password here>.
36 Troubleshooting Global Faults ATTENTION This issue has been fixed by Sourcefire and Nortel IT team. Perform the steps in the following procedure if a problem with downloading and importing the SEU still persists. Procedure 24 Procedure steps Step Action...
Enter the following command to view the list of rules that are imported in the SEU. /var/sf/rules/sid-msg.map Viewing remediation log This section describes viewing the remediation log for Nortel Secure Network Access (NSNA) and Nortel VPN Gateway (NVG). Procedure 32 Procedure steps Action View the remediation log at the following location.
Nortel Technical Support. You must attempt to resolve your problem using this troubleshooting guide. Contacting Nortel is a final step taken only when you have been unable to resolve the issue using the information and steps provided in this troubleshooting guide.
A detailed network topology diagram • Log files Getting help from the Nortel Web site The best way to get technical support for Nortel products is from the Nortel Technical Support Web site: http://www.nortel.com/support This site provides quick access to software, documentation, bulletins, and tools to address issues with Nortel products.
To access some Nortel Technical Solutions Centers, you can use an Express Routing Code (ERC) to quickly route your call to a specialist in your Nortel product or service. To locate the ERC for your product or service, go to: http://www.nortel.com/help/contact/erc/...
Users must take full responsibility for their applications of any products specified in this document. The information in this document is proprietary to Nortel Networks. Export This product, software and related technology is subject to U.S.