Cisco NAC3350-PROF-K9 - NAC Profiler Server Installation Manual page 77

Nac appliance hardware
Table of Contents

Advertisement

Chapter 3
Installing the Clean Access Manager and Clean Access Server
Note that you need to be root to execute this utility.
The utility will now ask you a series of configuration questions.
Please answer them carefully.
Cisco Clean Access Manager, (C) 2012 Cisco Systems, Inc.
If this prompt does not appear after you install the Cisco NAC Appliance software and restart the CAM,
Note
refer to
Step 2
If your CAM is a FIPS-compliant platform (NAC-3315, NAC-3355, or NAC-3395) the first prompt asks
if you want to initialize the on-board FIPS card (used to ensure FIPS compliant functions on the
appliance). Otherwise, skip to
Do you want to initialize the fips cards? (y/n)? [y]
Choose
Step 3
attempts to establish the security world.
-- Running startup script 45drivers
-- Running startup script 46exard
-- Running startup script 50hardserver
Security world not found
Creating the security world and initializing the smart cards
Next, the FIPS setup process prompts you to specify how many Smart Cards (from 1-6) you
want to initialize to enable FIPS compliance on the CAM.
How many cards do you want to initialize (1-6)? [1]
Set ncipher card switch in i mode and press Return to continue
Step 4
Enter the number of Smart Cards you want to initialize, ensure that the FIPS card operation switch on
the back of the CAM is switched to "I" (for "initialize"), and press Return.
Module 1, command ClearUnit: OK
Create Security World:
Module 1: 0 cards of 1 written
Module 1 slot 0: unknown card
Module 1 slot 0: - no passphrase specified - overwriting card
Module #1 Slot #0: Processing ...
Card writing complete.
security world generated on module #1; hknso = 909bd9f06542521a01f42fc881c8abcba
b0812ee
Set ncipher card switch in o mode and press Return to continue
Step 5
Switch the FIPS card switch back to "O" (for "operational") and press Return.
Module 1, command ClearUnit: OK
Card(s) check passed
Do you want to continue with the rest of the NAC Manager Configuration?
When prompted, enter an IP address for the eth0 (trusted) interface of the CAM.
Step 6
Configuring the network interface:
Please enter the IP address for the interface eth0 []: 10.201.240.11
OL-20326-01
Manually Restarting the CAM/CAS Configuration Utility, page
Step
to enable FIPS on your appliance. The appliance automatically initializes the FIPS card and
y
6.
Cisco NAC Appliance Hardware Installation Guide
Installing the Clean Access Manager
3-46.
(y/n)? [y]
3-7

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Nac-3315Nac-3355Nac-3395Nac-3310Nac-3350Nac-3390

Table of Contents