Table of Contents Copyright & Trademark ______________________________________________________ 2 Warranty _________________________________________________________________ 2 Open Source Software ______________________________________________________ 2 Contacts _________________________________________________________________ 2 Disclaimer & Revisions ______________________________________________________ 3 Revision History ___________________________________________________________ 3 List of Tables ____________________________________________________________ 13 List of Figures ____________________________________________________________ 14 1: About this Guide Purpose and Audience _____________________________________________________ 17 Summary of Chapters ______________________________________________________ 17 Additional Documentation ___________________________________________________ 18...
Page 5
Connecting Terminals ___________________________________________________ 31 AC Input _____________________________________________________________ 32 Modem Installation _____________________________________________________ 33 Battery Replacement ___________________________________________________ 35 4: Quick Setup Recommendations ________________________________________________________ 39 IP Address _______________________________________________________________ 39 Method #1 Using the Front Panel Display _______________________________________ 40 Front Panel LCD Display and Keypads _____________________________________ 40 Navigating ____________________________________________________________ 40 Entering the Settings ___________________________________________________ 42 Restoring Factory Defaults _______________________________________________43...
Page 6
NFS and SMB/CIFS _______________________________________________________ 82 SMB/CIFS Share ______________________________________________________ 83 NFS and SMB/CIFS Commands __________________________________________ 84 Secure Lantronix Network ___________________________________________________ 85 Secure Lantronix Network Commands ______________________________________ 89 Date and Time ____________________________________________________________ 90 Date and Time Commands _______________________________________________92 Web Server ______________________________________________________________ 93 Admin Web Commands _________________________________________________ 94 SLC™...
Page 7
Services - Web Sessions ________________________________________________ 95 Services - SSL Certificate ________________________________________________ 96 Web Server Commands _________________________________________________ 98 iGoogle Gadgets __________________________________________________________ 98 8: Device Ports Connection Methods ______________________________________________________ 100 Permissions _____________________________________________________________ 100 I/O Modules _____________________________________________________________ 101 Device Status ___________________________________________________________ 102 Device Ports ____________________________________________________________ 103 Telnet/SSH/TCP in Port Numbers ________________________________________ 104 Global Commands ____________________________________________________ 104 Device Ports - Settings ____________________________________________________ 105...
Page 9
Console Server _______________________________________________________ 168 Connection Configuration _______________________________________________ 169 Connection Commands ________________________________________________ 171 11: User Authentication Authentication Commands ______________________________________________176 User Rights _____________________________________________________________ 177 Local and Remote User Settings ____________________________________________ 178 Adding, Editing or Deleting a User ________________________________________ 179 Shortcut ____________________________________________________________ 183 Local Users Commands ________________________________________________ 183 Local User Rights Commands ___________________________________________ 184 Remote User Commands _______________________________________________ 185...
About this Guide Purpose and Audience This guide provides the information needed to install, configure, and use the Lantronix® SLC™ 8000 Advanced Console Manager. The SLC unit is for IT professionals who must remotely and securely configure and administer servers, routers, switches, telephone equipment, or other devices equipped with a serial port for facilities that are typically remote branch offices or “distributed”...
Chapter (continued) Description Appendix A: Security Provides tips for enhancing SLC security. Considerations Appendix B: Safety Lists safety precautions for using the SLC 8000 advanced console Information manager. Appendix C: Adapters and Includes adapter pinout diagrams. Pinouts Appendix D: Protocol Lists the protocols supported by the SLC unit with brief descriptions.
Console Port: The SLC has a front panel serial console port (RJ45). SLC 8000 advanced console manager also includes two USB type A ports in the front panel. Figure 2-1 SLC 8048 Unit (Front Side) - Part Number SLC 804812N-01-S...
Web administration (using most browsers) Protocols Supported The SLC 8000 advanced console manager supports the TCP/IP network protocol as well as: SSH, Telnet, PPP, NFS, and CIFS for connections in and out of the SLC console manager SMTP for mail transfer ...
2: Introduction Device Port Buffer The SLC 8000 unit supports real-time data logging for each device port. The port can save the data log to a file, send an email notification of an issue, or take no action. You can define the path for logged data on a port-by-port basis, configure file size and number of files per port for each logging event, and configure the device log to send an email alert message automatically to the appropriate parties indicating a particular error.
RJ45 patch cables may be used to connect to Cisco and Sun RJ45 serial console ports. If you are replacing an SLC with an SLC 8000 you can either switch the ports to the non-reversed pinout used by SLC units and use your original cables and adapters, or remove any rolled cables or adapters and replace them with straight-through RJ45 cables, e.g.
2: Introduction Network Connections The SLC 8000 network interfaces are 10/100/1000 Base-T Ethernet for use with a conventional Ethernet network as shown in Figure 2-6. Use standard RJ45-terminated cables, like Category 5 or 6 patch cable. Additionally, CAT5E or better cables are recommended for 1000 Base Ethernet.
2: Introduction USB Interface The SLC 8000 unit has two 2.0 USB ports (HS, FS, LS). Figure 2-7 Dual USB Ports Memory Card Port The SLC unit has a memory card port on the front panel of the unit which accepts SD cards.
2: Introduction Internal Modem An internal modem can be installed in the SLC 8000 advanced console manager. See Modem Installation on page 33 for instructions. Figure 2-9 Internal Modem Location SLC™ 8000 Advanced Console Manager User Guide...
If any item is missing or damaged, contact your place of purchase immediately. Product Information Label The product information label on the underside of the SLC 8000 advanced console manager contains the following information about each SLC unit: Part Number ...
Speed software selectable (300 to 230400 baud) Note: Device ports for the SLC 8000 advanced console manager are reversed by default. Do not use rolled cables and adapters when replacing an SLC 8000 advanced console manager with the SLC 8000 model.
Setup. Connecting to a Device Port You can connect almost any device that has a serial console port to a device port on the SLC 8000 advanced console manager for remote administration. The console port must support the RS- 232C interface.
3: Installation Figure 3-3 Device Port Connections (Back Side) RJ45 CABLE 3. Connect the adapter to the serial console port on the serial device as shown in Figure 3-3. Table 3-4 Console Port and Device Port (DTE) - Reverse Pinout Disabled Pin Number Description RTS (output)
Connecting Terminals The console port is for local access to the SLC 8000 advanced console manager and the attached devices. You may attach a dumb terminal or a computer with terminal emulation to the console port.
3: Installation To connect a terminal: 1. Attach the Lantronix adapter to your terminal (typifcally a PN 200.2066A adapter) or your PC's serial port (use PN 200.2070A adapter). 2. Connect the Cat 5 cable to the adapter, and connect the other end to the SLC console port.
MODEM SERVICING INSTRUCTIONS You will need a medium size Phillips screw driver. 1. Turn off power to the SLC 8000 advanced console manager. 2. Locate the battery modem door on the top of the SLC unit. 3. Unscrew and lift the door off with the screw driver.
Page 34
3: Installation 4. Take note of the orientation of the modem so that later you can install a new modem correctly with the same orientation. 5. If there is a modem replacement, carefully lift the old modem out of its socket. 6.
3: Installation 8. Press the modem down to make sure it sits down all the way in the socket. 9. Double-check the new modem placement to make sure it is done properly. 10. Place the battery modem door back. 11. Tighten the door screw. Battery Replacement Caution: RISK OF EXPLOSION IF BATTERY IS REPLACED BY AN INCORRECT TYPE.
Page 36
PHONE LINE BEFORE SERVICING! You will need a medium size Phillips screw driver. 1. Turn off power to the SLC 8000 advanced console manager. 2. Locate the battery modem door on the top of the SLC unit. 3. Unscrew and lift the door off with the screw driver.
Page 37
3: Installation 5. If there is a modem, carefully lift the modem out of its socket. 6. Use fingers to lift the battery out of the socket. Caution: DO NOT USE A METAL OBJECT TO PRY OUT THE BATTERY SINCE IT MAY SHORT THE BATTERY AND DAMAGE THE BATTERY HOUSING.
Page 38
3: Installation 8. Re-install the modem with correct orientation. a. Make sure also to have correct pin alignment. b. Press the modem down to make sure it sits down all the way in the socket. 9. Double-check the battery and modem placements to make sure they are done properly. 10.
Telnet, SSH, or the web interface to run Quick Setup. IP Address Your SLC 8000 advanced console manager must have a unique IP address on your network. The system administrator generally provides the IP address and corresponding subnet mask and gateway.
4: Quick Setup Method #1 Using the Front Panel Display Before you begin, ensure that you have: Unique IP address that is valid on your network (unless automatically assigned) Subnet mask (unless automatically assigned) Gateway (unless automatically assigned) ...
4: Quick Setup The following table lists the SLC navigation actions, buttons, and options. Table 4-3 LCD Arrow Keypad Actions Button Action Right arrow To move to the next option (e.g., from Network Settings to Console Settings) Left arrow To return to the previous option Enter (center button) To enter edit mode Up and down arrows...
4: Quick Setup Entering the Settings To enter setup information: 1. From the normal display (host name, date and time), press the right arrow button to display Network Settings. The IP address for Eth1 displays. Note: If you have connected Eth1 to the network, and Eth1 is able to acquire an IP address through DHCP, this IP address displays, followed by the letter [D].
After the unit has an IP address, you can use the Quick Setup page to configure the remaining network settings. This page displays the first time you log into the SLC 8000 advanced console manager only. Otherwise, the SLC Home page displays.
4: Quick Setup Figure 4-5 Quick Setup Figure 4-6 Home 4. To accept the defaults, select the Accept default Quick Setup settings checkbox on the top portion of the page and click the Apply button at the bottom of the page. Otherwise, continue with step 5.
Domain If desired, specify a domain name (for example, support.lantronix.com). The domain name is used for host name resolution within the SLC 8000 advanced console manager. For example, if abcd is specified for the SMTP server, and mydomain.com is specified for the domain, if abcd cannot be resolved, the SLC unit attempts to resolve abcd.mydomain.com for the SMTP server.
Method #3 Quick Setup on the Command Line Interface If the SLC 8000 advanced console manager does not have an IP address, you can connect a dumb terminal or a PC running a terminal emulation program (VT100) to access the command line interface.
Configurations with the same IP subnet on multiple interfaces (Ethernet or PPP) are not currently supported. Subnet Mask The subnet mask specifies the network segment on which the SLC 8000 advanced console manager resides. There is no default. If you selected DHCP or BOOTP, this prompt does not display.
4: Quick Setup CLI Quick Setup Description Settings Date/Time If the date and time displayed are correct, type n and continue. If the date and time are incorrect, type y and enter the correct date and time in the formats shown at the prompts.
4: Quick Setup Next Step After completing quick setup on the SLC 8000 advanced console manager, you may want to configure other settings. You can use the web page or the command line interface for configuration. For information about the web and the command line interfaces, go to Chapter 5: Web and ...
A web manager allows the system administrator and other authorized users to configure and manage the SLC 8000 advanced console manager using most web browsers (Firefox, Chrome or Internet Explorer web applications with JavaScript enabled). The Web Telnet and Web SSH features require Java 1.1 (or later) support in the browser.
5: Web and Command Line Interfaces The following figure shows a typical web page: Figure 5-1 Web Page Layout Port Number Logout Button Icons Tabs Help Button Options Entry Fields and Options Apply Button The web page has the following components: Tabs: Groups of settings to configure.
To log in to the SLC web manager: 1. Open a web browser. 2. In the URL field, type https:// followed by the IP address of your SLC 8000 advanced console manager. 3. To configure the SLC unit, use sysadmin as the user name and PASS as the password.
A command line interface (CLI) is available for entering all the commands you can use with the SLC 8000 advanced console manager. In this User Guide, after each section of instructions for using the web interface, you will find the equivalent CLI commands. You can access the command line interface using Telnet, SSH, or a serial terminal connection.
5: Web and Command Line Interfaces Note: The system administrator may have changed the password using one of the Quick Setup methods in the previous chapter. To log in any other user: 1. Enter your SLC user name and press Enter. 2.
<disable|Number of lines> Sets the number of lines in the terminal emulation (screen) for paging through text one screenful at a time, if the SLC 8000 advanced console manager cannot detect the size of the terminal automatically.
5: Web and Command Line Interfaces To view the last 100 commands entered in the session: show history To clear the command history: set history clear To view the rights of the currently logged-in user: show user Note: For information about user rights, see Chapter 11: User Authentication.
This chapter explains how to set the following basic configuration settings for the SLC advanced console manager using the SLC web interface or the CLI: Network parameters that determine how the SLC 8000 advanced console manager interacts with the attached network Firewall and routing ...
6: Basic Parameters To enter settings for one or both network ports: 1. Click the Network tab and select the Network Settings option. The following page displays: Figure 6-1 Network > Network Settings SLC™ 8000 Advanced Console Manager User Guide...
Address of the port in IPv6 format. Note: The SLC 8000 advanced console manager supports IPv6 connections for a limited set of services: the web, SSH, and Telnet. IPv6 addresses are written as 8 sets of 4-digit hexadecimal numbers separated by colons.
Ethernet Port to Ping Ethernet port to use for the ping. Delay between Pings Number of seconds between pings Number of Failed Number of pings that fail before the SLC 8000 advanced console manager uses the Pings alternate gateway. Hostname & Name Servers...
The number of seconds the SLC unit waits between probes. The default is 60 seconds. 3. To save your entries, click the Apply button. Apply makes the changes immediately and saves them so they will be there when the SLC 8000 advanced console manager is rebooted. Ethernet Counters Network > Network Settings page displays statistics for each of the SLC Ethernet ports since boot-up.
Page 62
<1|2> To view DNS settings: show network dns To view gateway settings: show network gateway To view the host name of the SLC 8000 advanced console manager: show network host SLC™ 8000 Advanced Console Manager User Guide...
6: Basic Parameters IP Filter IP filters (also called a rule set) act as a firewall to allow or deny individual or a range of IP addresses, ports, and protocols. When a network connection is configured to use an IP filter, all network traffic through that connection is compared, in order, to the rules of that filter.
6: Basic Parameters 3. From the Interface drop-down list, select the interface and click the Map Ruleset button. The Interface and rule set display in the IP Filter Mappings table. To delete a mapping: 1. Click the Network tab and select the IP Filter option. The Network >...
6: Basic Parameters Figure 6-3 Network > IP Filter Ruleset (Adding/Editing Rulesets) Rulesets can be added or updated on this page. 2. Enter the following: Ruleset Name Name that identifies a filter; may be composed of letters, numbers, and hyphens only.
Page 66
6: Basic Parameters Port Range Enter a range of destination TCP or UDP port numbers to be tested. An entry is required for TCP, TCP New, TCP Established, and UDP, and is not allowed for other protocols. Separate multiple ports with commas. Separate ranges of ports by colons.
6: Basic Parameters Updating an IP Filter To update an IP filter rule set: 1. From the Network > IP Filter page, the administrator selects the IP filter ruleset to be edited and clicks the Edit Ruleset button to return to the Network >...
<Rule Number> delete <Rule Number> Routing The SLC 8000 advanced console manager allows you to define static routes and, for networks using Routing Information Protocol (RIP)-capable routes, to enable the RIP protocol to configure the routes dynamically. To configure routing settings: 1.
You can optionally email the displayed information. This page can be used to create a Virtual Private Network (VPN) tunnel to the SLC 8000 advanced console manager for secure communication between the SLC unit and a remote host or gateway.
6: Basic Parameters To complete the VPN page: 1. Click the Network tab and select the VPN option. The following page displays: Figure 6-5 Network > VPN 2. Enter the following: Enable VPN Tunnel Select to create a tunnel. Name The name assigned to the tunnel.
Page 71
Local Id How the SLC 8000 advanced console manager should be identified for authentication. The Id is used by the remote host to select the proper credentials for communicating with the SLC advanced console manager.
5. To see the last 100 lines of the logs associated with the VPN tunnel, select the View VPN Logs link. 6. To see the RSA public key for the SLC 8000 advanced console manager (required for configuring the remote host if RSA Public Keys are being used), select the View SLC RSA Public Key link.
7. Dispplay RSA public key of the SLC: show vpn rsakey Security The SLC 8000 advanced console manager supports a security mode that complies with the FIPS 140-2 standard. FIPS (Federal Information Processing Standard) 140-2 is a security standard developed by the United States federal government that defines rules, regulations and standards for the use of encryption and cryptographic services.
6: Basic Parameters DES-CBC3-SHA SSL/secure certificates imported for use with the web server or LDAP authentication must use either the SHA1 or SHA2 hash with a RSA public key of 1024, 2048 or 3072 bits. When the SLC unit is running in FIPS mode, the following protocols/functions will not be supported: NIS, Kerberos, RADIUS, TACACS+, Telnet/WebTelnet, WebSSH, IPSec/VPN, SSLv2, SSH v1, FTP, PPP, CIFS/Samba, TCP (to Device Ports), unencrypted LDAP, and SNMP.
Enable or disable SSH and Telnet logins. Configure an audit log. View the status of and manage the SLC 8000 advanced console managers on the Secure Lantronix network. Set the date and time. Configure NFS and CIFS shares ...
7: Services SSH/Telnet/Logging To configure SSH, Telnet, and Logging settings: 1. Click the Services tab and select the SSH/Telnet/Logging option. The following page displays. Figure 7-1 Services > SSH/Telnet/Logging 2. Enter the following settings: System Logging In the System Logging section, select one of the following alert levels from the drop-down list for each message category: Off: Disables this type of logging.
Enable Log Select to save a history of all configuration changes in a circular log. Disabled by default. The audit log is saved through SLC 8000 advanced console manager reboots. Size The log has a default maximum size of 50 Kbytes (approximately 500 entries). You can set the maximum size of the log from 1 to 500 Kbytes.
SLC unit and device ports. See the MIB definition file for details. The SLC MIB definition file and the top level MIB file for all Lantronix products is accessible from the SNMP web page. 1. Click the Services tab and select the SNMP option. The following page displays:...
Click the link to access the top level MIB file for all Lantronix products. SLC MIB Click the link to access the SLC MIB definition file for SLC 8000 advanced console managers and advanced console managers. SLC™ 8000 Advanced Console Manager User Guide...
7: Services Enable Traps Traps are notifications of certain critical events. Disabled by default. This feature is applicable when SNMP is enabled. Examples of traps that the SLC 8000 advanced console manager sends include: Ethernet Port Link Up Ethernet Port Link Down ...
7: Services V3 Read-Only User User Name SNMP v3 is secure and requires user-based authorization to access MIB objects. Enter a user ID. The default is snmpuser. Up to 20 characters. Password/Retype Password for a user with read-only authority to use to access SNMP v3. The default is Password SNMPPASS.
Similarly, use SMB/CIFS (Server Message Block/Common Internet File System), Microsoft's file- sharing protocol, to export a directory on the SLC 8000 advanced console manager as an SMB/ CIFS share. The SLC unit exports a single read-write CIFS share called "public," with the subdirectory the config directory, which contains saved configurations and is read-write.
The remote NFS share directory in the format: nfs_server_hostname or ipaddr:/exported/path Local Directory The local directory on the SLC 8000 advanced console manager on which to mount the remote directory. The SLC unit creates the local directory automatically. Read-Write If enabled, indicates that the SLC 8000 advanced console manager can write files to the remote directory.
7: Services CIFS User Only one user special username (cifsuser) can access the CIFS share. Enter the CIFS Password/Retype user password in both password fields. The default user password is CIFSPASS. Password More than one user can access the share with the cifsuser user name and password at the same time.
To access vSLM management appliances and Lantronix Spider devices on the local network: 1. Click the Services tab and select the Secure Lantronix Network option. The following page displays. SLC™ 8000 Advanced Console Manager User Guide...
1. Make sure Web Telnet and Web SSH is enabled for the specific device or device port. 2. Click the IP address of a specific secure Lantronix device to open a new browser page with the web interface for the selected secure Lantronix device.
2. Click OK and login to the CLI interface which appears. See Figure 7-7. To configure how secure Lantronix devices are searched for on the network: 1. Click the Search Options link on the top right of the Services > Secure Lantronix Network page.
5. To delete an IP address from the IP Address List, select the address and click the Delete IP Address button. 6. Click the Apply button. When the confirmation message displays, click Secure Lantronix Network on the main menu. The Services >...
7: Services search <localsubnet|ipaddrlist|both> To detect and display all vSLM management appliance and Lantronix Spider devices on the local network: show slcnetwork [ipaddrlist <all|Address Mask>] Note: Without the ipaddrlist parameter, the command searches the network according to the search setting. With the ipaddrlist parameter, the command displays a sorted list of all IP addresses or displays the IP addresses that match the mask (for example, 172.19.255.255 would display all IP addresses that start with 172.19).
From the drop-down list, select the appropriate time zone. For information on each timezone, see http://en.wikipedia.org/wiki/List_of_tz_database_time_zones 3. To save, click the Apply button. To synchronize the SLC 8000 advanced console manager with a remote timeserver using NTP: 1. Enter the following: Enable NTP Select the checkbox to enable NTP synchronization.
If you type an invalid time zone, the system guides you through the process of selecting a time zone. To view the local date, time, and time zone: show datetime To synchronize the SLC 8000 advanced console manager with a remote time server using NTP: set ntp <one or more ntp parameters> Parameters localserver1 <IP Address or Hostname>...
7: Services To view NTP settings: show ntp Web Server The Web Server page allows the system administrator to: Configure attributes of the web server. View and terminate current web sessions. Import a site-specific SSL certificate. Enable an iGoogle gadget that displays the status of ports on multiple SLC units. ...
7: Services 2. Enter the following fields: Timeout Select No to disable Timeout. Select Yes, minutes (5-120) to enable timeout. Enter the number of minutes (must be between 30 and 120 minutes) after which the SLC web session times out. The default is 5. Note: If a session times out, refresh the browser page and login to a new web session.
7: Services To enable or disable iGoogle Gadget web content: admin web gadget <enable|disable> To configure the group that can access the web: admin web group <Local or Remote Group Name> To configures the banner displayed on the web home page: admin web banner <Banner Text>...
7: Services Figure 7-12 Web Sessions 2. To terminate, click the check box in the row of the session you want to terminate and click the Terminate button. 3. To return to the Services > Web Server page, click the Back to Web Server link. Services - SSL Certificate Services >...
7: Services Figure 7-13 SSL Certificate 2. If desired, enter the following: Reset to Default To reset to the default certificate, select the checkbox to reset to the default Certificate certificate. Unselected by default. Import SSL Certificate To import your own SSL Certificate, select the checkbox. Unselected by default. Import via From the drop-down list, select the method of importing the certificate (SCP, SFTP, or HTTPS).
1. Load the following XML code on a web server that is accessible over the Internet. This code describes how to retrieve information and how to format the data for display. <?xml version="1.0" encoding="UTF-8" ?> <Module> <ModulePrefs title="__UP_model__ Devport Status" title_url="http://www.lantronix.com" directory_title="SLC/ Status" description="Devport status and counters" scrolling="true" width="400" height="360" /> <UserPref name="model" display_name="Model" datatype="enum"...
Device Ports This chapter describes how to configure and use an SLC advanced console manager port connected to an external device, such as a server or a modem. The next chapter, Chapter 10: Connections describes how to use the Devices > Connections web page to connect external devices and outbound network connections (such as Telnet or SSH) in various configurations.
8008 unit. The number of device ports in a SLC 8000 advanced console manager can be expanded by adding 16 port I/O modules in slots 2 and 3, or by swapping an 8 port I/O module in Bay 1 for a 16 port module.
8: Device Ports Device Status Devices > Device Status page displays the status of the SLC ports, USB ports and SD card ports. Click the Devices tab and select the Device Status option. The following page displays: Figure 8-2 Devices > Device Status SLC™...
8: Device Ports Device Ports On the Devices > Device Ports page, you can set up the numbering of Telnet, SSH, and TCP ports, view a summary of current port modes, establish the maximum number of direct connections for each device port, and select individual ports to configure. 1.
(clear it). Caution: Ports 1-1024 are RFC-assigned and may conflict with services running on the SLC 8000 advanced console manager. Avoid this range. 2. Click the Apply button to save the settings. To set limits on direct connections: 1.
8: Device Ports Parameters sshport <TCP Port> tcpport <TCP Port> telnetport <TCP Port> Port is a port number between 1025 and 65528. To view global settings for device ports: show deviceport global Device Ports - Settings On the Device Ports > Settings page, configure IP and data (serial) settings for individual ports, and if the port connects to an external modem, modem settings as well.
Click the Settings link to configure file logging, email logging, and local logging. Connected to The type of device connected to the device port. Presently, the SLC 8000 advanced console manager supports Lantronix SLP Power Manager (SLP8 SLP16) ServerTech CDUs and Sensorsoft devices. If the type of device is not listed, select undefined.
8: Device Ports Authentication If selected, the SLC unit requires user authentication before granting access to the port. Authenticate is selected by default for Telnet in and SSH in, but not for TCP in. Timeout To cause an idle Telnet, SSH or TCP connection to disconnect after a specified number of seconds, select the checkbox and enter a value from 1 to 1800 seconds.
Note: All Lantronix serial adapters are intended to be used with Reverse Pinout disabled. If you are replacing an original SLC unit with an SLC 8000 advanced console manager, disable the reverse pinout so you can use the original cables and adapters.
Note: We recommend that the modem initialization script always be preceded with AT and include E1 V1 x4 Q0 so that the SLC 8000 advanced console manager may properly control the modem. For information on AT commands, refer to the modem user guide, or do a web search for...
Page 111
Select to enable Network Address Translation (NAT) for dial-in and dial-out PPP connections on a per modem (device port or USB port) basis. Users dialing into the SLC 8000 advanced console manager access the network connected to Eth1 and/or Eth2.
8: Device Ports Note: It may take a few minutes for the system to apply the settings to multiple ports. Port Status and Counters Port Counters describe the status of signals and interfaces. SLC advanced console manager updates and increments the port counters as signals change and data flows in and out of the system.
8: Device Ports Figure 8-7 Device Ports > SLP / ServerTech CDU To enter SLP commands: 1. Enter the following: Number of Outlets Enter the number of outlets for a ServerTech CDU. This setting is not applicable for an SLP unit. Number of Expansion Enter the number of outlets for a ServerTech CDU expansion unit.
8: Device Ports Status/Info Outlet Status Note: If there is a master unit and an expansion unit, the master unit is Tower A and the expansion unit is Tower B. For Tower A or Tower B, select All Outlets or Single Outlet to view the status of all outlets or a single outlet of the SLP device.
Enter the highest relative acceptable humidity permitted on the device above which the sensor sends a trap to the SLC unit. Traps Select to indicate the SLC 8000 advanced console manager should send a trap or configured Event Alert when the sensor detects an out-of-range configured threshold.
Page 116
8: Device Ports dialbackdelay <PPP Dial-back Delay> dialinlist <Host List for Dial-in> dialoutnumber <Phone Number> dialoutlogin <User Login> dialbacknumber <usernumber|Phone Number> dodauth <pap|chap> dodchaphost <CHAP Host or User Name> dodchapsecret <CHAP Secret or User Password> flowcontrol <none|xon/xoff|rts/cts> group <Local or Remote Group Name> idletimeout <disable|1-9999 seconds>...
8: Device Ports To view a list of all device port names: show deviceport names To view the modes and states of one or more device port(s): Note: You can optionally email the displayed information. show portstatus [deviceport <Device Port List or Name>] [email <Email Address>] To view device port statistics and errors for one or more ports: Note:...
8: Device Ports Displays the environmental status (e.g., temperature and humidity) of the SLP or ServerTech CDU. slp|servertech infeedstatus Displays the infeed status and load of the SLP or ServerTech CDU. slp|servertech system Displays the system configuration information, such as firmware, revision and uptime. slp|servertech config [prompt <Command Prompt>] Enter the prompt displayed by the SLP or ServerTech CDU device.
NFS File Logging Data can be logged to a file on a remote NFS server. Data logged locally to the SLC 8000 advanced console manager is limited to 256 Kbytes and may be lost in the event of a power loss.
02_Port-2_5.log Email/SNMP Notification The system administrator can configure the SLC 8000 advanced console manager to send an email alert message indicating a particular condition detected in the device port log to the appropriate parties or an SNMP trap to the designated NMS (see Chapter 7: Services on page 75).
8: Device Ports Figure 8-9 Devices > Device Ports - Logging 2. Enter the following: Local Logging Local Logging If you enable local logging, each device port stores 256 Kbytes (approximately 400 screens) of I/O data in a true FIFO buffer. Disabled by default. Clear Local Log Select the checkbox to clear the local log.
Page 122
In most cases, the console port of your device does not send any data unless there is an alarm condition. After the SLC 8000 advanced console manager receives a small number of bytes, it perceives that your device needs some attention.
The path of the directory where the log files will be stored. Note: This directory must be a directory exported from an NFS server mounted on the SLC 8000 advanced console manager Specify the local directory path for the NFS mount. Max Number of Files The maximum number of files to create to contain log data to the port.
8: Device Ports Logging Commands The following CLI commands correspond to the web page entries described above. To configure logging settings for one or more device ports: set deviceport port <Device Port List or Name> <one or more deviceport parameters> Note: Local logging must be enabled for a device port for the locallog commands to be executed.
8: Device Ports Console Port The console port initially has the same defaults as the device ports. Use the Devices > Console Port page to change the settings, if desired. To set console port parameters: 1. Click the Devices tab and select Console Port. The following page displays: Figure 8-10 Devices >...
This section describes how to configure an internal modem in the SLC advanced console manager. The SLC 8000 internal modem is an optional part. If the modem is installed, a message will be displayed when the SLC unit is booted: Internal modem installed.
Port Number Bar only if it is installed into the SLC 8000 advanced console manager. . To set up internal modem storage in the SLC 8000 advanced console manager: 1. Insert an internal modem into the SLC unit according to the instructions in...
8: Device Ports Figure 8-11 Devices > Internal Modem 5. Enter the following fields. State Indicates whether the internal is enabled. When enabling, set the modem to Disabled, Dial-in, Dial-out, and Dial-back. Disabled by default. SLC™ 8000 Advanced Console Manager User Guide...
Page 129
8: Device Ports Mode The format in which the data flows back and forth. With Text selected, the SLC unit assumes that the modem will be used for remotely logging into the command line. Text mode is only for dialing in. This is the default.
8: Device Ports Dial-back Retries For dial-back and CBCP Server, the number of times the SLC unit will retry the dial-out portion of the dialing sequence if the first attempt to dial-out fails. Timeout Logins If you selected text mode, you can enable logins to time out after the connection is inactive for a specified number of minutes.
8: Device Ports Figure 8-12 Devices > Host Lists 2. Enter the following: Note: To clear fields in the lower part of the page, click the Clear Host List button. Host List Id Displays after a host list is saved. Host List Name Enter a name for the host list.
Page 132
8: Device Ports Escape Sequence The escape character used to get the attention of the SSH or Telnet client. It is optional, and if not specified, Telnet and SSH use their default escape character. For Telnet, the escape character is either a single character or a two-character sequence consisting of '^' followed by one character.
Host List Name Enter a name for the host list. Retry Count Enter the number of times the SLC 8000 advanced console manager should attempt to retry connecting to the host list. Authentication Select to require authentication when the SLC unit connects to a host.
8: Device Ports Escape Sequence The escape character used to get the attention of the SSH or Telnet client. It is optional, and if not specified, Telnet and SSH use their default escape character. For Telnet, the escape character is either a single character or a two-character sequence consisting of '^' followed by one character.
8: Device Ports To move a host entry to a new position in the host list: set hostlist edit <Host List Name> move <Host Number> position <Host Number> To delete a host list, or a single host entry from a host list: set hostlist delete <Host List>...
8: Device Ports Figure 8-15 Adding or Editing New Scripts 3. Enter the following: Scripts Script Name A unique identifier for the script. Type Select Interface for a script that utilizes Expect/Tcl to perform pattern detection and action generation on Device Port output. Select Batch for a script of CLI commands.
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage secure Lantronix units (e.g., SLP, Spider, or SLC Network devices) on the local subnet. Date/Time Right to set the date and time.
8: Device Ports To rename a script: 1. In the Scripts table, select the script and enter a new script name in the New Name field. 2. Click the Rename Script button. The script will be renamed and the Devices > Scripts page redisplays.
8: Device Ports Interface Script Syntax This section describes the abbreviated scripting syntax for Interface Scripts. This limited syntax was created to prevent the creation of scripts containing potentially harmful commands. Script commands are divided into three groups: Primary, Secondary and Control Flow. Primary commands provide the basic functionality of a script and are generally the first element on a line of a script, as in: send_user "Password:"...
8: Device Ports Primary Commands These are stand-alone commands which provide the primary functionality in a script. These commands may rely on one or more of the Secondary Commands to provide values for some parameters. The preprocessor will require that these commands appear only as the first element of a command line.
8: Device Ports Command Description expect, expect_user, command waits for input and attempts to match it against one or expect expect_before, more patterns. If one of the patterns matches the input the corresponding expect_after, (optional) command is executed. All commands have the same syntax: expect expect_background expect {<string 1>...
8: Device Ports Table 8-18 Secondary Commands Command Description string command provides a series of string manipulation operations. The string command will only be used with the command to generate a value for string a variable. There are nine operations provided by the command.
8: Device Ports Command Description timestamp This command returns the current time of day as determined by the . The command will only be used in combination with the command to timestamp produce the value for a variable. Syntax: timestamp <format> where is a quoted string.
8: Device Ports Command Description if, elseif and else command executes an associated block of commands if its Boolean expression evaluates to TRUE. Each command within the block must be a Primary command. Syntax: if {<Boolean expression>} { command 1 command 2 command n command is used in association with an...
Page 146
8: Device Ports expect { #Did not capture "ogin" or Command Prompt timeout { send_user "Time out login..\r\n"; return } #Got login prompt "login" { send_user "Logging in..\r\n" send "$login\r" expect { timeout { send_user "Time out waiting for pwd prompt..\r\n";...
7 login: Logging in..sysadmin sysadmin Password: PASS Welcome to the Secure Lantronix Console Manager Model Number: SLC 48 For a list of commands, type 'help'. [SLC251glenn]> show network port 1 host show network port 1 host...
Page 148
[slc247glenn]> connect script monport deviceport 7 login: Logging in..sysadmin sysadmin Password: PASS Welcome to the Secure Lantronix Console Manager Model Number: SLC 48 For a list of commands, type 'help'. [SLC251glenn]> show network port 1 host show network port 1 host...
8: Device Ports [Current Time:21:25:20] show portcounter deviceport 7 show portcounter deviceport 7 Device Port: 7 Seconds since zeroed: 1454136 Bytes input: 0 Bytes output: 0 Framing errors: 0 Flow control errors: 0 Overrun errors: 0 Parity errors: 0 [SLC251glenn]> Port Counter Monitor Script Ending..
Page 150
User ID for authentication when dialing out to a remote system, or when a remote system requests authentication from the SLC 8000 unit when it dials in. May have up to 32 characters. This ID is used for authenticating the SLC 8000 advanced console manager during the dial-out portion of a dial-back (including CBCP server) and dial-on-demand.
Page 151
Modem Timeout Timeout for dial-in and dial-on-demand PPP connections. Select Yes (default) for the SLC 8000 advanced console manager to terminate the connection if no traffic is received during the configured idle time. Enter a value of from 1 to 9999 seconds.
Dial In The SLC 8000 advanced console manager waits for a peer to call the SLC unit to establish a text (command line) or PPP connection. For text connections, the user will be prompted for a login and password, and will be ...
(b) Authentication is set to CHAP, and (c) the Port is set to None or matches the port the modem is on. If the remote peer requests PAP or CHAP authentication from the SLC 8000 advanced console manager, the Remote/Dial-out Login and Remote/Dial-out Password configured for the modem (not the site) will be provided as authentication tokens.
IP traffic destined for a remote network. When IP traffic needs to be sent, the SLC 8000 advanced console manager dials the appropriate Dial-out Number for the site, and if the remote peer requests PAP or CHAP authentication, provides the Dial-out Login and Dial-out Password as authentication tokens.
Optionally, some servers may also allow "no callback" as an option. For CBCP Server, the SLC 8000 advanced console manager waits for a client to call the SLC unit, establishes a PPP connection, authenticates the user, and negotiates a dial-back number with the client using CBCP.
Page 156
Once the remote server is authenticated, the CBCP handshake with the client determines the number to use for dial-back. The SLC 8000 advanced console manager will present the client with the available options: if Allow Dial-back is enabled for the site and a Dial-back Number is defined, the administrator-defined option is allowed;...
1. Insert any of the supported storage devices into the USB port or the SD card slot on the front of the SLC unit. You can do this before or after powering up the SLC 8000 advanced console manager. If the first partition on the storage device is formatted with a file system supported by the SLC unit (ext2, FAT16 and FAT32), the card mounts automatically.
9: USB/SD Card Port Figure 9-1 Devices > USB / SD Card To configure a USB/SD card storage port, from the USB Ports / SD Card table, 1. Click the radio button (on the far right) of a USB or SD card device storage port. 2.
9: USB/SD Card Port Figure 9-3 Devices > SD Card > Configure 3. Enter the following fields. Mount Select the checkbox to mount the first partition of the storage device on the SLC unit (if not currently mounted). Once mounted, a USB thumb drive or SD card is used for firmware updates, device port logging and saving/restoring configurations.
9: USB/SD Card Port To configure the USB Modem port, from the USB Ports table: 1. Click the radio button (on the far right) for Port U1 or U2. 2. Click Configure. Figure 9-4 shows the page that displays if a USB modem is inserted in Port U1, or if Port U2 is selected.
PPP: This mode establishes an IP-based link over the modem. PPP connections can be used in dial-out mode (e.g., the SLC 8000 advanced console manager connects to an external network), dial-in mode (e.g., the external computer connects to the network that the SLC unit is part of), or dial- on-demand.
RADIUS server via the Filter-Id attribute that overrides the group defined for a user on the SLC 8000 advanced console manager. A group provided by a remote server must be either a single group or multiple groups delimited by the characters ' ' (space), ',' (comma), ';' (semicolon), or '=' (equals) - for example...
Re-enter password for dialing out to a remote system. May have up to 64 characters. Restart Delay The number of seconds after the timeout and before the SLC 8000 advanced console manager attempts another connection. The default is 30 seconds. CBCP Server For CBCP Server state, allows "No Callback"...
9: USB/SD Card Port IP Settings Service The available connection services for this modem port (None, Telnet, SSH, or TCP). Only one can be active at a time. The default is None. Telnet Port Telnet Port Telnet session port number to use if you selected Telnet. Defaults: USB Port U1: 2049 ...
9: USB/SD Card Port 2. To delete a file, click the check box next to the filename and click Delete File. A confirmation message displays. 3. To download a file, click the Download File button. Select the file from the list. 4.
Terminal Server In this setup, the SLC 8000 advanced console manager acts as a multiplexer of serial data to a single server computer. Terminal devices are connected to the serial ports of the SLC unit and configured as a Device Port to Telnet out type connection on the Devices >...
Dial-in option in the Modem Settings section. Most customers use the modems in PPP mode to establish an IP connection to the SLC unit and either Telnet or SSH into the SLC 8000 advanced console manager. They could also select text mode where, using a terminal emulation program, a user could dial into the SLC unit and connect to the command line interface.
A PC can use the device ports on the SLC unit as virtual serial ports, enabling the ports to act as if they are local ports to the PC. To use the SLC 8000 advanced console manager in this setup, the PC requires special software, for example, Com Port Redirector (available on www.lantronix.com)
10: Connections Connection Configuration To create a connection: 1. Click the Devices tab and select the Connections opton. The following page displays: Figure 10-6 Devices > Connections For a device port, enter the following: Outgoing Select to turn on or turn off the connection timeout: Connection No for no timeout ...
Trigger Select the condition that will trigger a connection. Options include: Connect now: Connects immediately, or if you reboot the SLC 8000 advanced console manager, immediately on reboot. Connect at date/time: Connects at a specified date and time. Use the drop-down ...
10: Connections Maintenance > Firmware & Configurations page displays. Connection Commands These commands for configuring connections correspond to the web page entries described above. To connect to a device port to monitor and/or interact with it, or to establish an outbound network connection: connect direct <endpoint>...
Page 172
10: Connections telnet <IP Address or Name> [port <TCP Port>] trigger <now|datetime|chars> udp <IP Address> [port <UDP Port>] Note: If the trigger is datetime (establish connection at a specified date/time), enter the date parameter. If the trigger is chars (establish connection on receipt of a specified number or characters or a character sequence), enter the charxfer parameter and either the charcount or the charseq parameter.
Page 173
10: Connections To display global connections: connect global show SLC™ 8000 Advanced Console Manager User Guide...
User "joe" tries to log in. Because there is an LDAP user "joe," the SLC unit tries to authenticate him against his LDAP password first. If he fails to log in, then the SLC 8000 advanced console manager may (or may not) try to authenticate him against his NIS "joe" user password.
11: User Authentication Figure 11-1 User Authentication > Authentication Methods 2. To enable a method currently in the Disabled methods list, select the method and press the left arrow to the left of the list. The methods include: A network naming and administration system developed by Sun Microsystems for smaller networks.
5. For Attempt next method on authentication rejection, you have the following options: To enable the SLC 8000 advanced console manager to use all methods, in order of precedence, until it obtains a successful authentication, select the check box. This is the default.
Device Port Operations Device Port Configuration Reboot/Shutdown Firmware/Configuration Diagnostics and Reports Secure Lantronix Network Web Access Internal Modem SD Card You cannot deny a user rights defined for the group, but you can add or remove all other rights at any time.
11: User Authentication Local and Remote User Settings The system administrator can configure the SLC 8000 advanced console manager to use local accounts and remote accounts to authenticate users. 1. Click the User Authentication tab and select the Local/Remote Users option. The following page displays.
11: User Authentication 2) Continue to set Local User Passwords Complex Passwords Select to enable the SLC unit to enforce rules concerning the password structure (e.g., alphanumeric requirements, number of characters, punctuation marks). Disabled by default. Complexity rules: Passwords must be at least eight characters long. They must contain one upper case letter (A-Z), one lower case letter (a-z), one digit ( 0-9), and one punctuation character (()`~!@#$%%^&*-+=\{}[]:;"'<>,.?/_).
Valid UIDs are 101-4294967295. Note: The UID must be unique. If it is not, SLC unit automatically increments it. Starting at 101, the SLC 8000 advanced console manager finds the next unused UID. Listen Ports The device ports that the user may access to view data using the connect listen command.
Page 181
Enable for Dial-back Select to grant a local user dial-back access. Users with dial-back access can dial into the SLC unit and enter their login and password. Once the SLC 8000 advanced console manager authenticates them, the modem hangs up and dials them back.
Page 182
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage Secure Lantronix units (e.g., SLP, Spider, or SLC units) Network on the local subnet. Date/Time Right to set the date and time.
Local Users Commands The following CLI commands correspond to the web page entries described above. To configure local accounts (including sysadmin) who log in to the SLC 8000 advanced console manager by means of SSH, Telnet, the Web, or the console port: set localusers add|edit <User Login>...
11: User Authentication where <Permission List> is one or more of nt, sv, dt, lu, ra, sk, um, dp, do, ub, rs, rc, dr, wb, sn, ad, md, sd To remove a permission, type a minus sign before the two-letter abbreviation for a user right.
11: User Authentication The system administrator can configure the SLC advanced console manager to use NIS to authenticate users attempting to log in to the SLC unit through the Web, SSH, Telnet, or the console port. If NIS does not provide port permissions, you can use this page to grant device port access to users who are authenticated through NIS.
Page 187
NIS here, it automatically displays at the end of the order of precedence on the User Authentication page. NIS Domain The NIS domain of the SLC 8000 advanced console manager must be the same as the NIS domain of the NIS server. Broadcast for NIS...
Page 188
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage secure Lantronix units (e.g., SLP, Spider, or SLC units) Network on the local subnet. Date/Time Right to set the date and time.
11: User Authentication NIS Commands These commands for the CLI correspond to the web page entries described above. To configure the SLC unit to use NIS to authenticate users who log in via the Web, SSH, Telnet, or the console port: set nis <one or more parameters>...
11: User Authentication LDAP The system administrator can configure the SLC 8000 advanced console manager to use LDAP to authenticate users attempting to log in using the Web, Telnet, SSH, or the console port. LDAP allows SLC unit users to authenticate using a wide variety of LDAP servers, such as OpenLDAP and Microsoft Active Directory.
11: User Authentication Figure 11-6 User Authentication > LDAP 2. Enter the following: Enable LDAP Displays selected if you enabled this method on the first User Authentication page. If you want to set up this authentication method but not enable it immediately, clear the checkbox.
Page 192
$login the current login. For example, if the Bind Name is , and user uid=$login,ou=People,dc=lantronix,dc=com roberts logs into the SLC 8000 advanced console manager, LDAP will bind with and the password uid=roberts,ou=People,dc=lantronix,dc=com entered by roberts. User Login Attribute The attribute used by the LDAP server for user logins. If nothing is specified for the user filter, the SLC unit will use "uid".
Page 193
Select to grant a user dial-back access. Users with dial-back access can dial into the SLC unit and enter their login and password. Once the SLC 8000 advanced console manager authenticates them, the modem hangs up and dials them back.
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage secure Lantronix units (e.g., SLP, Spider, or SLC Network devices) on the local subnet. Date/Time Right to set the date and time.
Page 195
11: User Authentication dataports <Ports List> listenports <Port List> clearports <Port List> escapeseq <1-10 Chars> bindpassword <Bind Password> encrypt <enable|disable> filteruser <User Login Attribute> filtergroup <Group Objectclass> grmemberattr <Group Membership Attribute> grmembervalue <dn|name> port <TCP Port> Default is 389. server <IP Address or Hostname> state <enable|disable>...
11: User Authentication RADIUS The system administrator can configure the SLC 8000 advanced console manager to use RADIUS to authenticate users attempting to log in using the Web, Telnet, SSH, or the console port. Users who are authenticated through RADIUS are granted device port access through the port permissions on this page.
Page 197
Server #2 Port Number of the TCP port on the RADIUS server used for the RADIUS service. If you do not specify an optional port, the SLC 8000 advanced console manager uses the default RADIUS port (1812). Server #2 Secret Text that serves as a shared secret between a RADIUS client and the server (SLC unit).
Page 198
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage Secure Lantronix units (e.g., SLP, Spider, or SLC units) Network on the local subnet. Date/Time Right to set the date and time.
11: User Authentication SD Card Right to enter settings for SD card. 5. Click the Apply button. Note: You must reboot the unit before your changes will take effect. RADIUS Commands These commands for the command line interface correspond to the web page entries described above.
FreeRADIUS server, the dictionary will need be updated with the Lantronix definition by including the contents below in a file named dictionary.lantronix, and including it in the RADIUS server dictionary definitions by adding the appropriate $INCLUDE directive to the main dictionary file.
11: User Authentication END-VENDOR Lantronix Once this is complete, the users file can be updated to include the Lantronix VSA for any user: myuser Auth-Type := Local, User-Password == "myuser_pwd" Reply-Message = "Hello, %u", Lantronix-User-Attributes = "data 1-4 listen 1-6 clear 1-4 group power"...
11: User Authentication Figure 11-8 User Authentication > Kerberos 2. Enter the following: Enable Kerberos Displays selected if you enabled this method on the User Authentication page. If you want to set up this authentication method but not enable it immediately, clear the checkbox.
Page 203
Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage secure Lantronix units (e.g., SLP, Spider, or SLC units) Network on the local subnet. SLC™ 8000 Advanced Console Manager User Guide...
11: User Authentication Date/Time Right to set the date and time. Reboot & Shutdown Right to shut down and reboot the SLC unit. Local Users Right to add or delete local users on the system. Remote Right to assign a remote user to a user group and assign a set of rights to the user. Authentication SSH Keys Right to set SSH keys for authenticating users.
TACACS+ Similar to RADIUS, the main function of TACACS+ is to perform authentication for remote access. The SLC 8000 advanced console manager supports the TACACS+ protocol (not the older TACACS or XTACACS protocols). The system administrator can configure the SLC unit to use TACACS+ to authenticate users attempting to log in using the Web, Telnet, SSH, or the console port.
TACACS+ Servers 1-3 IP address or host name of up to three TACACS+ servers. Secret Shared secret for message encryption between the SLC 8000 advanced console manager and the TACACS+ server. Enter an alphanumeric secret of up to 127 characters.
Page 207
Select to grant a user dial-back access. Users with dial-back access can dial into the SLC unit and enter their login and password. Once the SLC 8000 advanced console manager authenticates them, the modem hangs up and dials them back.
11: User Authentication User Menus Right to create a custom user menu for the CLI for LDAP users. Web Access Right to access Web-Manager. Diagnostics & Right to obtain diagnostic information and reports about the unit. Reports Firmware & Right to upgrade the firmware on the unit and save or restore a configuration (all Configuration settings).
Groups The SLC 8000 advanced console manager has 3 pre-defined groups: Administrators, Power Users, and Default Users. Custom groups can also be created; each custom group is a set of user attributes and permissions. Local Users and Remote Users defined on the SLC unit can be assigned to one of the pre-defined groups or a custom group.
11: User Authentication Figure 11-10 User Authentication > Groups 2. Enter the following: Group Name Enter a name for the group. Listen Ports The ports users are able to monitor using the connect listen command. SLC™ 8000 Advanced Console Manager User Guide...
Page 211
Services Right to enable and disable system logging, SSH and Telnet logins, SNMP, and SMTP. Secure Lantronix Right to view and manage Secure Lantronix units (e.g., SLP, Spider, or SLC units) Network on the local subnet. Date/Time Right to set the date and time.
2. Click the Delete Group button. SSH Keys The SLC 8000 advanced console manager can import and export SSH keys to facilitate shared key authentication for all incoming and outgoing SSH connections. By using a public/private key pair, a user can access multiple hosts with a single passphrase, or, if a passphrase is not used, a user can access multiple hosts without entering a password.
The SLC can generate SSH keys for SSH connections out of the SLC advanced console manager for any SLC user. The SLC 8000 advanced console manager retains both the private and public key on the SLC unit, and makes the public key available for export via SCP, FTP, or copy and paste.
11: User Authentication 2. Enter the following: Imported Keys (SSH In) Host & User Associated with Key These entries are required in the following cases: The imported key file does not contain the host that the user will be making an SSH connection from, or The SLC local user login for the connection is different from the user name the key was generated from or is not included in the imported key file, or...
Select the method (SCP, FTP, HTTPS, or Copy/Paste) of exporting the key to the remote server. Copy/Paste, the default, requires no other parameters for export. Host IP address of the remote server to which the SLC 8000 advanced console manager will SCP or FTP the public key file. Path Optional path of the file on the host to SCP or FTP the public key too.
11: User Authentication Figure 11-12 Current Host Keys 2. View or enter the following: Select the All Keys checkbox to reset all default key(s), or select one or more Reset to Default Host checkboxes to reset defaults for RSA1, RSA, or DSA keys. All checkboxes are unselected by default.
11: User Authentication Filename of the public host key. Public Key Filename Private Key Filename Filename of the private host key. Host name or IPaddress of the host from which to import the key. Host Path of the directory where the host key will be stored. Path Login User ID to use to SCP or SFTP the file.
Page 219
11: User Authentication To delete a key: set sshkey delete <one or more parameters> Parameters keyhost <SSH Key Host> keyname <SSH Key Name> keyuser <SSH Key User> Note: Specify the key user and key host to delete an imported key; specify the keyuser and keyname to delete an exported key.
11: User Authentication Custom Menus Users can have custom user menus as their command line interface, rather than the standard CLI command set. Each custom user menu can contain up to 50 commands ('logout' is always the last command). Instead of typing each command, the user enters the number associated with the command.
11: User Authentication Figure 11-13 User Authentication > Custom Menus SLC™ 8000 Advanced Console Manager User Guide...
Page 222
11: User Authentication 2. In the lower section of the page, enter the following: Note: To clear fields in the lower part of the page, click the Clear Custom Menu button. Menu Name Enter a name for the custom menu. Title Enter an optional title which will be displayed about the menu at the CLI.
11: User Authentication To view or update a custom menu: 1. In the Custom Menus table, select the custom menu and click the View Custom Menu button. The custom menu attributes appear in the lower part of the page. 2. Update the menu attributes following the instructions for adding a menu above. 3.
Page 224
11: User Authentication To set the optional title for a menu: set menu edit <Menu Name> title <Menu Title> To enable or disable the display of command nicknames instead of commands: set menu edit <Menu Name> shownicknames <enable|disable> To enable or disable the redisplay of the menu before each prompt: set menu edit <Menu Name>...
Page 225
11: User Authentication ___Custom User Menus___________________________________________________________ menu1 menu2 [SLC]> show menu menu1 ___Custom User Menus___________________________________________________________ Menu: menu1 Title: Menu1 Title Show Nicknames: enabled Redisplay Menu: disabled Command 1: connect direct deviceport 1 Nickname 1: connect Port-1 Command 2: connect direct deviceport 2 Nickname 2: connect Port-2 Command...
Page 226
11: User Authentication User 'john ' logs into the command line interface, initially sees menu1, executes the command to jump to nested menu menu2, and then returns to menu1: Welcome to the SLC-Console Server Model Number: SLC32 For a list of commands, type 'help'. [Enter 1-4]>...
12: Maintenance The system administrator performs maintenance activities and operates the SLC advanced console manager using the options for the Maintenance tab and additional commands on the command line interface. Firmware & Configurations The Firmware & Configuration page allows the system administrator to: Configure the FTP, SFTP, or TFTP server that will be used to provide firmware updates and ...
The default for these fields is 1. Data Center Rack Set these fields to define the rack cluster the SLC 8000 advanced console Cluster manager is located within a large data center. The default for these fields is 1.
12: Maintenance From the drop-down list, select the method of loading the firmware. Options are Load Firmware via FTP, TFTP, HTTPS, NFS, USB, and SD Card. FTP is the default. If you select HTTPS, the Upload File link becomes active. Select the link to ...
CIFS Share – Saved Configurations: If restoring, select a saved configuration from the drop-down list. USB: If a USB device is loaded into one of the USB ports of the SLC 8000 advanced console manager, and properly mounted, the configuration can be saved to or restored from this location.If you select this option, select the port...
Note: The front panel LCD displays the "Rebooting the SLC" message, and the normal boot sequence occurs. To prepare the SLC 8000 advanced console manager to be powered off: admin shutdown SLC™ 8000 Advanced Console Manager User Guide...
Page 233
When you use this command to shut down the SLC unit, the LCD front panel displays "Shutting down the SLC," followed by a pause, and then "Shutdown complete." When "Shutdown complete" displays, it is safe to power off the SLC 8000 advanced console manager.
Page 234
12: Maintenance To restore a saved configuration to the SLC 8000 advanced console manager: admin config restore <Config Name> location <local|ftp|sftp|nfs|cifs|usb|sdcard> [nfsdir <NFS Mounted Dir>] [usbport <U1|U2>] [savescripts<enable|disable>] [savesshkeys <enable|disable>] [savesslcert <enable|disable>] [preserveconfig <Config Params to Prserve>] <Config Params to Preserve> is a comma-separated list of current configuration parameters to retain after the config restore or factory defaults: nt –...
12: Maintenance System Logs Maintenance > System Logs page allows you to view various system logs. (See Chapter 7: Services on page 75 for more information about system logs.) You can also clear logs on this page. To view system logs: 1.
Figure 12-4 System Logs From a queried system log (e.g., Figure 12-4), you may email this information to a specific individual or to Lantronix Technical Support. See Emailing Logs and Reports (on page 246). To clear system logs: 1. From the Maintenance >...
<all|netlog|servlog|authlog|devlog|diaglog|genlog> Audit Log Maintenance > Audit Log page displays a log of all actions that have changed the configuration of the SLC 8000 advanced console manager. The audit log is disabled by default. Use the Services > SSH/Telnet/Logging page (Chapter 7: Services) to enable the audit log and to configure its maximum size.
12: Maintenance Figure 12-5 Maintenance > Audit Log 2. To select a sort option, click the appropriate button: To sort by date and time, click the sort by Date/Time button (this is the default.) To sort by user, click the sort by User button. To sort by command/action, click the sort by Command button.
12: Maintenance Email Log Maintenance > Email Log page displays a log of all attempted emails. The log file can be cleared from here. The email log is saved through SLC reboots. 1. Click the Maintenance tab and select the Email Log option. The following page displays: Figure 12-6 Maintenance >...
All for both protocols to control the output of the Netstat report. Host Lookup Select to verify that the SLC 8000 advanced console manager can resolve the host name into an IP address (if DNS is enabled). If selected, also enter a host name in the corresponding Hostname field, SLC™...
12: Maintenance Ping Select to verify that the host is up and running. If selected, also do the following: Enter a host name in the corresponding Hostname field Specify Ethernet Port (Both, Eth1 or Eth2) Check if the IPv6 version of ping should be used. ...
Page 242
12: Maintenance You can optionally email the displayed information. To display a report of network connections: diag netstat [protocol <all|tcp|udp>] [email <Email Address>] You can optionally email the displayed information. To resolve a host name into an IP address: diag lookup <Hostname> [email <Email Address>] You can optionally email the displayed information.
Page 243
<IP Address or Name> numpackets <Number of Packets> protocol <tcp|udp|icmp> verbose <enable|disable> To display information on the internal memory, storage and processes of the SLC 8000 advanced console manager: diag internals Note: This command is available on the web interface as SLC Internals under Maintenance >...
12: Maintenance Status/Reports On this page, you can view the status of the SLC ports and power supplies and generate a selection of reports. Note: Status and statistics shown on the web interface represent a snapshot in time. To see the most recent data, you must reload the web page. 1.
12: Maintenance View Report Displays all reports. Port Status Displays the status of each device port: mode, user, any related connections, and serial port settings. Port Counters Displays statistics related to the flow of data through each device port. IP Routes Displays the routing table.
Use the basic show connections command to obtain the Connection ID. Emailing Logs and Reports The following logs and reports can be directly emailed to a specific individual or to Lantronix Technical Support directly from the log page: System Log...
Figure 12-11 Emailed Log or Report To view information about the SLC unit and contact information for Lantronix: 1. Click the button on the upper right portion of any web page to access the About SLC page...
12: Maintenance Events On this Maintenance > Events page, you can define what action you want to take for events that may occur in the SLC unit. 1. Click the Maintenance tab and select the Events option. The following page displays: Figure 12-13 Maintenance >...
A message asks for confirmation. Click OK. 4) To save, click Apply. Events Commands To manage the response to events that occur in the SLC 8000 advanced console manager: admin events add <trigger> <response> <trigger> is one of: |receivetrap|templimit|humidlimit|overcurrent|dpdatadrop <response>...
12: Maintenance Figure 12-14 Maintenance > LCD/Keypad To configure the LCD: The screens that are currently enabled are displayed in order in the left Enabled screens list. 1. Select a screen to be removed from the Enabled Screens and click the button.
12: Maintenance Restore Factory Defaults Password / Enter the 6 digit key sequence entered at the keypad to restore Retype Password the SLC unit to factory defaults. The default is 999999. 2. Click Apply to save. LCD/Keypad Commands The following CLI commands correspond to the Maintenance >...
12: Maintenance 2. Enter the following fields. Welcome Banner The text to display on the command line interface before the user logs in. May contain up to 1024 characters. Single quote and double quote characters are not supported. Welcome to the SLC is the default. Note: To create more lines use the \n character sequence.
SLC unit (direct command). Telnet/SSH to a Remote Device The following figure shows a Sun server connected to port 2 of the SLC 8000 advanced console manager. SLC unit...
[SLC]> set deviceport port 2 baud 57600 flowcontrol none Device Port settings successfully updated. 3. Dial into the SLC 8000 advanced console manager via the modem using a terminal emulation program on a remote PC. A command line prompt displays.
(See Chapter 10: Connections on page 166). Figure 13-4 Local Serial Connection to Network Device via Telnet Sun UNIX Server SLC 8000 Advanced Console Manager Internet Serial Cable to Device Port 2 In this example, the sysadmin would: 1.
Page 259
13: Application Examples Logging Settings---------------------------------------------------- Local Logging: disabled USB Logging: disabled Email Logging: disabled Log to: upper slot Byte Threshold: 100 Max number of files: 10 Email Delay: 60 seconds Max size of files: 2048 Restart Delay: 60 seconds Email To: <none> Email Subject: Port %d Logging Email String: <none>...
14: Command Reference After an introduction to using commands, this chapter lists and describes all of the commands available on the SLC command line interface accessed through Telnet, SSH, or a serial connection. The commands are in alphabetical order by category. Introduction to Commands Following is some information about command syntax, command line help, and tips for using commands.
14: Command Reference Action Category (continued) diag arp|internals|lookup|loopback|netstat|nettrace|perfstat|ping |ping6|sendpacket|top|traceroute admin banner|clear|config|events|firmware|ftp|keypad|lcd|memory |quicksetup|reboot|shutdown|site|version|web Terminates CLI session. logout Command Line Help For general Help and to display the commands to which you have rights, type: help For general command line Help, type: help command line For more information about a specific command, type help followed by the command, for example:...
14: Command Reference Keyboard Shortcuts: Control-a: move to the start of the line Control-e: move to the end of the line Control-b: move back to the start of the current word Control-f: move forward to the end of the next word Control-u: erase from cursor to the beginning of the line Control-k: erase from cursor to end of the line Administrative Commands...
Page 263
14: Command Reference admin banner ssh Syntax admin banner ssh <Banner Text> Description Configures the banner that displays prior to SSH authorization. admin banner welcome Syntax admin banner welcome <Banner Text> Description Configures the banner displayed before the user logs in. Note: To go to the next line, type \n and press Enter.
Page 264
Services Date/Time Local Users Device Ports USB Port/SD Card Description Restores a saved configuration to the SLC 8000 advanced console manager. admin config save Syntax admin config save <Config Name> location <default|ftp|sftp|nfs|cifs|usb|sdcard> [nfsdir <NFS Mounted Dir>] [usbport <U1|U2>] [savesshkeys <enable|disable>] [savesslcert <enable|disable>]...
Page 265
Updates SLC firmware to a new revision. You should be able to access the firmware file using the settings admin ftp show displays. The SLC 8000 advanced console manager automatically reboots after successful update. SLC™ 8000 Advanced Console Manager User Guide...
Page 266
14: Command Reference admin ftp password Syntax admin ftp password Description Sets the FTP server password and prevent it from being echoed. admin ftp server Syntax admin ftp server <IP Address or Hostname> [login <User Login>] [path <Directory>] Description Sets the FTP/TFTP/SFTP server used for firmware updates and configuration save/restore. admin ftp show Syntax admin ftp show...
Page 267
14: Command Reference admin keypad show Syntax admin keypad show Description Displays keypad settings. admin lcd reset Syntax admin lcd reset Description Restarts the program that controls the LCD. admin memory show Syntax admin memory show Description Displays information about SLC memory usage. admin memory swap add <Size of Swap in MB>...
Page 268
When you use this command to shut down the SLC console manager, the LCD front panel displays the “Shutting down the SLC” message, followed by a pause, and then “Shutdown complete.” When “Shutdown complete” displays, it is safe to power off the SLC 8000 advanced console manager.
Page 269
14: Command Reference admin version Syntax admin version Description Displays current hardware and firmware information. admin web certificate Syntax admin web certificate import via <sftp|scp> certfile <Certificate File> privfile <Private Key File> host <IP Address or Name> login <User Login> [path <Path to Files>] Description Imports an SSL certificate.
Page 270
14: Command Reference admin web group Syntax admin web group <Local or Remote Group Name> Description Configures the group that can access the web. admin web timeout Syntax admin web timeout <disable|5-120> Description Configures the timeout for web sessions. admin web terminate Syntax admin web terminate <Session ID>...
14: Command Reference admin web iface <none,eth1,eth2,ppp> Syntax admin web iface <none,eth1,eth2,ppp> Description Defines a list of network interfaces the web is available on. admin web protocol <sslv2|nosslv2> Syntax admin web protocol <sslv2|nosslv2> Description Configures the web server to use SSLv2 in addition to SSLv3 and TLSv1. admin web timeout <disable|5-120 minutes>...
14: Command Reference Description Displays audit log. By default, shows the audit log sorted by date/time. You can sort it by user or command, or clear the audit log. Authentication Commands set auth Syntax set auth <one or more parameters> Parameters authusenextmethod <enable|disable>...
<Key Distribution Center TCP Port> realm <Kerberos Realm> state <enable|disable> useldapforlookup <enable|disable> Description Configures the SLC 8000 advanced console manager to use Kerberos to authenticate users who log in via the Web, SSH, Telnet, or the console port. show kerberos Syntax show kerberos Description Displays Kerberos settings.
User Permissions Commands (on page 281) for information on groups and user rights. Description Configures the SLC 8000 advanced console manager to use LDAP to authenticate users who log in via the Web, SSH, Telnet, or the console port. set ldap bindpassword Description Set the LDAP bind password.
14: Command Reference set ldap certificate import|delete Description Import or delete an LDAP certificate. Syntax set ldap certificate import via <sftp|scp> rootfile <Cert Auth File> certfile <Certificate File> keyfile <Key File> host <IP Address or Name> login <User Login> [path <Path to Files>] set ldap certificate delete show ldap Syntax...
Page 276
14: Command Reference Description Configures local accounts (including sysadmin) who log in to the SLC 8000 advanced console manager by means of the Web, SSH, Telnet, or the console port. set localusers allowreuse Syntax set localusers allowreuse <enable|disable> Description Sets whether a login password can be reused.
Page 277
14: Command Reference set localusers maxloginattempts Syntax set localusers maxloginattempts <Number of Logins> Description Sets the maximum number of login attempts before the account is locked. Disabled by default. set localusers password Syntax set localusers password <User Login> Description Sets a login password for the local user. set localusers periodlockout Syntax set localusers periodlockout <Number of Minutes>...
14: Command Reference set localusers state Syntax set localusers state <enable|disable> Description Enables or disables authentication of local users. show localusers Syntax show localusers [user <User Login>] Description Displays local users. NIS Commands set nis Syntax set nis <one or more parameters> Parameters broadcast <enable|disable>...
14: Command Reference Description Configures the SLC 8000 advanced console manager to use NIS to authenticate users who log in via the Web, SSH, Telnet, or the console port. show nis Syntax show nis Description Displays NIS settings. RADIUS Commands...
14: Command Reference set radius server Syntax set radius server <1|2> host <IP Address or Hostname> secret <Secret> [port <TCP Port>] Description Identifies the RADIUS server(s), the text secret, and the number of the TCP port on the RADIUS server. Note: The default port is 1812.
14: Command Reference state <enable|disable> Description Configures the SLC 8000 advanced console manager to use TACACS+ to authenticate users who log in via the Web, SSH, Telnet, or the console port. show tacacs+ Syntax show tacacs+ Description Displays TACACS+ settings.
Page 282
14: Command Reference set localusers permissions Syntax set localusers add|edit <user> permissions <Permission List> where <Permission List> is one or more of nt, sv, dt, lu, ra, sk, um, dp, do, ub, rs, rc, dr, wb, sn, ad, md, sd To remove a permission, type a minus sign before the two-letter abbreviation for a user permission.
Page 283
14: Command Reference set remoteusers delete Syntax set remoteusers delete <User Login> Description Removes a remote user. show remoteusers Syntax show remoteusers Description Displays settings for all remote users set <nis|ldap|radius|kerberos|tacacs+> group Syntax set <nis|ldap|radius|kerberos|tacacs> group <default|power|admin> Description Sets a permission group for remotely authorized users. set <nis|ldap|radius|kerberos|tacacs+>...
<disable|Number of lines> Description Sets the number of lines in the terminal emulation (screen) for paging through text one screenful at a time, if the SLC 8000 advanced console manager cannot detect the size of the terminal automatically. Note: Settings are retained between CLI sessions for local users and users listed in the remote users list.
14: Command Reference show cli Syntax show cli Description Displays current CLI settings. show user Syntax show user Description Displays attributes of the currently logged in user. set history Syntax set history clear Description Clears the commands that have been entered during the command line interface session. show history Syntax show history...
Page 286
14: Command Reference charcount <# of Chars> charseq <Char Sequence> charxfer <toendpoint|fromendpoint> date <MMDDYYhhmm[ss]> deviceport <Device Port # or Name> exclusive <enable|disable> ssh <IP Address or Name> [port <TCP Port>][<SSH flags>] where <SSH flags> is one or more of: user <Login Name> version <1|2>...
Page 287
Syntax connect global outgoingtimeout <disable|1-9999 seconds> Description Sets the amount of time the SLC 8000 advanced console manager will wait for a response (sign of life) from an SSH/Telnet server that it is trying to connect to. Note: This is not a TCP timeout.
Page 288
14: Command Reference telnet <IP Address or Name> [port <TCP Port] trigger <now|datetime|chars> If the trigger is datetime (establish connection at a specified date/time), enter the date parameter. If the trigger is chars (establish connection on receipt of a specified number or characters or a character sequence), enter either the charcount or the charseq parameter.
14: Command Reference timeout <disable|1-30> Description Configures console port settings. show consoleport Syntax show consoleport Description Displays console port settings. Custom User Menu Commands When creating a custom user menu, note the following limitations: Maximum of 20 custom user menus. ...
Page 290
14: Command Reference Parameters command <Command Number> nickname <Command Number> redisplaymenu <enable|disable> shownicknames <enable|disable> title <Menu Title> Description Changes a command within an existing custom user menu. Changes a nickname within an existing custom user menu. Enables or disables the redisplay of the menu before each prompt. Enables or disables the display of command nicknames instead of commands.
<IP Address or Hostname> localserver3 <IP Address or Hostname> poll <local|public> publicserver <IP Address or Hostname> state <enable|disable> sync <broadcast|poll> Description Synchronizes the SLC 8000 advanced console manager with a remote time server using NTP. SLC™ 8000 Advanced Console Manager User Guide...
14: Command Reference show ntp Syntax show ntp Description Displays NTP settings. Device Commands set command Syntax set command <Device Port # or Name or List> <one or more parameters> Parameters slp|servertech auth login <User Login> Establishes the authentication information to log into the SLP power manager or ServerTech CDU attached to the device port.
14: Command Reference Enter the prompt displayed by the SLP or ServerTech CDU device. This will default to a typical prompt for an SLP or ServerTech CDU. If you are unable to control the SLP or ServerTech CDU device, verify that the prompt is set to the right value. [numoutlets <Number of Outlets>] [numexpoutlets <Number of Expansion Outlets>] Enter the number of outlets for a ServerTech CDU main unit or the number of outlets for a...
Page 294
<Local or Remote Group Name> initscript <Initialization Script> Note: We recommend preceding the initscript with AT and include E1 V1 x4 Q0 so that the SLC 8000 advanced console manager may properly control the modem. sshtimeout <disable|1-1800 seconds> tcptimeout <disable|1-1800 seconds> telnettimeout <disable|1-1800 seconds>...
Page 296
14: Command Reference Description Displays a list of all device port names. show deviceport port Syntax show deviceport port <Device Port List or Name> Description Displays the settings for one or more device ports. show portcounters Syntax show portcounters [deviceport <Device Port List or Name>] [email <Email Address>] Description Displays device port statistics and errors for one or more ports.
Displays the ARP table of IP address-to-hardware address mapping. You can optionally email the displayed information. diag internals Syntax diag internals Description Displays information on the internal memory, storage and processes of the SLC 8000 advanced console manager Note: This command is available in the CLI but not the web. diag netstat Syntax diag netstat [protocol <all|tcp|udp>] [email <Email Address>]...
Page 298
Tests a device port by transmitting data out the port and verifying that it is received correctly. A special loopback cable comes with the SLC 8000 advanced console manager. To test a device port, plug the cable into the device port and run this command. The command sends the specified Kbytes to the device port and reports success or failure.
Page 299
14: Command Reference Parameters count <Number Of Times To Ping> packetsize <Size In Bytes> ethport <1|2> diag sendpacket host Description Generate and send Ethernet packets. Syntax diag sendpacket host <IP Address or Name> port <TCP or UDP Port Number> [string <Packet String>] [protocol <tcp|udp>] [count <Number of Packets>] diag top Syntax...
14: Command Reference End Device Commands slp auth login Syntax slp auth login Parameters slp auth login <User Login> Description Establishes the authentication information to log into the SLP attached to the device port. slp envmon Syntax slp envmon Description Displays the environmental status (e.g., temperature and humidity) of the SLP.
14: Command Reference slp restart Syntax slp restart Description Issues the CLI command the SLP uses to restart itself. slp system Syntax slp system Description Displays system information for the SLP. Events Commands admin events add Syntax admin events add <trigger> <response> <trigger>...
14: Command Reference Parameters dataports <Port List> listenports <Port List> clearports <Port List> escapeseq <1-10 Chars> breakseq <1-10 Chars> custommenu <Menu Name> displaymenu <enable|disable> allowdialback <enable|disable> dialbacknumber <Phone Number> permissions <Permission List> Note: See 'help user permissions' for information on user rights. Rename a group: set groups rename <Group Name>...
Page 304
14: Command Reference set hostlist add|edit <Host List Name> entry <Host Number> [<parameters>] Parameters host <IP Address or Name> protocol <ssh|telnet|tcp> port <TCP Port> escapeseq <1-10 Chars> Description Adds a new host entry to a list or edit an existing entry. set hostlist edit <Host List Name>...
Page 308
14: Command Reference Description Clears the local log for a device port. The locallog commands can only be executed for a device port if local logging is enabled for the port. The set locallog clear command can only be executed if the user has permission to clear port buffers (see Chapter 11: User Authentication).
14: Command Reference show log local Syntax show log local Description View the log for local, NFS, or USB logging (NFS and USB use the current logging settings for the Device Port). Default is to show the log tail: show log local|nfs|usb|sdcard <Device Port # or Name> [<parameters>] Parameters display <head|tail>...
Page 310
14: Command Reference Description Configures up to three DNS servers. set network gateway Syntax set network gateway <parameters> Parameters default <IP Address> precedence <dhcp|gprs|default> alternate <IP Address> pingip <IP Address> ethport <1 or 2> pingdelay <1-250 seconds> failedpings <1-250> Description Sets default and alternate gateways.
Page 311
Description Displays gateway settings. show network host Syntax show network host Description Displays the network host name of the SLC 8000 advanced console manager. show network port Syntax show network port <1|2> Description Displays Ethernet port settings and counters. show network all...
14: Command Reference NFS and SMB/CIFS Commands set nfs mount Syntax set nfs mount <one or more parameters> Parameters locdir <Directory> mount <enable|disable> remdir <Remote NFS Directory> rw <enable|disable> Enables or disables read/write access to remote directory. Description Mounts a remote NFS share. The remdir and locdir parameters are required, but if they have been specified previously, you do not need to provide them again.
14: Command Reference set cifs password Syntax set cifs password Description Changes the password for the SMB/CIFS share login (default is cifsuser). show cifs Syntax show cifs Description Displays SMB/CIFS settings. show nfs Syntax show nfs Description Displays NFS share settings. Routing Commands set routing Syntax...
14: Command Reference show routing Syntax show routing [resolveip <enable|disable>] [email <Email Address>] Description Sets the routing table to display IP addresses (disable) or the corresponding host names (enable). You can optionally email the displayed information. SD Card Commands Enables or disables access to SD Card devices: set sdcard access <enable|disable>...
14: Command Reference Security Commands set security Description Configures SLC security and FIPS settings. Parameters set security <parameters> fipsmode Parameters fipsmode <enable|disable> show security Description Displays security settings and current status. Parameters show security Services Commands set services Syntax set services <one or more services parameters> Parameters alarmdelay <1-6000 Seconds>...
Page 316
14: Command Reference location <Physical Location> netlog <off|error|warning|info|debug> nms1 <IP Address or Name> nms2 <IP Address or Name> phonehome <enable|disable> phoneip <IP Address> portssh <TCP Port> rocommunity <Read-Only Community Name> rwcommunity <Read-Write Community Name> Sets a password for an SNMP manager to access the read-only data the SLC SNMP agent provides and to modify data where permitted.
<one or more parameters> Parameters add <IP Address> delete <IP Address> search <localsubnet|ipaddrlist|both> Description Detects and displays all SLC 8000 advanced console manager or user-defined IP addresses on the local network. show slcnetwork Syntax show slcnetwork [ipaddrlist <all|Address Mask>] Description Detects and displays all SLC 8000 advanced console managers on the local network.
Page 318
14: Command Reference Description Exports the public keys all of the previously created SSH keys. set sshkey delete Syntax set sshkey delete <one or more parameters> Parameters keyhost <SSH Key Host> keyname <SSH Key Name> keyuser <SSH Key User> Description Deletes an ssh key.
Page 319
14: Command Reference Parameters [keyhost <SSH Key IP Address or Name>] [keyuser <SSH Key User>] [path <Path to Public Key File>] file <Public Key File> host <IP Address or Name> login <User Login> Description Imports an SSH key. set sshkey server import type Syntax set sshkey server import type <rsa1|rsa|dsa>...
14: Command Reference Syntax show sshkey import <one or more parameters>] Parameters [keyhost <SSH Key IP Address or Name>] [keyuser <SSH Key User>] [viewkey <enable|disable>] Description Displays all keys that have been imported or keys for a specific user, IP address, or name. show sshkey server Syntax show sshkey server [type <all|rsa1|rsa|dsa>]...
14: Command Reference show portcounters Syntax show portcounters [deviceport <Device Port List or Name>] [email <Email Address>] Description Generates a report for one or more ports. Optionally emails the displayed information. show portstatus Syntax show portstatus [deviceport <Device Port List or Name>] [email <Email Address>] Description Displays device port modes and states for one or more ports.
14: Command Reference Parameters [email <Email Address>] level <error|warning|info|debug> log <all|netlog|servlog|authlog|devlog|diaglog|genlog> display <head|tail> [numlines <Number of Lines>] starttime <MMDDYYhhmm[ss]> endtime <MMDDYYhhmm[ss]> Description Displays the system logs containing information and error messages. Note: The level, display, and time parameters cannot be used simultaneously. show syslog clear Syntax show syslog clear <all|netlog|servlog|authlog|devlog|diaglog|genlog>...
Page 323
<U1|U2> Description Mounts a USB flash drive in the SLC 8000 advanced console manager for use as a storage device. The USB flash drive must be formatted with an ext2 or FAT file system before you mount it.
14: Command Reference set usb storage copy Description Copies a file on a thumb drive. Syntax set usb storage copy <U1|U2> file <Filename> newfile <New Filename> set usb storage delete Description Removes a file on a thumb drive. Syntax set usb storage delete <U1|U2> file <Current Filename> show usb storage Description Display product information and settings for any USB thumb drive.
Page 326
14: Command Reference Description Configures setting for an IPsec VPN tunnel. Parameters set vpn <parameters> name <VPN Tunnel Name> ethport <1|2> auth <rsa|psk> remotehost <Remote Host IP Address or Name> remoteid <Authentication Name> remotehop <IP Address> remotesubnet <one or more subnets in CIDR notation> localid <Authentication name>...
Page 327
14: Command Reference show vpn viewlog [numlines <Number of Lines] [email <Email Address>] Display RSA public key of the SLC: show vpn rsakey set temperature Syntax set temperature Description Sets the acceptable range for the internal temperature sensor (an SNMP trap is sent if the temperature is outside of this range).
Telnet sends the login exchange as clear text across Ethernet. A person snooping on a subnet may read your password. A terminal to the SLC may be secure, but the path from the SLC 8000 advanced console manager to the end device may not be secure.
Only use a power cord with a voltage and current rating greater than the voltage and current rating marked on the SLC unit. Install the SLC 8000 advanced console manager near an AC outlet that is easily accessible. Always connect any equipment used with the product to properly wired and grounded power ...
Appendix B: Safety Information Rack If rack mounted SLC 8000 advanced console managers are installed in a closed or multi-unit rack assembly, they may require further evaluation by Certification Agencies. The following items must be considered: Do not install the SLC unit in a rack in such a way that a hazardous stability condition results ...
Lantronix adapters. The cables are available in various lengths. In most cases, you will need an adapter for your serial devices. Lantronix offers a variety of RJ45- to-serial connector adapters for many devices. These adapters convert the RJ45 connection on the SLC unit to a 9-pin or 25-pin serial connector found on other manufacturers' serial devices or re-route the serial signals for connections to other devices that use RJ45 serial connectors.
Appendix C: Adapters and Pinouts Figure C-2 RJ45 Receptacle to DB25F DCE Adapter for the SLC unit (PN 200.2067A) Figure C-3 RJ45 Receptacle to DB9M DCE Adapter for the SLC unit (PN 200.2069A) SLC™ 8000 Advanced Console Manager User Guide...
Appendix C: Adapters and Pinouts Figure C-4 RJ45 Receptacle to DB9F DCE Adapter for the SLC unit (PN 200.2070A) Use PN 200.2070A adapter with a PC's serial port. SLC™ 8000 Advanced Console Manager User Guide...
Page 334
Appendix D: Protocol Glossary BOOTP (Bootstrap Protocol) Similar to DHCP, but for smaller networks. Automatically assigns the IP address for a specific duration of time. CHAP (Challenge Handshake Authentication Protocol) A secure protocol for connecting to a system; it is more secure than the PAP. DHCP (Dynamic Host Configuration Protocol) Internet protocol for automating the configuration of computers that use TCP/IP.
Page 335
Appendix D: Protocol Glossary NTP (Network Time Protocol) A protocol used to synchronize time on networked computers and equipment. PAP (Password Authentication Protocol) A method of user authentication in which the username and password are transmitted over a network and compared to a table of name-password pairs. PPP (Point-to-Point Protocol) A protocol for creating and running IP and other network protocols over a serial link.
Page 336
Appendix E: Compliance Information Manufacturer’s Name & Address Lantronix Inc., 167 Technology Drive, Irvine, CA 92618 USA Declares that the following product: Product Name(s): SLC™ Advanced Console Manager Conforms to the following standards or other normative documents: Safety: Low Voltage Directive (2006/95/EC) IEC 60950-1:2005 (2nd Edition);...
Page 337
Lantronix, Inc. 167 Technology Drive, Irvine, CA 92618 USA Tel: 949-453-3990 Fax:949-453-3995 RoHS Notice All Lantronix products in the following families are China RoHS-compliant and free of the following hazardous substances and elements: Lead (Pb) Mercury (Hg) Polybrominated biphenyls (PBB) ...
Need help?
Do you have a question about the SLC 8000 and is the answer not in the manual?
Questions and answers