Home    SecuLution Dokumentation back next
SecuLution technique and terminology
Quick start
Test setup in 30 minutes
Best practice in everyday use
Full setup and deployment in 5 hours
Installation of components
Install Appliance
AdminWizard installation
Agent installation
Syslog server installation
Initial configuration tasks
Configure basic settings
Agent configuration
Configure automated tasks
Manage whitelist
Initial whitelist generation
Import trustworthy software
Learn mode
Check deployment and learning progress
Add entries to whitelist
Individual lernmode
Import from directory
Log alarms
Cleanup whitelist
Manually delete unused entries
Delete entries using a pattern
Clean up classifications
Managed Whitelist
Managed Whitelist
Referring rules to objects
Offline mode
Offline mode
USB device management
USB device encryption
Agent deployment (RemoteClientManagement)

Install Appliance

Set up hardware Appliance

Your Appliance will be delivered preconfigured for your network. If you received a physical device, just plug it in and boot it up. After a few minutes you should be able to ping the Appliance. That's it.

Setup Virtual appliance (VM)

If you have received a virtual appliance, copy the whole directory "SecuLution VM" from your CD to your ESX(i) datastore. Open the datastore, navigate to the directory you just copied, right-click on SecuSurf.vmx and choose "Add to inventory":

Edit the settings:

Select the "network adapter 1" and remove it.
remove network adapter

Add a new E1000 network adapter and select the appropriate network connection:
add network adapter

After adding the network adapter, change the MAC Address to "Manual" and complete the MAC with some random values. This is important to maintain license activation of the VM.


You can now power on your virtual Appliance. A fresh install of an Appliance uses the login password "password".

Replace a hardware Appliance

To replace a hardware Appliance, power it down, remove the CompactFlash card from the back of the appliance and transfer the CompactFlash card into the new replacement hardware. Power on the new hardware. You are done.

Replace a hardware Appliance with a VM

To replace a hardware with a virtual machine, there's nothing special to worry about. Just install the VM as described above. Turn off the hardware Appliance and turn on the VM. The VM does not yet have a whitelist, so it will start in learn mode to make sure that Agents which connect during this update phase will not get any denies. Just start the AdminWizard, turn off the learn mode, load the whitelist backup file and activate this whitelist on the server. You may then want to configure the basic settings.

Change IP settings

To change the IP and syslog configuration of your SecuLution server appliance, connect a KVM switch to the hardware (or VM console) and restart the Appliance (AdminWizard menu item Extra > Server > restart now). When the Appliance boots, there will be a prompt that lasts for 5 seconds in which you can press enter to manually change IP configuration.



SecuLution Appliance Update

To update the SecuLution Appliance (and all other components of SecuLution), activate menu "Extra > Updates > Check for updates on startup weekly". If available, updates will be applied automatically.


Xen, Hyper-V, KVM, VirtualBox

The SecuLution Appliance is delivered as a configured virtual machine for VMWare ESXi, but can be converted to other hypervisor formats using common tools. The SecuLution appliance uses an E1000 network card, so it is necessary that the virtualization environment provides an E1000. XEN does not provide native E1000 support, which can however be patched.