Home    SecuLution Dokumentation back next
Welcome
SecuLution technique and terminology
Quick start
Test setup in 30 minutes
Best practice in everyday use
Full setup and deployment in 5 hours
Installation of components
Install Appliance
AdminWizard installation
Agent installation
Syslog server installation
Initial configuration tasks
Configure basic settings
Agent configuration
Configure automated tasks
Manage whitelist
Initial whitelist generation
Import trustworthy software
Learn mode
Check deployment and learning progress
Audit
Add entries to whitelist
Drag'n'drop
Individual lernmode
Import from directory
PermanentLernUser
Log alarms
Cleanup whitelist
Manually delete unused entries
Delete entries using a pattern
Clean up classifications
Managed Whitelist
Managed Whitelist
Actions
Actions
Referring rules to objects
Offline mode
Offline mode
Devices
USB device management
USB device encryption
RCM
Agent deployment (RemoteClientManagement)
ArpWatch
ArpWatch
Logs
Logs
FAQ
setup.ini

Install Appliance


Set up hardware Appliance

Your Appliance will be delivered preconfigured for your network. If you received a physical device, just plug it in and boot it up. After a few minutes you should be able to ping the Appliance. That's it.

Setup Virtual appliance (VM)

If you have received a virtual appliance, copy the whole directory "SecuLution VM" from your CD to your ESX(i) datastore. Open the datastore, navigate to the directory you just copied, right-click on SecuSurf.vmx and choose "Add to inventory":
AddToInventory

Edit the settings:
VM_settings

Select the "network adapter 1" and remove it.
remove network adapter

Add a new E1000 network adapter and select the appropriate network connection:
add network adapter

After adding the network adapter, change the MAC Address to "Manual" and complete the MAC with some random values. This is important to maintain license activation of the VM.
newMac

Done.

You can now power on your virtual Appliance. A fresh install of an Appliance uses the login password "password".


Replace a hardware Appliance

To replace a hardware Appliance, power it down, remove the CompactFlash card from the back of the appliance and transfer the CompactFlash card into the new replacement hardware. Power on the new hardware. You are done.


Replace a hardware Appliance with a VM

To replace a hardware with a virtual machine, there's nothing special to worry about. Just install the VM as described above. Turn off the hardware Appliance and turn on the VM. The VM does not yet have a whitelist, so it will start in learn mode to make sure that Agents which connect during this update phase will not get any denies. Just start the AdminWizard, turn off the learn mode, load the whitelist backup file and activate this whitelist on the server. You may then want to configure the basic settings.


Change IP settings

To change the IP and syslog configuration of your SecuLution server appliance, connect a KVM switch to the hardware (or VM console) and restart the Appliance (AdminWizard menu item Extra > Server > restart now). When the Appliance boots, there will be a prompt that lasts for 5 seconds in which you can press enter to manually change IP configuration.

changeip


enterip



SecuLution Appliance Update

To update the SecuLution Appliance (and all other components of SecuLution), activate menu "Extra > Updates > Check for updates on startup weekly". If available, updates will be applied automatically.

weeklyupdate

Xen, Hyper-V, KVM, VirtualBox

The SecuLution Appliance is delivered as a configured virtual machine for VMWare ESXi, but can be converted to other hypervisor formats using common tools. The SecuLution appliance uses an E1000 network card, so it is necessary that the virtualization environment provides an E1000. XEN does not provide native E1000 support, which can however be patched.