Black Box EncrypTight Enforcement Point (ETEP) Network Hardware User Manual


 
Initial Setup
58 ETEP Installation Guide
6 When you are successfully logged in, the command line prompt displays as shown below (password
text is not displayed).
pep login: admin
Password:
Last login: Tue Jan 29 19:18:59 2008 on ttyS0
Welcome admin it is Tue Jan 29 19:37:12 UTC 2008
admin>
It is strongly recommended that you change the default passwords when you configure the ETEP for
operation. For more information about user management see the documentation for your management
software: ETEP CLI User Guide or the EncrypTight Manager User Guide.
Configuring the Management Port
The ETEP can be managed in-line or out-of-band through a dedicated Ethernet management interface.
Management port configuration consists of the following items:
Setting the IP address and default gateway
Reviewing the auto-negotiation settings
About the management port IP address, mask and gateway
The management port must have an assigned IP address in order to be managed remotely and
communicate with other devices. An IPv4 IP address is mandatory, even when the ETEP is operating in
an IPv6 network. When the ETEP is operating in an IPv6 network, configure the ETEP for dual-homed
operation by assigning an IPv4 and an IPv6 address to the management port.
The Ethernet management port IP address identifies the ETEP to the management workstation. The
subnet mask is the portion of the IP address that identifies the network or subnetwork for routing
purposes.
When the ETEP management port and the management workstation are on different subnets, the ETEP
uses a default gateway to route packets to the other devices. The default gateway identifies the local
router port that is on the same subnet as the ETEP Ethernet management port. The appliance sends all
packets to the specified router for forwarding to the management station or other EncrypTight Manager
components (key generation server, time server). When the management port and workstation are on the
same subnet a default gateway is not needed to route packets between the devices.
Figure 42 shows an example of a default gateway when the management station and ETEP are on
different subnets. The management station’s IP address is 192.168.1.10, and the ETEP’s management port
IP address is 192.168.10.10. To send packets between the two devices, the local port on Router #1 is
specified as the default gateway (192.168.10.1). The gateway address must match the subnet of the
management port.