 |
Console Servers AlterPath™ ACS TS Series
KVM Enterprise Solutions Alterpath™KVM Analog Alterpath™KVM/net (KVM over IP) Alterpath™KVM/netPlus (KVM over IP)
Power Management AlterPath™PM
OOBI Management Alterpath™Manager
Blade Management Alterpath™ Blade Manager
Branch Office Management AlterPath™OnSite Alterpath™ACS1 TS100 & TS110
Multiport Serial Cards Cyclades Z Series Cyclom Y Series
Other AlterPath™Biometric Scanner Cables and Adapters

|
 |
Cyclades
AlterPath™ ACS - Application Notes
Console Management for Routers and Firewalls
The scenario:
The customer in this scenario manages several college networks across the state of Minnesota. Every campus activity
relies heavily on computers and networking devices, which demands maximum network uptime. The Network Services staff
has to keep every switch, router, network under close control to maintain a high network performance.
The problem:
How to securely access and manage every switch, router, firewall and network probe located in 60+ campuses. Those
networking devices are to be constantly monitored for any abnormal needs to be quickly corrected. They can be managed
using in-band access, but on-site service the device stops responding to in-band access requests. Out-of-band access
could be used, manufacturers’ out-of-band management solutions do not meet the security requirements.

The solution:
Use Cyclades-TS400 Console Server for secure access and management of remote switches, routers, firewalls and RMON probes.
The TS400 has the required security features for remote management and the port density to cover the geographically spread
network and keep its high availability.

Cyclades-TS series Console Servers are primarily used for out-of-band
management of servers. The Network Services administrators had to
access and manage their network elements like firewalls and routers
throughout campuses. They realized that the Cyclades-TS would be an
excellent tool to get all the information from their remote firewalls,
switches, probes and routers they needed to efficiently manage their
network. Security was a relevant concern, along with reliability,
ease of use and flexibility, which made them fit to their specific
needs.
The TS400 has 4 ports per unit, the right port density to manage
their remote routers, switches, RMON probes and firewalls installed
in their campuses networks across the state. SSH access is used
along with out-of-band access for remote recovery. High reliability
was also of relevant concern because the network devices were too
apart. Booting from flash assured no dependency on mechanical disk
drives, which removed the most likely cause of hardware failure
at those remote sites. The small Linux firmware also proved to be
very robust.
The Network Monitoring Station accesses TS machines to reach the
console port of networking devices to get essential data on network
health. Monitoring of switches, routers and gateways provides detailed
data on their working configuration, user session, spanning tree,
port capability, connectivity, port status, system status and neighboring.
Firewalls give relevant data to manage secure network operation.
Skilled analysis of collected network activity and security logs
can pinpoint threats and filter potentially suspicious activities.
The TS400 will also be used in an ambitious plan for future improvement
of network management. The availability of the CDK (Cyclades Development
Kit) contains the source code which makes it easy to embed new functionalities
in the TS.
Being familiar with software development in Linux, the network
staff in Minnesota will use the CDK to create a custom firmware
with new functions for the TS. Embed it, and it will be ready to
go with a new functionality tailored to their needs. One exclusive
TS, one exclusive functionality.
|  |