Document toolboxDocument toolbox

3rd Step: Running Configure Tunserver on the Controller

The configure tunserver command governs the core security settings for the Controller appliance, including certificate usage and the VPN tunnel server settings between the Controller and all collectors.

The command also offers the option to define a reference NetMRI appliance to use for importing the library of scripts, custom reports, custom jobs, policies, and user account data from an existing appliance. For more information, see Importing Data From a Reference NetMRI Instance.

  1. Use a terminal program to connect to the management IP address of the Controller appliance.
  2. Log in using the default admin/admin username/password account.
  3. Execute the following administrative shell CLI commands on a newly installed or reset Operations Center appliance:

NetworkAutomation-VM-8DD4-66925> configure tunserver

+++ Configuring CA Settings

CA key expiry in days [5475]:

CA key size in bits [2048]:

+++ Configuring Server Settings

Server key expiry in days [5475]:

Server key size in bits [1024]:

Server Public Name or IP address: 10.120.32.167

Protocol (tcp, udp, udp6) [tcp]:

Tunnel network base [5.0.0.0]:

Block cipher:

0. None (RSA auth)

1. Blowfish-CBC

2. AES-128-CBC

3. Triple DES

4. AES-256-CBC

Enter Choice [2]:

Use compression [y]:

You can optionally designate a NetMRI client system as a "reference" system that will be used as a source of common settings.

Enter reference system serial number or RETURN to skip:

Use these settings? (y/n) [n]: y

The system will commit the settings and restart the software without rebooting the system.

To check the operation of VPN tunnel connections with Collector appliances, click the Settings icon > Setup > Tunnels & Collectors on the Controller.