Performing initial configuration tasks


Performing initial configuration tasks involves typically involves the following activities:

After performing initial configuration tasks, you are ready to set up traffic capture and connect to device to a switch or router.

For help using the CLI commands you must execute to perform initial configuration tasks, see Exploring-the-CLI.

Changing the CLI account password

The CLI account is used for basic setup and management tasks but does not provide access to the system web interface.

Recommendation

We recommend that you immediately change the default password to a more secure one.

To change the password for the CLI account, use the password command.

Replacing the default Security officer account

The Security officer role provides the highest level of authorization in the system and is reserved for the person in your organization responsible for configuring confidentiality policies and uploading private keys into the system. Remember the Security officer user name and password since you need these credentials to log into the system web interface.

To replace the default Security officer account for the system web interface, use the createso command.

Note

These take effect only after the device is restarted.

Creating a self-signed security certificate

A certificate is used by the system web interface to enable HTTPS communication. Creating a self signed certificate enhances system security.

To create a self-signed security certificate, use the certificate command.

Note

These settings take effect only after the device is restarted.

Setting the default boot image

This device has memory slots for three firmware images:

  • Two slots for other software images, system1 and system2
  • One slot for the rescue image

You can install different firmware versions, make changes, and revert to a known working image if necessary.

The most up-to-date firmware version available at the time of shipping was loaded into the system1 slot at the factory; it is the original default boot image. The system2 slot is shipped empty.

A rescue image was loaded before this device left the factory. It has limited functionality (for basic configuration only).

Note

You cannot overwrite the rescue image.

To set the default boot image, use the defaultb command.

Setting network parameters for the system

In most cases, the system comes configured with network parameters specified by your organization. If this is not the case, the system is configured to find an IP address using DHCP. You can manually specify different parameters using the system CLI.

To set network parameters for capture and management ports, use the netparams command.

Restarting the system

To restart the system, use the reboot command. The device restarts after a few moments.

Related topics

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*