Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter...

18
Authentication Service Delivery Made EASY™ Remote Logging Agent Configuration Guide Powerful Authentication Management for Service Providers and Enterprises

Transcript of Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter...

Page 1: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

Authentication Service Delivery Made EASY™

Remote Logging Agent

Configuration Guide

Powerful Authentication Management for Service Providers and Enterprises

Page 2: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

2

Copyright © 2014 SafeNet, Inc. All rights reserved.

All attempts have been made to make the information in this document complete and accurate. SafeNet,

Inc. is not responsible for any direct or indirect damages or loss of business resulting from inaccuracies or

omissions. The specifications contained in this document are subject to change without notice.

SafeNet and SafeNet Authentication Service are either registered with the U.S. Patent and Trademark

Office or are trademarks of SafeNet, Inc., and its subsidiaries and affiliates, in the USA and other

countries. All other trademarks referenced in this manual are trademarks of their respective owners.

SafeNet hardware and/or software products described in this document may be protected by one or more

U.S. patents, foreign patents, or pending patent applications.

Please contact SafeNet Support for details of FCC Compliance, CE Compliance, and UL Notification.

Support

If you encounter a problem while installing, registering or operating this product, please make sure that

you have read the documentation. If you cannot resolve the issue, contact your supplier or SafeNet

Customer Support. SafeNet Customer Support operates 24 hours a day, 7 days a week. Your level of

access to this service is governed by the support plan arrangements made between SafeNet and your

organization. Please consult this support plan for further information about your entitlements, including

the hours when telephone support is available to you.

Contact Method

Contact Information

Address SafeNet, Inc.

4690 Millennium Drive

Belcamp, Maryland 21017

USA

Phone United States 1-800-545-6608

International 1-410-931-7520

Email [email protected]

Technical Support Customer Portal

https://serviceportal.safenet-inc.com

Existing customers with a Technical Support Customer Portal account can log in to manage incidents, get the latest software upgrades, and access the SafeNet Knowledge Base.

Page 3: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

3

Document Part Number: 007-012475-001

Publication History

Date Description Revision

2014.03.27 Updates for 3.3.2 release A

2014.02.26 Changed copyright year. 1.2

2013.08.28 Minor corrections 1.1

2013.05.31 Initial release 1.0

Page 4: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

4

Contents Applicability................................................................................................................................................... 5

Environment ................................................................................................................................................. 6

Overview ....................................................................................................................................................... 7

Configuring the SafeNet Authentication Service Manager ........................................................................... 8

Installing the Agent ....................................................................................................................................... 9

Configuring the Agent ................................................................................................................................. 14

Page 5: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Applicability 5

Applicability

The information in this document applies to:

SafeNet Authentication Service (SAS)

A cloud authentication service of SafeNet Inc.

SafeNet Authentication Service – Service Provider Edition (SAS-SPE)

The software used to build a SafeNet authentication service.

SafeNet Authentication Service – Private Cloud Edition (SAS-PCE)

A term used to describe the implementation of SAS-SPE/PCE.

Note: references to BlackShield and CRYPTOCard reflect CRYPTOCard branding prior to acquisition by

SafeNet. Over time these references will change to reflect SafeNet branding including program

installation locations.

Page 6: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Environment 6

Environment

Supported Platforms Windows 2008 SP2 and Windows 2008 R2

Windows 7

Supported Architecture 32-bit

64-bit

Additional Software Components IIS 7

Network Port TCP Port 8459 (outbound)

TCP Port 8458 (inbound)

UDP Port 514 (syslog only – optional)

Page 7: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Overview 7

Overview

SafeNet Authentication Server logs are generated on the service providers’ servers. SafeNet

Authentication Server Remote Logging Agent sends the information displayed in the SafeNet

Authentication Service Manager Snapshot window together with operator activity information (if

configured) to a receiving agent on n the vendor’s local computer, where it can be displayed in the event

viewer, syslog or log file.

Page 8: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the SafeNet Authentication Service Manager 8

Configuring the SafeNet Authentication Service

Manager

The SafeNet Authentication Service Manager must be configured as follows:

1. In the SafeNet Authentication Service Manager, select Virtual Servers>Communications.

2. Enter the Authentication Server IP and the Port (default 8459).

3. Click Apply.

Steps 4, ‎5, and ‎6 below are optional. The agent will be automatically added when you load the bmc

file (see

Page 9: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Installing the Agent 9

Configuring the Agent, page 14).

4. Under Authentication Processing click Logging Agent.

5. Enter the IP address of the vendor’s remote computer and click Apply.

A new row is created displaying the IP address.

6. Click Add.

7. Click Download.

A bmc file is created.

8. Copy the bmc file to the remote (vendor’s) computer.

Installing the Agent

1. On the remote (vendor’s) computer, run one of the following installation files:

SafeNet Authentication Service Logging Agent x64.exe (64-bit)

SafeNet Authentication Service Logging Agent.exe (32-bit)

Page 10: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Installing the Agent 10

The Welcome to the InstallShield Wizard for SafeNet Logging Agent window opens.

Page 11: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Installing the Agent 11

2. Click Next

The License Agreement window opens.

3. Select I accept the terms in the license agreement and click Next.

The Customer Information window opens.

4. Enter the User Name and Organization.

Page 12: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Installing the Agent 12

5. Select one of the following to determine who can use the application:

Anyone who uses this computer (all users)

Only for me

6. Click Next.

The Destination Folder window opens.

7. The installation folder is displayed. To change the location click Change and browse to the required

location.

8. Click Next.

The Ready to Install the Program window opens.

9. Click Install to begin installation.

Page 13: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Installing the Agent 13

When the process has been completed, the InstallShield Wizard Completed window opens

10. Click Finish to exit the installation wizard..

Page 14: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the Agent 14

Configuring the Agent

Note: The following ports are used on the Logging Agent computer:

Port 8458 Inbound traffic

Port 8459 Outbound traffic

To configure the agent:

1. Select Start>All Programs>SafeNet>Agents>Logging Agent.

The SafeNet Authentication Service Logging Agent opens.

2. In the Current Organization section, click the Add button. Browse to the location of the

LoggingAgentConfigFile.bmc and load the file.

The Current Organization section will update showing information about your Virtual Server.

Page 15: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the Agent 15

3. Select the Configuration tab.

4. From the Message Type dropdown list select one of the following:

Authentication Message

Operator Authentication Message.

5. From the Configuration Send To dropdown list select one of the following:

File

Event Viewer

Syslog

Page 16: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the Agent 16

6. If you selected File, do the following:

a. Browse to the folder.

b. Enter the required delimiter (it is a CVS file).

c. Click Apply.

d. To test, click Test and open the CVS file.

Page 17: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the Agent 17

7. If you selected Event Viewer, do the following:

a. In the source field select SafeNet Authentication Service Logging Agent.

b. Click Apply.

c. To test, click Test and open the Event Viewer.

Page 18: Remote Logging Agent Configuration Guide - SafeNet. In the SafeNet Authentication Service ... Enter the IP address of the vendor’s ... SafeNet Authentication Service Remote Logging

SafeNet Authentication Service Remote Logging Agent Configuration Guide

Configuring the Agent 18

8. If you selected syslog, do the following:

a. In the Primary field enter the IP:Port of the Syslog server.

b. In the Secondary field, enter the IP:Port of the secondary (backup) Syslog server, if required.

c. Click Apply.

d. To test, click Test and open the Syslog.