WebUI Configuration Guide
Preface
This document provides a detailed guide on deploying and configuring the Packet Broker on WEB.
Packet Broker Overview
Packet Broker is a containerized network packet broker application built on top of Sonic NOS (AsterNOS). web for visual triage scenarios, targeted abstraction on the web, the user can clearly according to the input, rules, output logic to complete the entire configuration of the issuance of the acl rules for the creation of the corresponding business groups, the ability to annotate the entire business group and adjust the priority for the convenience of the user to carry out the management.
Device Initialization Configuration
By default, both serial console-based login and SSH-based login are supported on AsterNOS appliances. The first time you log in to the switch, you need to log in from the Console port (hereinafter referred to as the serial port), and you can log in to the switch via SSH after configuring the management port IP.
Packet Broker Installation
Packet Broker is deployed on Sonic NOS (AsterNOS). Before installing, please check with the appropriate personnel to make sure that the Packet Broker version is compatible with the Sonic NOS (AsterNOS) Version Matching.
Overall Traffic Configuration Logic
To complete a traffic forwarding, the overall is divided into three segments, respectively, the input port, the intermediate filtered traffic, the output port. The configuration here is mainly in the Forwarding Policy page, through the Forwarding Policy chapter content, you can specify the traffic input and output ports, with the intermediate filtered traffic.
Login Configuration
Use the browser to visit https // device ip , you can jump to the WEB login page, the default username admin , password asteros
WebUI Overview
This page mainly displays some device status, which is mainly categorized into link status, system information, system status, temperature, fan, power supply The link status page displays the port distribution of the device and distinguishes whether the current interface is UP or not by different colors. Hovering over a port displays detailed information about the port, such as module information, interface statistics, and threshold information for module-related parameters for reference.
Interface Configuration
The interface configuration has the following parameters Speed Different speeds can be configured according to the panel port form factor. Delayed startup the interface can delay the startup for a specified period of time, mainly for unstable network conditions, the range is 0-300s Alarm Detection Direction/Alarm Threshold Configurable input/output/bi-directional, used in conjunction with the alarm threshold, when the port rate exceeds the threshold will generate syslog.
Forwarding Policy
Policies are the main part of data aggregation and triage, and are used to configure the flow of traffic from input, to filtering, and to output in a completed process. To complete the forwarding you need to create a set of policies, click the Create Policy button, you can configure the policy name, inbound interface, outbound interface, mirroring direction, and optionally add a specified VLAN.
Advanced Features
LLDP Global Enable Display the LLDP status of the port, when both ends of the port have LLDP enabled at the same time, you can display the information of both ends, including the device ID, local port, local port IP, and its corresponding peer device ID, peer device port, and peer port IP.
System Configuration
Enter the server IP to upload syslog logs to the specified remote server This interface allows you to manage the logs and download or delete them. This interface collects port status UP/DOWN alarms, CPU usage alarms, memory usage alarms, and port rate threshold alarms from syslog messages.
SNMP Configuration
There are two main types of SNMP services, one is to provide service information to other devices, and the other is to send alarms to specified devices. As shown in the figure to open the SNMP service to provide services to the outside world, the default IP for the management port IP, if there is no management port IP, you need to manually specify the IP to provide services, the default port is 161, the default group name for the public.
User Management
Click New to add a new user, configure the user's role, set a password, and add other notes to the description. Ticked users can be deleted, admin users cannot be deleted Click Password Lockout Management to change the number of lockouts and lockout time for logged-in users.