Preview only show first 10 pages with watermark. For full document please download

Deep Discovery Inspector Quick Start Guide

   EMBED


Share

Transcript

TREND MICRO TM Deep Discovery Inspector Deep Discovery Inspector is Trend Micro’s third-generation threat management solution, designed and architected to deliver breakthrough APT and targeted attack visibility, insight and control. From a computer with a serial port: A. Connect the serial port to the serial port of the software appliance using an RS232 serial cable. B. On the computer, open a serial communication application (HyperTerminal). C. Use the following values: - Bits per second: 115200 - Data bits: 8 - Parity: None - Stop bits: 1 - Flow control: None Deep Discovery Inspector Appliance back panel Optional expansion data card port Deep Discovery Inspector is the result of Trend Micro’s thorough investigations of targeted attacks around the world, interviews with major customers, and the participation of a special product advisory board made up of leading G1000 organizations and government agencies. Expansion data card port Power supply connector Deep Discovery Inspector provides IT administrators with critical security information, alerts, and reports. Deep Discovery Inspector documentation consists of the following:       Quick Start Guide — User-friendly instructions on connecting Deep Discovery Inspector to your network and on performing initial configuration Administrator’s Guide — Instructions for configuring and managing Deep Discovery Inspector User's Guide — General information about selected sections of Deep Discovery Inspector features for users with viewer accounts Help — Online help describing Deep Discovery Inspector components and procedures to configure all features Readme — Late-breaking news, known issues, installation tips, and other important information License Agreement — License agreements for Deep Discovery Inspector and third-party applications 1 Serial Video Management USB 2.0 connector connector port connectors To perform initial configuration: 1. Log on to the Pre-configuration Console using the default password. The main menu appears. 2. At the main menu, type 2 to select Device Settings and press ENTER. The device settings screen appears. 3. Configure IP address settings. To use dynamic IP address: In the Type field, use the space bar to change the IP address option from static to dynamic. Device status Device ID indicator connector button Note: The two AC power slots are for protection in case one of the AC power slots fails. Port Cable Speed Description Opening and Inspecting the Carton Data Ethernet 10/100/1000 Mbps A total of 5 data ports connected to the network Verify that the Deep Discovery Inspector carton contains the following items: Management Ethernet 10/100/1000 Mbps A network port with a fixed IP address. Deep Discovery Inspector uses this IP address to communicate with and be managed by the Deep Discovery Inspector management server. Serial Serial Serial connection to access the pre-configuration console VGA VGA VGA connection to access the pre-configuration console To use static IP address: A. In the Type field, use the space bar to change the IP address option from dynamic to static. B. Configure the following network settings: IP address – the default is 192.155.252.1 Subnet mask – the default is 255.255.255.0 Gateway (optional) – the default is 192.xxx.252.254 DNS Server 1 (optional) DNS Server 2 (optional) Host name – the default is localhost. 4. (Optional) Type a VLAN ID. 5. (Optional) Register to Trend Micro Control Manager by using the space bar to change the option to [yes]. 6. Navigate to Return to main menu and press ENTER.      USB Device with bezel Rack kit 2 Power cord 3 4 Note: In different models, the front/back panels and expansion data card ports may vary. NMI Video button connector Mounting Deep Discovery Inspector Appliance 5 Perform initial configuration from the pre-configuration console. There are various ways to access the console: From a computer with an ethernet port: A. Connect the computer’s Ethernet port to the management port of the software appliance using an Ethernet cable. DVD drive 7 Performing Initial Configuration From a monitor with a VGA port: Connect the monitor VGA port to the software appliance VGA port using a VGA cable. 2.5-inch LCD menu USB 2.0 Device ID LCD panel connector hard drive button panel 6 Note: When mounting the appliance, leave at least two inches of clearance on all sides for proper ventilation and cooling. Deep Discovery Inspector Appliance front panel Power-on indicator Understanding Operating Modes and Network Topology Mount the Deep Discovery Inspector Appliance in a standard 19-inch 4-post rack, or on a free-standing object, such as a sturdy desktop. Familiarize yourself with the front and back panels of Deep Discovery Inspector Appliance.  Reserved Deep Discovery Inspector is deployed offline. This means that Deep Discovery Inspector does not interrupt network traffic. A switch monitors both internal and external traffic and passes the information to Deep Discovery Inspector. Deep Discovery Inspector uses this information to monitor known and potential threats. You can connect switches with a mirror port to any of the 5 data ports. Deep Discovery Inspector uses these ports as listening ports and will not interrupt traffic handled by the switches. Documents & DVD-ROM Examining the Deep Discovery Inspector Appliance 2.0 B. On the computer, open an SSH communication application (PuTTY, or another terminal emulator). 8 Connecting Deep Discovery Inspector to your Network Deep Discovery Inspector begins monitoring traffic after the boot up procedure is complete and when it is connected to your network. To connect the server to your network: 1. Plug both of the included power cables into the device power receptacle and then plug the cables into a power source. 2. Turn on the power switch. 3. Connect one end of an Ethernet cable to any of the 5 data ports and the other to the device from which Deep Discovery Inspector Appliance will receive traffic, such as a core switch. Accessing the Web Console To access the web console: 1. From a network workstation, open a browser window: Microsoft Internet™ Explorer™ 8.0, 9.0 or 10.0. Mozilla™ FireFox™ 14.x or higher. Adobe Flash player 8.0 or higher. 2. Set the Internet Security level to Medium and enable ActiveX Binary and Script Behaviors. 3. Using the managed port IP address set for the product during initial configuration, type the following URL: https://192.168.252.1/index.html 4. Type the default password: admin, and click Login. 5. Type a new password, and then retype it to confirm. 6. Set system time. 7. Activate Deep Discovery Inspector to begin using it. Contact Information    Web site: http://www.trendmicro.com Phone: +1 (800) 228-5651 or +1 (408) 257-1500 Address: Trend Micro Inc., 10101 N. De Anza Blvd., Cupertino CA – 95014, USA C. Use the following values: Light State Description Power Steady Power on - User name: admin Off Power off - Password: press ENTER - IP address (for SSH connection only): the default is 192.168.252.1 - Port number: 22 © 2014 Trend Micro Incorporated. All rights reserved. Trend Micro, the t-ball logo are trademarks or registered trademarks of Trend Micro Incorporated. All other company and/or product names may be trademarks or registered trademarks of their owners. Information contained in this document is subject to change without notice. Item Code: APEQ36322/140225