27.11.2012 Views

IronPort - advanced configuration guide

IronPort - advanced configuration guide

IronPort - advanced configuration guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

8-4<br />

Cisco <strong>IronPort</strong> AsyncOS 7.6 for Email Advanced Configuration Guide<br />

Chapter 8 Centralized Management<br />

Now, imagine that you create new LDAP query settings for the group. The result will be something like<br />

this:<br />

The group-level settings now override the cluster-level setting; however, the new group settings are<br />

initially empty. The group mode does not actually have any LDAP queries of its own configured. Note<br />

that a machine within this group will inherit this “empty” set of LDAP queries from the group.<br />

Next, you can add an LDAP query to the group, for example:<br />

Now the cluster level has one set of queries configured while the group has another set of queries. The<br />

machine will inherit its queries from the group.<br />

Creating and Joining a Cluster<br />

You cannot create or join a cluster from the Graphical User Interface (GUI). You must use the Command<br />

Line Interface (CLI) to create, join, or configure clusters of machines. Once you have created a cluster,<br />

you can change <strong>configuration</strong> settings from either the GUI or the CLI.<br />

Be sure to enable your centralized management feature key before you attempt to create a cluster.<br />

Note Your Cisco <strong>IronPort</strong> appliance does not ship with an evaluation key for the centralized management<br />

feature. You must request a 30-day evaluation, or purchase a key, before you can enable the centralized<br />

management feature. Use the featurekey command in the CLI or the System Administration > Feature<br />

Keys page to enable your key.<br />

The clusterconfig Command<br />

Cluster (ldap queries: a, b, c)<br />

Group (ldap queries: None)<br />

Machine<br />

Cluster (ldap queries: a, b, c)<br />

Group (ldap queries: d)<br />

Machine<br />

A machine can create or join a cluster only via the clusterconfig command.<br />

When a new cluster is created, all of that cluster’s initial settings will be inherited from the machine<br />

that creates the cluster. If a machine was previously configured in “standalone” mode, its standalone<br />

settings are used when creating the cluster.<br />

When a machine joins a cluster, all of that machine’s clusterable settings will be inherited from the<br />

cluster level. In other words, everything except certain machine-specific settings (IP addresses, etc)<br />

will be lost and will be replaced with the settings from the cluster and/or the group selected for that<br />

machine to join. If a machine was previously configured in “standalone” mode, its standalone<br />

settings are used when creating the cluster, and no settings at the machine level are maintained.<br />

OL-25137-01

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!