1 Reply Latest reply on Jan 22, 2016 1:49 PM by rth67

    ESM and DSM

    kiyoshi.kiyota

      Hi

       

      I'm installing an ESM and a DMS. I set up an IP from the 192.168.1.0 Lan in both applicances.

      But 3 days later they told me to change the LAN segment for 172.19.55.0

      After the IP switch I'm unable to get to the DSM. I'm able to log in the ESM but I can't ping or telnet the DSM to the new IP.

      I've an open case with mcafee but they gave me a KB KB74464 but it doesn't worked then I tryied the KB83135 but nothing.


      Does some one had this issue before?


      is there a way to do a factory reset?


      Best Regards

        • 1. Re: ESM and DSM
          rth67

          Did you try Re-Keying the device?

          Did you verify that the Subnet Mask and Default Gateway's are correct on both appliances.

          Can you ssh directly to the DSM from your computer?

           

          If you need to wipe out the existing keys:

           

          Re-keying a SIEM Appliance to Factory Default (needed for various reasons)

          # cat /etc/NitroGuard/factory-id_rsa.pub > /root/.ssh/authorized_keys2

          # cat /root/.ssh/authorized_keys2 (should see “Default shared secret ID” at the end of the key)

           

          Clearing the SSH Key for a SIEM Appliance on the ESM (used in conjunction with copying over factory default on device – or when retiring a device)

          # ssh-keygen -R x.x.x.x (clears the SSH key on the ESM for an attached Device)