You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/appliance-catalog/virtual-management-hyper-v.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -24,7 +24,7 @@ Before you begin the installation, make sure you have the following items:
24
24
25
25
- Available hardware resources for the virtual machine. For more information, see [OT monitoring with virtual appliances](../ot-virtual-appliances.md).
26
26
27
-
- The on-premises management console software [downloaded from Defender for IoT in the Azure portal](../how-to-install-software.md#download-software-files-from-the-azure-portal)
27
+
- The on-premises management console software [downloaded from Defender for IoT in the Azure portal](../ot-deploy/install-software-on-premises-management-console.md#download-software-files-from-the-azure-portal).
28
28
29
29
Make sure the hypervisor is running.
30
30
@@ -78,7 +78,7 @@ This procedure describes how to create a virtual machine for your on-premises ma
78
78
79
79
The VM will start from the ISO image, and the language selection screen will appear.
80
80
81
-
1. Continue with the [generic procedure for installing on-premises management console software](../how-to-install-software.md#install-ot-monitoring-software).
81
+
1. Continue with the [generic procedure for installing on-premises management console software](../ot-deploy/install-software-on-premises-management-console.md).
82
82
83
83
## Next steps
84
84
@@ -88,4 +88,4 @@ Then, use any of the following procedures to continue:
88
88
89
89
-[Purchase sensors or download software for sensors](../onboard-sensors.md#purchase-sensors-or-download-software-for-sensors)
90
90
-[Download software for an on-premises management console](../how-to-manage-the-on-premises-management-console.md#download-software-for-the-on-premises-management-console)
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/appliance-catalog/virtual-management-vmware.md
+3-4Lines changed: 3 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -24,7 +24,7 @@ The on-premises management console supports both VMware and Hyper-V deployment o
24
24
25
25
- Available hardware resources for the virtual machine. For more information, see [OT monitoring with virtual appliances](../ot-virtual-appliances.md).
26
26
27
-
- The on-premises management console software [downloaded from Defender for IoT in the Azure portal](../how-to-install-software.md#download-software-files-from-the-azure-portal)
27
+
- The on-premises management console software [downloaded from Defender for IoT in the Azure portal](../ot-deploy/install-software-on-premises-management-console.md#download-software-files-from-the-azure-portal).
28
28
29
29
Make sure the hypervisor is running.
30
30
@@ -64,8 +64,7 @@ This procedure describes how to create a virtual machine for your on-premises ma
64
64
65
65
The VM will start from the ISO image, and the language selection screen will appear.
66
66
67
-
1. Continue with the [generic procedure for installing on-premises management console software](../how-to-install-software.md#install-ot-monitoring-software).
68
-
67
+
1. Continue with the [generic procedure for installing on-premises management console software](../ot-deploy/install-software-on-premises-management-console.md).
69
68
70
69
## Next steps
71
70
@@ -75,4 +74,4 @@ Then, use any of the following procedures to continue:
75
74
76
75
-[Purchase sensors or download software for sensors](../onboard-sensors.md#purchase-sensors-or-download-software-for-sensors)
77
76
-[Download software for an on-premises management console](../how-to-manage-the-on-premises-management-console.md#download-software-for-the-on-premises-management-console)
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/appliance-catalog/virtual-sensor-hyper-v.md
+4-4Lines changed: 4 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -27,7 +27,7 @@ The on-premises management console supports both VMware and Hyper-V deployment o
27
27
28
28
- Available hardware resources for the virtual machine. For more information, see [OT monitoring with virtual appliances](../ot-virtual-appliances.md).
29
29
30
-
- The OT sensor software [downloaded from Defender for IoT in the Azure portal](../how-to-install-software.md#download-software-files-from-the-azure-portal).
30
+
- The OT sensor software [downloaded from Defender for IoT in the Azure portal](../ot-deploy/install-software-ot-sensor.md#download-software-files-from-the-azure-portal).
31
31
32
32
Make sure the hypervisor is running.
33
33
@@ -53,7 +53,7 @@ This procedure describes how to create a virtual machine by using Hyper-V.
1. Specify the memory allocation [according to your organization's needs](../ot-appliance-sizing.md), in standard RAM denomination (eg. 8192, 16384, 32768). Do not enable **Dyanmic Memory**.
56
+
1. Specify the memory allocation [according to your organization's needs](../ot-appliance-sizing.md), in standard RAM denomination (eg. 8192, 16384, 32768). Do not enable **Dynamic Memory**.
57
57
58
58
1. Configure the network adaptor according to your server network topology. Under the "Hardware Acceleration" blade, disable "Virtual Machine Queue" for the monitoring (SPAN) network interface.
59
59
@@ -81,7 +81,7 @@ This procedure describes how to create a virtual machine by using Hyper-V.
81
81
82
82
The VM will start from the ISO image, and the language selection screen will appear.
83
83
84
-
1. Continue with the [generic procedure for installing sensor software](../how-to-install-software.md#install-ot-monitoring-software).
84
+
1. Continue with the [generic procedure for installing sensor software](../how-to-install-software.md).
85
85
86
86
87
87
@@ -93,4 +93,4 @@ Then, use any of the following procedures to continue:
93
93
94
94
-[Purchase sensors or download software for sensors](../onboard-sensors.md#purchase-sensors-or-download-software-for-sensors)
95
95
-[Download software for an on-premises management console](../how-to-manage-the-on-premises-management-console.md#download-software-for-the-on-premises-management-console)
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/appliance-catalog/virtual-sensor-vmware.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -24,7 +24,7 @@ Before you begin the installation, make sure you have the following items:
24
24
25
25
- Available hardware resources for the virtual machine. For more information, see [OT monitoring with virtual appliances](../ot-virtual-appliances.md).
26
26
27
-
- The OT sensor software [downloaded from Defender for IoT in the Azure portal](../how-to-install-software.md#download-software-files-from-the-azure-portal).
27
+
- The OT sensor software [downloaded from Defender for IoT in the Azure portal](../ot-deploy/install-software-ot-sensor.md#download-software-files-from-the-azure-portal).
28
28
29
29
- Traffic mirroring configured on your vSwitch. For more information, see [Configure traffic mirroring with a ESXi vSwitch](../traffic-mirroring/configure-mirror-esxi.md).
30
30
@@ -68,7 +68,7 @@ This procedure describes how to create a virtual machine by using ESXi.
68
68
69
69
The VM will start from the ISO image, and the language selection screen will appear.
70
70
71
-
1. Continue with the [generic procedure for installing sensor software](../how-to-install-software.md#install-ot-monitoring-software).
71
+
1. Continue with the [generic procedure for installing sensor software](../ot-deploy/install-software-ot-sensor.md).
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/faqs-ot.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -61,7 +61,7 @@ For more information, see [Activate and set up your sensor](how-to-activate-and-
61
61
62
62
## How do I check the sanity of my deployment
63
63
64
-
After installing the software for your sensor or on-premises management console, you'll want to perform the [Post-installation validation](how-to-install-software.md#post-installation-validation).
64
+
After installing the software for your sensor or on-premises management console, you'll want to perform the [Post-installation validation](ot-deploy/post-install-validation-ot-software.md).
65
65
66
66
You can also use our [UI and CLI tools](how-to-troubleshoot-the-sensor-and-on-premises-management-console.md#check-system-health) to check system health and review your overall system statistics.
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/how-to-activate-and-set-up-your-on-premises-management-console.md
+30-30Lines changed: 30 additions & 30 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -139,22 +139,22 @@ Ensure that sensors send information to the on-premises management console. Make
139
139
140
140
Two options are available for connecting Microsoft Defender for IoT sensors to the on-premises management console:
141
141
142
-
- Connect from the sensor console.
143
-
- Connect by using tunneling.
142
+
-[Connect from the sensor console](#connect-sensors-to-the-on-premises-management-console-from-the-sensor-console)
143
+
-[Connect sensors by using tunneling](#connect-sensors-by-using-tunneling)
144
144
145
-
After connecting, you must set up a site with these sensors.
145
+
After connecting, you must [set up a site](#set-up-a-site) with these sensors.
146
146
147
147
### Connect sensors to the on-premises management console from the sensor console
148
148
149
-
To connect sensors to the on-premises management console from the sensor console:
149
+
**To connect sensors to the on-premises management console from the sensor console**:
150
150
151
-
1.On the on-premises management console, select **System Settings**.
151
+
1.In the on-premises management console, select **System Settings**.
152
152
153
153
1. Copy the string in the **Copy Connection String** box.
154
154
155
155
:::image type="content" source="media/how-to-manage-sensors-from-the-on-premises-management-console/connection-string.png" alt-text="Screenshot that shows copying the connection string for the sensor.":::
156
156
157
-
1. On the sensor, go to **System Settings**and select **Connection to Management Console** :::image type="icon" source="media/how-to-manage-sensors-from-the-on-premises-management-console/connection-to-management-console.png" border="false":::
157
+
1. On the sensor, go to **System Settings**> **Connection to Management Console**.
158
158
159
159
1. Paste the copied connection string from the on-premises management console into the **Connection string** box.
160
160
@@ -164,55 +164,55 @@ To connect sensors to the on-premises management console from the sensor console
164
164
165
165
### Connect sensors by using tunneling
166
166
167
-
Enable a secured tunneling connection between organizational sensors and the on-premises management console. This setup circumvents interaction with the organizational firewall. As a result, it reduces the attack surface.
167
+
Enhance system security by preventing direct user access to the sensor. Instead of direct access, use proxy tunneling to let users access the sensor from the on-premises management console with a single firewall rule. This technique narrows the possibility of unauthorized access to the network environment beyond the sensor. The user's experience when signing in to the sensor remains the same.
168
168
169
169
Using tunneling allows you to connect to the on-premises management console from its IP address and a single port (9000 by default) to any sensor.
170
170
171
-
:::image type="content" source="media/how-to-activate-and-set-up-your-on-premises-management-console/tunneling-diagram.png" alt-text="Screenshot that shows a tunneling diagram for connecting sensors to the on-premises management console.":::
171
+
For example, the following image shows a sample architecture where users access the sensor consoles via the on-premises management console.
172
172
173
-
To set up tunneling at the on-premises management console:
173
+
:::image type="content" source="media/tutorial-install-components/sensor-system-graph.png" alt-text="Screenshot that shows access to the sensor." border="false":::
174
174
175
-
1. Sign in to the on-premises management console and run the following command:
175
+
**To set up tunneling at the on-premises management console**:
176
+
177
+
1. Sign in to the on-premises management console's CLI with the *cyberx* or the *support* user credentials and run the following command:
176
178
177
179
```bash
178
-
cyberx-management-tunnel-enable
180
+
sudo cyberx-management-tunnel-enable
179
181
180
182
```
181
183
184
+
For more information on users, see [Default privileged on-premises users](roles-on-premises.md#default-privileged-on-premises-users).
185
+
182
186
1. Allow a few minutes for the connection to start.
187
+
188
+
When tunneling access is configured, the following URL syntax is used to access the sensor consoles: `https://<on-premises management console address>/<sensor address>/<page URL>`
183
189
184
190
You can also customize the port range to a number other than 9000. An example is 10000.
185
191
186
-
To use a new port:
187
-
188
-
1. Sign in to the on-premises management console and run the following command:
192
+
**To use a new port**:
189
193
190
-
```bash
191
-
sudo cyberx-management-tunnel-enable --port 10000
192
-
193
-
```
194
+
Sign in to the on-premises management console and run the following command:
194
195
195
-
1. Disable the connection, when required.
196
+
```bash
197
+
sudo cyberx-management-tunnel-enable --port 10000
198
+
199
+
```
196
200
197
-
To disable:
201
+
**To disable the connection**:
198
202
199
203
Sign in to the on-premises management console and run the following command:
200
204
201
-
```bash
202
-
cyberx-management-tunnel-disable
205
+
```bash
206
+
cyberx-management-tunnel-disable
203
207
204
-
```
208
+
```
205
209
206
210
No configuration is needed on the sensor.
207
211
208
-
To view log files:
209
-
210
-
Review log information in the log files.
211
-
212
-
To access log files:
212
+
**To access the tunneling log files**:
213
213
214
-
1. Sign in to the on-premises management console and go to */var/log/apache2.log*.
215
-
1. Sign in to the sensor and go to */var/cyberx/logs/tunnel.log*.
214
+
1. **From the on-premises management console**: Sign in and go to */var/log/apache2.log*.
215
+
1. **From the sensor**: Sign in and go to */var/cyberx/logs/tunnel.log*.
0 commit comments