Establishing trust between Managers and Central Manager includes the following order of steps:
Adding Manager to the Central Manager
Configuring Central Manager details in the Manager
Adding Manager to the Central Manager
Adding a Manager to the Central Manager enables the Manager to accept communication from Central Manager. Once trust is established, the Central Manager can view the Manager's configuration.
Note
Port 443 is used for communication between the Central Manager and the Manager.
To add a Manager to Central Manager perform the following steps:
Select Devices → Manager Management → Add and Remove Managers.
Click
.Type the Manager Name and the Shared Secret (repeat at Confirm Shared Secret).
The Name can be a maximum of 40 characters in length. The parameters you can use are:
26 alpha — Uppercase and lowercase (a,b,c,...z and A, B, C,...Z)
10 digits — 0 1 2 3 4 5 6 7 8 9
2 symbols — _ and -
Note
The Manager name should match the name provided in the Manager when you configured the Central Manager details.
The secret must be a minimum of 8 characters and maximum of 64 characters in length. The Secret cannot start with an exclamation point nor have any spaces. The parameters you can use are:
26 alpha — Uppercase and lowercase (a,b,c,...z and A, B, C,...Z)
10 digits — 0 1 2 3 4 5 6 7 8 9
Note
The shared secret should match the secret provided in the Manager when you configured the Central Manager details.
Select the required severity level to be displayed in the Central Manager from Alerts from this Manager to Show in the Central Manager drop-down list.
Enter the number of days in the Maximum Number of (Most Recent) Days of Alerts to Show textbox (Default value -15).
Enter the number of alerts you want in the Maximum Number of Alerts to Show field (Default value - 100000).
Maximum Number of (Most Recent) Days of Alerts to Show and Maximum Number of Alerts to Show provide a combined option for limiting the number of alerts that are displayed in the Central Manager Attack Log. For instance, the number of days is set to 15 and the number of alerts is set to 1000, the Central Manager Attack Log will display the first 1000 alerts from the current system to 15 days earlier. If the number of alerts during this period is more than 1000, only the first 1000 alerts will be displayed.
(Optional) Enter the contact information.
(Optional) Enter the location.
Select Yes to enable synchronization at Synchronization Enabled.
Click Save to save the configuration, and view the newly added Manager in the Managers page.
The Managers page presents a read-only view of the configured information for connected Managers. The information displayed is configured during the trust establishment of the Managers.
Once you have added a Manager to your Central Manager, you can Edit the Manager details as well as Delete the Manager configuration added to the Central Manager. Click Refresh to refresh the page.
Configuring Central Manager details in the Manager
After you have configured the Manager in the Central Manager, you should configure the Central Manager details in the Manager. This completes the trust establishment process between the Manager and Central Manager. To configure the Central Manager in the Manager, perform the following steps:
Login to the Manager instance.
Select Manager → <Admin domain> → Setup → Central Manager.
Enter the same Manager Name as you have configured in the Central Manager.
Enter the Central Manager IP Address (IPv4 or IPv6).
Enter the same Shared Secret as you have configured in the Central Manager for the corresponding Manager. Repeat the secret at Confirm Shared Secret.
Caution
The Manager Name and Shared Secret provided in the Central Manager must match while configuring Central Manager details in the Manager for the trust establishment between a Manager and Central Manager to be successful. If not, the Manager will not be able to register itself with the Central Manager.
Select Synchronization Enabled (Y/N).
Click Configure.
See Manage Central Manager details for more information.