Cisco Network Registrar Software Release 7.0 December 2007 Text Part Number:
Information Packet TCP UNIX UCBUniversity of California, Berkeley UCB All rights reserved.copyright 1981, Regents of the University of California. CCSP, the Cisco Square Bridge logo, Follow Me Browsing, and StackWise are trademarks of Cisco Systems, Inc.; Changing the Way We Work, Live, Play, and Learn, and iquick Study are service marks of Cisco Systems, Inc.; and Access Registrar, Aironet, ASIST, BPX, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Empowering the Internet Generation, Enterprise/Solver, EtherChannel, EtherFast, EtherSwitch, Fast Step, FormShare, GigaDrive, GigaStack, HomeLink, Internet Quotient, IOS, IP/TV, iq Expertise, the iq logo, iq Net Readiness Scorecard, LightStream, Linksys, MeetingPlace, MGX, the Networkers logo, Networking Academy, Network Registrar, Packet, PIX, Post-Routing, Pre-Routing, ProConnect, RateMUX, ScriptShare, SlideCast, SMARTnet, StrataView Plus, SwitchProbe, TeleRouter, The Fastest Way to Increase Your Internet Quotient, TransPath, and VCO are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States and certain other countries. All other trademarks mentioned in this document or Website are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (0501R) Apache Software Foundation Apache Tomcat 5.5.25 Copyright 2004 The Apache Software Foundation.All rights reserved. /docs/licenses com.oreilly.servlet Copyright 2001-2002 by Jason Hunter.All rights reserved. /docs/licenses Tcl/Tk Tool Command LanguageTcl Copyright The Regents of the University of California, Sun Microsystems, Inc., Scriptics Corporation, and other parties. /docs/licenses gtar 1.13 Copyright 1989, 1991 Free Software Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA. /docs/licenses Henry Spencer rxspencer-alpha 3.8 Copyright 1992, 1993, 1994, 1997 Henry Spencer.All rights reserved. American Telephone and Telegraph Company Regents of the University of California /docs/licenses JFreeChart 1.0.1 Copyright 1991, 1999 Free Software Foundation, Inc. 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA. /doc/licenses Cisco Network Registrar Copyright 1995 2007 Cisco Systems, Inc. All rights reserved.
CONTENTS v v v vi vi vi vi Network Registrar vii vii CHAPTER 1 Setup Web UI 1-1 1-1 1-2 1-3 DHCP DNS 1-3 1 1-3 2 1-3 3 1-3 4 1-3 DHCP 1-4 1 DHCP 1-4 2 DHCP 1-4 DNS 1-4 1 DNS 1-4 2 DNS 1-4 3 DNS 1-4 CHAPTER 2 Setup Web UI 2-1 2-1 2-3 DHCP 2-4 DHCP 2-6 DHCP 2-7 Cisco Network Registrar iii
Contents 2-7 2-8 DHCP 2-9 DHCP 2-10 DNS 2-11 DNS 2-13 DNS 2-14 2-14 2-15 DNS 2-16 DNS 2-17 DNS 2-18 2-19 2-20 2-20 INDEX iv Cisco Network Registrar
Web-based User InterfaceWeb UI; Web Command Line InterfaceCLI; Cisco Network Registrar Network Registrar Domain Name SystemDNS; Dynamic Host Configuration ProtocolDHCPTrivial File Transfer ProtocolTFTP Simple Network Management ProtocolSMTP; 1 Setup Web UI Setup Web UI Cisco Network Registrar v
1234 Modify Scope failover-safe-period P.vi Windows Solaris 3 vi Cisco Network Registrar
Network Registrar Network Registrar 7.0 Release Notes for Cisco Network Registrar, Release 7.0 Installation Guide for Cisco Network Registrar User Guide for Cisco Network Registrar CLI Reference GuideCLIContents.html Network Registrar Web UI Network Registrar CLI What s New in Cisco Product Documentation URL http://www.cisco.com/en/us/docs/general/whatsnew/whatsnew.html What s New in Cisco Product Documentation Really Simple SyndicationRSS RSS Cisco RSS 2.0 Cisco Network Registrar vii
viii Cisco Network Registrar
CHAPTER 1 Setup Web UI Network Registrar Web UI Release 7.0 Basic Dynamic Host ConfigurationDHCP 2 DHCP Simple Network Management ProtocolSNMP; Domain Name SystemDNS; High-AvailabilityHA; DNS SNMP DNS SNMP Trivial File Transport ProtocolTFTP Cisco Network Registrar 1-1
1 Setup Web UI Basic Advanced Setup Basic Advanced User Guide for Cisco Network Registrar Set Up This Server <<Back Next>> Finish Set Up This Server <<Back Setup Interview Report Next>> Finish Setup Interview Report Back Forward Next>> DNS HADNS Set Up This Server / ServicesDHCPDNSDNS UpdateTraps ReportSet Up This Server Set Up This Server Next>> Finish Finish 1-2 Cisco Network Registrar
1 Setup Web UI DHCP DNS DHCP DNS Network Registrar 1 1 DHCP DNS TFTP SNMP 1 1 DNS 2 2 DHCP 1 DHCP DNS 2 DNS DNS 1 DHCP DNS 2 DHCP DNS DHCP DNS 1 DHCP 2 DNS DNS 3 3 1 DHCP 2 DNS 3 DNS DHCP DNS DNS DHCP 1 DHCP DNS HA 2 DHCP DNS HA 3 DNS 4 4 DHCP DNS DHCP 2 DHCP 3 DNS DNS 4 DNS 3 DHCP 2 DNS 3 DHCP DNS 4 DNS Cisco Network Registrar 1-3
1 Setup Web UI DHCP DHCP 1 1 DHCP DHCP 2 DHCP DHCP 2 DHCP DNS DNS 1 2 3 1 DNS DNS 2 DNS DNS 2 2 3 DNS DNS 2 3 1-4 Cisco Network Registrar
CHAPTER 2 Setup Web UI Web User InterfaceUI; Cisco Network Registrar 1 Setup Web UI Basic Setup Main Menu Set up this Network Registrar Server Set Up This Server Setup Basic Advanced 2-1 2-1 Set Up This Server Setup Cisco Network Registrar 2-1
Setup Web UI P.2-3 Dynamic Host Configuration ProtocolDHCPDHCP Network Registrar DHCP DHCP DHCP DHCP P.2-4 DHCP DNSDNS DNS DNS DNS DNS P.2-11 DNS DNS DNS DHCP DNS DNS DNS Resource RecordRR; DHCP DNS DNS DNS DNS DNS P.2-18 DNS Trivial File Transfer ProtocolTFTP TFTP TFTP P.2-20 Next>> Finish Setup Interview Report 2-2 Cisco Network Registrar
Setup Web UI Set Up This Server Change Password yes Change Password for User 2-2 2-2 Change Password for User Setup Change Password no Next>> Finish Cisco Network Registrar 2-3
DHCP Setup Web UI DHCP Set Up This Server Enable DHCP Server yes Set Up DHCP 2-3 DHCP 2-3 Set Up DHCP Setup DHCP Enable DHCP Server yes Network Registrar DHCP DHCP Next>> Enable DHCP FailoverDHCP DHCP DHCP Enable DHCP Failover yes Advanced DHCP DHCP 1 main-serverbackup-server network-match-list P.2-6 DHCP 2-4 Cisco Network Registrar
Setup Web UI DHCP Enable DHCP Classes of ServiceDHCP DHCP IP DNS DHCP DHCP DHCP P.2-7 DHCP Server Logging Mode DHCP Server Logging Mode 4 normal-operations high-performance debugging customized Enable DHCP TrapsDHCP DHCP SNMP DHCP yes P.2-9 DHCP Cisco Network Registrar 2-5
DHCP Setup Web UI DHCP Set Up DHCP Enable DHCP Failover yes Set Up DHCP Failover 2-4 2-4 Set Up DHCP Failover Setup Enable DHCP Failover yes DHCP Failover Role main backup Network Registrar Failover Partner Select existing cluster 1. DHCP IP 2. SCP 1234 3. Add Cluster 50% Load Balancing yes no Next>> DHCP 2-6 Cisco Network Registrar
Setup Web UI DHCP DHCP Set Up DHCP Enable DHCP Classes of Service yes Set Up DHCP Classes of Service 2-5 2-5 Set Up DHCP Classes of Service Setup Enable DHCP Classes of Service yes Class of Service Usage DHCP Advanced DHCP client-class-lookup-id P.2-8 DHCP Classes of Service DNS Add Class of Service Next>> DHCP Class of Service Usage Assign class of service based on incoming packet? P.2-8 Register clients individually?list/add DHCP Clients Set Up DHCP Classes of Service Class of Service Usage Register clients individually? List/Add DHCP Clients List/Add DHCP Clients User Guide for Cisco Network Registrar P.24-9 Configuring Clients DHCP Cisco Network Registrar 2-7
DHCP Setup Web UI Add DHCP Client Basic Basic User Guide Figure 24-4P.24-10 User Guide P.24-9 Configuring Clients Step 5 Add DHCP Client Basic Edit DHCP Client User Guide P.24-11 Editing Clients and Their Embedded Policies Set Up DHCP Classes of Service Class of Service Usage Assign class of service based on incoming packet? Set Up DHCP Classes of Service Advanced Next DHCP 1 2 3 4 5 Setup Advanced Advanced DHCP DHCP Server Manage DHCP Server Local DHCP Server Edit DHCP Server Client-Class client-class-lookup-id Cisco IP Phone voip dhcp-parameter-request-list 55 150 122 voip (or (if (search (byte 150) (request get-blob option 55)) "voip") (if (search (byte 122) (request get-blob option 55)) "voip") "<none>") MAC 3 01:02:03 MAC MAC red 04:05:06 MAC blue (or (if (starts-with (request get-blob chaddr) 01:02:03) "red") (if (starts-with (request get-blob chaddr) 04:05:06) "blue") "<none>") Microsoft msftclass MSFT dhcp-class-identifier 60 msftclass (or (if (starts-with (request get-blob option 60) (as-blob "MSFT")) "msftclass") "<none>") 2-8 Cisco Network Registrar
Setup Web UI DHCP 6 7 Modify Server DHCP DHCP Set Up DHCP Enable DHCP Traps yes Set Up DHCP Traps 2-6 2-6 Set Up DHCP Traps Setup Enable DHCP Traps yes Select DHCP Traps server-startserver-stop free-address-low free-address-high DNS dns-queue-size other-server-down other-server-up duplicate-addressaddress-conflict failover-config-error global Cisco Network Registrar 2-9
DHCP Setup Web UI scopenetwork scope-selection tags scope 20% 25% Next>> DHCP DHCP DHCP DHCP Manage Scopes 2-7 DHCP 2-7 Manage Scopes Setup 2-7 example-scope Name Subnet 192.168.50/24 P.2-7 DHCP Class of Service Virtual Private NetworkVPN; VPN Add Scope Next>> DHCP P.2-19 DNS DNS DNS 2-10 Cisco Network Registrar
Setup Web UI DNS DNS Set Up This Server Enable DNS Server yes Set Up DNS 2-8 DNS 2-8 Set Up DNS Setup DNS Enable DNS Server yes DNS Network Registrar DNS Next>> DNS DNS DNS Server RoleDNS DNS Primary Secondary Caching HADNS Enable High-Availability DNS DNS P.2-12 Allow Queries to Root Servers Cisco Network Registrar 2-11
DNS Setup Web UI Enable High-Availability DNS DNS HADNS 1 HA DNS Enable High-Availability DNS yes HA DNS HA DNS Advanced HA DNS HA DNS HA DNS 1 HA DNS main-server backup-server HA DNS DNS Allow Queries to Root Servers DNS Allow Queries to Root Servers yes Server Logging Mode DNS Server Logging Mode 4 normal-operations high-performance debugging customized Enable DNS TrapsDNS DNS SNMP DNS yes P.2-9 DHCP 2-12 Cisco Network Registrar
Setup Web UI DNS DNS Set Up DNS Server Enable High-Availability DNS yes Set Up High-Availability DNS 2-9 2-9 Set Up High-Availability DNS Setup Enable High-Availability DNS yes HA DNS Role main DNS backup HA DNS Network Registrar HA DNS HA DNS HA Partner Select existing cluster 1. DNS IP 2. SCP 1234 3. Add Cluster Next>> DNS Cisco Network Registrar 2-13
DNS Setup Web UI DNS Set Up DNS DNS Set Up DNS Zone Distribution 2-10 2-10 Set Up DNS Zone Distribution Setup DNS Secondary Servers(s) DNS 1. DNS IP 2. SCP 1234 3. Add Cluster Next>> DNS Set Up DNS DNS Manage Forward Zones 2-11 2-11 Manage Forward Zones Setup 2-14 Cisco Network Registrar
Setup Web UI DNS 2-11 example.com Name Nameserver ns1.example.com.contact E-Mail hostmaster.example.com. Add Zone Add DNS Forward Zone User Guide for Cisco Network Registrar P.15-5 Configuring Primary Forward Zones Add Zone Manage Forward Zones Next>> DNS Set Up DNS 2-8 DNS Manage Reverse Zones 2-12 2-12 Manage Reverse Zones Setup 2-12 Network Registrar 127.in-addr.arpaName Nameserver ns1.example.com.contact E-Mail hostmaster.example.com. Add Zone Add DNS Reverse Zone User Guide for Cisco Network Registrar P.15-12 Adding Primary Reverse Zones Add Zone Manage Reverse Zones Next>> DNS Cisco Network Registrar 2-15
DNS Setup Web UI DNS Set Up DNS DNS Set Up DNS Access Control 2-13 2-13 Set Up DNS Access Control Setup Access Control ListACL; dns-restrict-query-acldns ACL IP TSIG ACL any dns-restrict-query-acl ACL ACL ACL dns-restrict-xfer-acl ACL restrict-xfer-acl none ACL DNS Forwarders P.2-12 Allow Queries to Root Servers DNS IP Address IP Add Forwarder DNS Resolution ExceptionsDNS Add Exception Next>> DNS 2-16 Cisco Network Registrar
Setup Web UI DNS DNS Set Up DNS Enable DNS Traps yes Set Up DNS Traps 2-14 2-14 Set Up DNS Traps Setup Enable DNS Traps yes Select DNS Traps server-startserver-stop HA DNS ha-dns-partner-upha-dns-partner-down ha-dns-config-error masters-not-responding secondary-zone-expired forwarders-responding forwarders-not-responding Next>> DNS Cisco Network Registrar 2-17
DNS Setup Web UI DNS Set Up This Server Enable DHCP Server yes Enable DHCP Update yes Set Up DNS Update 2-15 Enable DNS Server yes DNS Update 2-15 Set Up DNS Update Setup DNS DNS DHCP DNS Server or HA PairDNS 1 DNS HA DNS 1 localhost HA DNS DHCP Server or Failover PairDNS 1 DHCP DHCP 1 localhost Forward Zone NameDNS DNS HA DNS PTR Pointer Secure DNS Updates?Transaction SignaturesTSIG DNS yes no DNS dns-update-server-key TSIG Server Key TSIG Server KeySecure DNS Updates TSIG TSIG Name Generate Key Network Registrar cnr-keygen Select existing key 2-18 Cisco Network Registrar
Setup Web UI Next>> DNS Set Up This Server DHCP DNS DHCP DNS Set Up Trap Recipients 2-16 Traps 2-16 Set Up Trap Recipients Setup IP Add Trap Recipient Next>> Setup Interview Tasks Cisco Network Registrar 2-19
Setup Web UI Setup Interview Tasks 2-17 DHCP ID Action 1 Run Selected Tasks Report and Exit Setup Interview Report 2-17 Setup Interview Tasks Setup Setup Interview Report 2-18 2-18 Setup Interview Report Setup Exit Setup Main Menu 2-20 Cisco Network Registrar
INDEX B F Back 1-2 Finish 1-2 D DHCP 2-5 2-5 2-7 2-4 2-10 2-5 2-9 2-4 2-6 DNS HA 2-12 2-13 2-16 2-18 2-16 2-15 2-11 2-12 2-11 2-14 2-14 2-12 2-17 2-12 N Network Registrar 1-1 Next 1-2 2-16 DNS2-18 DNS2-16 1-3 DHCP 1-4 DNS 1-4 DHCPDNS1-3 2-1 2-10 1-1 1-1 2-1 Cisco Network Registrar 1
Index 1-2 1-2 2-20 2-15 2-14 2-14 2-19 2-3 1-2 1-2 2-12 2-20 2 Cisco Network Registrar