Home
Integrated Lights Out Manager (ILOM) 3.0 CLI Procedures
Contents
1. Prerequisites for Using the ILOM Command Line Interface Prior to performing the procedures presented in this guide the following prerequisites must be met Prerequisites Steps Description Related Section Related Guide 1 You must establish initial e Connecting to Integrated Lights Out communication with the ILOM Manager ILOM 3 0 ILOM SP CMM or server Getting Started Guide 2 You should have already e Add User Integrated Lights Out created a user account in Account and Manager ILOM 3 0 ILOM Assign Privileges Getting Started Guide web interface e Add User Account and Assign Privileges CLI The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual 15 16 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 3 Logging In to and Out of ILOM Topics Description Review the prerequisites Log in to ILOM for the first time Set up a user account Log in to ILOM as a regular user Log out of ILOM Recover a Lost Password Links Before Your Initial Login on page 18 Log In to ILOM Using the root User Account on page 19 Set Up a User Account on page 19 Log In to ILOM as a User on page 19 Log Out of ILOM on page 21 Recover a Lost Password on page 20 Related Topics For ILOM Chapter or Section Guide e Getting e ILOM Getting Started Integrated Lights Out
2. LdapSSL server authenticate auth error idx 0 cfg server 10 8 xxx xxx 3153 Thu Nov 13 06 21 00 2008 lLdapSsl Log major LdapSSL ServerUserAuth Error 0 error binding user to ActiveDirectory server For more information about configuring event log detail see View and Clear the ILOM Event Log on page 84 Configuring RADIUS Topics Description Links Configure RADIUS settings e Configure RADIUS on page 67 e RADIUS Commands on page 69 Configure RADIUS Before You Begin m To configure RADIUS settings you need the User Management u role enabled m If you need to provide ILOM access beyond the 10 local user accounts and after the RADIUS server has been properly configured you can configure ILOM to use RADIUS authentication Chapter5 Managing User Accounts 67 a Before completing this procedure collect the appropriate information about your RADIUS environment Follow these steps to configure RADIUS settings 1 Log in to the ILOM CLI 2 Navigate to SP clients radius See RADIUS Commands on page 69 3 Configure the settings as described in the following table Property CLI Default Description state Disabled Enabled Disabled Specifies whether the RADIUS client is enabled or disabled defaultrole Operator Administrator Operator Advanced Roles alu c r s Administrator Access role granted to all authenticated RADIUS users Operator This property supports the leg
3. on page 124 Verify the Storage Redirection Service Is Running on page 125 Display Storage Redirection CLI Help Information on page 126 Start Redirection of Storage Device on page 127 View Active Storage Redirections on page 128 Stop Redirection of Storage Device on page 128 Before You Begin The following requirements must be met prior to performing the procedures in this section m The Storage Redirection Service must be started on your local system If you installed the service on your local system you can start it from a command window or terminal If you did not install the service on your local system you must start it from the ILOM web interface For information about how to start or install the Storage Redirection service see Start Storage Redirection Service on page 119 Chapter 12 Managing Remote Hosts 123 124 m The Storage Redirection client StorageRedir jar must be installed on your local system For more information about how to install the Storage Redirection Client see Download and Install the Storage Redirection Client on page 122 a The Java Runtime Environment 1 5 or later must be installed on your local system To download the latest Java runtime environment see http java com a A valid Admin a or Console c role account in ILOM is required to start or stop the redirection of a storage device CD DVD or ISO image on a remote server For mor
4. response to the on screen query The existing certificate file that had been uploaded will be removed Vv View and Configure Active Directory Settings Before You Begin To configure Active Directory settings you need the User Management u role enabled Follow these steps to view and configure active directory settings 1 2 Log in to the ILOM CLI Use the show and set commands to view and modify properties a To view and modify information in the admingroups target Chapter 5 Managing User Accounts 49 gt show SP clients activedirectory admingroups n Where n can be 1 to 5 For example gt show SP clients activedirectory admingroups 1 SP clients activedirectory admingroups 1 Targets Properties name CN SpSuperAdmin O0OU Groups DC sales DC east DC sun DC com Then use the set command to modify properties For example gt set SP clients activedirectory admingroups 1 name CN spSuperAdmin OU Groups DC sales DC sun DC com Set name to CN spSuperAdmin 0OU Groups DC sales DC sun DC com To view and modify information in the opergroups target gt show SP clients activedirectory opergroups 1 For example gt show SP clients activedirectory opergroups 1 SP clients activedirectory opergroups 1 Targets Properties name CN SpSuperOper OU Groups DC sales DC east DC sun DC com Then use the set command to modify properti
5. Follow these steps to assign a role to a user account 1 Log in to the ILOM CLI 2 To assign roles to a user account type the following command gt set SP users lt username gt password lt password gt role lt administrator operator alulclrlol s gt For example gt set SP users user5 role auc Set role to auc gt show SP users user5 SP users user5 Targets ssh Properties role auco password KKKKKKKK Commands cd set show Y Delete a User Account Before You Begin m To delete a user you need the User Management u role enabled Follow these steps to delete a user account 1 Log in to the ILOM CLI 2 To delete a local user account type the following command gt delete SP users username For example gt delete SP users user5 Chapter 5 Managing User Accounts 3 When queried type y to delete or n to cancel For example Are you sure you want to delete SP users user5 y n y Deleted SP users user5 V View Individual User Accounts Before You Begin m To view individual user accounts you only need the Read Only 0 role enabled Follow these steps to view individual user accounts 1 Log in to the ILOM CLI 2 To display information about one specific user account type the following command gt show SP users uwusername For example gt show SP users userl SP users userl Targets ssh Properties role aucros p
6. If you need to reset your ILOM service processor SP you can do so without affecting the host OS However resetting an SP disconnects your current ILOM session and renders the SP unmanageable during reset Before You Begin m To reset the SP you need the Reset and Host Control r role enabled m After updating the ILOM BIOS firmware you must reset the ILOM SP After updating the ILOM BIOS firmware follow these steps to reset the SP 1 Log in to the ILOM CLI 2 Type the following command gt reset SP The SP resets and reboots ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 12 Managing Remote Hosts Topics Description Review the prerequisites Set up storage redirection to redirect storage devices Control the power state of a remote server module Run diagnostic tests Related Topics Links Before You Begin on page 118 Performing the Initial Setup Tasks for Storage Redirection on page 118 Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Issuing Power State Commands on page 130 Diagnosing SPARC Systems Hardware Issues on page 131 For ILOM Chapter or Section Guide e Concepts e Remote Host Management Integrated Lights Out Manager ILOM 3 0 Options Concepts Guide e Web e Managing Remote Hosts Integrated Lights Out Manager ILOM 3 0 interface Web Interface Procedures Guide The ILOM 3 0 Documentat
7. SP services snmp user authenticationprotocol MD5 MD5 username authenticationpassword lt string gt null string permissions rolrw ro privacyprotocol none DES DES privacypassword lt string gt null string Example gt create SP users susan role administrator 136 ILOM3 0 CLI Procedures Guide April 2009 delete Command Use the delete command to remove an object from the namespace You will be prompted to confirm a delete command Eliminate this prompt by using the script option Syntax delete options script target Options h help script Targets TABLE 12 2 Targets for delete Command Valid Targets SP users username SP services snmp communities communityname SP services snmp user username Examples gt delete SP users susan gt delete SP services snmp communities public dump Command Use the dump command to transfer a file from a target to a remote location specified by the URI Syntax dump destination lt URI gt target Options destination Appendix A CLI Command Reference 137 138 exit Command Use the exit command to end a CLI session Syntax exit options Options h help help Command Use the help command to display Help information about commands and targets Using the o output terse option displays usage information only The o output verbose option displays usage description and additional information including examples of command us
8. TABLE 1 4 ILOM 2 x Properties and New ILOM 3 0 Implementations Continued ILOM 2 x Properties ILOM 3 0 Implementation SP diag generate_host_nmi HOST generate_host_nmi SP diag mode HOST diag mode SP diag level HOST diag level SP diag verbosity HOST diag verbosity CLI Command Syntax When using the ILOM CLI information is entered in the following command syntax command options target properties For example set SP services https port portnumber servicestate enabled Qisabled Note Syntax examples in this chapter use the target starting with SP which could be interchanged with the target starting with CMM depending on your server platform Subtargets are common across all server platforms using ILOM Chapter 1 CLI Overview 7 Common CLI Command Strings TABLE 1 5 General Commands Description Command Display information about commands and targets Display information about a specific command Show all valid targets Change and display the current target Transfer a file from a target to a remote location specified by the URI Log out of the CLI Display the version of ILOM firmware running on ILOM Reset a target Display clock information Display active ILOM sessions Update ILOM and BIOS firmware Display a list of ILOM event logs help help lt string gt help targets cd dump exit version reset show SP clock show SP sessions load source iftp newSPim
9. CLI command types alert management commands 10 clock settings commands 11 general commands 8 host system commands 12 network and serial port commands 9 SNMP commands 11 system management access commands 10 user commands 8 CLI commands 163 executing combined 14 executing individually 13 reference for 135 CLI target types CH 3 CMM 2 HOST 3 SP 2 SYS 3 clock settings 82 command properties 5 for ILOM 2 x 6 for ILOM 3 0 6 command strings 8 command line interface CLI command syntax 7 filtering output options for commands 12 overview 2 prerequisites for using 15 target tree 5 using hierarchical architecture 2 communication settings configuring 23 prerequisites for configuration 25 component information 74 components enabling and disabling 76 managing 74 monitoring 77 removing 75 returning to service 76 D default settings reset options 110 defaultuser account using for password recovery 20 diagnosing SPARC systems 131 Distributed Management Task Force Command Line Protocol DMTF CLP 2 Domain Name Service DNS configuring 29 locator service 55 targets properties and values for 29 DSA key viewing 34 164 ILOM3 0 CLI Procedures Guide April 2009 E event logs contents of 85 filtering output 82 viewing and clearing 84 F fault management viewing faulted components 87 firmware prerequisites for updating 112 recovery during update 115 trou
10. SP clients radius Targets Properties defaultrole Operator address 129 144 36 142 port 1812 secret none state enabled Commands cd set show set SP clients radius To use this command you need the User Management u enabled Purpose Use this command to configure the properties associated with RADIUS authentication on a service processor Syntax set SP clients radius defaultrole Administrator Operator a u c r s address radius_server_IPaddress port port secret radius_secret state enabled disabled Properties m defaultrole This is the role assigned to all RADIUS users Operator m address JP address of your RADIUS server m port Port number used to communicate with your RADIUS server The default port is 1812 m secret This is the shared secret used to gain access to your RADIUS server m state This setting is enabled or disabled to allow or deny access to your RADIUS users ILOM 3 0 CLI Procedures Guide April 2009 Example gt set SP clients radius state enabled address 10 8 145 77 Set state to enabled Set address to 10 8 145 77 Chapter 5 Managing User Accounts 71 72 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 6 Managing System Components Topics Description Links Manage system components e View Component Information on page 74 e Prepare to Remove a Component on page 75 e Return a Component
11. b At the directory prompt enter the following command to launch the Storage Redirection CLI java jar StorageRedir jar For example C Documents and Settings lt redirectstorage gt java jar StorageRedir jar The lt storageredir gt prompt appears m To enter commands from an non interactive shell mode do the following a In the command line interface enter the command to launch the Storage Redirection CLI java jar StorageRedir jar at the shell prompt java jar StorageRedir jar Note If you do not have a JAVA_HOME environment configured you might need to use the full path to your Java binary For example if your JDK package was installed under home user_name jdk then you would type home user_name jdk bin java jar Note If the Storage Redirection CLI fails to launch a detailed error message appears explaining the error condition Otherwise the Storage Redirection CLI is ready for user input V Verify the Storage Redirection Service Is Running Before You Begin a The following procedure assumes that you have already launched the Storage Redirection CLI from a command window or terminal For instructions for launching the Storage Redirection CLI see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Follow this step to verify whether the Storage Redirection service is active At the lt storageredir gt prompt type the following command to verify that
12. ntp Wap radius a oi Pm actinedirectory smtp Mapss serer L i users communities ssl defaut_cert austom_cert austom_key admingroups ins opergroups customgroups akemateservers dnslocatorqueres 1 5 1 5 1 5 admngrcups fiserdomans aternateservers cpergrcups austomgrcups t Ba Command Properties 1 5 1 5 1 5 1 5 Properties are the configurable attributes specific to each object Chapter 1 CLI Overview 5 6 ILOM 3 0 Properties Versus ILOM 2 x Properties If you are upgrading from ILOM 2 x to ILOM 3 0 and you want to update your 2 x scripts you need to be familiar with the new methods that ILOM 3 0 uses to implement ILOM 3 0 commands TABLE 1 4 lists ILOM 2 x properties and the new ILOM 3 0 implementations that replace them TABLE 1 4 ILOM 2 x Properties and New ILOM 3 0 Implementations ILOM 2 x Properties ILOM 3 0 Implementation SP clients syslog destination_ipl SP clients syslog destination_ip2 SP clients activedirectory getcertfile load a certificate SP clients activedirectory getcer tfile remove a cert
13. service prior to launching the Storage Redirection CLI Note If you do not want the Opening Jnlpgenerator cli dialog to reappear each time you start the service from the ILOM web interface you can select enable the check box for Always perform this action when handling files of this type However if you choose to enable this option you will no longer be able to display this dialog when starting the service or installing the service from the ILOM web interface 120 ILOM 3 0 CLI Procedures Guide April 2009 Note If in the future you need to modify the default communication port number 2121 shipped with the Storage Redirection feature you will need to display the Opening Jnlpgenerator cli dialog to save and edit the jnlpgenerator cli file on your system In this instance it is not recommended that you select enable the option for Always perform this action when handling files of this type For more information about changing the default port number see View and Configure Serial Port Settings on page 30 Several dialogs will appear informing you that the Java Web Start application is downloading 5 Perform one of the following actions a If you chose to save the jnlpgenerator c1i file in Step 4 perform these steps a In the Save As dialog save the jnlpgenerator cli file to a location on your local system b To start the service from the command line open a command window or terminal c Navigate
14. servicestate enabled disabled show SP services ssh keys dsa show SP services ssh keys rsa ILOM 3 0 CLI Procedures Guide April 2009 TABLE 1 10 Clock Settings Commands Description Command Set ILOM clock to set SP clients ntp server 1 address ntp Paddress synchronize with a primary NTP server Set ILOM clock to set SP clients ntp server 2 address ntp Paddress2 synchronize with a secondary NTP server TABLE 1 11 SNMP Commands Description Command Display information about SNMP settings By default the SNMP port is 161 and v3 is enabled Display SNMP users Add an SNMP user Delete an SNMP user Display information about SNMP public read only communities Display information about SNMP private read write communities Add an SNMP public community Add an SNMP private community Delete an SNMP community show SP services snmp engineid snmpengineid port snmpportnumber sets enabled disabled vi enabled disabled v2c enabled disabled v3 enabled disabled show SP services snmp users create SP services snmp users snmpusername authenticationpassword password authenticationprotocol MD5 SHA permissions rw ro privacypassword password privacyprotocol none DES delete SP services snmp users snmpusername show SP services snmp communities public show SP services snmp communities private create SP services snmp communities public comm1 permission ro rw create SP serv
15. username user4 starttime Mon Apr 7 21 31 22 2008 gt show SP sessions 12 SP sessions 12 shell normal ILOM 3 0 CLI Procedures Guide April 2009 Configuring SSH Keys Topics Description Links Configure SSH host key e Add an SSH Key on page 45 e Delete an SSH Key on page 46 You can use SSH keys to automate password authentication The following procedures describe how to add and delete SSH keys Add an SSH Key Before You Begin m To add an SSH key you need the Admin a role enabled Follow these steps to add an SSH key 1 Log in to the ILOM CLI 2 To change to the directory location of a user s SSH key type gt c SP users user1 ssh keys 1 3 To add a key to the user s account type gt set load_uri transfer_method username password ipaddress_or_hostname directorypath filename Where a transfer_method can be tftp ftp sftp scp http or https a username is the name of the user account on the remote system username is required for scp sftp and ftp username is not used for tftp and is optional for http and https a password is the password for the user account on the remote system password is required for scp sftp and ftp password is not used for tftp and is optional for http and https a ipaddress_or_hostname is the IP address or the host name of the remote system directorypath is the location of the SSH key on the remote sys
16. 51 52 Note In the example above lt USERNAME gt will be replaced with the user s login name During authentication the user s login name replaces lt USERNAME gt Names can take the form of Fully Qualified Distinguished Name FQDN domain name NT or Simple Name To view and modify information in the alternateservers target gt show SP clients activedirectory alternateservers 1 For example gt show SP clients activedirectory alternateservers 1 SP clients activedirectory alternateservers 1 Targets cert Properties address 10 8 168 99 port 0 ILOM 3 0 CLI Procedures Guide April 2009 Note address can either be the IP address or DNS host name If using DNS DNS must be enabled For more information on enabling DNS see View and Configure DNS Settings on page 29 Then use the set command to modify properties For example gt set SP clients activedirectory alternateservers 1 port 636 You can also use the show command to view the alternate server certificate information For example gt show SP clients activedirectory alternateservers 1 cert SP clients activedirectory alternateservers 1 cert Targets Properties certstatus certificate present clear_action none issuer DC com DC sun DC east DC sales CN CAforActiveDirectory load_uri none serial_number 08 3 2e c0 8c 12 cd bb 4e 7e 82 23 c4 0d 22 60 subject DC com DC sun DC eas
17. Defaults 110 Updating ILOM Firmware 111 Updating the ILOM Firmware 112 Before You Begin 112 v Identify ILOM Firmware Version 113 v Download New Firmware on SPARC Based Systems 113 v Update the Firmware Image 113 v Recover From a Network Failure During Firmware Update 115 Resetting ILOM SP 116 Contents xvi v ResetILOMSP 116 12 Managing Remote Hosts 117 Performing the Initial Setup Tasks for Storage Redirection 118 Before You Begin 118 v Start Storage Redirection Service 119 v Download and Install the Storage Redirection Client 122 Launching the Storage Redirection CLI to Redirect Storage Devices 123 Before You Begin 123 v Launch Storage Redirection CLI Using a Command Window or Terminal 124 Verify the Storage Redirection Service Is Running 125 Display Storage Redirection CLI Help Information 126 Start Redirection of Storage Device 127 View Active Storage Redirections 128 q lt 4 lt 4 lt Stop Redirection of Storage Device 128 v Change the Default Storage Redirection Network Port 2121 129 Issuing Power State Commands 130 Diagnosing SPARC Systems Hardware Issues 131 Before You Begin 131 v Configure Diagnostics Mode 131 v Specify the Diagnostics Trigger 132 v Specify Level of Diagnostics 132 v Specify Verbosity of Diagnostics Output 133 A CLICommand Reference 135 B Storage Redirection Command Line Modes Syntax and Usage 159 Index 163 xvii ILOM 3 0 CLI Procedures Guide April 2009 Preface The In
18. ILOM firmware e Before You Begin on page 112 Identify ILOM Firmware Version on page 113 e Download New Firmware on SPARC Based Systems on page 113 e Update the Firmware Image on page 113 Troubleshoot network problem during firmware update Reset the ILOM SP Recover From a Network Failure During Firmware Update on page 115 Reset ILOM SP on page 116 Related Topics For ILOM Chapter or Section Guide e Concepts e Configuration Integrated Lights Out Manager ILOM 3 0 Management and Concepts Guide Firmware Updates e Web e Updating ILOM Firmware Integrated Lights Out Manager ILOM 3 0 interface Web Interface Procedures Guide e IPMI and e Configuring I LOM Integrated Lights Out Manager ILOM 3 0 SNMP Firmware Settings SNMP and IPMI Procedures Guide hosts The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual 111 Updating the ILOM Firmware Topics Description Links Review the prerequisites e Before You Begin on page 112 Identify the current ILOM e Identify ILOM Firmware Version on page 113 firmware version Download the firmware for your e Download New Firmware on SPARC Based system Systems on page 113 Update the firmware image e Update the Firmware Image on page 113 Troubleshoot network problem e Recover From a Network Failure During Firmwa
19. Return to your serial console and press Enter You will be prompted for a password ILOM 3 0 CLI Procedures Guide April 2009 4 Type the password for the default user account defaultpassword Note It is recommended that you reset your password at this time See Change a User Account Password on page 40 Logging Out of ILOM Y Log Out of ILOM To log out of ILOM follow this step At the command prompt type gt exit What Next After you have logged in to ILOM and set up a user account you are now ready to configure settings for ILOM functions The remaining chapters in the Integrated Lights Out Manager ILOM 3 0 CLI Procedures Guide provide descriptions of the tasks you can perform to access ILOM functions Chapter 3 Logging In to and Out of ILOM 21 22 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 4 Configuring ILOM Communication Settings Topics Description Links Configure network settings Configure Secure Shell settings e Assign Host Name and System Identifier on page 25 View and Configure Network Settings on page 26 Edit Existing IP Addresses in ILOM on page 27 View and Configure DNS Settings on page 29 View and Configure Serial Port Settings on page 30 Enable HTTP or HTTPS Web Access on page 31 Establish a Secure Remote SSH Connection on page 33 Enable or Disable SSH on page 33 View the Curr
20. alertmgmt rules m For a chassis CMM type cq CMM alertmgmt CMM rules 3 Type the following command to generate a test alert for each enabled alert rule configuration gt set testalert true ILOM 3 0 CLI Procedures Guide April 2009 CLI Commands for Managing Alert Rule Configurations The following table describes the CLI commands that you will need to use to manage alert rule configurations using the ILOM CLI TABLE 8 1 CLI Commands for Managing Alert Rule Configurations CLI Command Description show The show command enables you to display any level of the alert management command tree by specifying either the full or relative path Examples e To display an alert rule along with its properties using a full path you would type the following at the command prompt gt show SP alertmgmt rules 1 SP alertmgmt rules 1 Properties community_or_username public destination 129 148 185 52 level minor snmp_version 1 type snmptrap Commands cd set show e To display a single property using the full path you would type the following at the command prompt gt show SP alertmgmt rules 1 type SP alertmgmt rules 1 Properties type snmptrap Commands set show Chapter 8 Managing System Alerts 93 TABLE 8 1 CLI Commands for Managing Alert Rule Configurations Continued CLI Command Description To specify a relative path if the current tree location is SP alertmgmt rules
21. clients state enabled disabled disabled activedirectory certfilestatus lt string gt none defaultrole administrator operator la lu clrlols o dnslocatormode enabled disabled address lt ip address gt none port lt integer between 0 65535 gt none strictcertmode enabled disabled disabled timeout lt integer gt none SP clients name lt string gt none activedirectory admingroups 1 where n is 1 5 Appendix A CLI Command Reference 143 TABLE 12 5 Targets Properties and Values for set Command Continued Valid Targets Properties Values Default SP clients name lt string gt none activedirectory opergroups n where n is 1 5 SP clients domain lt string gt none activedirectory userdomains n where n is 1 5 SP clients name lt string gt none activedirectory roles alulclrlolsladministrator o customgroups n operator where n is 1 5 SP clients address lt string gt none activedirectory port alulclrlolsladministrator o alternateservers n operator where n is 1 5 SP clients certstatus lt string gt none activedirectory clear_action true none Coxe issuer lt string gt none load_uri tftp ftp scp none serial_number lt string gt none subject lt string gt none valid_from lt string gt none valid_until lt string gt none version lt string gt none SP clients service lt DOMAIN gt none activedirectory dnslocatorqueries n wher
22. commitpending true show SP serial host set SP serial host pendingspeed integer commitpending true Note The show and set commands with the SP serial host target are not supported on SPARC servers SPARC servers implement a virtual console and not a physical console Chapter 1 CLI Overview 9 10 TABLE 1 8 Alert Management Commands Description Display information about alerts You can configure up to 15 alerts Configure an IPMI PET alert Configure a v3 SNMP trap alert Configure an email alert Command show SP alertmgmt rules 1 15 set SP alertmgmt rules 1 15 type ipmipet destination ipaddress level down critical major minor set SP alertmgmt rules 1 15 type snmptrap snmp_version 3 comunity _or_username username destination ipaddress level down critical major minor set SP alertmgmt rules 1 15 type email destination emuail_address level down critical major minor TABLE 1 9 System Management Access Commands Description Command Display information about HTTP settings Change HTTP settings such as enabling automatic redirection to HTTPS Display information about HTTPS access Change HTTPS settings Display SSH DSA key settings Display SSH RSA key settings show SP services http set SP services http port portnumber secureredirect enabled disabled servicestate enabled disabled show SP services https set SP services https port portnumber
23. consumption e Monitor Total System Power Consumption on interfaces page 99 u Monitor Actual Power Consumption on page 100 Monitor Individual Power Supply Consumption on page 100 u Monitor Available Power on page 101 u Monitor Hardware Configuration Maximum Power Consumption on page 101 u Monitor Permitted Power Consumption on page 101 Configure Power Policy on page 102 Related Topics For ILOM Chapter or Section Guide e Concepts Power Consumption Integrated Lights Out Manager ILOM 3 0 Management Interfaces Concepts Guide e Web e Monitoring Power Integrated Lights Out Manager ILOM 3 0 interface Consumption Web Interface Procedures Guide e IPMI and e Monitoring Power SNMP Consumption hosts Integrated Lights Out Manager ILOM 3 0 SNMP and IPMI Procedures Guide The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual 97 98 Monitoring the Power Consumption Interfaces Topics Description Links Monitor power consumption interfaces e Monitor Total System Power Consumption on page 99 Monitor Actual Power Consumption on page 100 Monitor Individual Power Supply Consumption on page 100 Monitor Available Power on page 101 Monitor Permitted Power Consumption on page 101 e Configu
24. e Managing User Accounts interface e IPMI and e Managing User Accounts SNMP hosts Guide Integrated Lights Out Manager ILOM 3 0 Concepts Guide Integrated Lights Out Manager ILOM 3 0 Web Interface Procedures Guide Integrated Lights Out Manager ILOM 3 0 SNMP and IPMI Procedures Guide The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual Note Syntax examples in this chapter use the target starting with SP which could be interchanged with the target starting with CMM depending on your server platform Subtargets are common across all server platforms using ILOM ILOM 3 0 CLI Procedures Guide April 2009 Configuring User Accounts Topics Description Links Configure user accounts e Configure Single Sign On on page 39 e Add a User Account on page 39 e Assign Roles to a User Account on page 41 e Delete a User Account on page 41 e View a List of User Accounts on page 43 e View an Individual User Session on page 44 e View a List of User Sessions on page 43 e View an Individual User Session on page 44 Configure Single Sign On Before You Begin m To disable or enable Single Sign On you need the Admin a role enabled Follow these steps to configure Single Sign On 1 Log in to the ILOM CLI 2 To enable or disable Single Sign On type the followi
25. gt set logdetail trace Set logdetail to trace 3 Perform another authorization attempt by logging out then logging back in to the ILOM CLI and typing the following command Chapter 5 Managing User Accounts 55 gt show SP logs event list Class ActDir Type Log Severity Trace For example gt show SP logs event list Class ActDir Type Log ID Date Time Class Type Severity 26 Thu Jul 10 09 40 46 2008 ActDir Log minor ActDir authentication status auth OK 25 Thu Jul 10 09 40 46 2008 ActDir Log minor ActDir server authenticate auth success idx 100 0 dns server 10 8 143 231 24 Thu Jul 10 09 40 46 2008 ActDir Log debug ActDir custRoles 23 Thu Jul 10 09 40 46 2008 ActDir Log debug ActDir role name administrator For more information on configuring event log detail see View and Clear the ILOM Event Log on page 84 Configuring Lightweight Directory Access Protocol Topics Description Links Configure LDAP settings e Configure the LDAP Server on page 56 e Configure ILOM for LDAP on page 57 V Configure the LDAP Server Before You Begin m To configure LDAP settings you need the User Management u role enabled 56 ILOM 3 0 CLI Procedures Guide April 2009 1 Ensure that all users authenticating to ILOM have passwords stored in crypt format or the GNU extension to crypt commonly referred to as MD5 crypt ILOM only supports LDAP authen
26. more information Configure the network settings You can use either DHCP or a static network connection By default ILOM will attempt to obtain network settings using DHCP Refer to Connecting to ILOM in the Integrated Lights Out Manager ILOM 3 0 Getting Started Guide 18 Logging In to ILOM Topics Description Links Log in to ILOM and set up a user Log In to ILOM Using the root User Account on account page 19 e Set Up a User Account on page 19 e Log In to ILOM as a User on page 19 ILOM 3 0 CLI Procedures Guide April 2009 V Log In to ILOM Using the root User Account To log in to the ILOM CLI for the first time use SSH and the root user account To log in to the ILOM CLI using the root user account type ssh root system_ipaddress Password changeme The ILOM CLI prompt appears gt V Set Up a User Account Once you are logged in to ILOM you need to create a regular non root user account You will use this regular user account to configure ILOM settings for your system and environment To set up a user account follow this step Set up a user account in one of these five classes of users m Local users a Active Directory users a LDAP users LDAP SSL users a RADIUS users You can create up to 10 local user accounts or configure a directory service For information about setting up a user account see Managing User Accounts on page 37 V Log In t
27. of this type 3 In the Opening StorageRedir jar dialog click Save it to Disk then click OK The Save As dialog appears Note If you do not want the Opening StorageRedir dialog to reappear when installing the jar file on other remote clients you can select enable the check box for Always perform this action when handling files of this type However if you choose to enable this option you will no longer be able to display this dialog Opening StorageRedir in the future when downloading the jar file 4 In the Save As dialog save the StorageRedir jar file to a location on your local system ILOM 3 0 CLI Procedures Guide April 2009 Launching the Storage Redirection CLI to Redirect Storage Devices The following table presents an ordered list of tasks that you must perform to redirect storage media from the Storage Redirection CLI Step 1 Task Ensure that all requirements are met before using the Storage Redirection CLI Launch the Storage Redirection CLI If applicable verify that Storage Redirection Service is running If applicable display command line Help or learn more about the Storage Redirection command line modes syntax and usage Redirect a storage device from the CLI View a list of active storage devices Stop the redirection of a storage device Links Before You Begin on page 123 Launch Storage Redirection CLI Using a Command Window or Terminal
28. s remote_user_password identifies the password required to log in to the ILOM SP If this password command is not specified at the command line the system will automatically prompt you for it p storageredir_port The p storageredir_port identifies the storage redirection communication port on the local host The default port provided is 2121 Example p 2121 162 ILOM3 0 CLI Procedures Guide April 2009 Index Symbols SYS 2 A Active Directory certstatus 48 removing certificate 49 strictcertmode 47 troubleshooting 55 viewing and configuring settings 49 alert rules CLI commands 93 configuring 91 disabling 92 alert tests generating 92 alerts CLI commands for managing alerts 93 email notification configuring the SMTP client 95 generating email notification 95 back up ILOM configuration prerequisites for 104 procedure for 104 roles required 104 time required 105 Backup operation CLI command 104 backup XML file editing adding a user account 109 editing example of 108 editing passwords 109 editing roles 109 example contents 107 prerequisites for editing 107 C certificate authentication 47 certificate state 48 CLI command syntax cd command 135 create command 136 delete command 137 dump command 137 exit command 138 help command 138 load command 139 reset command 140 set command 141 show command 147 start command 155 stop command 156 version command 157
29. supported_protocol gt lt server_ip gt lt path_to_firmware_image gt lt filename xxx gt A note about the firmware update process followed by message prompts to load the image are displayed The text of the note depends on your server platform At prompt for loading the specified file type y for yes or n for no The prompt to preserve the configuration appears For example Do you want to preserve the configuration y n At the preserve configuration prompt type y for yes or n for no Type y to save your existing ILOM configuration and to restore that configuration when the update process completes Note Typing n at this prompt will advance you to another platform specific prompt 6 Perform one of the following actions a If you have a 2 x firmware release installed on your system the system loads the specified firmware file then automatically reboots to complete the firmware update Proceed to Step 7 a If you have a 3 x firmware release installed on a SPARC system the system loads the specified firmware file then automatically reboots to complete the firmware update Proceed to Step 7 ILOM 3 0 CLI Procedures Guide April 2009 a If you have a 3 x firmware release installed on an x64 system a prompt to postpone the BIOS update appears For example Do you want to force the server off if BIOS needs to be upgraded y n a At the prompt to postpone the BIOS update type y for yes or n f
30. you would type the following at the command prompt gt show 1 SP alertmgmt rules 1 Targets Properties community_or_username public destination 129 148 185 52 level minor snmp_version 1 type snmptrap Commands cd set show cd The cd command enables you to set the working directory To set alert management as a working directory on a server SP you would type the following command at the command prompt gt cd SP alertmgmt set The set command enables you to set values to properties from any place in the tree You can specify either a full or relative path for the property depending on the location of the tree For example e For full paths you would type the following at the command prompt gt set SP alertmgmt rules 1 type ipmipet e For relative path tree location is SP alertmgmt you would type the following command path at the command prompt gt set rules 1 type ipmipet e For relative path tree location is SP alertmgmt rules 1 you would type the following command path at the command prompt gt set type ipmipet 94 ILOM 3 0 CLI Procedures Guide April 2009 Configuring SMTP Client for Email Notification Alerts Topics Description Links Notify recipient of system alerts e Enable SMTP Client on page 95 using email Enable SMTP Client Before You Begin a To enable SMTP Clients you need the Admin a role enabled a To generate configured Email Notification aler
31. 1 for configuring and running diagnostic tests are met Configure the system torun Configure Diagnostics Mode on page 131 diagnostic tests Specify which diagnostic Specify the Diagnostics Trigger on page 132 triggers to activate Specify the level of Specify Level of Diagnostics on page 132 diagnostics that you want to execute Specify the verbosity output Specify Verbosity of Diagnostics Output on page 133 of the excuted diagnostic tests Before You Begin Prior to performing the procedures in this section the following requirement must be met m To configure and run diagnostic tests on a SPARC system you need the Reset and Host Control r role enabled Configure Diagnostics Mode Use the HOST diag host mode property to control whether diagnostics are enabled and to specify which diagnostic mode is enabled Follow these steps to configure the diagnostic mode 1 Log in to the ILOM CLI Chapter 12 Managing Remote Hosts 131 132 2 At the command prompt type the following command gt set HOST diag mode value Where value is one of the following m off Do not run any diagnostics a normal Run diagnostics the default value 3 Reset the power on the host to run the diagnostic tests Vv Specify the Diagnostics Trigger You can select one or more triggers that will cause a power on self test POST to be run on the host Follow these steps to set the trigger l
32. 109 110 Resetting the ILOM Configuration Topics Description Links Reset the ILOM configuration to e Reset the ILOM Configuration to Defaults on the default settings page 110 Reset the ILOM Configuration to Defaults Before You Begin m To reset the ILOM configuration to the default settings you need the Admin a role enabled Follow these steps to reset the ILOM configuration to default settings 1 Log in to the ILOM CLI 2 Change to the SP directory type gt cd SP 3 Type one of the following commands depending on the option you select to reset the default settings a If you want to reset the ILOM configuration using the a11 option type gt set reset_to_defaults all On the next reboot of the ILOM SP the ILOM configuration default settings are restored a If you want to reset the ILOM configuration using the factory option type gt set reset_to_defaults factory On the next reboot of the ILOM SP the ILOM configuration default settings are restored and the log files are erased a If you want to cancel a reset operation just previously specified type gt set reset_to_defaults none The previously issued reset_to_defaults command is canceled provided the reset_to_defaults none command is issued before the ILOM SP reboots ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 1 1 Updating ILOM Firmware Topics Description Links Review the prerequisites Update
33. 39 e Change a User Account Password on page 40 e Assign Roles to a User Account on page 41 e Delete a User Account on page 41 e View Individual User Accounts on page 42 e View a List of User Accounts on page 43 e View a List of User Sessions on page 43 e View an Individual User Session on page 44 e Add an SSH Key on page 45 e Delete an SSH Key on page 46 e Enable Active Directory strictcertmode on page 47 e Check Active Directory certstatus on page 48 e Remove an Active Directory Certificate on page 49 e View and Configure Active Directory Settings on page 49 e Troubleshoot Active Directory Authentication and Authorization on page 55 37 38 Topics Continued Description Links Configure LDAP settings e Configure the LDAP Server on page 56 e Configure ILOM for LDAP on page 57 Configure LDAP SSL settings e Enable LDAP SSL strictcertmode on page 59 e Check LDAP SSL certstatus on page 59 e Remove an LDAP SSL Certificate on page 60 e View and Configure LDAP SSL Settings on page 61 e Troubleshoot LDAP SSL Authentication and Authorization on page 66 Configure RADIUS settings e Configure RADIUS on page 67 e RADIUS Commands on page 69 Related Topics For ILOM Chapter or Section e Concepts e User Account Management Guidelines for Managing User Accounts e Web
34. AIRE EXPRESSEMENT STIPULEE DANS CE CONTRAT FUJITSU LIMITED SUN MICROSYSTEMS INC ET LES SOCIETES AFFILIEES REJETTENT TOUTE REPRESENTATION OU TOUTE GARANTIE QUELLE QU EN SOIT LA NATURE EXPRESSE OU IMPLICITE CONCERNANT CE PRODUIT CETTE TECHNOLOGIE OU CE DOCUMENT LESQUELS SONT FOURNIS EN L TAT EN OUTRE TOUTES LES CONDITIONS REPRESENTATIONS ET GARANTIES EXPRESSES OU TACITES Y COMPRIS NOTAMMENT TOUTE GARANTIE IMPLICITE RELATIVE A LA QUALIT MARCHANDE A L APTITUDE A UNE UTILISATION PARTICULI RE OU A L ABSENCE DE CONTREFA ON SONT EXCLUES DANS LA MESURE AUTORISEE PAR LA LOI APPLICABLE Sauf mention contraire express ment stipul e dans ce contrat dans la mesure autoris e par la loi applicable en aucun cas Fujitsu Limited Sun Microsystems Inc ou l une de leurs filiales ne sauraient tre tenues responsables envers une quelconque partie tierce sous quelque th orie juridique que ce soit de tout manque gagner ou de perte de profit de probl mes d utilisation ou de perte de donn es ou d interruptions d activit s ou de tout dommage indirect sp cial secondaire ou cons cutif m me si ces entit s ont t pr alablement inform es d une telle ventualit LA DOCUMENTATION EST FOURNIE EN L ETAT ET TOUTES AUTRES CONDITIONS DECLARATIONS ET GARANTIES EXPRESSES OU TACITES SONT FORMELLEMENT EXCLUES DANS LA MESURE AUTORISEE PAR LA LOI APPLICABLE Y COMPRIS NOTAMMENT TOUTE GARANTIE IMPLICITE RELATIVE A LA QUALITE MARCHA
35. April 2009 APPENDIX A CLI Command Reference CLI Command Reference This section provides reference information about the CLI commands cd Command Use the cd command to navigate the namespace When you cd to a target location that location then becomes the default target for all other commands Using the default option with no target returns you to the top of the namespace Typing cd default is the equivalent of typing cd Typing just cd displays your current location in the namespace Typing help targets displays a list of all targets in the entire namespace Syntax ed target Options default h help Targets and Properties Any location in the namespace Examples To create a user named emmett ed to SP users then execute the create command with SP users as the default target 135 gt cd SP users gt create emmett To find your location type d gt cd SP users create Command Use the create command to set up an object in the namespace Unless you specify properties with the create command they are empty Syntax create options target propertyname value Options h help Targets Properties and Values TABLE 12 1 Targets Properties and Values for create Command Valid Targets Properties Values Default SP users username password lt string gt none role administrator o operator a lulclrlols SP services snmp communities permissions rolrw ro communityname
36. CUMENT WHICH ARE ALL PROVIDED AS IS AND ALL EXPRESS OR IMPLIED CONDITIONS REPRESENTATIONS AND WARRANTIES INCLUDING WITHOUT LIMITATION ANY IMPLIED WARRANTY OF MERCHANTABILITY FITNESS FOR A PARTICULAR PURPOSE OR NON INFRINGEMENT ARE DISCLAIMED EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID Unless otherwise expressly set forth in such agreement to the extent allowed by applicable law in no event shall Fujitsu Limited Sun Microsystems Inc or any of their affiliates have any liability to any third party under any legal theory for any loss of revenues or profits loss of use or data or business interruptions or for any indirect special incidental or consequential damages even if advised of the possibility of such damages DOCUMENTATION IS PROVIDED AS IS AND ALL EXPRESS OR IMPLIED CONDITIONS REPRESENTATIONS AND WARRANTIES INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY FITNESS FOR A PARTICULAR PURPOSE OR NON INFRINGEMENT ARE DISCLAIMED EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID 4 Adobe PostScript Copyright 2009 Sun Microsystems Inc 4150 Network Circle Santa Clara California 95054 Etats Unis Tous droits r serv s Entr e et revue tecnical fournies par FUJITSU LIMITED sur des parties de ce mat riel Sun Microsystems Inc et Fujitsu Limited d tiennent et contr lent toutes deux des droits de propri t intellectuelle relatifs aux produits et technologies d cr
37. GJHB B1IFDBMhSsRbwh6Z s gAf1f S67HJIBTUPSVSMz czmamcl1loZe0azT4 zeNG6ucl u 5 JImISdkguciFcoxtBFqf0 KjyROecWaU7L4kj vWoSsydHJ 0pMHasEecEBEr ILOM 3 0 CLI Procedures Guide April 2009 Commands cd show V Generate a New SSH Key Before You Begin m To generate a new SSH key you need the Admin a role enabled Follow these steps to generate a new SSH key 1 Log in to the ILOM CLI 2 Set the key type by typing the following gt set SP services ssh generate _new_key type dsa rsa 3 Set the action to true gt set SP services ssh generate new key action true The fingerprint and key will look different The new key will not take effect until the SSH server is restarted Chapter 4 Configuring ILOM Communication Settings 35 Y Restart the SSH Server Before You Begin a To restart the SSH server you need the Admin a role enabled Note Restarting the SSH server will end any existing SSH connections Follow these steps to restart the SSH server 1 Log in to the ILOM CLI 2 To restart the SSH server type the following gt set SP services ssh restart_sshd_action true 36 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 5 Managing User Accounts Topics Description Configure user accounts Configure SSH host key Configure Active Directory settings Links e Configure Single Sign On on page 39 e Add a User Account on page
38. If the set command appears in the Commands list you can modify the state of the system indicator 3 To modify the state of the system indictor type the following command gt set property state_name For more information about which system indicators are supported on your system and the paths for accessing them consult the user documentation provided with the server platform Chapter 7 Monitoring System Components 81 82 V Configure Clock Settings Before You Begin m To view and set clock settings you need the Admin a role enabled Follow these steps to configure clock settings 1 Log in to the ILOM CLI 2 To view ILOM clock settings type gt show SP clock 3 To manually set the ILOM clock settings type gt set target property _name value For example gt set SP clock datetime MMDDhhmmYYYY 4 To configure the ILOM clock settings to synchronize with other systems on your network by setting an IP address of an NTP server a To set the IP address of an NTP server type the following command gt set SP clients ntp server 1 address ip_address b To enable NTP synchronization type gt set SP clock usentpserver enabled Consult your server platform user documentation for platform specific clock information about whether a The current time in ILOM persists across reboots of the SP a The current time in ILOM can be synchronized with the host at host boot time a There is a real time clock ele
39. M 3 0 CLI Procedures Guide April 2009 Before You Begin Prior to configuring ILOM communication settings ensure that the same IP address is always assigned to ILOM by either assigning a static IP address to ILOM after initial setup or by configuring your DHCP server to always assign the same IP address to ILOM This enables ILOM to be easily located on the network By default ILOM will attempt to obtain network settings using DHCP Assign Host Name and System Identifier Before You Begin To assign a host name and system identifier you need the Admin a role enabled Follow these steps to assign a host name or system identifier 1 2 Log in to the ILOM CLI To set the SP host name and system identifier text at the command prompt type gt set SP hostname text_string gt set SP system_identifier text_string Where The host name can consist of alphanumeric characters and can include hyphens Host names can contain up to 60 characters a The system identifier can consist of a text string using any standard keyboard keys except quotation marks For example gt set SP hostname Lab2 System1 gt set SP system_identifier DocSystemforTesting With these settings the show command produces the following output gt show SP SP Targets alertmgmt users Properties check_physical_presence false hostname Lab2 System1 Chapter 4 Configuring ILOM Communication Settings 25 system_
40. Manager ILOM 3 0 started Process Getting Started Guide e Initial ILOM Setup Procedures Using the CLI e Web Logging Into and Out Integrated Lights Out Manager ILOM 3 0 Web interface of ILOM Interface Procedures Guide The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual 17 Use this chapter as a quick reference for ILOM login and logout procedures For additional information refer to the initial login process and procedures in the Integrated Lights Out Manager ILOM 3 0 Getting Started Guide Before Your Initial Login Prior to performing the procedures in this chapter ensure that the following requirements are met a Plan how you want to set up ILOM on your server to work in your data center environment Refer to Initial Setup Worksheet to Establish Communication With ILOM in the Integrated Lights Out Manager ILOM 3 0 Concepts Guide m Connect to ILOM over a serial port without a network connection or log in to ILOM over a network To log in using a direct serial connection attach a serial cable to the workstation terminal or terminal emulator and to the SER MGT port on the server or if you are using a modular chassis system to the chassis monitoring module CMM port To log in using a network connection attach an Ethernet cable to the NET MGT port on the server or CMM Refer to your platform documentation for
41. NDE A L APTITUDE A UNE UTILISATION PARTICULIERE OU A L ABSENCE DE CONTREFACON Contents Preface xviii CLI Overview 1 About the CLI 2 CLI Hierarchical Architecture 2 CLI Target Types 2 CLI Commands 3 CLI Command Options 4 CLI Command Targets 5 Command Properties 5 ILOM 3 0 Properties Versus ILOM 2 x Properties 6 CLI Command Syntax 7 Common CLI Command Strings 8 Executing Commands 13 v Execute Commands Individually 13 v Execute Combined Commands 14 Prerequisites for Using the ILOM Command Line Interface 15 Logging In to and Out of ILOM 17 Before Your Initial Login 18 xii Logging IntoILOM 18 v Log Into ILOM Using the root User Account 19 v Set Upa User Account 19 v LogIntoILOMasaUser 19 Recovering a Lost Password 20 v Recover a Lost Password 20 Logging Out of ILOM 21 v Log Out of ILOM 21 What Next 21 4 Configuring ILOM Communication Settings 23 Configuring Network Settings 24 Before You Begin 25 Assign Host Name and System Identifier 25 View and Configure Network Settings 26 Edit Existing IP Addresses inILOM 27 View and Configure DNS Settings 29 lt a a a View and Configure Serial Port Settings 30 v Enable HTTP or HTTPS Web Access 31 Configuring Secure Shell Settings 33 Establish a Secure Remote SSH Connection 33 Enable or Disable SSH 33 v View the Current Key 34 v Generate a New SSH Key 35 v Restart the SSH Server 36 5 Managing User Accounts 37 Configuring User Accounts 39 v Configure
42. RC trademarks are based upon architecture developed by Sun Microsystems Inc SPARC64 is a trademark of SPARC International Inc used under license by Fujitsu Microelectronics Inc and Fujitsu Limited The OPEN LOOK and Sun Graphical User Interface was developed by Sun Microsystems Inc for its users and licensees Sun acknowledges the pioneering efforts of Xerox in researching and developing the concept of visual or graphical user interfaces for the computer industry Sun holds a non exclusive license from Xerox to the Xerox Graphical User Interface which license also covers Sun s licensees who implement OPEN LOOK GUIs and otherwise comply with Sun s written license agreements United States Government Rights Commercial use U S Government users are subject to the standard government user license agreements of Sun Microsystems Inc and Fujitsu Limited and the applicable provisions of the FAR and its supplements Disclaimer The only warranties granted by Fujitsu Limited Sun Microsystems Inc or any affiliate of either of them in connection with this document or any product or technology described herein are those expressly set forth in the license agreement pursuant to which the product or technology is provided EXCEPT AS EXPRESSLY SET FORTH IN SUCH AGREEMENT FUJITSU LIMITED SUN MICROSYSTEMS INC AND THEIR AFFILIATES MAKE NO REPRESENTATIONS OR WARRANTIES OF ANY KIND EXPRESS OR IMPLIED REGARDING SUCH PRODUCT OR TECHNOLOGY OR THIS DO
43. Single Sign On 39 xiii ILOM 3 0 CLI Procedures Guide April 2009 q 444 4 v Add a User Account 39 Change a User Account Password 40 Assign Roles to a User Account 41 Delete a User Account 41 View Individual User Accounts 42 View a List of User Accounts 43 View a List of User Sessions 43 View an Individual User Session 44 Configuring SSH Keys 45 v v Add an SSH Key 45 Delete an SSH Key 46 Configuring Active Directory 47 v v v v v Enable Active Directory strictcertmode 47 Check Active Directory certstatus 48 Remove an Active Directory Certificate 49 View and Configure Active Directory Settings 49 Troubleshoot Active Directory Authentication and Authorization 55 Configuring Lightweight Directory Access Protocol 56 v v Configure the LDAP Server 56 Configure ILOM for LDAP 57 Configuring LDAP SSL 58 v v v v v Enable LDAP SSL strictcertmode 59 Check LDAP SSL certstatus 59 Remove an LDAP SSL Certificate 60 View and Configure LDAP SSL Settings 61 Troubleshoot LDAP SSL Authentication and Authorization 66 Configuring RADIUS 67 v Configure RADIUS 67 Contents xiv RADIUS Commands 69 6 Managing System Components 73 Viewing Component Information and Managing System Components 74 v View Component Information 74 v Prepare to Remove a Component 75 v Return a Component to Service 76 v Enable and Disable Components 76 7 Monitoring System Components 77 Monit
44. T diag power_on_verbosity value m To specify the output verbosity for diagnostics executed when the host is reset by the user type the following command gt set HOST diag user_reset_verbosity value m To specify the output verbosity for diagnostics executed when the host is reset due to a system error type the following command gt set HOST diag error _reset_verbosity walue Where value is one of the following m none Diagnostics do not print any output on the system console when running unless a fault is detected a min Diagnostics print a limited amount of output on the system console m normal Diagnostics print a moderate amount of output on the system console the default value m max Diagnostics print full output on the system console including the name and results of each test being run m debug Diagnostics print extensive debugging output on the system console including devices being tested and debug output of each test Note For backward compatibility with ILOM 2 x the former property HOST diag verbosity is still supported as a shorcut for specifying the same output verbosity for all trigger types Any value set to HOST diag verbosity will be applied to all three trigger specific verbosity properties power_on_verbosity user_reset_verbosity and error_reset_verbosity 3 Reset the power on the host to run the diagnostic tests ILOM 3 0 CLI Procedures Guide
45. To view a discrete sensor reading type the following commands gt ed target gt show For example on some server platforms you can determine whether a hard disk drive is present in slot 0 by specifying the following path gt cd SYS HDDO_PRSNT gt show The properties describing the discrete sensor target appear For example Type Entity Presence Class Discrete Indicator Value Present For specific details about the type of discrete sensor targets you can access as well as the paths to access them consult the user documentation provided with the server platform V Configure System Indicators Before You Begin m To configure system indicators you need the User Management u role enabled Follow these steps to configure system indicators 1 Log in to the ILOM CLI 80 ILOM 3 0 CLI Procedures Guide April 2009 2 To determine whether you can change the state of a system indicator type the following commands gt cd SYS or cd CH gt show Targets properties and commands associated with the system indicator appear For example SYS Targets BIOS OK2RM SERVICE Properties type Host System chassis name SUN BLADE 8000 CHASSIS chassis _part_number 602 3235 00 chassis_serial_number 00 03 BA CD 59 6F chassis manufacturer SUN MICROSYSTEMS fault_state OK clear_fault_action none power_state Off Commands cd reset set show start stop
46. Variable Option Description data normal full normal l logonly or full logon URI Any val ly id target directory location Specifies that ILOM operating system and hardware information is to be collected Specifies that all data is to be collected full collection Note Using this option may reset the running host Specifies that only log files are to be collected Specifies the URI of the target directory The URI format is as follows protocol username password host directory Where protocol can be one of these transfer methods SFTP TFTP or FTP For example to store the snapshot information in the directory named data on the host define the URI as follows tp joe mypasswd host_ip_address data The directory data is relative to the user s login so the directory would probably be home joe data 88 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 8 Managing System Alerts Topics Description Links Review the prerequisites e Before You Begin on page 90 Manage alert rule configurations e Create or Edit Alert Rules on page 91 e Disable an Alert Rule on page 92 Generate test alerts to confirm e Generate Test Alerts on page 92 alert configuration is working Review the CLI commands you e CLI Commands for Managing Alert Rule need to use when managing alert Configurations on page 93 rule configurations Notify recipient of sy
47. _class_filter event_type_filter level snmp_version type state certfilestatus defaultrole getcertfile address logdetail port strictcertmode timeout name address port clear_action issuer load_uri serial_number subject valid_from valid_until version Appendix A CLI Command Reference 149 TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP clients activedirectory cert SP clients activedirectory customgroups n where n is 1 5 SP clients activedirectory opergroups n where n is 1 5 SP clients activedirectory userdomains n where n is 1 5 SP clients dns SP clients ldap SP clients ldapssl certstatus clear_action issuer load_uri serial_number subject valid_from valid_until version name roles name domain auto_dns nameserver searchpath binddn bindpw defaultrole address port searchbase state defaultrole address logdetail port state strictcertmode timeout 150 ILOM3 0 CLI Procedures Guide April 2009 TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP clients name ldapss1 admingroups 1 where n is 1 5 SP clients address ldapss1 port alternateservers n where n is 1 5 SP clients ldapss1 alternateservers n cert where n is 1 5 SP clients ldapss1 cert SP clients ldapss1 customgroups n where n is 1 5 SP clients l
48. _level value m To specify the diagnostic level when the host is reset due to a system error type the following command gt set HOST diag error_reset_level value Where value is one of the following m min Run the minimum level of diagnostics to verify the system m max Run the maximum set of diagnostics to fully verify system health the default value Note For backward compatibility with ILOM 2 x the former property HOST diag level is still supported as a shorcut for specifying the same diagnostic level for all trigger types Any value set to HOST diag level will be applied to all three trigger specific properties power_on_level user_reset_level and error_reset_level 3 Reset the power on the host to run the diagnostic tests Specify Verbosity of Diagnostics Output There are specific ILOM CLI properties that enable you to specify the output verbosity of executed diagnostics depending on how the diagnostics were triggered to run This gives granular control of how much diagnostics output is given in different host reset situations Follow these steps to specify the verbosity of the diagnostics output 1 Log in to the ILOM CLI Chapter 12 Managing Remote Hosts 133 134 2 Perform one of the following commands depending on how the host was reset m To specify the output verbosity for diagnostics executed when the host is powered on type the following command gt set HOS
49. acy roles of Administrator or Operator or any of the individual role ID combinations of a u ce x 0 and s For example aucros where a Admin u User Management c Console r Reset and Host Control and s Service ipaddress 0 0 0 0 IP address or DNS name of the RADIUS server If the DNS name is used DNS must be configured and functional port 1812 Specifies the port number used to communicate with the RADIUS server The default port is 1812 secret none Specifies the shared secret that is used to protect sensitive data and to ensure that the client and server recognize each other 68 ILOM 3 0 CLI Procedures Guide April 2009 RADIUS Commands This section describes the RADIUS commands show SP clients radius To use this command you need the Admin a role or Operator role enabled Purpose Use this command to view the properties associated with RADIUS authentication Syntax show SP clients radius Properties defaultrole This is the role assigned to all RADIUS users Operator address IP address of your RADIUS server port Port number used to communicate with your RADIUS server The default port is 1812 secret This is the shared secret used to gain access to your RADIUS server state This setting is enabled or disabled to allow or deny access to your RADIUS users Chapter 5 Managing User Accounts 69 70 Example gt show SP clients radius
50. age show SP logs event list TABLE 1 6 User Commands Description Command Add a local user create SP users userl password password role al u c rlo s Delete a local user delete SP users userl Change a local user s properties set SP users userl role operator Display information about all show display targets properties all level all local users SP users Display information about show SP clients ldap LDAP settings Change LDAP settings set SP clients ldap binddn proxyuser bindpw proxyuserpassword defaultrole al u c r o s address ipaddress 8 ILOM 3 0 CLI Procedures Guide April 2009 TABLE 1 7 Network and Serial Port Setting Commands Description Display network configuration information Change network properties for ILOM Changing certain network properties like the IP address will disconnect your active session Display information about the external serial port Change the external serial port configuration Display information about the serial connection to the host Change the host serial port configuration Note This speed setting must match the speed setting for serial port 0 COM1 or dev ttySO on the host operating system Command show SP network set SP network pendingipaddress ipaddress pendingipdiscovery dhcp static pendingipgateway ipgateway pendingipnetmask ipnetmask commitpending true show SP serial external set SP serial external pendingspeed integer
51. age If you do not use the o output option usage information and a brief description of the command are displayed Specifying command targets displays a complete list of valid targets for that command from the fixed targets in SP and SYS Fixed targets are targets that cannot be created by a user Specifying command targets legal displays copyright information and product use rights Syntax help options command target Options h help o output terse verbose Commands cd create delete exit help load reset set show start stop version ILOM 3 0 CLI Procedures Guide April 2009 Examples gt help load The load command transfers a file from a remote location specified by the URI and updates the given target Usage load script source lt URI gt target source Specify the location to get a file gt help output verbose reset The reset command is used to reset a target Usage reset script target Available options for this command script Do not prompt for yes no confirmation and act as if yes were specified load Command Use the load command to transfer an image file from a source indicated by a Uniform Resource Indicator URI to update ILOM firmware The URI can specify a protocol and credentials used for the transfer The load command supports multiple protocols TFTP SCP FTP If credentials are required and not specified the command prompts you for a
52. age 29 Then use the set command to modify properties For example gt set SP clients ldapssl alternateservers 1 port 636 You can also use the show command to view the alternate server certificate information For example gt show SP clients ldapssl alternateservers 1 cert SP clients ldapssl alternateservers 1 cert Targets Properties certstatus certificate present clear_action none issuer C US O Entrust PKI Demonstration Cerificates load_uri none serial_number 08 23 2e c0 8c 12 cd bb 4e 7e 82 23 c4 0d 22 60 subject C US 0 Entrust PKI Demonstration Cerificates OU Entrust Web Connector OU No Liability as per http freecerts entrust valid_from Oct 25 22 18 26 2006 GMT valid_until Oct 25 22 18 26 2011 GMT version 3 0x02 Type the following to copy a certificate for an alternate server gt set load_uri lt tftp ftp scp gt lt username password gt lt ipAddress HostName gt lt filepPath gt lt fileName gt The following is an example of a certificate copied using TFTP gt set load_uri tftp 10 8 172 152 sales cert cert Set load_uri to tftp 10 8 172 152 sales cert cert Chapter 5 Managing User Accounts 65 Note The TFTP transfer method does not require a user name and password The following is an example of a certificate copied using TFTP gt set load_uri ftp sales XpasswordxX 129 148 185 50 8275 pu
53. ains every managed object in the system In this model a small number of commands operate on a large namespace of targets which can be modified by options and properties This namespace defines the targets for each command verb 2 CLI Hierarchical Architecture CLI Target Types The following table lists the various hierarchy methods you can use with the ILOM CLI depending on the particular server platform that you are using TABLE 1 1 ILOM Target Types Target Type Description SP The targets and properties below this target type are used for configuring the ILOM service processor SP and for viewing logs and consoles CMM On blade platforms this target type replaces SP and is used for configuring the ILOM chassis monitoring module CMM ILOM 3 0 CLI Procedures Guide April 2009 TABLE 1 1 Target Type ILOM Target Types Continued Description SYS CH HOST The targets and properties below this target type provide inventory environmentals and hardware management The targets directly correspond to nomenclature for all hardware components some of which are printed onto the physical hardware On blade platforms this target type replaces Sys and provides inventory environmentals and hardware management at the chassis level The target types directly correspond to nomenclature names for all hardware components some of which are printed onto the the physical hardware Th
54. and modify information in the dnslocatorqueries target gt show SP clients activedirectory dnslocatorqueries 1 For example gt show SP clients activedirectory dnslocatorqueries 1 SP clients activedirectory dnslocatorqueries 1 Targets Properties service _ldap _tcp gc _msdcs lt DOMAIN gt lt PORT 3269 gt Commands cd set show ILOM 3 0 CLI Procedures Guide April 2009 Note DNS and DNS Locator Mode must be enabled for DNS Locator Queries to work For information about enabling DNS see View and Configure DNS Settings on page 29 The DNS Locator service query identifies the named DNS service The port ID is generally part of the record but it can be overridden by using the format lt PORT 636 gt Also named services specific for the domain being authenticated can be specified by using the lt DOMAIN gt substitution marker Then use the set command to modify properties in the dnslocatorqueries target For example gt set SP clients activedirectory dnslocatorqueries 1 service lt string gt V Troubleshoot Active Directory Authentication and Authorization Before You Begin a To view authentication and authorization events you need the Read Only o role enabled Follow these steps to diagnose authentication and authorization events 1 Log in to the ILOM CLI 2 Type the following commands gt cd SP clients activedirectory SP clients activedirectory
55. assword Commands cd set show 42 ILOM 3 0 CLI Procedures Guide April 2009 Vv View a List of User Accounts Before You Begin a To view a list of user accounts you only need the Read Only o role enabled Follow these steps to view a list of user accounts 1 Log in to the ILOM CLI 2 To display information about all local user accounts type the following command gt show SP users For example gt show SP users SP users Targets userl user2 user3 user4 V View a List of User Sessions Before You Begin m To view a list of user sessions you only need the Read Only o role enabled Follow these steps to view a list of user sessions 1 Log in to the ILOM CLI Chapter 5 Managing User Accounts 43 44 2 To display information about all local user sessions type the following command gt show SP sessions For example Targets Commands cd show SP sessions Properties gt show SP sessions 12 current V View an Individual User Session Before You Begin a To view an individual user session you need the Read Only o role enabled Follow these steps to view an individual session 1 Log in to the ILOM CLI 2 To display information about an individual user session type the following command gt show SP sessions session_number For example Targets type mode Commands cd show Properties
56. bled SP services http servicestate enabled SP services https servicestate enabled Enable HTTPS only SP services http secureredirect disabled SP services http servicestate disabled SP services https servicestate enabled Automatically redirect SP services http secureredirect enabled HTTP to HTTPS SP services http servicestate disabled SP services https servicestate enabled ILOM 3 0 CLI Procedures Guide April 2009 Configuring Secure Shell Settings Topics Description Links Configure Secure Shell settings e Establish a Secure Remote SSH Connection on page 33 e Enable or Disable SSH on page 33 e View the Current Key on page 34 Generate a New SSH Key on page 35 e Restart the SSH Server on page 36 Establish a Secure Remote SSH Connection You will need to establish a secure connection from a remote SSH client to the server SP To establish a secure connection type the following ssh 1 username server_ipaddress Password The default CLI prompt appears and the system is ready for you to run the CLI commands to establish network settings Enable or Disable SSH Before You Begin To restart the Secure Shell you need the Admin a role enabled Follow these steps to enable or disable SSH 1 2 Log in to the ILOM CLI If you do not want to provide access over the network or if you do not want to use SSH type the following gt set SP service
57. bleshoot update session 115 update prerequisites 113 updating image 113 H host name assigning 25 HTTP or HTTPS settings enabling 31 targets properties and values for 32 l ILOM 2 x properties compared to ILOM 3 0 6 updating 2 x scripts 6 ILOM configuration backing up 103 resetting 110 restoring 103 105 IP address assignment editing using the CLI 27 to 28 J Java runtime environment downloading 118 Jnlpgenerator 120 L LDAP server configuring 56 LDAP SSL 58 certstatus 59 removing a certificate 60 strictcertmode 59 troubleshooting 66 viewing and configuring settings 61 Lightweight Directory Access Protocol LDAP 56 configuring 57 overview 56 log in first time 19 prerequisites for 18 regular user 19 using root user account 19 log out 21 N namespaces accessed by SP 3 network port 2121 default storage redirection port 129 network settings 24 DNS 29 editing IP address 27 host name 25 pending and active properties 25 serial port 30 system identifier 25 targets properties and values for 27 viewing and configuring 26 P passphrase used to backup ILOM configuration 104 used to restore ILOM configuration 106 password changing 40 lost password recovery 20 physical presence proving 20 power consumption monitoring 97 monitoring actual power 100 monitoring available power 101 monitoring individual power supply 100 monitoring permitted power 101 monito
58. cO FUJITSU Lights Out Manager ILOM 3 C120 E5 75 01EN CD FUJITSU Integrated Lights Out Manager ILOM 3 0 CLI Procedures Guide Copyright 2009 Sun Microsystems Inc 4150 Network Circle Santa Clara California 95054 U S A All rights reserved FUJITSU LIMITED provided technical input and review on portions of this material Sun Microsystems Inc and Fujitsu Limited each own or control intellectual property rights relating to products and technology described in this document and such products technology and this document are protected by copyright laws patents and other intellectual property laws and international treaties The intellectual property rights of Sun Microsystems Inc and Fujitsu Limited in such products technology and this document include without limitation one or more of the United States patents listed at http www sun com patents and one or more additional patents or patent applications in the United States or other countries This document and the product and technology to which it pertains are distributed under licenses restricting their use copying distribution and decompilation No part of such product or technology or of this document may be reproduced in any form by any means without prior written authorization of Fujitsu Limited and Sun Microsystems Inc and their applicable licensors if any The furnishing of this document to you does not give you any rights or licenses express or implie
59. contact none system_description SUN BLADE X8400 SERVER MODULI v3 0 0 0 r31470 system_identifier DocSystemforTesting system_location none Commands cd reset set show version je ILOM V View and Configure Network Settings Before You Begin m To view network settings you need the Read Only o role enabled To configure network settings you need the Admin a role enabled Follow these steps to view and configure network settings 1 Log in to the ILOM CLI 2 At the command prompt type gt show SP network 3 Use the set command and type all of the settings that you wish to change You can execute these commands within a combined command See Execute Combined Commands on page 14 Note Change a complete set of properties and commit to true only when the pending values are all typed into the command Note Settings take effect as soon you set commitpending true Configuring network settings might disconnect your active session if you are connected to ILOM over a network Configure all your systems before you commit the changes After you commit the changes you will have to reconnect to ILOM Example To change multiple network settings from DHCP to static assigned settings type gt set SP network pendingipdiscovery static pendingipaddress nnn nn nn nn pendingipgateway nnn nn nn nn pendingipnetmask nn1 n1 n1 nn commitpending true 26 ILOM 3 0 CLI Pr
60. cript option Note The reset command does not affect the power state of hardware devices Syntax reset options target Options h help script The f force option is supported on SPARC based systems ILOM 3 0 CLI Procedures Guide April 2009 Targets TABLE 12 4 Targets for reset Command Valid Targets SP SYS Examples gt reset SP gt reset SYS set Command Use the set command to specify the properties of the target Syntax set options target propertyname value Options h help Appendix A CLI Command Reference 141 Targets Properties and Values TABLE 12 5 Targets Properties and Values for set Command Valid Targets Properties Values Default SP alertmgmt rules testalert true none SP alertmgmt rules community_or_username lt string gt public rulename destination email_address none rulename T through 15 destination_port lt integer gt 0 event_class_filter Log Email Internal none Captive Shell Backup Restore Audit IPMI Chassis Fault System ActDir event_type_filter Developer Connection ne Send Product Chassis Command Entered State Action Fault Repair Warning level disable down critical major none minor snmp_version 112c13 3 type 7E email ipmipet snmptrap none SP clock datetime current date and time lt string gt timezone EST PST8PDT GMT usentpserver enabl
61. cument et le produit et les technologies qu il d crit peuvent inclure des droits de propri t intellectuelle de parties tierces prot g s par copyright et ou c d s sous licence par des fournisseurs Fujitsu Limited et ou Sun Microsystems Inc y compris des logiciels et des technologies relatives aux polices de caract res Par limites du GPL ou du LGPL une copie du code source r gi par le GPL ou LGPL comme applicable est sur demande vers la fin utilsateur disponible veuillez contacter Fujitsu Limted ou Sun Microsystems Inc Cette distribution peut comprendre des composants d velopp s par des tierces parties Des parties de ce produit pourront tre d riv es des syst mes Berkeley BSD licenci s par l Universit de Californie UNIX est une marque d pos e aux Etats Unis et dans d autres pays et licenci e exclusivement par X Open Company Ltd Sun Sun Microsystems le logo Sun Java Netra Solaris Sun StorEdge docs sun com OpenBoot SunVTS Sun Fire SunSolve CoolThreads J2EE et Sun sont des marques de fabrique ou des marques d pos es de Sun Microsystems Inc aux Etats Unis et dans d autres pays Fujitsu et le logo Fujitsu sont des marques d pos es de Fujitsu Limited Toutes les marques SPARC sont utilis es sous licence et sont des marques de fabrique ou des marques d pos es de SPARC International Inc aux Etats Unis et dans d autres pays Les produits portant les marques SPARC sont bas s sur une archi
62. d with respect to the product or technology to which it pertains and this document does not contain or represent any commitment of any kind on the part of Fujitsu Limited or Sun Microsystems Inc or any affiliate of either of them This document and the product and technology described in this document may incorporate third party intellectual property copyrighted by and or licensed from suppliers to Fujitsu Limited and or Sun Microsystems Inc including software and font technology Per the terms of the GPL or LGPL a copy of the source code governed by the GPL or LGPL as applicable is available upon request by the End User Please contact Fujitsu Limited or Sun Microsystems Inc This distribution may include materials developed by third parties Parts of the product may be derived from Berkeley BSD systems licensed from the University of California UNIX is a registered trademark in the U S and in other countries exclusively licensed through X Open Company Ltd Sun Sun Microsystems the Sun logo Java Netra Solaris Sun StorEdge docs sun com OpenBoot SunVTS Sun Fire SunSolve CoolThreads J2EE and Sun are trademarks or registered trademarks of Sun Microsystems Inc in the U S and other countries Fujitsu and the Fujitsu logo are registered trademarks of Fujitsu Limited All SPARC trademarks are used under license and are registered trademarks of SPARC International Inc in the U S and other countries Products bearing SPA
63. d Restoring ILOM Configuration 105 Follow these steps to restore the ILOM configuration 1 Log in to the ILOM CLI 2 Change to the SP config directory Type gt cd SP config 3 If a passphrase was specified when the backup file was created you must specify the same passphrase to perform the Restore operation Type gt set passphrase passplirase The passphrase must be the same passphrase that was used when the backup file was created 4 To initiate the Restore operation type the following gt set load_uri transfer_method username password ipaddress_or_hostname directorypath filename Where a transfer_method can be tftp ftp sftp scp http or https a username is the name of the user account on the remote system username is required for scp sftp and ftp username is not used for tftp and it is optional for http and https password is the password for the user account on the remote system password is required for scp sftp and ftp password is not used for tftp and it is optional for http and https ipaddress_or_hostname is the IP address or the host name of the remote system directorypath is the storage location on the remote system filename is the name assigned to the backup file For example gt set load_uri scp adminuser userpswd 1 2 3 4 Backup Lab9 SP123 config The Restore operation executes The XML file is parsed A Restore operation typically takes two to three minute
64. dapss1 opergroups 1 where n is 1 5 SP clients ldapss1 userdomains 1 where n is 1 5 SP clients ntp server 1 2 cert_status clear_action issuer load_uri serial_number subject valid_from valid_until version certstatus clear_action issuer load_uri serial_number subject valid_from valid_until version name roles name domain address Appendix A CLI Command Reference 151 TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP clients radius SP clients smtp SP clock SP config SP console SP diag snapshot SP firmware SP logs event SP network SP powermgmt SP serial external 152 ILOM 3 0 CLI Procedures Guide April 2009 address port secret state port state datetime usentpserver timezone dump_uri load_uri passphrase escapechars dataset dump_uri result load_uri clear commitpending dhcp_server_ip ipaddress ipdiscovery ipgateway ipnetmask macaddress pendingipaddress pendingdiscovery pendingipgateway pendingipnetmask state actual_power permitted_power available_power flowcontrol speed TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP serial host commitpending pendingspeed speed SP services http port secureredirect servicestate SP services https cert_status SP services https ssl SP services https ssl default_cert SP serv
65. dns 3 Use the set command to change properties and values for DNS settings At the command prompt type gt set SP clients dns For example propertyname value gt set SP clients dns searchpath abcdefg com Targets Properties and Values The following targets properties and values are valid for DNS settings TABLE 4 2 Valid Targets Properties and Values for DNS Settings Target Property SP clients dns auto_dns nameserver retries searchpath timeout Value Default enabled disabled disabled ip_address Integer between 0 and 5 Integer between 1 and 10 Up to six comma separated search suffixes Chapter 4 Configuring ILOM Communication Settings 29 30 Vv View and Configure Serial Port Settings Before You Begin m To view serial port settings you need the Read Only o role enabled To configure serial port settings you need the Admin a role enabled Follow these steps to view and configure serial port settings 1 Log in to the ILOM CLI 2 At the command prompt m Type the following command to display settings for the external serial port gt show SP serial external a Type the following command to display settings for the host serial port gt show SP serial host 3 Use the set command to change properties and values for serial port settings Port settings have two sets of properties pending and active At the command prompt type gt set target propertyname value c
66. e CLI on page 2 e CLI Hierarchical Architecture on page 2 e CLI Target Types on page 2 e ILOM 3 0 Properties Versus ILOM 2 x Properties on page 6 e CLI Command Syntax on page 7 e Common CLI Command Strings on page 8 e Executing Commands on page 13 For ILOM Chapter or Section Guide Concepts e ILOM Overview Integrated Lights Out Manager ILOM 3 0 Concepts Guide Web interface Web Interface Overview Integrated Lights Out Manager ILOM 3 0 Web Interface Procedures Guide e SNMP and e SNMP Overview Integrated Lights Out Manager ILOM IPMI hosts e IPMI Overview 3 0 SNMP and IPMI Procedures Guide The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual This chapter introduces the basic information you need to know before you perform procedures using the ILOM command line interface CLI About the CLI The ILOM CLI is based on the Distributed Management Task Force specification Server Management Command Line Protocol Specification version 11 0a 8 Draft DMTF CLP You can view the entire specification at the following site http www dmtf org The DMTF CLP provides a management interface for one or more servers regardless of server state method of access or installed operating system The DMTF CLP architecture models a hierarchical namespace a predefined tree that cont
67. e ILOM CLI as a user assigned the Admin User Management Console Reset and Host Control and Read Only a u c r 0 roles These roles are required in order to perform a complete backup of the ILOM SP configuration a If you use a user account that does not have the roles listed above the configuration backup file that is created might not include all of the ILOM SP configuration data Follow these steps to back up the ILOM configuration 1 Log in to the ILOM CLI 2 Change to the SP config directory Type gt cd SP config 3 If you want sensitive data such as user passwords SSH keys certificates and so forth to be backed up you must provide a passphrase Type gt set passphrase passplirase 4 To initiate the Backup operation type the following command from within the SP config directory gt set dump_uri transfer_method username password ipaddress_or_hostname directorypath filename Where m transfer_method can be tftp ftp sftp scp http or https a username is the name of the user account on the remote system username is required for scp sftp and ftp username is not used for tftp and it is optional for http and https ILOM 3 0 CLI Procedures Guide April 2009 password is the password for the user account on the remote system password is required for scp sftp and ftp password is not used for tftp and it is optional for http and https a ipaddress_or_hostname is the IP address or th
68. e chassis hot insert removal of a FRU and Reset Parameters button pushed Fault Fault For Fault Management faults Description gives the time fault was detected and suspect component Fault Repair For Fault Management repairs Description gives component Severity Debug Down Critical Major or Minor Date Time The day and time the event occurred If the Network Time Protocol NTP server is enabled to set the ILOM time the ILOM clock will use Universal Coordinated Time UTC Description A description of the event 5 To dismiss the event log stop displaying the log press the q key 6 To clear entries in the event log perform the following steps a Type set clear true A confirmation message appears b Type one of the following a To clear the entries type y To cancel clearing the log type n Note The ILOM event log accumulates many types of events including copies of IPMI entries Clearing the ILOM event log will clear all entries in the log including the IPMI entries However clearing the ILOM event log entries will not clear the actual entries posted directly to an IPMI log Chapter 7 Monitoring System Components 85 86 V Configure Remote Syslog Receiver IP Addresses Before You Begin m To configure remote syslog receiver IP addresses you need the Admin a role enabled Follow these steps to configure remote syslog receiver IP addresses 1 Establish a local
69. e host name of the remote system directorypath is the storage location on the remote system filename is the name assigned to the backup file For example gt set dump_uri scp adminuser userpswd 1 2 3 4 Backup Lab9 SP123 config The Backup operation executes and you will be prompted when the operation completes A Backup operation typically takes two to three minutes to complete Note While the Backup operation is executing sessions on the ILOM SP will be momentarily suspended The sessions will resume normal operation once the Backup operation is complete Restoring the ILOM Configuration Topics Description Links Restore the ILOM configuration e Restore the ILOM Configuration on page 105 Restore the ILOM Configuration Before You Begin Log in to the ILOM CLI as a user assigned the Admin User Management Console Reset and Host Control and Read Only a u c r 0 roles These roles are required to perform a complete restore of the ILOM SP configuration m When executing a Restore operation use a user account that has the same or more privileges than the user account that was used to create the backup file otherwise some of the backed up configuration data might not be restored All configuration properties that are not restored appear in the event log Therefore one way to verify whether all the configuration properties were restored is to check the event log Chapter 10 Backing Up an
70. e information about user accounts and roles see Assign Roles to a User Account on page 41 Note Any user with a valid user account in ILOM can launch the Storage Redirection CLI from a command window or terminal and verify the status of the the service or view the occurrence of an active storage redirection m For more information about the Storage Redirection command line modes syntax and usage see Storage Redirection Command Line Modes Syntax and Usage on page 159 Launch Storage Redirection CLI Using a Command Window or Terminal Before You Begin m Prior to launching the Storage Redirection CLI you must have started the Storage Redirection service For instructions for launching the service see Start Storage Redirection Service on page 119 Follow these steps to launch the Storage Redirection CLI from a command window or terminal 1 Open a command line interface For example a Windows systems Click Run from the Start menu and type cmd then click OK m Solaris or Linux systems Open a terminal window on the desktop 2 Perform one of the following actions m To enter commands from an interactive shell mode do the following a In the command line interface navigate to the directory where the Storage Redirection client StorageRedir jar was installed using the cd command For example ILOM 3 0 CLI Procedures Guide April 2009 ed lt my_settings gt lt storage_redirect_directory gt
71. e n is 1 5 SP clients dns auto_dns enabled disabled disabled nameserver lt string gt none retries lt integer between 0 and 5 gt none searchpath lt string gt none timeout lt integer between 1 and 10 gt none 144 ILOM 3 0 CLI Procedures Guide April 2009 TABLE 12 5 Targets Properties and Values for set Command Continued Valid Targets Properties Values Default SP clients ldap binddn lt username gt none bindpw lt string gt none defaultrole administrator operator la lu clrlols o address lt ipaddress gt none none port lt integer gt 389 searchbase lt string gt none state enable disabled disabled SP clients ldapss1 address lt ip address gt or lt DNS name gt none logdetail none high medium low none trace strictcertmode enabled disabled disabled address lt ipaddress gt none none port lt integer gt 389 defaultrole administrator operatorlalul 6 clrlols state enabled disabled disabled SP clients name lt string gt none ldapss1 admingroups n where n is 1 5 SP clients name lt string gt none ldapss1l opergroups where n is 1 5 SP clients domain lt string gt none ldapss1 userdomains n where n is 1 5 SP clients domain lt string gt none ldapss1 customgroups n where n is 1 5 SP clients domain lt string gt none ldapss1l alternateservers n where n is 1 5 Appendix A CLI Command Reference 145 TABLE 12 5 Targets Prop
72. e targets and properties below this target type are used for monitoring and managing the host operating system Note Your access to some of these target types within the hierarchy depends on the server platform you are using Service processors can access two namespaces the SP namespace and the overall system namespace SYS or HOST In the SP namespace you can manage and configure the service processor In the SYS or HOST namespace you can access other information for managed system hardware CLI Commands The ILOM CLI supports the DMTF CLP commands listed in the following table Note CLI commands are case sensitive TABLE 1 2 CLI Commands Command Description cd Navigates the object namespace create Sets up an object in the namespace delete Removes an object from the namespace exit Terminates a CLI session help Displays Help information for commands and targets Chapter 1 CLI Overview 3 TABLE 1 2 CLI Commands Continued Command Description load Transfers a file from an indicated source to an indicated target dump Transfers a file from a target to a remote location specified by the URI reset Resets the state of the target set Sets target properties to the specified value show Displays information about targets and properties start Starts the target stop Stops the target version Displays the version of service processor running CLI Command Options The ILOM CLI
73. ed disabled disabled SP services http port lt integer gt 80 secureredirect enabled disabled enabled servicestate enabled disabled disabled SP services https port lt integer gt 443 servicestate enabled disabled disabled SP services ipmi servicestate enabled disabled enabled SP services kvms mousemode absolute relative absolute servicestate enabled disabled enabled 142 ILOM 3 0 CLI Procedures Guide April 2009 TABLE 12 5 Targets Properties and Values for set Command Continued Valid Targets Properties Values Default SP services snmp engineid lt hexadecimal gt IP address port lt integer gt 161 sets enabled disabled disabled vl enabled disabled disabled v2c enabled disabled disabled v3 enabled disabled enabled servicestate enabled disabled enabled SP services snmp permission ro Irw rw communities private SP services snmp permission rol rw ro communities public SP services snmp user authenticationprotocol MD5 MD5 username authenticationpassword lt string gt null string permissions rolrw ro privacyprotocol none DES DES privacypassword lt string gt null string SP services ssh external_host generate_new_key_action true none generate_new_key_type rsa ldsa none restart_sshd_action true none state enabled disabled enabled SP services sso state enabled disabled enabled SP users username role administrator operator alul none clrlols password lt string gt none SP
74. eed the User Management u role enabled By default strictcertmode is disabled When this variable is disabled the channel is secure but limited validation of the certificate is performed If strictcertmode is enabled then the server s certificate must have already been uploaded to the server so that the certificate signatures can be validated when the server certificate is presented Data is always protected even if strictcertmode is disabled You can use TFTP FTP or SCP to load a certificate You can load a SSL certificate for Active Directory using the load source command from anywhere on the CLI For example gt load source URI_to_SSL_certificate target Follow these steps to enable strictcertmode 1 2 Log in to the ILOM CLI Type the following path to access the Active Directory certificate settings gt ed SP clients activedirectory cert Chapter 5 Managing User Accounts 47 48 3 To load a certificate type the following gt set load_uri tftp IP address file path filename 4 To enable strictcertmode type the following gt set strictcertmode enabled V Check Active Directory certstatus Before You Begin m To configure Active Directory settings you need the User Management u role enabled a certstatus is an operational variable that should reflect the current certificate state Neither is required to exist if strictcertmode is disabled However for the strictcertmode to be enab
75. ent Key on page 34 Generate a New SSH Key on page 35 Restart the SSH Server on page 36 23 Related Topics For ILOM Chapter or Section Guide Concepts e ILOM Network Integrated Lights Out Manager ILOM 3 0 Configurations Concepts Guide e Getting e Connecting toILOM Integrated Lights Out Manager ILOM 3 0 started Getting Started Guide e Web e Configuring ILOM Integrated Lights Out Manager ILOM 3 0 Web interface Communication Interface Procedures Guide Settings e IPMI and e Configuring ILOM Integrated Lights Out Manager ILOM 3 0 SNMP hosts Communication SNMP and IPMI Procedures Guide Settings The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual Configuring Network Settings Topics Description Links Review the prerequisites e Before You Begin on page 25 Assign a host name and system e Assign Host Name and System Identifier on identifier page 25 View and configure network e View and Configure Network Settings on page 26 settings Edit existing IP Addresses e Edit Existing IP Addresses in ILOM on page 27 View and configure DNS settings e View and Configure DNS Settings on page 29 View and configure serial port e View and Configure Serial Port Settings on settings page 30 Enable HTTP or HTTPS web e Enable HTTP or HTTPS Web Access on page 31 access 24 ILO
76. er ture from the ILOM web interface or from a 1 Log in to the SP ILOM web interface 2 Select Remote Control gt Redirection The Launch Redirection page appears Chapter 12 Managing Remote Hosts 119 3 Click Launch Service The Opening Jnlpgenerator cli dialog appears e Opening jnipgenerator cli The file jnlpgenerator cli is of type application x java jnip file and Web Browser does not know how to handle this file type This file is located at https 10 8 136 153 What should Web Browser do with this file Open it with the default application O Open it with usr jdk instances jdk1 5 0 bin javaws Choose O Save it to disk O Always perform this action when handling files of this type 4 In the Opening Jnlpgenerator cli dialog perform one of the following actions m To save the jnlpgenerator cli file on your local system and run the service directly from a command line select Save it to disk then click OK If you select this option you will not need to subsequently sign in to the ILOM web interface to start the service You will be able to start the service directly from a command window or terminal m To run the service directly from the ILOM web interface select Open it with the default application then click OK If you select this option the jn1p file is not saved on your local system and you will need to subsequently sign in to the ILOM web interface to start the
77. erties and Values for set Command Continued Valid Targets Properties Values Default SP clients domain lt string gt none ldapss1 cert n where n is 1 5 SP clients ntp server address lt ipaddress gt none 1 2 SP clients radius defaultrole administrator operatorlalu operator address clrlols none port lt ipaddress gt none none secret lt integer gt 1812 state lt string gt none none enable disabled disabled SP clients smtp address lt ipaddress gt IP address port lt integer gt 25 state enabled disabled enabled SP clients syslog 1 2 address lt ipaddress gt IP address SP config dump_uri tftp ftp sftp scp http 1https none load_uri tftp ftp sftp scp http 1https none passphrase lt string gt none SP diag snapshot none none SP network commitpending true none pendingipaddress lt ipaddress gt none none pendingdiscovery dhcp static dhcp pendingipgateway lt ipaddress gt none none pendingipnetmask lt IP dotted decimal gt 10 8 255 255 state enabled disabled enabled 146 ILOM 3 0 CLI Procedures Guide April 2009 TABLE 12 5 Targets Properties and Values for set Command Continued Valid Targets Properties Values Default SP serial external commitpending true none flowcontrol none none pendingspeed lt integer from list gt 9600 speed lt integer from list gt 9600 SP serial host commitpending true none pendingspeed lt integer fr
78. es For example gt set SP clients activedirectory opergroups 1 name CN spSuperOper OU Groups DC sales DC sun DC com Set name to CN spSuperOper OU Groups DC sales DC sun DC com 50 ILOM 3 0 CLI Procedures Guide April 2009 To view and modify information in the customgroups target gt show SP clients activedirectory customgroups 1 For example gt show SP clients activedirectory customgroups 1 SP clients activedirectory customgroups 1 Targets Properties name custom_group_1 roles aucro Then use the set command to modify properties For example gt set SP clients activedirectory customgroups 1 name CN spSuperCust OU Groups DC sales DC sun DC com Set name to CN spSuperCust OU Groups DC sales DC sun DC com gt set SP clients activedirectory customgroups 1 roles au Set roles to au To view and modify information in the userdomains target gt show SP clients activedirectory userdomains 1 For example gt show SP clients activedirectory userdomains 1 SP clients activedirectory userdomains 1 Targets Properties domain lt USERNAME gt sales example sun com Then use the set command to modify properties For example gt set SP clients activedirectory userdomains 1 domain lt USERNAME gt sales example sun com Set domain to lt username gt sales example sun com Chapter 5 Managing User Accounts
79. ettings on page 82 e Filter Event Log Output on page 82 e View and Clear the ILOM Event Log on page 84 e Configure Remote Syslog Receiver IP Addresses on page 86 e View Fault Status on page 87 e Collect SP Data to Diagnose System Problems on page 88 77 Related Topics For ILOM Chapter or Section Guide e Concepts System Monitoring and Alert Management Collect SP Data to Diagnose System Problems e Web e Monitoring System interface Sensors Indicators and ILOM Event Log Collect SP Data to Diagnose System Problems e IPMI and e Inventory and Component SNMP Management hosts Integrated Lights Out Manager ILOM 3 0 Concepts Guide Integrated Lights Out Manager ILOM 3 0 Web Interface Procedures Guide Integrated Lights Out Manager ILOM 3 0 SNMP and IPMI Procedures Guide The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual Monitoring System Sensors Indicators and ILOM Event Logs Topics Description Links View and configure LEDs and e View Sensor Readings on page 79 system indicators e Configure System Indicators on page 80 Set the clock and timezone e Configure Clock Settings on page 82 78 ILOM 3 0 CLI Procedures Guide April 2009 Topics Description Links Filter view and clear event logs View fa
80. evels 1 Log in to the ILOM CLI 2 At the command prompt type the following command gt set HOST diag trigger value Where value can be one of the following m none Diagnostics will not be triggered to run m user reset Diagnostics will be run upon a user invoked reset a power on reset Diagnostics will be run when power is applied m error reset Diagnostics will be run upon any error invoked reset a all resets Diagnostics will be run for any of the above reset types Vv Specify Level of Diagnostics There are separate ILOM CLI properties that enable you to specify the level of diagnostic testing to be executed depending on how the diagnostics were triggered to run This gives granular control of how much diagnostic testing is performed in different host reset situations Use the HOST diag level property to specify the level of diagnostic testing to be executed when diagnostics are enabled Follow these steps to specify the level of diagnostics to be executed ILOM 3 0 CLI Procedures Guide April 2009 1 Log in to the ILOM CLI 2 Perform the one of the following commands depending on how the host is reset m To specify the diagnostic level when the host is powered on type the following command gt set HOST diag power_on_level wvaluce m To specify the diagnostic level when the host is reset by the user type the following command gt set HOST diag user_reset
81. f the display option Specifying level 1 displays the level of the namespace where the object exists Values greater than 1 return information for the target s current level in the namespace and the lt specified value gt levels below If the argument is level all it applies to the current level in the namespace and everything below The o output option specifies the output and form of command output ILOM only supports o table which displays targets and properties in tabular form The alias show components is a shortcut for the following CLI command gt show o table level all SYS component state The show components alias produces the same output as the above command Thus it enables you to restrict the table output to a single property below each target Syntax show options display targets properties all level valuelall target propertyname Options d display 1 level o output ILOM 3 0 CLI Procedures Guide April 2009 Targets and Properties TABLE 12 6 Targets and Properties for show Command Valid Targets SYS SP SP alertmgmt rules rulename rulename 1 through 15 SP clients activedirectory SP clients activedirectory admingroups n where n is 1 5 SP clients activedirectory alternateservers n where n is 1 5 SP clients activedirectory alternateservers n cert where n is 1 5 Properties community username destination destination_port event
82. grated Lights Out Manager Information and procedures for accessing C120 E579 ILOM 3 0 SNMP and IPMI ILOM functions using SNMP or IPMI Procedures Guide management hosts ILOM 3 0 CLI Procedures Guide April 2009 In addition to the ILOM 3 0 Documentation Collection associated ILOM Supplement documents present ILOM features and tasks that are specific to the server platform you are using Use the ILOM 3 0 Documentation Collection in conjunction with the ILOM Supplement that comes with your server platform ILOM 3 0 Version Numbers ILOM 3 0 has implemented a new version numbering scheme to help you identify which version of ILOM you are running on your system The numbering scheme includes a five field string for example a b c d e where m a Represents the major version of ILOM m b Represents a minor version of ILOM m c Represents the update version of ILOM m d Represents a micro version of ILOM Micro versions are managed per platform or group of platforms See your platform Product Notes for details m e Represents a nano version of ILOM Nano versions are incremental iterations of a micro version For example ILOM 3 1 2 1 a would designate m ILOM 3 as the major version of ILOM a ILOM 3 1 as a minor version of ILOM 3 a ILOM 3 1 2 as the second update version of ILOM 3 1 a ILOM 3 1 2 1 as a micro version of ILOM 3 1 2 a ILOM 3 1 2 1 a as a nano version of ILOM 3 1 2 1 Product Identity Information Prod
83. gt se lt se lt se lt set t pendingipnetmask pnetmask gt t pendingipgateway pgateway gt t pendingipdiscovery pdiscovery gt commitpending true Type this command followed by the static IP address that you want to assign to the server SP or CMM Type this command followed by the static Netmask address that you want to assign to the server SP or CMM Type this command followed by the static Gateway address that you want to assign to the server SP or CMM Type this command to set a static IP address on the server SP or CMM Type this command to assign the network settings specified For example set pendingipaddress 129 144 82 26 set pendingipnetmask 255 255 255 0 set pendingipgateway 129 144 82 254 set pendingipdiscovery static set commitpending true If you connected to ILOM through a remote SSH connection the connection made to ILOM using the former IP address will timeout Use the newly assigned settings to connect to ILOM ILOM 3 0 CLI Procedures Guide April 2009 Vv View and Configure DNS Settings Before You Begin m To view DNS settings you need the Read Only o role enabled To configure DNS settings you need the Admin a role enabled Follow these steps to view and configure DNS settings 1 Log in to the ILOM CLI 2 At the command prompt type the following command to display settings for the external serial port gt cd SP clients
84. h the version set to SNMP v3 the SNMP user name must be defined in ILOM as an SNMP user If the user is not defined in ILOM as an SNMP user the receiver of the SNMP alert will be unable to decode the SNMP alert message Review the CLI commands for managing alert rule configurations See CLI Commands for Managing Alert Rule Configurations on page 93 V Create or Edit Alert Rules Before You Begin To create or edit alert rules you need the Admin a role enabled Follow these steps to configure an alert rule 1 Establish a local serial console connection or SSH connection to the server SP or CMM Type one of the following command paths to set the working directory m Fora rackmounted server cd SP alertmgmt m For a blade server module cd SP alertmgmt m Fora chassis CMM ed CMM alertmgmt Type the show command to view properties associated with an alert rule For example to view the properties associated with the first alert rule you would type one of the following m For a rackmounted server show SP alertmgmt rules 1 m Fora blade sever module show CH BLn SP alertmgmt rules 1 m Fora chassis CMM show CMM alertmgmt CMM rules 1 Type the set command to assign values to properties associated with an alert rule For example to set IPMI PET as the alert type for rule 1 you would type the following command path gt set SP alertmgmt rules 1 type ipmipet Note To enable an alert rule configurati
85. he show command to display the available power For example m For CLI on a rackmounted system gt show SP powermgmt available power For CLI on a CMM gt show CMM powermgmt available power V Monitor Hardware Configuration Maximum Power Consumption 1 Log in to the ILOM CLI 2 Type the show command to display the hardware configuration maximum power consumption For example gt show SP powermgmt hwconfig power V Monitor Permitted Power Consumption 1 Log in to the ILOM CLI 2 Type the show command to display the permitted power consumption For example m For CLI on a rackmounted system gt show SP powermgmt permitted_power m For CLI on a CMM gt show CMM powermgmt permitted power Chapter 9 Monitoring Power Consumption 101 Vv Configure Power Policy Before You Begin m To set power policy you need the Admin a role enabled m Refer to your platform ILOM documentation for information about power policy implementation on a specific platform Note The power policy described in this chapter might or might not be implemented on the platform that you are using See the platform specific ILOM Supplement or Product Notes for implementation details You can find the ILOM Supplement and Product Notes within the documentation set for your system Follow these steps to configure power policy 1 Log in to the ILOM CLI 2 Type the set command to set the power policy gt set SP powermgmt p
86. ial_number 08 23 2e c0 8c 12 cd bb 4e 7e 82 23 c4 0d 22 60 subject C US 0O Entrust PKI Demonstration Cerificates OU Entrust Web Connector OU No Liability as per http freecerts entrust valid_from Oct 25 22 18 26 2006 GMT valid_until Oct 25 22 18 26 2011 GMT version 3 0x02 V Remove an LDAP SSL Certificate Before You Begin m To configure LDAP SSL settings you need the User Management u role enabled a The Authentication Server Certificate can only be removed when strictcertmode is disabled Follow these steps to remove an LDAP SSL certificate 1 Log in to the ILOM CLI 2 Type the following gt ed SP clients ldapssl cert 3 To remove a certificate type the following gt set clear_action true 4 Confirm whether you want to remove the certificate by typing y or n in response to the on screen query The existing certificate file that had been uploaded will be removed 60 ILOM 3 0 CLI Procedures Guide April 2009 Vv View and Configure LDAP SSL Settings Before You Begin m To configure LDAP SSL settings you need the User Management u role enabled Follow these steps to view and configure LDAP SSL settings 1 Log in to the ILOM CLI 2 Use the show and set commands to view and modify properties To view and modify information in the admingroups target gt show SP clients ldapssl admingroups n Where n can be 1 to 5 For example gt show SP clients ldapssl1 admingr
87. ices https ssl custom_cert SP services https ssl1 custom_key SP services ipmi SP services kvms SP services servicetag servicestate cert_status issued_by issuer serial_number subject valid_from valid_until version clear_action issuer load_uri serial_number subject valid_from valid_until version key_present load_uri clear_action servicestate mousemode servicestate passphrase product_urn state Appendix A CLI Command Reference 153 TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP services snmp SP services snmp communities private SP services snmp communities public SP services snmp users wusername SP services ssh SP services ssh keys dsa SP services ssh keys rsa SP services sso SP sessions sessionid SP users username engineid port sets vl v2c v3 servicestate permissions permissions password role state fingerprint length privatekey publickey fingerprint length privatekey publickey state username starttime type mode role password 154 ILOM 3 0 CLI Procedures Guide April 2009 TABLE 12 6 Targets and Properties for show Command Continued Valid Targets Properties SP users username ssh keys 1 fingerprint algorithm load_uri clear_action embedded_comment bit_length SP users username service service_password service_password_expires SP users username escalati
88. ices snmp communities private comm2 permission ro rw delete SP services snmp communities comm1 Chapter 1 CLI Overview 11 TABLE 1 12 Host System Commands Description Start the host system or chassis power Stop the host system or chassis power graceful shutdown Stop the host system or chassis power forced shutdown Reset the host system or chassis Start a session to connect to the host console Stop the session connected to the host console graceful shutdown Stop the session connected to the host console forced shutdown Command start SYSorstart CH stop SYS or stop CH stop f force SYS or stop f force CH reset SYSorreset CH start SP console stop SP console stop force SP console TABLE 1 13 Filtering Output Options for Commands Description Display active ILOM sessions that were started on July 17th Display users that have admin roles Display users that only have user and console roles Filtered Command show SP sessions level all starttime Jul 17 show SP users level all role a show SP users level all role uc Display all SNMP trap alerts Display all disabled services Display NTP clients that use the NTP address server IP 1 2 3 4 Display all FRUs with serial number that starts with 0D01B Display all memory modules manufactured by INFINEON 12 ILOM 3 0 CLI Procedures Guide April 2009 show SP alertmgmt leve
89. ificate SP clients activedirectory getcertfile restore a certificate SP clients activedirectory certfilestatus SP clients activedirectory ipaddress SP clients activedirectory alerna tiveservers getcertfile load a certificate SP clients activedirectory alernativeservers getcertfile remove a certificate SP clients activedirectory getcertfile alernativeservers restore a certificate SP clients activedirectory alernativeservers certfilestatus SP clients activedirectory alernativeservers ipaddress SP clients radius ipaddres SP clients ldap ipaddress SP cli commands SP diag state SP clients syslog 1 address SP clients syslog 2 address Use load command with this target SP clients activedirectory cert Use set command with SP client activedirectory cert clear_action true No longer a feature SP clients activedirectory cert certstatus SP clients activedirectory address Use load command with SP clients activedirectory alernativeservers cert as target U se set command with SP client activedirectory alernat iveservers cert clear_action true No longer a feature SP clients activedirectory alernativeservers cert certstatus SP clients activedirectory alernativeservers address SP clients radius address SP clients ldap address Use help command with a target name HOST diag state ILOM 3 0 CLI Procedures Guide April 2009
90. igured with the a u c r o roles The default ILOM configuration does not have any configured user accounts so this account represents a change to the default ILOM configuration m The SNMP sets property is set to enabled The default setting is disabled 2 To modify the configuration settings that are in clear text change the values or add new configuration settings For example m To change the roles assigned to the user john change the text as follows lt entry gt lt property gt SP users john role lt property gt lt value gt auo lt value gt lt entry gt lt entry gt m To add a new user account and assign that account the a u c r o roles add the following text directly below the entry for user john lt entry gt lt property gt SP users bill role lt property gt lt value gt aucro lt value gt lt entry gt lt entry gt m To change a password delete the encrypted true setting and the encrypted password string and enter the password in plain text For example to change the password for the user john change the text as follows lt entry gt lt property gt SP users john password lt property gt lt value gt newpassword lt value gt lt entry gt 3 After you have made the changes to the backup XML file save the file so that you can use it for a Restore operation on the same system or a different system Chapter 10 Backing Up and Restoring ILOM Configuration
91. ion Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual 118 Performing the Initial Setup Tasks for Storage Redirection The following table presents an ordered list of tasks that you must perform to set up the Storage Redirection CLI feature in ILOM Step Task Description 1 Ensure that all requirements are met e Before You Begin on page 118 prior to performing the initial setup procedures in this section 2 Install or open the Storage Redirection Start Storage Redirection Service on Service and specify how to you want to page 119 access this service in the future 3 Download and install the Storage e Download and Install the Storage Redirection Client Redirection Client on page 122 Note The Storage Redirection CLI in ILOM 3 0 is supported on some SPARC processor based servers This feature is not supported on chassis monitoring modules CMMs running ILOM 2 0 Before You Begin Prior to setting up your system for storage redirection the following prerequisites must be met A connection is established from your local system to a remote host server SP ILOM web interface m Server module SP must be running ILOM 3 0 or later Note The Storage Redirection CLI is not supported in ILOM 2 0 It is also not supported on CMMs running ILOM 2 0 or 3 0 a The Java runtime environment 1 5 or later is installed on yo
92. its dans ce document De m me ces produits technologies et ce document sont prot g s par des lois sur le copyright des brevets d autres lois sur la propri t intellectuelle et des trait s internationaux Les droits de propri t intellectuelle de Sun Microsystems Inc et Fujitsu Limited concernant ces produits ces technologies et ce document comprennent sans que cette liste soit exhaustive un ou plusieurs des brevets d pos s aux Etats Unis et indiqu s a l adresse http www sun com patents de m me qu un ou plusieurs brevets ou applications brevet es suppl mentaires aux Etats Unis et dans d autres pays Ce document le produit et les technologies aff rents sont exclusivement distribu s avec des licences qui en restreignent l utilisation la copie la distribution et la d compilation Aucune partie de ce produit de ces technologies ou de ce document ne peut tre reproduite sous quelque forme que ce soit par quelque moyen que ce soit sans l autorisation crite pr alable de Fujitsu Limited et de Sun Microsystems Inc et de leurs ventuels bailleurs de licence Ce document bien qu il vous ait t fourni ne vous conf re aucun droit et aucune licence expresses ou tacites concernant le produit ou la technologie auxquels il se rapporte Par ailleurs il ne contient ni ne repr sente aucun engagement de quelque type que ce soit de la part de Fujitsu Limited ou de Sun Microsystems Inc ou des soci t s affili es Ce do
93. l all type snmptrap show SP services level all servicestate disabled show SP clients ntp level all address 1 2 3 4 show SYS fru_serial_number 0D01B level all show SYS level all type DIMM fru_manufacturer INFINEON TABLE 1 13 Filtering Output Options for Commands Continued Description Filtered Command Display all power supplies show SYS level all type Power Supply whose alarm state is major alarm_status major Display all components that are show SYS type Hard Disk DIMM level DIMMs or hard disks all Display all voltage sensors show SYS type Voltage whose upper_nonrecov_threshold 2 60 upper_nonrecov_threshold value is 2 89 or 60 Volts Executing Commands To execute most commands specify the location of the target and then enter the command You can perform these actions individually or you can combine them on the same command line V Execute Commands Individually 1 Navigate to the namespace using the cd command For example cd SP services http 2 Enter the command target and value For example set port 80 or set propl x set prop2 y Chapter 1 CLI Overview 13 V Execute Combined Commands Using the syntax lt command gt lt target gt value enter the command on a single command line For example set SP services http port 80 or set SP services http propl x prop2 y 14 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 2
94. led a certificate must be loaded Follow these steps to check an Active Directory certificate status 1 Log in to the ILOM CLI 2 To check the status of the certificate type the following gt show SP clients activedirectory cert For example gt show SP clients activedirectory cert Targets Properties certstatus certificate present clear_action none issuer DC com DC sun DC east DC sales CN CAforActiveDirectory load_uri none serial_number 08 3 2e c0 8c 12 cd bb 4e 7e 82 23 c4 0d 22 60 subj ect DC com DC sun DC east DC sales CN CAforActiveDirectory valid_from Oct 25 22 18 26 2006 GMT valid_until Oct 25 22 18 26 2011 GMT version 3 0x02 Commands cd load reset set show ILOM 3 0 CLI Procedures Guide April 2009 V Remove an Active Directory Certificate Before You Begin To configure Active Directory settings you need the User Management u role enabled The Authentication Server Certificate can be removed only when strictcertmode is disabled Follow these steps to remove an Active Directory certificate 1 2 Log in to the ILOM CLI Type the following gt cd SP clients activedirectory cert To remove a certificate type one of the following commands m gt set clear_action true m gt reset lt target gt For example gt reset SP clients activedirectory cert Confirm whether you want to remove the certificate by typing y or n in
95. manufacturer Location of blade SYS SLOTID type within the chassis class value Location of chassis CH rack_location within a rack ILOM 3 0 CLI Procedures Guide April 2009 Text Conventions Typeface Meaning Examples AaBbCc123 The names of commands files Edit your login file and directories on screen Use 1s a to list all files computer output You have mail AaBbCc123 What you type when contrasted su with on screen computer output password AaBbCc123 Book titles new words or terms Read Chapter 6 in the Concept s Guide words to be emphasized These are called class options Replace command line variables You must be superuser to do this with real names or values To delete a file type rm filename The settings on your browser might differ from these settings Fujitsu Welcomes Your Comments If you have any comments or requests regarding this document or if you find any unclear statements in the document please state your points specifically on the form at the following URL For Users in U S A Canada and Mexico https download computers us fujitsu com For Users in Other Countries http www fujitsu com global contact computing sparce_index htm L Preface xxii xxiii ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 1 CLI Overview Topics Description Learn about ILOM CLI features and functionality Related Topics Links e About th
96. ment that stores the time V Filter Event Log Output Before You Begin m To filter event log output you need the Read Only o role enabled Follow these steps to filter event log output 1 Log in to the ILOM CLI ILOM 3 0 CLI Procedures Guide April 2009 2 At the command prompt type the following gt show SP logs event list Class value Type value Severity value Chapter 7 Monitoring System Components 83 V View and Clear the ILOM Event Log Before You Begin m To view or clear the event log you need the Admin a role enabled Follow these steps to view and clear the ILOM event log 1 Establish a local serial console connection or SSH connection to the server SP or CMM 2 Type one of the following commands to set the working directory m For arackmounted server SP cd SP logs event m Fora blade server SP in chassis c CH BLn SP logs event m Fora CMM cd CMM logs event 3 Type the following command to display the event log list gt show list The contents of the event log appear For example ID Date Time Class Type Severity 578 Wed Jun 11 06 39 47 2008 Audit Log minor userl Open Session object session type value shell success 577 Wed Jun 11 06 34 53 2008 Audit Log minor userl Set object clients activedirectory userdomains 3 domain value lt USERNAME gt joe customer example sun com success 576 Wed Jun 11 06 25 06 2008 Audit Log minor userl Open Sessio
97. mmand Options Option Name Description h The h command option displays the command line Help information v The v command option displays the Java command version information ILOM 3 0 CLI Procedures Guide April 2009 TABLE 12 11 Storage Redirection Sub Commands Sub Command Name Description list start stop test service stop service The list sub command provides a list of the currently active storage redirections on one or all remote SPs Syntax usage example storageredir list p storageredir_port remote_SP The start sub command invokes the specified redirection between the local host and the remote host server If the authentication password is not provided the system will prompt for it Syntax usage example storageredir start r redir_type t redir_type_path u remote_usernam s remote_user_password p storageredir_port remote_SP Note You must specify a valid Admin or Console role account in ILOM to start the redirection of storage device on a remote server The stop sub command stops the specified redirection between the local host and the remote host server If the authentication password is not provided the system will prompt for it Syntax usage example storageredir stop r redir_type u remote_username s remote_user_password p storageredir_port remote_SP Note You must specify a valid Admin or Console role account in ILOM to stop the redirection of
98. more information see Storage Redirection Command Line Modes Syntax and Usage on page 159 A list appears identifying the active storage redirections for each server SP specified V Stop Redirection of Storage Device a To stop the redirection of a storage device you need the Admin a or Console c role enabled a The following procedure assumes that you have already launched the Storage Redirection CLI from a command window or terminal For instructions for launching the Storage Redirection CLI see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Commands shown in the following procedure should be entered as one continuous string Follow this step to stop the redirection of a storage device on a remote server At the lt storageredir gt prompt type the stop command followed by the commands and properties for the storage device type remote SP user name and password storage redirection port and the IP address of the remote host server SP ILOM 3 0 CLI Procedures Guide April 2009 For example lt storageredir gt stop r redir_type u remote_username s remote_user_password p non_defult_storageredir_port remote_SP Alternatively you could enter this same command stop using the non interactive shell mode syntax For more information see Storage Redirection Command Line Modes Syntax and Usage on page 159 Note You must specify a valid Admin or Console
99. n object session type value www success 575 Wed Jun 11 06 07 29 2008 Audit Log minor userl Close Session object session type value www success 574 Wed Jun 11 06 02 01 2008 Audit Log minor root Set object clients activedirectory dnslocatorqueries 2 service value _ldap _tcp pc _msdcs lt DOMAIN gt lt PORT 636 gt success 573 Wed Jun 11 06 01 50 2008 Fault Fault critical Fault detected at time Wed Jun 11 06 01 41 2008 The suspect component CH PS3 EXTERNAL AC_INPUT has fault powersupply no_ac with probability 100 Please consult the Sun Blade 8000 Fault Diagnosis Document Document ID 85878 at http sunsolve sun com to determine the correct course of action 84 ILOM 3 0 CLI Procedures Guide April 2009 4 In the event log perform any of the following tasks Scroll down the list to view entries Press any key except q The following table provides descriptions about each column appearing in the log Column Label Description Event ID The number of the event in sequence from number 1 Class Type e Audit Log Commands that result in a configuration change Description includes user command command parameters and success fail e IPMI Log Any event that is placed in the IPMI SEL is also put in the management log e Chassis State For changes to the inventory and general system state e Chassis Action Category for shutdown events for server modul
100. ng command gt set SP services sso state disabled enabled Add a User Account Before You Begin m To add a user you need the User Management u role enabled Follow these steps to add a user account 1 Log in to the ILOM CLI Chapter5 Managing User Accounts 39 2 To add a local user account type the following command gt create SP users username password password For example gt create SP users user5 Creating user Enter new password Enter new password again Created SP users user5 Note When adding a user account it is unnecessary to provide a role or password property The role will default to Read Only o and the CLI will prompt you to provide and confirm a password V Change a User Account Password Before You Begin m To change a user account password you need the Admin a role enabled To modify your own password you need the Read Only 0 role enabled Follow these steps to change a user account password 1 Log in to the ILOM CLI 2 To change a user account password type the following command gt set SP users user password For example gt set SP users user5 password Enter new password Enter new password again 40 ILOM 3 0 CLI Procedures Guide April 2009 Vv Assign Roles to a User Account Before You Begin m To assign roles to a user account you need the User Management u role enabled
101. ning 3 Assign the port used to communicate with the LDAP server the default port is 389 Type gt set SP clients ldap port ldapport 4 Enter the Distinguished Name of the branch of your LDAP tree that contains users and groups Type for example gt set SP clients ldap searchbase ou people ou sales dc sun dc com This is the location in your LDAP tree that you want to search for user authentication 5 Set the state of the LDAP service to enabled Type gt set SP clients ldap state enabled 6 To verify that LDAP authentication works log in to ILOM using an LDAP user name and password Note ILOM searches local users before LDAP users If an LDAP user name exists as a local user ILOM uses the local account for authentication 58 Configuring LDAP SSL Topics Description Links Configure LDAP SSL settings e Enable LDAP SSL strictcertmode on page 59 e Check LDAP SSL certstatus on page 59 e Remove an LDAP SSL Certificate on page 60 e View and Configure LDAP SSL Settings on page 61 e Troubleshoot LDAP SSL Authentication and Authorization on page 66 ILOM 3 0 CLI Procedures Guide April 2009 Y Enable LDAP SSL strictcertmode Before You Begin To configure LDAP SSL settings you need the User Management u role enabled By default strictcertmode is disabled When this variable is disabled the channel is secure but limited validation of the cer
102. o ILOM as a User Note Use this procedure to log in to ILOM to verify that the user account or directory service is functioning properly To log in to ILOM as a user follow these steps 1 Using a Secure Shell SSH session log in to ILOM by specifying your user name and IP address of the server SP or CMM Chapter 3 Logging In to and Out of ILOM 19 For example ssh username ipaddress Or ssh 1 username ipaddress The ILOM login password prompt appears 2 Type the user name and password for the user account lt hostname gt username Password password The ILOM CLI prompt appears gt 20 Recovering a Lost Password You can use the preconfigured default user account to recover a lost password or to re create the root user account For more information about the root and default user accounts refer to root and default User Accounts in the Integrated Lights Out Manager ILOM 3 0 Concepts Guide V Recover a Lost Password Before You Begin a You must be physically present at the server to perfom this procedure To recover a lost password follow these steps 1 Log in to an ILOM serial console using the default user account For example SUNSP 0000000000 login default Press and release the physical presence button Press return when this is completed 2 Prove physical presence at your server Refer to your platform documentation for instructions on how to prove physical presence 3
103. ocedures Guide April 2009 Targets Properties and Values The following target properties and values are valid for ILOM network settings TABLE 4 1 ILOM Target Properties and Values for Network Settings Target Property Value Default SP network ipaddress Read only values are ipdiscovery updated by the ipgateway system ipnetmask macaddress MAC address of ILOM commitpending truelnone none pendingipaddress lt ipaddress none gt none pendingipdiscovery dhcplstatic dhcp pendingipgateway lt ipaddress none gt none pendingipnetmask lt ipdotteddecimal gt 255 255 255 0 dhcp_server_ip Read only value is updated when the SP receives a DHCP address state enabled disabled none V Edit Existing IP Addresses in ILOM Before You Begin m To edit existing IP addresses you need the Admin a role enabled Follow these steps to edit existing IP addresses that previously have been assigned to a server SP or CMM 1 Log in to the ILOM CLI 2 Type one of the following commands to set the SP working directory a For a rackmount standalone server cd SP network For a chassis server blade server module cd SP network m Fora chassis CMM cd CMM network 3 Type the show command to view the IP address assigned Chapter 4 Configuring ILOM Communication Settings 27 28 4 Type the following commands to change the existing settings Command Description and Example se t pendingipaddress lt ipaddress
104. olicy Performance Elastic 3 Type the show command to display the power policy gt show SP powermgmt policy 102 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 10 Backing Up and Configuration Restoring LOM Topics Description Links Back up the ILOM configuration Back Up the ILOM Configuration on page 104 Restore the ILOM configuration e Restore the ILOM Configuration on page 105 Edit the backup XML file e Edit the Backup XML File on page 107 Reset ILOM configuration to e Reset the ILOM Configuration to Defaults on default settings page 110 Related Topics For ILOM Chapter or Section Guide e Concepts e Configuration Integrated Lights Out Manager ILOM 3 0 Management and Firmware Updates Concepts Guide e Web e Backing Up and Restoring Integrated Lights Out Manager ILOM 3 0 interface ILOM Configuration Web Interface Procedures Guide e IPMI and e Managing the ILOM Integrated Lights Out Manager ILOM 3 0 SNMP Configuration SNMP and IPMI Procedures Guide hosts The ILOM 3 0 Documentation Collection is available at http www fujitsu com global se downloads manual services computing server sparcenterpri 103 104 Backing Up the ILOM Configuration Topics Description Links Back up your ILOM configuration Back Up the ILOM Configuration on page 104 Vv Back Up the ILOM Configuration Before You Begin m Log in to th
105. om list gt 9600 speed lt integer from list gt 9600 check_physical_presence true false none hostname lt string gt none reset_to_defaults all factory none none system_contact lt string gt none system_description lt string gt none system_identifier lt string gt none system_location lt string gt none Note The show and set commands with the SP serial host target are not supported on SPARC servers SPARC servers implement a virtual console and not a physical console Examples gt set SP users susan role administrator gt set SP clients ldap state enabled binddn proxyuser bindpw ez24get show Command Use the show command to display information about targets and properties Using the display option determines the type of information shown If you specify display targets then all targets in the namespace below the current target are shown If you specify display properties all property names and values for the target are shown With this option you can specify certain property names and only those values are shown If you specify display all all targets in the namespace below the current target are shown and the properties of the specified target are shown If you do not specify a display option the show command acts as if display all were specified Appendix A CLI Command Reference 147 148 The level option controls the depth of the show command and it applies to all modes o
106. ommitpending true Note The show and set commands with the SP serial host target are not supported on SPARC servers SPARC servers implement a virtual console and not a physical console Example To change the speed baud rate for the host serial port from 9600 to 57600 type the following m For x64 based systems gt set SP serial host pendingspeed 57600 commitpending true m For SPARC based systems gt set SP serial external pendingspeed 57600 commitpending true Note On x64 based systems the speed of the host serial port must match the speed setting for serial port 0 COM1 or dev ttys0 on the host operating system for ILOM to communicate properly with the host ILOM 3 0 CLI Procedures Guide April 2009 Targets Properties and Values The following targets properties and values are valid for ILOM serial port settings TABLE 4 3 Valid Targets Properties and Values for ILOM Serial Port Settings Target Property Value Default SP serial external commitpending true none none flowcontrol software software pendingspeed lt integer gt 9600 speed Read only value configured via the pendingspeed property SP serial host commitpending true none none pendingspeed lt integer gt none speed Read only value configured via the pendingspeed property Note The show and set commands with the SP serial host target are not supported on SPARC servers SPARC servers implement a virtual c
107. omponent_name type For example gt show SYS MB type Properties type Motherboard Commands show The properties that display inventory information are listed below The properties that you are able to view depend on the target type you use m fru_part_number fru_manufacturer fru_serial_number fru_name fru_description ILOM 3 0 CLI Procedures Guide April 2009 fru_version chassis_serial_number chassis_part_number product_name product_serial_number product_part_number customer_frudata Prepare to Remove a Component Before You Begin To modify a component you need the Reset and Host Control r role enabled Follow these steps to prepare a component for removal 1 2 Log in to the ILOM CLI At the ILOM command prompt type gt set target prepare_to_remove_action true For example gt set CH RFMO prepare_to_remove_action true Set prepare_to_remove_action to true After you prepare the component for removal you can verify that it is ready to be physically removed At the ILOM command prompt type gt show farget prepare_to_remove_status For example gt show CH RFMO prepare_to_remove_status Properties prepare_to_remove_status Ready NotReady Commands cd set show start stop The Ready NotReady statement in the example shows whether the device is ready to be removed Chapter 6 Managing System Componen
108. on you must specify a value for the alert type alert level and alert destination If you are defining an SNMP alert type you can optionally define a value for authenticating the receipt of SNMP Trap alerts Chapter 8 Managing System Alerts 91 92 V Disable an Alert Rule Before You Begin m To disable an alert rule you need the Admin a role enabled Follow these steps to disable an alert rule 1 Establish a local serial console connection or SSH connection to the server SP or CMM 2 Type one of the following command paths to set the working directory a For a rackmounted server SP type cd SP alertmgmt rules n m Fora blade server SP type cd CH BLi SP alertmgmt rules n m Fora chassis CMM type cd CMM alertmgmt CMM rules n Where n equals a specific alert rule number which can be 1 to 15 BLn refers to the server module blade slot number 3 To disable the alert rule type the following command gt set level disable V Generate Test Alerts Before You Begin m To generate test alerts you need the Admin a role enabled m You can test each enabled alert rule configuration by sending a test alert Follow these steps to generate test alerts 1 Establish a local serial console connection or SSH connection to the server SP or CMM 2 Type one of the following command paths to set the working directory a For a rackmounted server SP type cd SP alertmgmt rules m Fora blade server SP type ed CH BLn SP
109. on Client was installed and launch the Storage Redirection CLI by issuing the java jar StorageRedir jar command For instructions see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Non interactive shell mode syntax java jar StorageRedir jar lt command gt lt command options gt lt sub commands gt lt sub command options gt To launch the Storage Redirection CLI and execute the commands directly from a non interactive shell you must enter the Storage Redirection command java jar StorageRedir jar at the shell prompt followed by the commands you want to execute For instructions see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 159 160 Supported Storage Redirection Commands and Options The following tables describe the supported commands and options you can issue in the Storage Redirection CLI m TABLE 12 9 Storage Redirection Command m TABLE 12 10 Storage Redirection Command Options m TABLE 12 11 Storage Redirection Sub Commands m TABLE 12 12 Storage Redirection Sub Command Options TABLE 12 9 Storage Redirection Command Command Name Description java jar StorageRedir jar storageredir The java jar command is used to launch the Storage Redirection client StorageRedir jar froma command window or terminal The storagedir command performs all storage redirection operations TABLE 12 10 Storage Redirection Co
110. on escalation_password escalation_password_expires Note The show and set commands with the SP serial host target are not supported on SPARC servers SPARC servers implement a virtual console and not a physical console Examples gt show SP users user1 gt show SP clients level2 gt show components start Command Use the start command to turn on the target or to initiate a connection to the host console Using the script option eliminates the prompt for a yes or no confirmation and the command acts as if yes were specified Syntax start options target Options h help script Appendix A CLI Command Reference 155 156 Targets TABLE 12 7 Targets for start Command Valid Targets Description SYS or CH Starts powers on the system or chassis SP console Starts an interactive session to the console stream Examples gt start SP console gt start SYS stop Command Use the stop command to shut down the target or to terminate another user s connection to the host console You will be prompted to confirm a stop command Eliminate this prompt by using the script option The f force option specifies that the action will be performed immediately Syntax stop options script target Options force h help Targets TABLE 12 8 Targets for stop Command Valid Targets Description SYS or CH Perform an orderly shutdown followed by a power off of the s
111. onsole and not a physical console Enable HTTP or HTTPS Web Access ILOM supports both HTTP and HTTPS connections ILOM enables you to automatically redirect HTTP access to HTTPS ILOM also enables you to set the HTTP and HTTPS ports Before You Begin To modify HTTP or HTTPS access you need the Admin a role enabled Follow these steps to modify web access 1 Log in to the ILOM CLI 2 At the command prompt type gt set SP services http propertyname vwaluec The properties are located in SP services http and SP services https Chapter 4 Configuring ILOM Communication Settings 31 32 Targets Properties and Values TABLE 4 4 shows the valid targets properties and values for HTTP and HTTPS connections TABLE 4 4 Valid Targets Properties and Values for HTTP and HTTPS Connections Target Property Value Default SP services http secureredirect enabled enabled disabled servicestate enabled disabled disabled port lt portnum gt 80 SP services https servicestate enabled enabled disabled port lt portnum gt 443 TABLE 4 5 lists the possible settings for HTTP HTTPS and automatic redirect TABLE 4 5 Possible Settings for HTTP HTTPS and Automatic Redirect Desired State Target Property Value Enable HTTP only SP services http secureredirect disabled SP services http servicestate enabled SP services https servicestate disabled Enable HTTP and HTTPS SP services http secureredirect disa
112. operty actual_power can also be accessed by typing the following command gt show SP powermgmt actual_power actual_power is the same as SYS VPS actual_power is the value returned by the sensor Chapter 9 Monitoring Power Consumption 99 V Monitor Actual Power Consumption 1 Log in to the ILOM CLI 2 Type the show command to display the actual power consumption For example gt show SP powermgmt actual_power V Monitor Individual Power Supply Consumption 1 Log in to the ILOM CLI 2 Type the show command to display the individual power supply consumption For example a For CLI on rackmounted system gt show SYS platform_path_to_powersupply INPUT_POWER OUTPUT_POWER a For CLI on CMM gt show CH platform_path_to_powersupply INPUT_POWER OUTPUT_POWER The following table lists and describes the properties of the CLI sensors Both sensors INPUT_POWER and OUTPUT_POWER have the same properties Property Value type Power Unit class Threshold Sensor value lt total consumed power in watts for example 1400 gt upper_nonrecov_threshold N A upper_critical_threshold N A upper_noncritical_threshold N A lower_noncritical_threshold N A lower_critical_threshold N A lower_nonrecov_threshold N A Note Power sensors are not supported on server modules blades 100 ILOM 3 0 CLI Procedures Guide April 2009 V Monitor Available Power 1 Log in to the ILOM CLI 2 Type t
113. or no The system loads the specified firmware file then automatically reboots to complete the firmware update Note The BIOS prompt only appears on x64 systems currently running a 3 x firmware release If you answer yes y to the prompt the system postpones the BIOS update until the next time the system reboots If you answer no n to the prompt the system automatically updates the BIOS if necessary when updating the firmware b Proceed to Step 7 7 Reconnect to the ILOM server SP or CMM using an SSH connection and using the same user name and password that you provided in Step 1 of this procedure Note If you did not preserve the ILOM configuration before the firmware update you will need to perform the initial ILOM setup procedures to reconnect to ILOM 8 Ensure that the proper firmware version was installed At the CLI prompt type gt version Recover From a Network Failure During Firmware Update If you were performing the firmware update process and a network failure occurs ILOM will automatically time out and reboot the system Follow these steps to recover from a network failure during firmware update 1 Address and fix the network problem 2 Reconnect to the ILOM SP 3 Restart the firmware update process Chapter 11 Updating ILOM Firmware 115 116 Resetting ILOM SP Topics Description Links Reset ILOM service processor e Reset ILOM SP on page 116 Reset ILOM SP
114. oring System Sensors Indicators and ILOM Event Logs 78 v View Sensor Readings 79 Configure System Indicators 80 Configure Clock Settings 82 Filter Event Log Output 82 View and Clear the ILOM Event Log 84 Configure Remote Syslog Receiver IP Addresses 86 View Fault Status 87 aaa Collect SP Data to Diagnose System Problems 88 8 Managing System Alerts 89 Managing Alert Rule Configurations 90 Before You Begin 90 v Create or Edit Alert Rules 91 v Disable an Alert Rule 92 v Generate Test Alerts 92 CLI Commands for Managing Alert Rule Configurations 93 Configuring SMTP Client for Email Notification Alerts 95 v Enable SMTP Client 95 xv ILOM 3 0 CLI Procedures Guide April 2009 9 10 11 Monitoring Power Consumption 97 Monitoring the Power Consumption Interfaces 98 Before You Begin 98 Monitor Total System Power Consumption 99 Monitor Actual Power Consumption 100 Monitor Individual Power Supply Consumption 100 Monitor Available Power 101 Monitor Hardware Configuration Maximum Power Consumption 101 v v v v v Monitor Permitted Power Consumption 101 v Configure Power Policy 102 Backing Up and Restoring ILOM Configuration 103 Backing Up the ILOM Configuration 104 v Back Up the ILOM Configuration 104 Restoring the ILOM Configuration 105 v Restore the ILOM Configuration 105 Edit the Backup XML file 107 v Edit the Backup XML File 107 Resetting the ILOM Configuration 110 v Reset the ILOM Configuration to
115. oups 1 SP clients ldapssl admingroups 1 Targets Properties name CN SpSuperAdmin O0U Groups DC sales DC east DC sun DC com Then use the set command to modify properties For example gt set SP clients ldapssl admingroups 1 name CN spSuperAdmin OU Groups DC sales DC sun DC com Set name to CN spSuperAdmin OU Groups DC sales DC sun DC com a To view and modify information in the opergroups target Chapter 5 Managing User Accounts 61 gt show SP clients ldapssl opergroups 1 For example gt show SP clients ldapssl opergroups 1 SP clients ldapssl opergroups 1 Targets Properties name CN SpSuperOper OU Groups DC sales DC east DC sun DC com Then use the set command to modify properties For example gt set SP clients ldapssl opergroups 1 name CN spSuperOper OU Groups DC sales DC sun DC com Set name to CN spSuperOper OU Groups DC sales DC sun DC com 62 ILOM 3 0 CLI Procedures Guide April 2009 To view and modify information in the customgroups target gt show SP clients ldapssl customgroups 1 For example SP clients ldapssl customgroups 1 Targets Properties name lt fully qualified distinguished name only gt roles none Commands cd set show Then use the set command to modify properties For example gt set SP clients ldapssl customgroups 1 name CN spSuperCust OU Gro
116. passphrase lt property gt lt value encrypted true gt 89541176be7c lt value gt lt entry gt lt entry gt lt property gt SP network pendingipaddress lt property gt lt value gt 1 2 3 4 lt value gt lt entry gt lt entry gt lt property gt SP network commitpending lt property gt lt value gt true lt value gt lt entry gt lt entry gt lt property gt SP services snmp sets lt property gt lt value gt enabled lt value gt lt entry gt lt entry gt lt property gt SP users john role lt property gt lt value gt aucro lt value gt lt entry gt lt entry gt lt entry gt lt property gt SP users john password lt property gt lt value encrypted true gt c21f5a3df 51db69fdf lt value gt lt entry gt lt SP_config gt 1 Consider the following in the example XML file a The configuration settings with exception of the password and the passphrase are in clear text m The check_physical_presence property which is the first configuration entry in the file is set to false The default setting is true so this setting represents a change to the default ILOM configuration 108 ILOM 3 0 CLI Procedures Guide April 2009 m The configuration settings for pendingipaddress and commitpending are examples of settings that should be deleted before you use the backup XML file for a Restore operation because these settings are unique to each server m The user account john is conf
117. password 40 roles 41 setting up 19 viewing individual session 44 viewing individual user account 42 viewing list of user sessions 43 V version information for ILOM viewing 113 cO FUJITSU
118. password Using the script option eliminates the prompt for a yes or no confirmation and the command acts as if yes were specified Note Use this command to update your ILOM firmware and BIOS TABLE 12 3 Targets Properties and Values for load Command Valid Targets Properties Values Default SP users username password lt string gt none role administrator operator lalulclrlols Syntax load source URI Options h help script Appendix A CLI Command Reference 139 140 Example gt load source tftp ip_address newmainimage Note A firmware upgrade will cause the server and ILOM to be reset It is recommended that a graceful shutdown of the server be done prior to the upgrade procedure An upgrade takes about five minutes to complete ILOM will enter a special mode to load new firmware No other tasks can be performed in ILOM until the firmware upgrade is complete and ILOM is reset gt load source tftp ip_address newmainimage O Are you sure you want to load the specified file y n y File upload is complete Firmware image verification is complete Do you want to preserve the configuration y n n Updating firmware in flash RAM Firmware update is complete ILOM will not be restarted with the new firmware reset Command Use the reset command to reset the state of the target You will be prompted to confirm a reset operation Eliminate this prompt by using the s
119. pecified system or chassis Use the force option to skip the orderly shutdown and force an immediate power off SP console Terminate another user s connection to the host console Examples gt stop SP console gt stop force SYS ILOM 3 0 CLI Procedures Guide April 2009 version Command Use the version command to display ILOM version information Syntax version Options h help Example gt version version SP firmware version 3 0 0 SP firmware build number 4415 SP firmware date Mon Mar 28 10 39 46 EST 2008 SP filesystem version 0 1 9 Appendix A CLI Command Reference 157 158 ILOM3 0 CLI Procedures Guide April 2009 APPENDIX B Storage Redirection Command Line Modes Syntax and Usage The Storage Redirection CLI supports both an interactive and non interactive mode for entering commands The interactive mode is useful when you need to enter a series of Storage Redirection commands The non interactive mode is useful when you need to run a batch procedure or script The syntax required for entering the Storage Redirection commands in either of these modes is as follows a Interactive shell mode syntax lt storageredir gt lt command gt lt command options gt lt sub commands gt lt sub command options gt To launch the Storage Redirection CLI and execute the commands directly from an interactive shell you must first navigate to the location where the Storage Redirecti
120. re during firmware update Update on page 115 Before You Begin Prior to performing the procedures in this section the following requirements must be met m Identify the version of ILOM that is currently running on your system Download the firmware image for your server or CMM from the platform s product web site m Copy the firmware image to a server using a supported protocol TFTP FTP HTTP HTTPS For a CLI update copy the image to a local server For a web interface update copy the image to the system on which the web browser is running m If required by your platform shut down your host operating system before updating the firmware on your server SP a Obtain an ILOM user name and password that has Admin a role account privileges You must have Admin a privileges to update the firmware on the system m The firmware update process takes about six minutes to complete During this time do not perform other ILOM tasks When the firmware update is complete the system will reboot 112 ILOM 3 0 CLI Procedures Guide April 2009 V Identify ILOM Firmware Version Before You Begin m To identify the firmware version you need the Read Only 0 role enabled Follow these steps to identify the ILOM firmware version 1 Log in to the ILOM CLI 2 At the command prompt type version For example the following information appears SP firmware 3 0 0 1 SP firmware build number SP firmware date F
121. re Power Policy on page 102 This chapter describes how to use available power consumption interfaces to monitor power consumption Terms that pertain to power consumption monitoring are defined in the section Power Monitoring Terminology in the Integrated Lights Out Manager ILOM 3 0 Concepts Guide Note The power consumption interfaces described in this chapter might or might not be implemented on the platform that you are using See the platform specific ILOM Supplement or Product Notes for implementation details You can find the ILOM Supplement and Product Notes within the documentation set for your system Before You Begin To monitor the power consumption of the system or of an individual power supply you need the Read Only o role enabled ILOM 3 0 CLI Procedures Guide April 2009 V Monitor Total System Power Consumption 1 Log in to the ILOM CLI 2 Type the show command to display the total power consumption For example gt show SYS VPS gt show SYS VPS property The following table lists and describes the properties of the Total Power Consumption sensor for CLI Property Value type Threshold values are platform specific Refer to your platform documentation for details class value upper_nonrecov_threshold upper_critical_threshold upper_noncritical_threshold lower_noncritical_threshold lower_critical_threshold lower_nonrecov_threshold The total power consumption pr
122. ri Nov 28 14 03 21 EDT 2008 SP filesystem version 0 1 22 V Download New Firmware on SPARC Based Systems 1 Navigate to http www fujitsu com global services computing server sparce nterprise downloads firmware 2 Select the latest firmware update for your server 3 Confirm the terms and conditions for use of the firmware and click Accept 4 Click Download to download the zip file package 5 Put the zip package on a TFTP server that is accessible from your network 6 Unzip the package 7 Go to Update the Firmware Image on page 113 V Update the Firmware Image Before You Begin m To update the ILOM firmware you need the Admin a role enabled m If required by your platform shut down your host operating system before updating the firmware on your server SP Chapter 11 Updating ILOM Firmware 113 114 To gracefully shut down your host operating system use the Remote Power Controls gt Graceful Shutdown and Power Off option in the ILOM web interface or issue the stop SYS command from the ILOM CLI Follow these steps to update the firmware image 1 2 Log in to the ILOM CLI Verify that you have network connectivity to update the firmware For example a To verify network connectivity on a server SP type gt show SP network m To verify network connectivity on a CMM type gt show CMM network Type the following command to load the ILOM firmware image gt load source lt
123. ring total system power 99 terminology 98 power consumption management monitoring power show command 101 power policy configuring 102 power state commands 130 power on self test diagnostic trigger for 132 prerequisites for using CLI 15 Product Identity Interfaces xx properties ILOM 3 0 versus ILOM 2 x 6 R RADIUS commands 69 configuration prerequisites 67 configuring 67 configuring settings 68 server default port 69 recover lost password 20 redirecting storage media prerequisites for 123 tasks required 123 remote host managing 117 power state commands 130 redirecting storage devices 123 starting redirection of storage device 127 stopping redirection of storage device 128 storage redirection 118 changing default network port 129 Storage Redirection CLI 123 remote power control CLI commands 130 remote syslog receiver 86 requirements for using CLI 15 resetting ILOM 116 Restore operation CLI command 106 passphrase requirements 106 sensitive data requirements 104 sessions momentarily suspended 106 time required 106 user roles required 105 restoring ILOM configuration 103 rootuser account 19 RSA key viewing 34 Index 165 S Secure Shell SSH enabling or disabling 33 establishing remote connection 33 generating new key 35 settings for 33 using to log in 19 viewing current key 34 sensor readings 79 serial port settings pending and active properties 30 targets propertie
124. role account u remote_username s remote_user_password to stop the redirection of a storage device on a remote server If you do not specify the password command s remote_user_password the system will automatically prompt you for it V Change the Default Storage Redirection Network Port 2121 1 In the SP ILOM web interface select Remote Control gt Redirection The Launch Redirection page appears 2 Click Launch Service The Opening Jnlpgenerator cli dialog appears e Opening jnipgenerator cli x The file jnlpgenerator cli is of type application x java jnlp file and Web Browser does not know how to handle this file type This file is located at https What should Web Browser do with this file O Open it with the default application O Open it with usr jdk instances jdk1 5 0 bin javaws Choose Sm to dsk O Always perform this action when handling files of this type 3 In the Opening Jnlpgenerator cli dialog select Save it to disk then click OK The Save As dialog appears 4 In the Save As dialog specify the location where you want to save the jnlpgenerator cli file Chapter 12 Managing Remote Hosts 129 130 5 Open the jnlpgenerator cli file using a text editor and modify the port number referenced in this file For example lt application desc gt lt argument gt cli lt argument gt lt argument gt 2121 lt argument gt lt application desc gt In the lt applica
125. s and values for 31 viewing and configuring 30 service processor resetting 116 Service Snapshot utility 88 show faulty command 87 sign in authentication required for Storage Redirection CLI 119 Single Sign On 39 SMTP client configuring 95 SNMP Trap alert 91 SP reset 116 SPARC diagnostics levels of 132 mode for 131 trigger for POST 132 verbosity of output 133 ssh command Solaris connecting to a SP 33 SSH connection 33 enabling and disabling 33 key encryption using the CLI 34 new key 35 restarting 36 SSH key 45 adding 45 deleting 46 Storage Redirection CLI default communication port 119 displaying command line help 126 initial setup 118 installing client 122 launching 124 modes for 159 sign in authentication 119 166 ILOM3 0 CLI Procedures Guide April 2009 start service 119 starting device redirection 127 starting service 119 supported commands and options 160 supported ILOM versions 118 verify service status 125 verifying service status 125 viewing active redirections 128 strictcertmode 47 system alerts commands for managing 93 configuration prerequisites 90 configuring 91 configuring SMTP client 95 deleting 92 generating 92 system components viewing and managing 74 system identifier assigning 25 system indicators viewing 80 system problems diagnosing 88 T target tree 5 troubleshooting 88 U user accounts adding 39 configuring 39 deleting 41
126. s ssh state enabled disabled Chapter 4 Configuring ILOM Communication Settings 33 34 V View the Current Key Note All of the properties below SP services ssh keys rsaldsa are read only To view the key you need the Read Only o role enabled Follow one of these steps to view the current key To view the RSA key type gt show SP services ssh keys rsa SP services ssh keys rsa Targets Properties fingerprint ca c0 05 ff b7 75 15 a0 30 df 1b a1 76 bd fe e5 length 1024 publickey AAAAB3NzaClyc2 EAAAABIWAAATEAthvlqgXbPIxN40EvkukKupdFPr8GDa0OskKGg BESV1lnny4nxX8yd8JC hrw3 qDHmXIZ8JAFwoLQgjtZCbEsgpn9nNIMb6 nSfu6Y1t TtUZXSGFBZ4 8ROmU0SqqfR3i3bgDUROSiphlpgV6Yu02Zd1h3 549wQ RWk3vxqHQ Ff zhv9c Commands cd show To view the DSA key type gt show SP services ssh keys dsa SP services ssh keys dsa Targets Properties fingerprint 6a 90 07 37 89 e6 73 23 45 f d6 8e e7 57 2a 60 length 1024 publickey AAAAB3NzaC1kc3MAAACBATnrYecNH86imBbUqE 3FoUfm fei2ZZtQzqrMx5zBm bHFIaFdRQKeoQ7gqjc9jQbO7aj Lxwk2vZzkg3ntnmqHz hwHvdho2KaolBtAFGc fLIdzGvxi4i3phVb6anmTlbgqI 2ATLAa7TIvO8dEGbyATYRIA p 5VTac TQ700 T AAAAFQCITUavkex7wt EhC0CH3 s250N013CwAAATBN HU0p6ZN7 i 46 ZuQOKhD7Mkj gdHy 8MTBkupVf XgqfREIZw9IyrBZCNsoD8XEeleyP pu05k5dJvkzqSqrTVoAXyY qewyZMFE7stutugw XEmyjq XqBWaiOAQskdiMVnHa3MSg8 PKJyWP8eIMxD3riu PTzkV632uUBXzwSwfAQAAATAtAS8 30dDJUprnxLgHTowc 8ksGBj wJDgP pG
127. s to complete Note While the Restore operation is executing sessions on the ILOM SP will be momentarily suspended The sessions will resume normal operation once the Restore operation is complete 106 ILOM 3 0 CLI Procedures Guide April 2009 Edit the Backup XML file Topics Description Links Edit the backup XML file e Edit the Backup XML File on page 107 Edit the Backup XML File Before You Begin m Before you use a backed up XML file on another system you should edit the file to remove any information that is unique to a particular system for example the IP address The following is an example of a backed up XML file The contents of the file are abbreviated for the example used in this procedure lt SP_config version 3 0 gt lt entry gt lt property gt SP check_physical_presence lt property gt lt value gt false lt value gt lt entry gt lt entry gt lt property gt SP hostname lt property gt lt value gt labysystem12 lt value gt lt entry gt lt entry gt lt property gt SP system_identifier lt property gt lt value gt SUN BLADE X8400 SERVER MODULE ILOM v3 0 0 0 r32722 lt value gt lt entry gt lt entry gt lt property gt SP clock datetime lt property gt lt value gt Mon May 12 15 31 09 2008 lt value gt lt entry gt Chapter 10 Backing Up and Restoring ILOM Configuration 107 lt entry gt lt property gt SP config
128. serial console connection or SSH connection to the server SP or CMM 2 Type one of the following commands to set the working directory m For a rackmounted server SP cd SP clients syslog m For a blade server SP in chassis c CH BLn SP clients syslog Fora CMM cd CMM clients syslog 3 Type the show command to display the syslog properties The properties appear For example accessing the syslog properties for the first time on an SP would appear as follows SP clients syslog 1 Targets Properties address 0 0 0 0 Commands cd set show 4 Use the set command to identify a destination IP address for IP 1 and if applicable IP 2 For example to set an IP destination to IP address 111 222 33 4 you would type gt set destination_ip1 111 222 33 4 5 Press Enter for the setting to take effect The results of setting the IP address appear For example if you set the destination IP address to 111 222 33 4 the following would appear Set destination_ipl to 111 222 33 4 ILOM 3 0 CLI Procedures Guide April 2009 Y View Fault Status Before You Begin To view fault status you need the Read Only o role enabled Follow these steps to view fault status 1 2 Log in to the ILOM CLI Depending on the server platform specify one of the following paths gt show SP faultmgmt or gt show CH faultmgmt In addition the alias show faulty is a shortcut for the follo
129. stem alerts e Enable SMTP Client on page 95 using email Related Topics For ILOM Chapter or Section Guide Concepts e System Monitoring Integrated Lights Out Manager ILOM 3 0 and Alert Concepts Guide Management e Web e Managing System Integrated Lights Out Manager ILOM 3 0 Web interface Alerts Interface Procedures Guide e IPMI and Inventory and Integrated Lights Out Manager ILOM 3 0 SNMP hosts Component SNMP and IPMI Procedures Guide Management The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual Managing Alert Rule Configurations Topics Description Links Review the prerequisites e Before You Begin on page 90 Configure alert configurations e Create or Edit Alert Rules on page 91 e Disable an Alert Rule on page 92 Generate test alerts to confirm e Generate Test Alerts on page 92 alert configuration is working Notify recipient of system alerts e Enable SMTP Client on page 95 via email Before You Begin a If you are defining an Email Notification alert the outgoing email server that will be used to send the email notification must be configured in ILOM If an outgoing email server is not configured ILOM will not be able to successfully generate Email Notification alerts 90 ILOM 3 0 CLI Procedures Guide April 2009 If you are defining an SNMP Trap alert wit
130. storage device on a remote server The test service sub command verifies whether the storage redirection service connection is active on the local host Syntax usage example storageredir test service p storageredir_port The stop service sub command stops the storage redirection service connection to the remote host server Syntax usage example storageredir stop service p storageredir_port Appendix B_ Storage Redirection Command Line Modes Syntax and Usage 161 TABLE 12 12 Storage Redirection Sub Command Options Sub Command Option Name Description r redir_type The r redir_type identifies the type of storage media being redirected Valid device values for redir_type include e CD ROM device Syntax r cdrom e CD ROM image Syntax r cdrom_img e Floppy device Syntax r floppy e Floppy image Syntax r floppy_img t redir_type_path The t redir_type_path identifies the full path to where the storage redirection media is stored or mounted Example t home username JRC_Test_Images CDROM iso u remote_username The u remote_username identifies the user name required to log in to the ILOM SP Example u john_smith Note Any valid user account in ILOM can install or launch the Storage Redirection service or client on their local system However a valid Admin or Console role account in ILOM is required to start or stop the redirection of a storage device on a remote server s remote_user_password The
131. supports the following options but note that not every command supports every option The help option can be used with any command TABLE 1 3 CLI Options Option Long Form Short Form Description default Causes the command to perform its default functions only destination Specifies the destination for data display d Shows the data the user wants to display force Sf Specifies that the action will be performed immediately help h Displays Help information level 1 Executes the command for the current target and all targets contained through the level specified output 0 Specifies the content and form of command output I LOM only supports o table which displays targets and properties in tabular form script Skips warnings or prompts normally associated with the command source Indicates the location of a source image 4 ILOM 3 0 CLI Procedures Guide April 2009 CLI Command Targets Every object in your namespace is a target FIGURE 1 1 SP Example of the ILOM CLI Target Tree ISP l l palicy network diag users serial sessions powermgmt config alertmgmt logs console fautmgmt fimware l snapshet ms event lt usemame gt shell host external clients ssh 1 15 bt keys servies 1 5
132. t DC sales CN CAforActiveDirectory valid_from Oct 25 22 18 26 2006 GMT valid_until Oct 25 22 18 26 2011 GMT version 3 0x02 Type the following to copy a certificate for an alternate server gt cd SP clients activedirectory alternateservers 1 gt set load_uri lt tftp ftp scp gt lt username password gt lt ipAddress HostName gt lt filepPath gt lt fileName gt The following is an example of a certificate copied using TFTP gt set load_uri tftp 10 8 172 152 sales cert cert Set load_uri to tftp 10 8 172 152 sales cert cert Chapter5 Managing User Accounts 53 54 Note The TFTP transfer method does not require a user name and password The following is an example of a certificate copied using TFTP gt set load_uri ftp sales XpasswordxX 129 148 185 50 8275 put cert cert Set load_uri to ftp sales XpasswordX 129 148 185 50 8275_put cert cert The following is an example of a certificate copied using SCP gt set load_uri scp sales Xpasswordx 129 148 185 50 home dc150698 8275_put cert cert Type the following to remove a certificate for an alternate server gt cd SP clients activedirectory alternateservers 1 gt set clear_action true For example gt set clear_action true Are you sure you want to clear SP clients activedirectory cert y n Y Set clear_action to true To view
133. t cert cert Set load_uri to ftp sales XpasswordX 129 148 185 50 8275_put cert cert The following is an example of a certificate copied using SCP gt set load_uri scp sales Xpasswordx 129 148 185 50 home dc150698 8275_put cert cert Type the following to remove a certificate for an alternate server gt set clear_action true For example gt set clear_action true Are you sure you want to clear SP clients ldapssl cert y n y Set clear_action to true YV Troubleshoot LDAP SSL Authentication and Authorization Before You Begin a To view authentication and authorization events you need the Read Only o role enabled Follow these steps to troubleshoot LDAP SSL authentication and authorization 1 Log in to the ILOM CLI 2 Type the following commands gt cd SP clients ldapssl SP clients ldapssl gt set logdetail trace Set logdetail to trace 66 ILOM 3 0 CLI Procedures Guide April 2009 3 Perform another authorization attempt by logging out then logging back in to the ILOM CLI and typing the following gt show SP logs event list Class ldapssl Type Log Severity Trace For example gt show SP logs event list Class ldapssl Type Log ID Date Time Class Type Severity 3155 Thu Nov 13 06 21 00 2008 LdapSsl Log critical LdapSSL authentication status auth ERROR 3154 Thu Nov 13 06 21 00 2008 lLdapSsl Log major
134. t redir_type_path u remote_username s remote_user_password p storageredir_port remote_SP stop r redir_type u remote_username s remote_user_password p storageredir_port remote_SP stop service p storageredir_port test service p storageredir_port help version ILOM 3 0 CLI Procedures Guide April 2009 quit Alternatively you could enter this same command help using the non interactive shell mode syntax For more information see Storage Redirection Command Line Modes Syntax and Usage on page 159 Vv Start Redirection of Storage Device Before You Begin To start the redirection of a storage device you need the Admin a or Console c roles enabled The following procedure assumes that you have already launched the Storage Redirection CLI from a command window or terminal For instructions for launching the Storage Redirection CLI see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Commands shown in the following procedure should be entered as one continuous string Follow this step to start the redirection of a storage device from the Storage Redirection CLI At the lt storageredir gt prompt type the start command followed by the commands and properties for the redirection device type path to device remote SP user_name and password and the IP address of the remote SP For example lt storageredir gt start r redir_type t redir_type_path
135. tecture d velopp e par Sun Microsystems Inc SPARC64 est une marques d pos e de SPARC International Inc utilis e sous le permis par Fujitsu Microelectronics Inc et Fujitsu Limited L interface d utilisation graphique OPEN LOOK et Sun a t d velopp e par Sun Microsystems Inc pour ses utilisateurs et licenci s Sun reconnait les efforts de pionniers de Xerox pour la recherche et le d veloppement du concept des interfaces d utilisation visuelle ou graphique pour l industrie de l informatique Sun d tient une license non exclusive de Xerox sur l interface d utilisation graphique Xerox cette licence couvrant galement les licenci s de Sun qui mettent en place l interface d utilisation graphique OPEN LOOK et qui en outre se conforment aux licences crites de Sun Droits du gouvernement am ricain logiciel commercial Les utilisateurs du gouvernement am ricain sont soumis aux contrats de licence standard de Sun Microsystems Inc et de Fujitsu Limited ainsi qu aux clauses applicables stipul es dans le FAR et ses suppl ments Avis de non responsabilit les seules garanties octroy es par Fujitsu Limited Sun Microsystems Inc ou toute soci t affili e de l une ou l autre entit en rapport avec ce document ou tout produit ou toute technologie d crit e dans les pr sentes correspondent aux garanties express ment stipul es dans le contrat de licence r gissant le produit ou la technologie fourni e SAUF MENTION CONTR
136. tegrated Lights Out Manager ILOM 3 0 CLI Procedures Guide describes how to perform the required ILOM setup procedures as well as the typical configuration procedures you might perform while accessing ILOM features and functions This CLI Procedures Guide is written for system administrators who are familiar with networking concepts and basic system management protocols Note The description in this document is limited to the servers which support ILOM In the description all server platforms refers to all Fujitsu servers which support ILOM Depending on the server in use some of the ILOM functions are not supported Please confirm the ILOM Supplement manual and the Product Notes of each server in advance FOR SAFE OPERATION This manual contains important information regarding the use and handling of this product Read this manual thoroughly Use the product according to the instructions and information available in this manual Keep this manual handy for further reference Fujitsu makes every effort to prevent users and bystanders from being injured or from suffering damage to their property Use the product according to this manual xviii xix Related Documentation To fully understand the information that is presented in this guide use this document in conjunction with the documents listed in the following table The latest versions of all the SPARC Enterprise Series manuals are available at the following Web si
137. tem Chapter5 Managing User Accounts 45 46 filename is the name assigned to the SSH key file For example gt set load_uri scp adminuser userpswd 1 2 3 4 keys sshkey_1 pub Set load_uri to scp adminuser userpswd 1 2 3 4 keys sshkey_1 pub V Delete an SSH Key Before You Begin m To delete an SSH key you need the Admin a role enabled Follow these steps to delete an SSH key 1 Log in to the ILOM CLI 2 To change to the directory location of a user s SSH key type gt cd SP users user1 ssh keys 1 3 To delete a key from the user s account type gt set clear_action true The following confirmation prompt appears Are you sure you want to clear SP users userl ssh keys 1 y n 4 Type y The SSH key is deleted and the following message appears to confirm the deletion Set clear_action to true ILOM 3 0 CLI Procedures Guide April 2009 Configuring Active Directory Topics Description Links Configure Active Directory e Enable Active Directory strictcertmode on settings page 47 e Check Active Directory certstatus on page 48 e Remove an Active Directory Certificate on page 49 e View and Configure Active Directory Settings on page 49 e Troubleshoot Active Directory Authentication and Authorization on page 55 Enable Active Directory strictcertmode Before You Begin To configure Active Directory settings you n
138. tes Global Site http www fujitsu com sparcenterprise manual Japanese Site http primeserver fujitsu com sparcenterprise manual First read the ILOM 3 0 Concepts Guide to learn about ILOM s features and functionality To set up a new system supported by ILOM refer to the ILOM 3 0 Getting Started Guide where you will find the procedures for connecting to the network logging in to ILOM for the first time and configuring a user account or directory service Then decide which ILOM interface you want to use to perform other ILOM tasks You can now refer to the appropriate ILOM 3 0 Procedures Guide for your selected interface The following table lists the ILOM 3 0 Documentation Collection TABLE P 1 ILOM 3 0 Documentation Collection Title Content Manual Code Integrated Lights Out Manager Information that describes ILOM features C120 E573 ILOM 3 0 Concepts Guide and functionality Integrated Lights Out Manager Information and procedures for network C120 E576 ILOM 3 0 Getting Started Guide connection logging in to ILOM for the first time and configuring a user account or a directory service Integrated Lights Out Manager Information and procedures for accessing C120 E574 ILOM 3 0 Web Interface ILOM functions using the ILOM web Procedures Guide interface Integrated Lights Out Manager Information and procedures for accessing C120 E575 ILOM 3 0 CLI Procedures Guide LOM functions using the ILOM CLI Inte
139. the Storage Redirection service is active test service For example Chapter 12 Managing Remote Hosts 125 126 lt storageredir gt test service Alternatively you could enter this same command test service using the non interactive shell mode syntax For more information see Storage Redirection Command Line Modes Syntax and Usage on page 159 A message appears stating whether the service connection passed or failed Note If the service connection fails you will need to start the Storage Redirection Service from the ILOM web interface or from a command window if the service was installed by issuing the javaws rconsole jnlp command For details see Start Storage Redirection Service on page 119 Display Storage Redirection CLI Help Information Before You Begin a The following procedure assumes that you have already launched the Storage Redirection CLI from a command window or terminal For instructions for launching the Storage Redirection CLI see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Follow this step to display the Storage Redirection CLI Help information At the lt storageredir gt prompt type the following command to display the command line help help For example lt storageredir gt help The following information about the command syntax and usage appears Usage list p storageredir_port remote_SP start r redir_type
140. tication for passwords stored in these two variations of the crypt format For example userPassword CRYPT ajCa2He4PJhNo or userPassword CRYPT 1SpzKng1 dulBfONWBjh9It3FbUGE46 2 Add object classes posixAccount and shadowAccount and populate the required property values for this schema RFC 2307 Required Property Description uid User name for logging in to I LOM uidNumber Any unique number gidNumber Any unique number userPassword Password homeDirectory Any value this property is ignored by ILOM loginShell Any value this property is ignored by ILOM 3 Configure the LDAP server to enable LDAP server access to ILOM user accounts Either enable your LDAP server to accept anonymous binds or create a proxy user on your LDAP server that has read only access to all user accounts that will authenticate through ILOM See your LDAP server documentation for more details Y Configure ILOM for LDAP Before You Begin To configure LDAP settings you need the User Management u role enabled Follow these steps to configure ILOM for LDAP 1 Enter the proxy user name and password Type gt set SP clients ldap binddn cn proxyuser ou people ou sales dc sun dc com bindpw password Enter the IP address of the LDAP server Type Chapter 5 Managing User Accounts 57 gt set SP clients ldap address ldapipaddress DNS name Note If using a DNS name DNS must be configured and functio
141. tificate is performed If strictcertmode is enabled then the server s certificate must have already been uploaded to the server so that the certificate signatures can be validated when the server certificate is presented Follow these steps to enable LDAP SSL strictcertmode 1 2 Log in to the ILOM CLI Type the following path to access the LDAP SSL certificate settings gt ed SP clients ldapssl cert To load a certificate type the following gt set load_uri tftp IP address file path filename Note You can use TFTP FTP or SCP to load a certificate 4 To enable strictcertmode type the following gt set strictcertmode enabled Y Check LDAP SSL certstatus Before You Begin To view LDAP SSL certstatus you need the Read Only o role enabled certstatus is an operational variable that should reflect the current certificate state of the certificate if strictcertmode is disabled However for the strictcertmode to be enabled a certificate must be loaded Follow these steps to check LDAP SSL certificate status 1 Log in to the ILOM CLI Chapter 5 Managing User Accounts 59 2 To check the status of the certificate type the following gt show SP clients ldapssl cert For example gt show SP clients ldapssl cert Targets Properties certstatus certificate present clear_action none issuer C US O Entrust PKI Demonstration Cerificates load_uri none ser
142. tion desc gt you can change the second argument to any port number that you want to use 6 Save the changes you made and close the jnlpgenerator cli file 7 Use the javaws to start the Storage Redirection service from your local client For example javaws jnlpgenerator cli Note If you do not use the default port number provided you must always identify the non default port number in the Storage Redirection command line interface when starting stopping or viewing storage redirections Issuing Power State Commands From a command window or terminal you can issue the following commands to remotely control the power state of a host server m start Use the start command to turn on full power to the remote host server Example gt start SYS m stop Use the stop command to shut down the OS gracefully prior to powering off the remote host server Example gt stop SYS m stop f Use the stop f command to immediately turn off the power to the remote host server Example gt stop f SYS m Reset Use the reset command to immediately reboot the remote host server Example gt reset SYS ILOM 3 0 CLI Procedures Guide April 2009 For information about connecting to a host server or issuing commands from the ILOM CLI see Configuring ILOM Communication Settings on page 23 Diagnosing SPARC Systems Hardware Issues Task Link Ensure that the requirements Before You Begin on page 13
143. to Service on page 76 e Enable and Disable Components on page 76 Related Topics For ILOM Chapter or Section Guide e Concepts e About Fault Management Integrated Lights Out Manager ILOM 3 0 Concepts Guide e Web Managing System Integrated Lights Out Manager ILOM 3 0 interface Components Web Interface Procedures Guide e IPMI and e Inventory and Component Integrated Lights Out Manager ILOM 3 0 SNMP Management SNMP and IPMI Procedures Guide hosts The ILOM 3 0 Documentation Collection is available at http www fujitsu com global services computing server sparcenterpri se downloads manual Note Syntax examples in this chapter use the target starting with SP which could be interchanged with the target starting with CMM depending on your server platform Subtargets are common across all server platforms using ILOM 73 74 Viewing Component Information and Managing System Components Topics Description Links Manage system components e View Component Information on page 74 e Prepare to Remove a Component on page 75 e Return a Component to Service on page 76 e Enable and Disable Components on page 76 View Component Information Before You Begin m To view information about a system component you need the Read Only o role enabled Follow these steps to view component information 1 Log in to the ILOM CLI 2 At the prompt type gt show c
144. to the location where the jnlpgenerator c1i file is installed then issue the javaws rconsole jnlp command to start the service For example gt ed lt jnlp_file_location gt javaws rconsole jnip a If you chose to run the service directly from the web interface you selected Open with default application perform the following step a In the Warning Security dialog click Run to start the Storage Redirection service Note If the Storage Redirection service fails to start an error message appears informing you of an error condition Otherwise if an error message did not appear the service is started and is waiting for user input Chapter 12 Managing Remote Hosts 121 122 V Download and Install the Storage Redirection Client Follow these steps to download and install the Storage Redirection client on your local system Note The Storage Redirection client is a one time client installation 1 In the SP ILOM web interface select Remote Control gt Redirection The Launch Redirection page appears 2 Click Download Client The Opening StorageRedir jar dialog appears a Opening StorageRedir jar x The file StorageRedir jar is of type application java and Web Browser does not know how to handle this file type This file is located at https What should Web Browser do with this file O Open it with Save it to disk O Always perform this action when handling files
145. ts you must enable the ILOM client to act as an SMTP client to send the email alert messages m Prior to enabling the ILOM client as an SMTP client determine the IP address and port number of the outgoing SMTP email server that will process the email notification Follow these steps to enable the SMTP client 1 Establish a local serial console connection or SSH connection to the server SP or CMM 2 Type one of the following command paths to set the working directory a For a rackmounted server SP type cd SP clients smtp m Fora blade server SP type cd CH BLn SP clients smtp m Fora chassis CMM type cd CMM clients smtp 3 Type the show command to display the SMTP properties For example accessing the SMTP properties for the first time on an SP would appear as follows gt show SP clients smtp Targets Properties address 0 0 0 0 Chapter 8 Managing System Alerts 95 port 25 state enabled Commands cd set show 4 Use the set command to specify an IP address for the SMTP client or to change the port or state property value For example gt set address 222 333 44 5 5 Press Enter for the change to take effect For example if you typed set address 222 333 44 5 the following result would appear Set address 222 333 44 5 96 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 9 Monitoring Power Consumption Topics Description Links Monitor power
146. ts 75 V Return a Component to Service Before You Begin a To modify a component you need the Reset and Host Control r role enabled Follow these steps to return a component to service Note If you have already prepared a component for removal and you wish to undo the action you can do so remotely 1 Log in to the ILOM CLI 2 At the ILOM command prompt type gt set target return_to_service_action true For example gt set CH RFMO return_to_service_action true Set return_to_service_action to true V Enable and Disable Components Before You Begin m To enable or disable a component you need the Reset and Host Control r role enabled Follow these steps to enable and disable components 1 Log in to the ILOM CLI 2 At the ILOM command prompt type gt set lt target gt component_state enabled disabled For example gt set SYS MB CMP0 P0 CO component_state enabled Set component_state to enabled 76 ILOM 3 0 CLI Procedures Guide April 2009 CHAPTER 7 Monitoring System Components Topics Description View and configure LEDs and system indicators Set the clock and timezone Filter view and clear event logs View fault status Collect data for use by service engineers to diagnose system problems Links e View Sensor Readings on page 79 e Configure System Indicators on page 80 e Configure Clock S
147. u remote_username s xremote_user_password p non_default_storageredir_port remote_SP_IP Alternatively you could enter this same command start using the non interactive shell mode syntax For more information see Storage Redirection Command Line Modes Syntax and Usage on page 159 Note You must specify a valid Admin or Console role account u remote_username s xemote_user_password to start the redirection of a storage device on a remote server If you do not specify the password command s remote_user_password the system will automatically prompt you for it Chapter 12 Managing Remote Hosts 127 128 V View Active Storage Redirections Before You Begin a The following procedure assumes that you have already launched the Storage Redirection CLI from a command window or terminal For instructions for launching the Storage Redirection CLI see Launch Storage Redirection CLI Using a Command Window or Terminal on page 124 Follow this step to view the active storage redirections on one or more remote host server SPs At the lt storageredir gt prompt type the 1ist command followed by the sub commands and properties for any non default storage redirection port s and the IP address es of the remote host server SP For example lt storageredir gt list p non_default _storageredir_port remote_SP Alternatively you could enter this same command list using the non interactive shell mode syntax For
148. uct identity information enables a system to register itself and use certain automated services based on the service contract associated with its identity You can use product identity information to uniquely identify a system You also need to supply the product identity information to service engineers when you request service for the system Product identity consists of the following information a product_name Name under which a product is sold a product_part_number Namespace assigned by manufacturing within which the product serial number is unique A product part number never maps to more than one product For example 602 3098 01 Preface xx xxi m product_serial_number Unique identity assigned to each instance of a product by manufacturing For example 0615AM0654A a product_manufacturer Manufacturer of the product For example FUJITSU TABLE P 2 describes the common product identity information used by ILOM TABLE P 2 Common Product Identity Information Required Information Target Minimal Properties Basic product SYS product_name information on server product_part_number rackmounted and product_serial_number blade product_manufacturer Basic product CH product_name information on product_part_number chassis monitoring product_serial_number module CMM product_manufacturer Basic chassis SYS MIDPLANE product_name information on blade product_part_number product_serial_number product_
149. ult status Collect SP Data e Filter Event Log Output on page 82 e View and Clear the ILOM Event Log on page 84 e Configure Remote Syslog Receiver IP Addresses on page 86 e View Fault Status on page 87 e Collect SP Data to Diagnose System Problems on page 88 View Sensor Readings Before You Begin m To view sensor readings you need the Read Only o role enabled Follow these steps to view sensor readings 1 Log in to the ILOM CLI 2 Type the following commands to navigate to the sensor target and then to view the sensor properties gt CQ target gt show For example on some server platforms you can specify the following path to view a temperature reading of a server s ambient air intake gt cd SYS T_AMB gt show The properties describing the sensor target appear For example Chapter 7 Monitoring System Components 79 type Temperatur class Threshold Sensor value 27 000 degree C upper_nonrecov_threshold 45 00 degree C upper_critical_threshold 40 00 degree C upper_noncritical_threshold 35 00 degree C lower_noncritical_threshold 10 00 degree C lower_critical_threshold 4 00 degree C lower_nonrecov_threshold 0 00 degree C alarm_status cleared For specific details about the type of threshold sensor targets you can access as well as the paths to access them consult the user documentation provided with the server platform 3
150. ups DC sales DC sun DC com Set name to CN spSuperCust OU Groups DC sales DC sun DC com gt set SP clients ldapssl customgroups 1 roles au Set roles to au Chapter 5 Managing User Accounts 63 To view and modify information in the userdomains target gt show SP clients ldapssl1 userdomains 1 For example gt show SP clients ldapssl userdomains 1 SP clients ldapssl userdomains 1 Targets Properties domain uid lt USERNAME gt ou people dc sun dc com Commands cd set show Then use the set command to modify properties For example gt set SP clients ldapssl userdomains1 domain uid lt USERNAME gt ou people dc sun dc sun Note In the example above lt USERNAME gt will be replaced with the user s login name during authentication Names can take the form of Fully Qualified Distinguished Name FQDN To view and modify information in the alternateservers target gt show SP clients ldapssl alternateservers 1 For example gt show SP clients ldapssl alternateservers 1 SP clients activedirectory alternateservers 1 Targets cert Properties address 10 8 168 99 port 0 64 ILOM 3 0 CLI Procedures Guide April 2009 Note In the example above address can either be the IP address or DNS name If using DNS DNS must be enabled For more information on enabling DNS see View and Configure DNS Settings on p
151. ur local system To download the latest Java runtime environment see http java com ILOM 3 0 CLI Procedures Guide April 2009 Note If you do not have JAVA_HOM you might need to enter the full path E environment configured on your desktop m Any user with a valid user account Redirection Service or Client on his in ILOM can start or install the Storage or her local system However after the initial setup for the Storage Redirection CLI is complete you will be required to enter a valid Admin a or Console c role account to start or stop the redirection of a storage device CD DVD or ISO image on a remote server m The default network communication port provided for Storage Redirection CLI is 2121 This default socket port enabl es the Storage Redirection CLI to communicate over the network with a remote host server SP If you need to change the default network port you must edit the Jnlpgenerator cli file to manually override the default port this port see View and Configure number 2121 For instructions for changing Serial Port Settings on page 30 Start Storage Redirection Service Before You Begin a A single session of the Storage Redirection Service must be started on your local system prior to launching the Storage Redirection CLI Follow these steps to start the Storage you want to start this service in the fu command window or terminal Redirection Service and to specify wheth
152. wing ILOM CLI command string gt show o table level all SP faultmgmt The alias produces the same output as the above command Thus it enables you to view all active faults in the system in a concise tabular form For example it produces output similar to the folllowing gt show faulty Target Property Value CAS eee eee a SP faultmgmt 0 fru SYS MB SP faultmgmt 0 timestamp Jan 16 12 53 00 SP faultmgmt 0 sunw msg id NXGE 8000 0U faults 0 SP faultmgmt 0 uuid e19 07a5 580e 4ea0 ed6a 663aa61 faults 0 5445 SP faultmgmt 0 timestamp Jan 16 12 53 00 faults 0 For more information about the ILOM fault management features offered on your system consult the user documentation provided with the server platform Chapter 7 Monitoring System Components 87 Vv Collect SP Data to Diagnose System Problems Before You Begi n m To collect SP data using the Service Snapshot utility you need the Admin a role enabled Caution The purpose of the ILOM Service Snapshot utility is to collect data for use by service engineers to diagnose problems Customers should not run this utility unless requested to do so by service engineers Follow these steps to run the Service Snapshot utility 1 Log in to the ILOM CLI 2 Type the following commands gt set SP diag snapshot dataset data gt set SP diag snapshot dump_uri URI Where data and URI are one of the following
Download Pdf Manuals
Related Search
Related Contents
StarTech.com 12in Latching Round SATA to Right Angle SATA Serial ATA Cable 一製品をお使いになる前に、 この取扱説明書を必ずお読みください Four micro-ondes 取扱説明書 - デントロニクス Bianco Rainsaver MK3 Installation and Operating Instructions 取扱説明書等 - アイ・オー・データ機器 千 取扱説明書の追加説明 JVC GZ-X900 Pequeno manual de instruções de Deus sobre o Amor - IBM Copyright © All rights reserved.
Failed to retrieve file