Cisco Cisco NAC Appliance 4.7.3 Installation Guide
39
Getting Started with Cisco NAC Network Modules in Cisco Access Routers
OL-2609-01
How to Operate, Maintain, and Troubleshoot Cisco NAC Network Module
•
Before deploying the CAM or CAS in a production environment, you can obtain a trusted certificate
from a Certificate Authority to replace the temporary certificate. A CA-signed certificate for the
CAS prevents the security warning when end users log in and a CA-signed certificate for the CAM
prevents the admin web login security warning.
from a Certificate Authority to replace the temporary certificate. A CA-signed certificate for the
CAS prevents the security warning when end users log in and a CA-signed certificate for the CAM
prevents the admin web login security warning.
•
Make sure to synchronize the time on the CAM and CAS via the web console interface before
regenerating a temporary certificate on which a Certificate Signing Request (CSR) will be based.
For further details see the “Set System Time” and “Manage SSL Certificates” sections of the CAM
and CAS guides.
regenerating a temporary certificate on which a Certificate Signing Request (CSR) will be based.
For further details see the “Set System Time” and “Manage SSL Certificates” sections of the CAM
and CAS guides.
How to Operate, Maintain, and Troubleshoot Cisco NAC
Network Module
Network Module
This section contains the following information:
•
•
•
•
Note
•
The tables in these sections show only common router and network module commands.
–
To view a complete list of available commands, type ? at the prompt
(Example:
(Example:
Router(config-if)# ?
).
–
To view a complete list of command keyword options, type ? at the end of the command
(Example:
(Example:
Router# service-module integrated-service-engine ?
).
•
The tables group commands by the configuration mode in which they are available. If the same
command is available in more than one mode, it may act differently in each mode.
command is available in more than one mode, it may act differently in each mode.
Shutting Down and Starting Up Cisco NAC Network Module
To shut down or start up the Cisco NAC network module or the Clean Access Server application that
runs on the module, use commands as needed from the following list of common router and network
module commands (
runs on the module, use commands as needed from the following list of common router and network
module commands (
).
Note
•
Some shutdown commands can potentially disrupt service. If command output for such a command
displays a confirmation prompt, confirm by pressing Enter or cancel by typing n and pressing
Enter. Alternatively, prevent the prompt from displaying by using the no-confirm keyword.
displays a confirmation prompt, confirm by pressing Enter or cancel by typing n and pressing
Enter. Alternatively, prevent the prompt from displaying by using the no-confirm keyword.
•
Some commands shut the module or application down and then immediately restart it.