1Introduction

 

 

 

inset_0.jpg 

With version mdm 1.12.0 it is possible for the first time to manage mGuard devices of the FL MGUARD 1000 family. Simply integrate the FL MGUARD 1102 and 1105 devices into your existing security infrastructure (see also Section 1.1).

Please also refer to the Release Notes of mdm 1.12.x.

 

mGuard device manager (mdm) enables the convenient management of mGuard security appliances. The tool offers a template mechanism that allows to centrally configure and manage thousands of mGuard devices.

With a click of your mouse you can generate the desired firewall rules, NAT settings, etc., and upload the generated configurations to the mGuard  devices in the network, deploying in an instant your desired device configurations.

mdm is a client-server application, the client offering full control of all mdm features, the server storing the configuration in a database, generating configuration files, and uploading those files to the devices upon request.

If a configuration is uploaded to a device, mdm generates a configuration file which is trans­ferred via SSH to the device and is subsequently taken into operation. Furthermore mdm can generate configuration files to be used for the configuration pull feature of the mGuard. Additionally, mdm can trigger firmware upgrades and deploy device licenses.

Documentation

Please read this document for information on the installation of mdm, how to efficiently gen­erate configurations for and how to upload configurations to your mGuard devices.

The product has been renamed from Innominate Device Manager (IDM) to mGuard de­vice manager (mdm or mGuard device manager (mdm) ). To be consistent with recent versions of the software and software manuals, the name mdm will be used throughout this document.

Supported devices

mGuard device manager (mdm)  1.12.x supports the following firmware version and devices:

mGuard: Version 5.0.x to 8.8.x

mGuardNT (FL MGUARD 1000 family): Version 1.3.x

Related documentation

Detailed information of limitations and known issues can be found in the mdm Release Notes of the corresponding version 1.12.x.

1.1Notes on the administration of FL MGUARD 1000 devices

With version mdm 1.12.0 it is possible for the first time to manage mGuard devices of the FL MGUARD 1000 family.

FL MGUARD 1000 devices can be managed from a central point (mdm): it is possible to use templates across multiple devices, to update and import configurations of field devices and to change passwords.

Patch updates (1.3.x) can be installed on the FL MGUARD 1000 devices using Python scripts (see Section 7.6.1).

Functional range for configuration of FL MGUARD 1000 devices

 Devices and templates with mGuard NT 1.3 firmware can be created and configured.

 Devices and templates with installed mGuard 5.0 to 8.8.x firmware can be upgraded to mGuard NT 1.3 firmware.

Templates with mGuard NT 1.3 firmware can be applied to FL MGUARD 1000 devices.

Templates with mGuard 5.0 to 8.8.x firmware can be applied to FL MGUARD 1000 de­vices.

Templates with mGuard 5.0 to 8.8.x firmware can be applied to templates with mGuard NT 1.3 firmware.

Please note:

The new FL MGUARD 1102/1105 devices configurable in mdm 1.12.x support fewer func­tions and variables than the other supported FL/TC MGUARD devices (e.g. FL/TC MGUARD 4000, FL MGUARD PCI).

For this reason, the following aspects must be considered when configuring FL MGUARD 1000 devices:

 

 

 

inset_2.jpg 

NOTE: Unsupported variables are discarded

 

When transferring a configuration from devices or templates with mGuard 5.0 to 8.8.x firmware to FL MGUARD 1000 devices (or templates with mGuard NT 1.3 firmware), the following applies:

Variables not supported by FL MGUARD 1000 devices are discarded!  

 

 

 

inset_35.jpg 

Several functions that can be accessed via the mdm menu or mdm context menus are not available for FL MGUARD 1000 devices.

 

 

 

inset_3.jpg 

Devices of the FL MGUARD 1000 family are not accessible via the SSH protocol.