AANTS: Web-Based Network Administration Tools - Latest Developments Charles Thomas AANTS Administration Team Division of Info. Tech. (DoIT) Network Services.

Slides:



Advertisements
Similar presentations
Steve Lewis J.D. Edwards & Company
Advertisements

Top-Down Network Design Chapter Nine Developing Network Management Strategies Copyright 2010 Cisco Press & Priscilla Oppenheimer.
NetWatcher NetGuarder NetWatcher Introduction - Boost Enterprise Efficiency Dramatically
Business Development Suit Presented by Thomas Mathews.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 8: Monitoring the Network Connecting Networks.
Introducing Campus Networks
Operating and Configuring Cisco IOS Devices © 2004 Cisco Systems, Inc. All rights reserved. Operating Cisco IOS Software INTRO v2.0—8-1.
Network+ Guide to Networks, Fourth Edition
Managing Your Network Environment © 2004 Cisco Systems, Inc. All rights reserved. Managing Cisco IOS Devices INTRO v2.0—9-1.
Advanced Workgroup System. Printer Admin Utility Monitors printers over IP networks Views Sharp and non-Sharp SNMP Devices Provided Standard with Sharp.
Validata Release Coordinator Accelerated application delivery through automated end-to-end release management.
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—2-1 Ethernet LANs Operating Cisco IOS Software.
Chapter 19: Network Management Business Data Communications, 4e.
Access 2007 Product Review. With its improved interface and interactive design capabilities that do not require deep database knowledge, Microsoft Office.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialBCMSN Configuring Wireless LANs BCMSN Module 6 Lesson 6.
Wireless LAN Topology Visualiser Project Supervisor: Dr Arkady Zaslavsky Project Team Members: Jignesh Rambhia Robert Mark Bram Tejas Magia.
(NHA) The Laboratory of Computer Communication and Networking Network Host Analyzer.
Interpret Application Specifications
How Clients and Servers Work Together. Objectives Learn about the interaction of clients and servers Explore the features and functions of Web servers.
Network+ Guide to Networks, Fourth Edition Chapter 1 An Introduction to Networking.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 11 Managing and Monitoring a Windows Server 2008 Network.
COEN 252: Computer Forensics Router Investigation.
January 2006Common Solutions Group1 Network Based Security Looking at the future of university networking…
H-1 Network Management Network management is the process of controlling a complex data network to maximize its efficiency and productivity The overall.
HiVision SNMP Software.
By Jeerarat Boonyanit. As you can see I have chosen Cpanel for my server management tool. cPanel is a Linux based web hosting control panel that provides.
Ch 11 Managing System Reliability and Availability 1.
1 Network Statistic and Monitoring System Wayne State University Division of Computing and Information Technology Information Technology.
Network+ Guide to Networks, Fourth Edition Chapter 1 An Introduction to Networking.
Current Job Components Information Technology Department Network Systems Administration Telecommunications Database Design and Administration.
– Chapter 5 – Secure LAN Switching
Operating Cisco IOS Software
Top-Down Network Design Chapter Nine Developing Network Management Strategies Oppenheimer.
Network Security1 – Chapter 5 – Secure LAN Switching Layer 2 security –Port security –IP permit lists –Protocol filtering –Controlling LAN floods (using.
Module 7: Fundamentals of Administering Windows Server 2008.
Real Time Monitors, Inc. Switch Expert™. 2 Switch Expert™ Overview Switch Expert ™ (SE) currently deployed at 80% percent of the INSIGHT-100.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
AANTS: Web-Based Tools for Cooperative Campus Network Administration Charles Thomas Dave Plonka AANTS Administration Team Division of Info. Tech. (DoIT)
Computer Emergency Notification System (CENS)
Oracle 10g Database Administrator: Implementation and Administration Chapter 2 Tools and Architecture.
Using Novell GroupWise ® 6 Monitor Duane Kuehne Software Engineer Novell, Inc. Danita Zanre Senior Consultant NSC Sysop,
Network Management Protocols and Applications Cliff Leach Mike Looney Danny Mar Monty Maughon.
Based on work by DoIT Network Services, UW-Madison The Network and the Role of Tools January 6, 2006 Ron Kraemer, Deputy CIO.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 8 Virtual LANs Cisco Networking Academy.
1 © 2005 Cisco Systems, Inc. All rights reserved. 111 © 2004, Cisco Systems, Inc. All rights reserved. CNIT 221 Security 2 ver.2 Module 8 City College.
INTRUSION DETECTION SYSYTEM. CONTENT Basically this presentation contains, What is TripWire? How does TripWire work? Where is TripWire used? Tripwire.
INDIANAUNIVERSITYINDIANAUNIVERSITY Indiana University Update Tom Zeller
1 OFF SYMB - 12/7/2015 Firewalls Basics. 2 OFF SYMB - 12/7/2015 Overview Why we have firewalls What a firewall does Why is the firewall configured the.
Web-based Application Includes: –Integrated Web Server –Integrated Database.
V7 Foundation Series Vignette Education Services.
© 2002, Cisco Systems, Inc. All rights reserved..
Oracle 10g Administration Oracle Server Introduction Copyright ©2006, Custom Training Institute.
© 2002, Cisco Systems, Inc. All rights reserved..
AANTS Update: New Tools, New Features Dave Plonka Charles Thomas DoIT Network Services.
OPEN SOURCE NETWORK MANAGEMENT TOOLS
Operating Cisco IOS Software
© 2002, Cisco Systems, Inc. All rights reserved.
Get to know SQL Manager SQL Server administration done right 
– Chapter 5 – Secure LAN Switching
Top-Down Network Design Chapter Nine Developing Network Management Strategies Copyright 2010 Cisco Press & Priscilla Oppenheimer.
Oracle Solaris Zones Study Purpose Only
Challenges in Network Troubleshooting In big scale networks, when an issue like latency or packet drops occur its very hard sometimes to pinpoint.
Based on work by DoIT Network Services, UW-Madison
Requirements and Approach
PLANNING A SECURE BASELINE INSTALLATION
Features Overview.
Requirements and Approach
Network Monitoring System
iSecurity AP Journal Training
Top-Down Network Design Chapter Nine Developing Network Management Strategies Copyright 2010 Cisco Press & Priscilla Oppenheimer.
Presentation transcript:

AANTS: Web-Based Network Administration Tools - Latest Developments Charles Thomas AANTS Administration Team Division of Info. Tech. (DoIT) Network Services University of Wisconsin - Madison

Talk Overview 20 minutes = BARNSTORM! Focus more on latest work with AANTS. Show kinds of tools we’ve found necessary to manage a large network. Show the kind of tools which can be created by a network-specific programmer using open-source tools.

Present UW Campus Network Nearly 1800 Cisco network devices, many models. A few Juniper and NetScreen devices. 64,000+ managed ports. The number of managed buildings, devices, and ports is growing every day.

The Challenge Campus LAN admins (Authorized Agents) need to administer the switches and ports which carry their LANs. The gear is centrally owned/managed, therefore we cannot allow them direct access (e.g. ssh or telnet) to the switches themselves. Need to maintain good relations with AAs and not deprive them of their sense of autonomy (political/practical).

The Goal Give our Authorized Agents comparable (and in many cases improved) network management capabilities. Maintain appropriate levels of security, authorization and access control. Must be easy-to-use. Must protect centrally-managed gear, protect AAs from each other.

AANTS: Authorized Agent Network Tool Suite Loosely-coupled set of web-based utilities for network administration. Tools are team-developed in-house, optimized toward local networking practices, driven by user need. Allow users (campus LAN administrators and network engineers) to manage network devices, change device configurations, troubleshoot, inspect traffic data, coordinate with users, and perform other network management tasks.

AANTS: Authorized Agent Network Tool Suite (cont.) Dozens of web-based GUI tools which allow all aspects of day-to-day network administration to be performed with a few clicks in a browser. Supported by a wide variety of behind-the-scenes scripts which handle things like database updates, SNMP information gathering, network state auditing, etc. Arranged into a hierarchy of functionality: –Network Contacts –Authorized Agents –Super Users

Foundation Technologies: NetCMS - Network Device Configuration Management System for tracking router/switch configurations. WiscNIC - RIPE whois database of network resources (VLANs, Administrators, Subnets). MySQL - Network configurationinformation. Cisconf - Cisco tftp config tool. GNU Make - Project management. FlowScan and MRTG (Multi-Router Traffic Grapher).

No Time For: LookingGlass - run command-line device queries. NetWatch - Find IP and MAC addresses on network devices. NetStats - Multitude of traffic graphs and statistics. VLAN Finder - Discover VLAN config info. MailByDevice - Contact users responsible for devices. MailByVlan - Contact users responsible for VLANs. PortTextSearch - Locate device/port combinations by searching any user-entered port labeling. Many more!

EdgeConf Configure device ports. Perform multiple port changes as one transaction. Label ports with user information Work with port subsets. Examine switch port configurations and other switch information. Users can only change devices/ports for which they are authorized.

New Features Configure POE on ports. Ability to lock ports to a specific MAC address (security). Display history of port changes. EdgeConf for platform (6500 series) devices.

MailByDevice Select one or more network devices. Find all VLANs on each device. Get all technical and administrative contacts for each VLAN from the WiscNIC database. User can compose an message. Message will be mailed to all users. Used to alert users when certain devices are going to be affected by NS actions.

UPSManager Select one or more UPS devices. Display current device config. View all technical device info: –make/model/SN/IP/OS –Contact info –Building/room info, etc. Create/edit/delete maintenance records. View/edit maintenance history. Maintain list of associated components (e.g. batteries, fans).

CodePusher Push commands, operating code, or configuration code to selected network devices. –Run command-line directives (e.g. ‘show int’). –Upgrade system software. –Modify device configurations. –Manage ACLs. Parallelized for maximum efficiency. Can specify a delayed device restart date/time. Parses results into log files which can be viewed from the web browser. Performs error-checking. Reports results via .

Usage - Past 365 Days MailByDevice - Used 130 times by DoIT net engineers and NOC staff to alert campus agents of potential network outages. ConfigPusher transactions by DoIT net engineers, tens/hundreds of devices per transaction. EdgeConf - 10,500 transactions, between 1 and 200 port changes per transaction.

Summary AANTS tools allow our customers to manage their network over the web, regardless of the user’s platform of choice. AANTS tool development is driven by user input and real-world needs. AANTS is built on a foundation of freely-available software. Local networking practices guide AANTS’ growth as a customized system.

Summary (cont.) Day-to-day management tasks are handled more quickly and easily for network services staff. Improved Security Management –Maintain common Access-Control-Lists across network gear. –Locate and isolate compromised and abusive machines. –Identify and block abusive traffic. –Lock ports to individual MAC addresses

Summary (cont.) These tools help us maintain good relations with campus LAN admins by empowering them rather than moving responsibility away from them. This cooperative policy makes use of available campus IT talent to help network services staff manage the network.

Contact the AANTS Admin Team