Brief Instructions |
•Working with HTTP Proxies and Web Servers: ▫How to Connect Dr.Web for UNIX Internet Gateways to Squid ▫How to Configure Proxy Mode for SpIDer Gate •General Operation of Dr.Web for UNIX Internet Gateways: ▫How to Restart Dr.Web for UNIX Internet Gateways ▫How to Connect to the centralized protection server ▫How to Disconnect From the Centralized Protection Server ▫How to Activate Dr.Web for UNIX Internet Gateways ▫How to Upgrade Dr.Web for UNIX Internet Gateways ▫How To Add or Remove Dr.Web for UNIX Internet Gateways Component ▫How to Manage Dr.Web for UNIX Internet Gateways Component Operation ▫How to View Log of the Dr.Web for UNIX Internet Gateways
How to Connect Dr.Web for UNIX Internet Gateways to Squid Follow the instructions provided in the Integration with Squid Proxy Server section. Follow the instructions provided in the Protecting a Local Web Server section. How to Configure Proxy Mode for SpIDer Gate Follow the instructions provided in the Using SpIDer Gate in Proxy Mode section. How to Restart Dr.Web for UNIX Internet Gateways To restart Dr.Web for UNIX Internet Gateways when it is already running, you can also use the script that controls the Dr.Web ConfigD configuration daemon. Startup, stop, or restart of the daemon cause respectively the startup, stop or restart of Dr.Web for UNIX Internet Gateways. The shell script that controls the operation of Dr.Web ConfigD is residing in the standard OS directory (for GNU/Linux—/etc/init.d/; for FreeBSD—/usr/local/etc/rc.d/). The name of the script is drweb-configd. It has the following parameters:
For example, to restart Dr.Web for UNIX Internet Gateways (or start it, if it is not running) in GNU/Linux OS, use the following command:
How to Connect to the Centralized Protection Server 1.Obtain the address of the centralized protection server and the file of its certificate from your anti-virus network administrator. You may also need additional parameters, such as an identifier and password for your workstation or identifiers of the main group and tariff group. 2.Use the esconnect command of the Dr.Web Ctl command-line tool provided with Dr.Web for UNIX Internet Gateways. For connection it is required to use the option --Certificate by specifying the path to the certificate file of the server. You can additionally enter the identifier of your host (the ID of your “workstation”, if we use the terminology used by the centralized protection server) and a password for authentication on the centralized protection server by using the --Login and --Password parameters. In this case, connection to the server will be established only if you specify a correct identifier-password pair. If the parameters are not specified, connection to the server will be established only if it is approved on the server (automatically or by the administrator of the anti-virus network, depending on the server settings). Moreover, you can use the --Newbie option (connect as a new user). If this mode is allowed on the server, then after this connection is approved, the server automatically generates a unique identifier/password pair, which will be further used for connection of this agent to the server.
A standard example of the command instructing Dr.Web for UNIX Internet Gateways to connect to the centralized protection server:
After establishing a connection to the centralized protection server, Dr.Web for UNIX Internet Gateways will operate in the centralized protection mode or in the mobile mode, depending on the permissions set on the server and the value of the MobileMode configuration parameter of the Dr.Web ES Agent component. To allow unconditional use of the mobile mode, set the parameter value to On. For operation in the centralized protection mode, set the parameter value to Off. A standard example of the command instructing Dr.Web for UNIX Internet Gateways that is connected to the centralized protection server to switch to the mobile mode is as follows:
How to Disconnect From the Centralized Protection Server To disconnect Dr.Web for UNIX Internet Gateways from the centralized protection server and switch its operation into standalone mode, use the esdisconnect command of the Dr.Web Ctl command-line tool provided in Dr.Web for UNIX Internet Gateways:
To use Dr.Web for UNIX Internet Gateways in standalone mode, a valid license key file is required. Otherwise, anti-virus functions of Dr.Web for UNIX Internet Gateways will be blocked after the operation is switched to standalone mode. How to Activate Dr.Web for UNIX Internet Gateways 1.Register on Doctor Web website at https://products.drweb.com/register/v4. 2.At the email address that you specified during the registration you will receive an archive containing a valid license key file (you can also download this archive directly from the website after you have finished the registration). 3.Carry out the key file installation procedure. How to Upgrade Dr.Web for UNIX Internet Gateways Update component versions or upgrade to a new version.
How To Add or Remove Dr.Web for UNIX Internet Gateways Component Follow the Custom Component Installation and Uninstallation procedure.
How to Manage Components Operation To view the status of Dr.Web for UNIX Internet Gateways components and to manage their operation, you can use: •The command-line-based management tool Dr.Web Ctl (use the drweb-ctl appinfo, drweb-ctl cfshow and drweb-ctl cfset commands. To view the list of available management commands, use the command drweb-ctl --help). •The management web interface of Dr.Web for UNIX Internet Gateways (by default, you can access it via a web browser at https://127.0.0.1:4443/). How to View Log of the Dr.Web for UNIX Internet Gateways According to default settings the general log of all Dr.Web for UNIX Internet Gateways components is displayed in syslog file (the file for logging messages by the system component syslog depends on the system and is located in the directory /var/log). General log settings are defined in the configuration file in the section [Root] (parameters Log and DefaultLogLevel). For each component in their settings section, parameters Log and LogLevel are available. They set the log storage location and the logging level of messages that the component outputs in the log. Also you can use the drweb-ctl log command. To change the logging settings, use the Dr.Web Ctl command-line management tool and the Dr.Web for UNIX Internet Gateways management web interface (if it is installed). •To identify errors, we recommend you to configure output of the general log of all components to a separate file and enable output of extended debug information to the log. For that, execute the following commands:
•To return to the default logging method and verbosity level for all components, execute the following commands:
|