Secure Mobile Access 12.4 CMS Administration Guide

Central Management Settings

Use the Central Management Settings option to configure CMS location, Central User Licensing, Global Traffic Optimizer, and Policy Synchronization.

To configure the Central Management Settings

  1. Navigate to Management Server > Configure.
  2. Click on Central Management.

    The Central Management page displays.

  3. Under Locale, select your Country or region and enter your Location.
  4. Under Central User Licensing, select Enable central user licensing. The current CMS license will support 50 users and 50 email users across all appliances.

  5. Under Global Traffic Optimizer Service, select Users connect to this global high availability service from anywhere in the world and are routed to a nearby appliance.

    Central User Licensing must be enabled to activate the Global Traffic Optimizer service.

  6. Under Policy Synchronization, select Enable pushing policy configuration from this server to managed appliances . This feature is recommended so that users will have a consistent experience on all GTO-enabled appliances and the required Address Pools option.

  7. Under Address Pools, select one of the following:

    • All appliance address pool settings configuration is controlled by the central policy on the CMS (recommended).
    • Each appliance has its own address pool configuration (not recommended).
    • For configuring CMS address pool and to use convert address pool option, refer to CMS Address Pool.

  8. Under Authentication Servers, select one of the following:
    • Appliance share the same authentication servers.
    • Each appliance has its own authentication server and OTP settings.

  9. Under Other Service, select the following services:

    Once the configurations are saved and pushed, a warning message is displayed indicating that the settings are pushed to CMC or overwritten on synchronization with AMC.

    1. Enable the synching of settings for the services by selecting the checkbox.
    2. For fresh installation, the four service options (SSH, Syslog, NTP, and Ping (ICMP)) are enabled. For upgrade or import, these options are disabled.

    Service Option Description
    Secure Shell (SSH) Includes SSH service enabled/disabled, allowed remote hosts, and authorized keys.
    Syslog Includes the syslog servers to which all log information is sent.
    NTP Includes NTP service enabled/disabled and NTP servers.
    Ping (ICMP) Includes ping (ICMP) enabled/disabled and supported network interfaces (internal, external, or both).
  10. Under Advanced, in the Pool IP field, enter the CMS IP address that is reachable by managed appliances.

    This is required only if the CMS internal address is not reachable by managed appliances.

  11. Click Save.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden