Previous Topic: Socket Connections to a Hub versus Directly to Multiple Policy EnginesNext Topic: Connecting the NBA Ports


NBA Quickstart

This section provides a quick overview of the steps needed to get the NBA up and running. Each step refers to sections of this manual where you find detailed explanations.

  1. Follow the instructions in Deployment Architecture and NBA Ports.

    Briefly, you must set up the hardware, and connect the power and network cables.

  2. (Linux Server Platform only) Follow the instructions in Linux Server Platform Software and Hardware Installation.

    Briefly, you must set up the hardware, and install the CentOS Operating System and Napatech high-speed capture card drivers.

    1. Download the CentOS operating system as an ISO image from the CA support site and burn it to a CD. Boot an unconfigured server from the Operating System CD and follow the instructions.
    2. The CentOS installer also prompts you to install the Napatech high-speed capture card. Insert the CD with Napatech driver software that you received with the inline capture card.
  3. Assign an IP address to the network port that is used for NBA management.
  4. Install the NBA software package.
    1. Download the NBA software from the CA support site. You can choose an RPM file or an ISO image that you burn to an installation CD.
    2. (Bivio 7000 platform only) Follow the instructions in Bivio Platform Software Installation.
    3. (Linux server platform only) The CentOS installer prompts you to insert the NBA installation CD.
    4. (Linux server platform only) If you downloaded the RPM file, copy the RPM file to your Linux server and then enter this command:
      rpm -i <rpm_file>
      

      Where <rpm_file> specifies the path and name of the rpm file.

    5. Wait while the installer runs an install check at the end of the installation process.
  5. Configure the NBA with the IP addresses of the CA DataMinder policy engines that process reassembled files and emails.

    In the NBA Console, open the Policy page and type the IP addresses into the Policy Analyzer IP Addresses setting. Separate IP addresses with commas. The NBA appends the default port number of 8539 automatically.

    You can also set up a Policy Engine Hub which distributes files and emails to connected Policy Engines. To install a hub, you must install the External Agent API, the Socket API, and the Remote PE Connector.

    Note: See the CA DataMinder Platform Deployment Guide for details about installing and configuring a Policy Engine Hub or Policy Engines with a Socket API.

  6. Customize the network traffic filters to only analyze 'items of interest' (files or emails).

    The easiest way to edit NBA filter policy is by using the NBA console:

    Alternatively, you can edit nbapolicy.xml in the \config folder on the NBA.

  7. Follow the instructions in Decoding SSL Communications to enable SSL sessions to be decoded.

    Two essential setup steps are required:

    Note: The NBA must be in active mode to decode SSL sessions, so enable stream blocking using the NBA console.

  8. (Required only If the NBA is connected inline with the monitored network) Turn active mode on.

    To turn on active mode, you must enable stream blocking. You do this in the Administration screen of the NBA console.

    For more configuration options, see Configuring the NBA.