After a user logs on to the console of a bastion host as a Resource Access Management (RAM) user, the user can go to a web page or obtain an O&M token to perform O&M operations on a host. This topic describes how to perform O&M operations on a web page and use the host O&M feature.

Limits

  • You can use the host O&M feature only when you log on to the console of a bastion host as a RAM user.
  • If you use a bastion host of the Basic edition, you can perform O&M operations only by using O&M tokens, and you cannot go to a web page to perform O&M operations. If you want to perform O&M operations on a web page, upgrade the bastion host to the Enterprise edition. For more information, see Upgrade a bastion host.
    Note If you are a local user, Active Directory (AD)-authenticated user, or Lightweight Directory Access Protocol (LDAP)-authenticated user, you can perform O&M operations by using the O&M portal. For more information, see O&M portal.

Prerequisites

Perform O&M operations on a web page

  1. Log on to the Bastionhost console.
  2. In the left-side navigation pane, choose Asset O&M > Host O&M.
  3. On the Host O&M page, find the host on which you want to perform O&M operations and click the logon icon in the Log On column.
  4. In the Remote Connection dialog box, configure the Host Account, Logon Name and Password parameters. Then, click Web Remote Connection.
  5. Go to the O&M web page of the host and perform O&M operations on the host.

Perform O&M operations by using an O&M token

In this example, XShell is used.

  1. Log on to the Bastionhost console.
  2. In the left-side navigation pane, choose Asset O&M > Host O&M.
  3. On the Host O&M page, find the host on which you want to perform O&M operations and click the Log On icon in the Log On column.
  4. In the Remote Connection dialog box, configure the Host Account, Logon Name and Password parameters. Then, click Obtain O&M Token.
  5. Open XShell to connect to the host on which you want to perform O&M operations. For more information, see SSH-based O&M.
    On the User Identity Authentication page, set Password to the O&M token that you obtained. After you connect to the host, Bastionhost audits the O&M operations based on the user and host information that is contained in the O&M token.