Chapter 4. Registering new hosts

Zorp and ZMS can be used in several network scenarios. In the simplest case there is only a single firewall host having both Zorp and ZMS services installed. In this case, the communication between ZMS and the Zorp management agents takes place locally, using Unix domain sockets and it does not require network communication setup. However, when the two functions, that is, firewalling and management, are separated and installed on two different machines, the initial communication channel between the two requires manual setup. After successful setup all further communication is initiated automatically without manual interaction. This channel setup is a one-time action, therefore it must be configured separately for each new Zorp firewall under the authority of a ZMS host. This process is called bootstrapping and can be performed similarly to running a wizard. By the end of the bootstrapping process, the new host is added to the host configuration database of the ZMS host machine.

The connection between ZMS and Zorp can be established in the following ways:

  • using bootstrap

  • manually through the Recovery Connection function

  • completely manually

Bootstrapping a Zorp host is one of the most simple methods. Bootstrapping is similar to running a wizard, that is, answering questions and allowing the wizard to carry out the necessary configurations. Alternatively, the connection can be established manually. This method may especially be needed in troubleshooting scenarios with the help of the Recovery Connection button. Hosts can be added on a completely manual way, by selecting a site and then clicking Add in the main workspace. For more details, see the Zorp Professional 7 Reference Guide.