### Run JITSU Installer Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/banyan-labs/jitsu Execute the setup script and verify the service status. ```bash # run the setup script ./setup-jitsu.sh # manage using systemctl systemctl status jitsu ``` -------------------------------- ### Install Kube-OIDC-Proxy Helm Chart Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/securing-private-resources/k8s-api/oidc-auth Command to install the proxy chart into the specified namespace. ```bash $> helm install -n kube-oidc-proxy-ns banyan-chart . ``` -------------------------------- ### Install VLAN and Bridge Utilities Source: https://www.sonicwall.com/support/technical-documentation/docs/sonicosx-7-0-0-0-getting_started_guide_nsv_kvm/Content/nsv-gsg-installing-install-ubuntu-kvm-add-vlan.htm Install the necessary packages to manage VLANs and network bridges on the Ubuntu host. ```bash apt-get install vlan bridge-utils ``` -------------------------------- ### Configure Network Interface Files Source: https://www.sonicwall.com/support/technical-documentation/docs/sonicosx-7-0-0-0-getting_started_guide_nsv_kvm/Content/nsv-gsg-installing-install-centos-vlan-param.htm Examples of network configuration files for the physical interface, VLAN interface, and bridge on CentOS. ```bash [root@server02 network-scripts]# cat ifcfg-enp14s0 DEVICE=enp14s0 TYPE=Ethernet BOOTPROTO=none ONBOOT=yes NM_CONTROLLED=no ``` ```bash [root@server02 network-scripts]# cat ifcfg-enp14s0.35 DEVICE=enp14s0.35 TYPE=Ethernet BOOTPROTO=none ONBOOT=yes VLAN=yes BRIDGE=br35 NM_CONTROLLED=no ``` ```bash [root@server02 network-scripts]# cat ifcfg-br35 DEVICE=br35 TYPE=Bridge BOOTPROTO=none ONBOOT=yes IPADDR=10.64.35.92 PREFIX=24 GATEWAY=10.64.35.1 DNS1=10.64.28.200 DNS2=10.64.28.201 DOMAIN=acme.com NM_CONTROLLED=no ``` -------------------------------- ### Install the CSE Terraform Import Tool Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/api-guide/terraform-import-tool Commands to clone the repository, navigate to the directory, and install dependencies. ```bash git clone https://github.com/banyansecurity/terraform-resource-importer.git ``` ```bash cd terraform-resource-importer ``` ```bash pip install -r requirements.txt ``` -------------------------------- ### Create NSv with virt-install Source: https://www.sonicwall.com/support/technical-documentation/docs/sonicosx-7-0-0-0-getting_started_guide_nsv_kvm/Content/nsv-gsg-installing-install-centos-virt-install.htm Use this command to install a virtual machine from an existing virtual disk image on a CentOS system. ```bash virt-install \ --name NSv_test \ --memory 6144 \ --vcpus 2 \ --disk /var/lib/libvirt/images/SonicWall_NSv__For_QEMU_VM_test.img \ --import \ --os-variant Generic \ --network bridge=brvlan501,model=virtio \ --network bridge=brvlan301,model=virtio ``` -------------------------------- ### Install pybanyan via pip Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/api-guide/pybanyan Use the pip package installer to install the pybanyan library. ```bash pip install pybanyan ``` -------------------------------- ### Initialize Terraform Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/api-guide/terraform Command to initialize the backend and download the configured provider. ```bash terraform init ``` -------------------------------- ### Create User and Assign Permissions Source: https://www.sonicwall.com/support/technical-documentation/docs/sonicosx-7-0-0-0-getting_started_guide_nsv_kvm/Content/nsv-gsg-installing-install-ubuntu-kvm-using-cli.htm Commands to create a new user and add them to the necessary groups for KVM management and desktop access. ```bash sudo adduser ``` ```bash sudo adduser tsusers ``` ```bash sudo adduser libvirtd ``` ```bash sudo adduser ,user> sudo ``` -------------------------------- ### HTTP Headers Example Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/api-guide/objects/registered_service Example of HTTP headers sent to the backend based on the TrustToken. ```text X-Email: alex@example.com X-Groups: Everyone,Admins X-DevicePlatform: Windows Y-User: adam Y-Domain: medsoft.digital Z-Token: eyJhbGci... ``` -------------------------------- ### Create Filebeat Keystore Source: https://www.sonicwall.com/support/technical-documentation/docs/cse/visibility-logging/events/elk-stack Initializes the Filebeat keystore for secure credential storage. ```bash filebeat keystore create ```