Automated Installation with the LogRhythm .iso
The .iso can be used to install CentOS and NetMon on a physical or virtual system that has a primary disk as small as 60 GB.
The .iso installation is supported on systems containing up to four physical disks.
Prerequisites
If you have not already registered, you can sign up for an account on the LogRhythm Community. Click Not a Member, and then complete the New Member Registration. Your registration confirmation will be emailed to you. Check your spam folder in case the approval email is not recognized.
Although strongly recommended, this step is not required before installing NetMon.- If you have not yet obtained the NetMon installation .iso, download the .iso from the Community. After logging in, click NetMon Resources, click the version of NetMon Freemium you would like to run, and then click Network Monitor ISO (Checksum) under the Installation Files header.
- For a virtual installation, create a new VM that meets the following requirements:
- OS Type is Linux
- OS Version is Linux 64-bit or Other 64-bit
- Hard drive, RAM, and processor meet the requirements stated in Select the Installation Platform
- Primary network adapter in “bridged” mode, and promiscuous mode is set to allow all traffic
VMware Workstation is powered on as “Startup Guest”; VirtualBox VM is powered on as “Normal Start”
NetMon includes a utility to assist with VM installation and configuration. For more information, see Configure NetMon on a VMware vSphere Virtual Machine.
- For a list of software packages installed with NetMon, see Third-Party License Acknowledgments.
Installation Steps
To install CentOS 7.9 Minimal and NetMon using the LogRhythm .iso:
- If you are installing on a physical computer, burn the .iso image to a writeable CD or DVD, or build a NetMon USB. For a virtual install, you can mount the .iso for the installation.
- Boot the computer from the CD, DVD, or USB, or start the VM with the mounted .iso.
- When the welcome screen loads, select Install LogRhythm Network Monitor.
The installer completes the installation and the system reboots.
Log In
- When the system reboots, log in to the console using logrhythm as the login and changeme as the password.
To change the password for the logrhythm user, type the command passwd, type the default password (changeme), and then type and verify your new password.
You will need to change the input interface for analyzing network traffic in the NetMon Web Management interface. By default, this field is set to bond0. For more information, see Change Engine Parameters.