Installing the DSG On-Premise

Steps to install the DSG ISO

Installing DSG

This section provides information about installing the DSG ISO.

To install the DSG:

  1. Insert and mount the DSG installation media ISO.

  2. Restart the machine and ensure that it boots up from the installation media.

    The following DSG splash screen appears.

    DSG Splash Screen

  3. Press ENTER to start the install procedure.

  4. The following screen appears only when you reimage to the DSG v3.3.0.0 from any older DSG version. You must enter YES to proceed with the installation, press Tab to select OK, and then press ENTER.

  5. The following installation options screen appears. Select INSTALL Destroy content and install a new copy, press Tab to select OK, and then press ENTER.

    Note: If an existing file system is detected on the host hard drive, then a warning may appear prior to this step. Users who choose to proceed with the install will be prompted with additional confirmation before the data on the file system is lost.

    The system restarts and the Network interfaces screen with the network interfaces detected appears.

  6. Press Tab to select the management network interface, which will be the management NIC for the DSG node. Then, proceed by pressing Tab to select Select and press Enter.

    Network interface screen

    Note: The selected network interface will be used for communication between the ESA and the DSG.

  7. The DSG appliance attempts to detect a DHCP server to setup the network configuration. If the DHCP server is detected, then the Network Configuration Information screen appears with the settings provided by the DHCP server. If you want to modify the auto-detected settings, then press Tab to select Edit and press Enter to update the information.

    Network Configuration Information Screen

  8. Press Tab to select Apply and press ENTER.

    Note: If a DHCP server is detected, then the Select a node screen appears. Select the ESA IP address that you want to use for the ESA communication from the list.

    The following dialog appears when the DHCP server is not detected. Press Tab to select Manual, and press Enter to provide the IP address manually or Retry to attempt locating the DHCP server again.

    Setting up the network manually

    The Network Configuration Information dialog appears. You must enter the network configuration and select Apply to continue.

    Network Configuration Information

    Note: On the DSG, the Management Interface is used for communication between the ESA and the DSG, and accessing the DSG Web UI. The Service Interface is used for handling the network traffic traversing through the DSG.

    For more information about the management interface and the service interface, refer to the section Network Planning.

  9. Press Tab to select the time zone of the host, press Tab to select Next, and then press ENTER.

    Time Zone screen

  10. Press Tab to select the nearest location, press Tab to select Next, and then press ENTER.

    Nearest Location screen

  11. Press Tab to select the required option, press Tab to select OK, and then press ENTER.

    Update Date/Time Zone screen

  12. Press Tab to select the required option and then press ENTER.

  13. Press Tab to select the required option and then press ENTER.

  14. Select Enable, press Tab to select OK, and then press ENTER to provide the credentials for securing the GRand Unified Bootloader (GRUB).

    Note: GRUB is used to provide enhanced security for the DSG appliance using a username and password combination.
    For more information about using GRUB, refer to the section Securing the GRand Unified Bootloader (GRUB) in the Protegrity Appliances Overview Guide 9.2.0.0.

    CAUTION: The GRUB option is available only for on-premise installations.

  15. Enter a username, password, and password confirmation on the screen, select OK and press ENTER.

    Note: The requirements for the Username are as follows:

    • It should contain a minimum of three and maximum of 16 characters.
    • It should not contain numbers and special characters.

    Note: The requirements for the Password are as follows:

    • It must contain at least eight characters.
    • It must contain a combination of alphabets, numbers, and printable characters.

  16. Press Tab to set the user passwords, and then press Tab to select Apply and press Enter.

    User Passwords screen

    Note: It is recommended that strong passwords are set for all the users.
    For more information about password policies, refer to the section Strengthening Password Policy in the Protegrity Appliances Overview Guide 9.2.0.0.

  17. Enter the IP address or hostname for the ESA. Press Tab to select OK and press ENTER. You can specify multiple IP addresses separated by comma.

    The Forward Logs to Audit Store screen appears.

    Note: If the IP address or hostname of ESA is not provided while installing the DSG, then the user can add the ESA through ESA Communication.

  18. Select the ESA that you want to connect with, and then press Tab to select OK and press ENTER.

    The ESA Selection screen appears.

    ESA selection screen

    Note: If you want to enter the ESA details manually, then select the Enter manually option. You must enter the ESA IP address when this option is selected.

  19. Provide the username and password for the ESA that you want to communicate with, press Tab to select OK, and then press ENTER.

    Download Certificates dialog

  20. Enter the IP Address and Network Mask to configure the service interface and press Tab to select OK and press ENTER.

    Service Interface Configuration screen

    CAUTION: For ensuring network security, the DSG isolates the management interface from the service interface by allocating each with a separate network address. Ensure that two NICs are added to the DSG.

  21. Select the Cloud Utility AWS v2.2, press Tab to select OK, and then press ENTER to install the utility. The Cloud Utility AWS v2.2 utility must be selected if you plan to forward the DSG logs to AWS CloudWatch. If you choose to install the Cloud Utility AWS v2.2 utility later, you can install this utility from the DSG CLI using the Add or Remove Services option after installing the DSG.

    Note: For more information about forwarding the DSG logs to AWS CloudWatch, refer to the section Forwarding logs to AWS CloudWatch.

    Select products to install screen

  22. Select all the options except Join Cloud Gateway Cluster, press Tab to select Set Location Now and press ENTER.

    CAUTION: Ensure that the Join Cloud Gateway Cluster option is deselected. It is recommended that the user adds the DSG node from the Cluster tab after the DSG installation is completed.
    For more information about adding a node to cluster, refer to the section Adding a DSG node.

    ESA Location screen

  23. Select the ESA that you want to connect with, and then press Tab to select OK and press ENTER.

    The ESA selection screen appears.

    ESA selection screen

    Note: If you want to enter the ESA details manually, then select the Enter manually option. You will be asked to enter the ESA IP address or hostname when this option is selected.

  24. Enter the ESA administrator username and password to establish communication between the ESA and the DSG. Press Tab to select OK and press Enter.

    The Enterprise Security Administrator - Admin Credentials screen appears.

    Enterprise Security Administrator - Admin Credentials screen

  25. Enter the IP address or hostname for the ESA. Press Tab to select OK and press ENTER. You can specify multiple IP addresses separated by comma.

    The Forward Logs to Audit Store screen appears.

  26. After successfully establishing the connection with the ESA, the following Summary dialog box appears.

    ESA Communication - Summary screen

  27. Press Tab to select Continue and press Enter to continue to the DSG CLI manager.

    A Welcome to Protegrity Appliance dialog box appears.

  28. Login to the DSG CLI Manager.

  29. Navigate to Administration > Reboot and Shutdown.

  30. Select Reboot and press Enter.

  31. Provide a reason for restarting the DSG node, select OK and press Enter.

  32. Enter the root password, select OK and press Enter.

    The DSG node is restarted.

  33. Login to the DSG Web UI.

  34. Click the (Help) icon, and then click About.

  35. Verify that the DSG version is reflected as DSG 3.2.0.0.

  36. Login to the ESA Web UI using the administrator credentials.

  37. Navigate to **Cloud Gateway > 3.3.0.0 {build number}**Cloud Gateway > 3.3.0.0 {build number}> Cluster.

  38. Click Deploy to push the DSG Ruleset configurations to the DSG nodes.

    Note:

    The DSG Ruleset will be pushed only if you Add the DSG node after the installation.

  39. Login to the DSG Web UI using the administrator credentials.

  40. Navigate to Logs > Appliance.

  41. Click Cloud Gateway - Event Logs, and select Gateway.

    Verify that the startup logs do not display any errors.

Last modified February 7, 2025