Configure a CMC as a consumer
Configure a Central Management Console (CMC) to be a consumer of data transmitted through a data diode. This configuration ensures secure, one-way communication from a producer to a consumer.
Before you begin
- Nozomi Networks Operating System (N2OS) v25.2.0 or later installed on both the Guardian and the Central Management Console (CMC)
- A data diode installed between the producer and the consumer
- Access to both systems
- This information for the data diode:
- Host (fully qualified domain name (FQDN))
- An account with the correct privileges
- Account username and password
- Location to store the data
About this task
To allow secure file transfer, the data diode must authenticate to the consumer CMC via secure shell (SSH).
Note:
Different types of data diodes are supported. This procedure
does not go into detail about the data diode configuration.
Procedure
- Open the consumer CMC.
-
In the top navigation bar, select The administration page opens.
-
In the Settings section, select Synchronization
settings.
The Synchronization settings page opens.
-
Select Data Diode.
The Data Diode page shows.
-
In the Status section, select
Consumer.

The Token field shows. - Select Save.
-
If an SSH key pair does not already exist on the
data diode, create one.
On the data diode, generate a user-owned RSA 4096 or ECDSA key for the user who will manage file transfers to the CMC. For example, you can use
ssh-keygento do this. -
Transfer files via SSH