Managing restricted nodes in a cluster
You can restrict nodes that are in the DMZ so that your network is secure. You can specify which nodes are restricted in the local management interface.
About this task
The following restrictions apply to restricted nodes:
- Restricted nodes cannot be promoted to any of the master roles.
- Restricted nodes cannot use the Policy Administration tool to modify the security policy.
- Restricted nodes do not contain a replica of the data that is stored by the embedded user registry.
- Restricted nodes cannot configure the Web Proxy API Access Control capability using the Web console.
You can restrict a node when you register a node in a cluster or at any time from the master local management interface. You can also restrict several nodes in a cluster.
Procedure
Select the steps for the task you want to complete:
- Configuring a restricted node during registration
Configure a restricted node when you register the node by using the local management interface.
- Register a node to a cluster.
For more information, see Managing cluster configuration.
- Check Join as restricted node in the Join Cluster window.
- Click Join to add the appliance to a cluster as a restricted node.
- Register a node to a cluster.
- Configure a restricted node in a cluster
Use the local management interface to specify a restricted node in a cluster.
- Log on to the master appliance.
- From the top menu of the local management interface, select .
- Select the Overview tab.
- Select the node to be set as restricted in the Nodes grid.
- Click Restricted Node.
- Click Submit.