Ciena

Prepare Ciena devices for QUARK Config Backup.

This guide covers Ciena packet networking platforms running SAOS and SAOS 10.

SAOS

SAOS runs on Ciena service delivery and aggregation switches such as the 3900 and 5100 series.

Create a backup account. Create a dedicated user named netwatch-backup from the SAOS CLI. SAOS supports tiered user privilege levels; a limited (read-only) user can display the device configuration, so the account does not need super-user rights.

Enable SSH access. Enable the SSH server on the management interface and confirm the collector can reach the device on TCP port 22. If you use SAOS management access control to restrict source addresses, permit the collector's IP.

Platform notes.

  • QUARK reads the configuration with show/display commands only; the account never needs configuration rights.
  • If RADIUS or TACACS+ authentication is enabled, create the account on the AAA server with an equivalent read-only privilege level.

SAOS 10

SAOS 10 runs on newer Ciena platforms such as the 5170 series and 8100 series.

Create a backup account. Create a dedicated user named netwatch-backup. SAOS 10 uses role-based access control; assign a read-only role that can display the full running configuration.

Enable SSH access. SSH is the standard management method on SAOS 10. Verify the collector can reach the management IP on TCP port 22, and permit the collector's address in any management access lists you apply.

Platform notes.

  • SAOS 10 has a model-driven configuration; QUARK retrieves the full running configuration over the SSH CLI, so no NETCONF setup is required.
  • Keep the backup account limited to read-only — it never needs commit or configuration rights.

Enable backup in Netwatch

Once the device is prepared, open its host in Netwatch (Data collection > Hosts) and add the Config Backup macros — the supported status flag, the model code for this platform, and the credentials you created. See Getting started for the full macro list and values.

On this page