Proxy for IntelexVision Sentry FireFly instances, deployed on customer intranet.
4.1K
These notes are for the installation and operation of the Sentry Edge Proxy in a production environment only.
You will require an instance of Docker runtime Pull the image to your target host. The docker CLI command is
docker pull comintelexvision/sentry-firefly-proxy
The Sentry Proxy can be configured using the following optional environment variables. These can be set in the environment prior to execution or as command line arguement at execution for either native o/s execution or as container.
| Variable | Description |
|---|---|
HOST_IP | External IP Address on which the Proxy can be reached |
HOST_FQDN | Fully Qualified Domain Name on which the Proxy can be reached |
HOST_NAME | Hostname (without domain name) |
HOST_PORT | TCP Port Number on which the Proxy can be reached |
When running the image as a Docker container the container must bind to the following ports on the target host so that it can be found by the upstream Intelex Vision Management Platform (iMP). If the port is not available, i.e. it is in use by another application, then select the second or last choice port number.
The Sentry Proxy requires that host name resolution service, either from hosts file or DNS, will resolve the alias sentry-imp to a valid IP address, and that there is an installation of Sentry IMP at that IP address.
The Sentry FireFly Proxy requires a persistent filesystem volume so that the downstream topology information can be persisted after an ephemeral container is terminated.
The volume is a Docker Volume and must be named com-intelexvision-imp-proxy.
This volume is mounted at file system directory /var/lib/sentry consistent with Linux conventions.
It is not necessary to create a volume as this is managed by Docker from the docker run command.
nota bene if you launch the Sentry FireFly Proxy from the Docker Desktop then you must specify the volume mount.
At installation time you must tell the Sentry Proxy which networks to scan for devices, e.g. cameras, Sentry installations, etc.
Run the command in powershell
Get-NetIPAddress -AddressFamily IPv4 | Select-Object InterfaceAlias,IPAddress,PrefixLength
and from output, e.g.
InterfaceAlias IPAddress PrefixLength
-------------- --------- ------------
Ethernet 192.168.1.23 24
Wi-Fi 10.50.0.12 16
then declare environment variable to scan networks required
SENTRY_PROXY_SCAN_IPV4_CIDRS=192.168.1.0/24;10.50.0.0/16
where multiple networks are ";" separated.
Run the command ip -4 addr and from the output you select the networks and declare an environment variable, e.g.
inet 192.168.1.23/24
inet 10.50.0.12/16
declare to scan both networks
SENTRY_PROXY_SCAN_IPV4_CIDRS=192.168.1.0/24;10.50.0.0/16
where multiple networks are ";" separated.
nota bene The values for SENTRY_PROXY_SCAN_IPV4_CIDRS are illustrative. You must type the values for your host.
docker run -d \ --name imp-proxy \ --network bridge \ -e IMP_NETWORK_MODE=bridge \ -e SENTRY_PROXY_SCAN_IPV4_CIDRS=192.168.1.0/24;10.50.0.0/24 -p 53009:8080 \ -p 53008:443 \ --mount source=com-intelexvision-imp-proxy,target=/var/lib/sentry \ comintelexvision/sentry-firefly-proxy:latest
nota bene The values for SENTRY_PROXY_SCAN_IPV4_CIDRS are illustrative. You must type the values for your host.
docker run -d --name imp-proxy -e IMP_NETWORK_MODE=bridge -p 53009:8080 -p 53008:443 -e SENTRY_PROXY_SCAN_IPV4_CIDRS=192.168.1.0/24;10.50.0.0/24 --mount source=com-intelexvision-imp-proxy,target=/var/lib/sentry comintelexvision/sentry-firefly-proxy:latest
docker run -d --name imp-proxy -e IMP_NETWORK_MODE=bridge -p 53009:8080 -p 53008:443 -e SENTRY_PROXY_SCAN_IPV4_CIDRS=192.168.1.0/24;10.50.0.0/24 -e HOST_FQDN="my-proxy.my-domain.my-tld" -e HOST_NAME="my-proxy" --mount source=com-intelexvision-imp-proxy,target=/var/lib/sentry comintelexvision/sentry-firefly-proxy:latest
Once the docker container is running , you can test the health of the Sentry FireFly Proxy using a health check REST API at endpoint "/healthz". This example is using curl
curl https://localhost:53008/healthz
curl http://localhost:53009/healthz
Content type
Image
Digest
sha256:edc709f42…
Size
103.7 MB
Last updated
9 days ago
docker pull comintelexvision/sentry-firefly-proxy