13.07.2015 Views

Installing CA Enterprise Log Manager - CA Technologies

Installing CA Enterprise Log Manager - CA Technologies

Installing CA Enterprise Log Manager - CA Technologies

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring the Event <strong>Log</strong> StoreConfiguring Non-interactive AuthenticationThe backup, restore, and monitor scripts assume that you have configurednon-interactive ssh authentication using RSA key pairs before use. You will usetwo servers for this configuration. Non-interactive means that one server canmove files to another server without requiring passwords. You can use thisconfiguration with the collection and reporting <strong>CA</strong> <strong>Enterprise</strong> <strong>Log</strong> <strong>Manager</strong>servers. You can also use the configuration for the reporting server and a normalUNIX or Linux server dedicated to storing backups.To enable non-interactive authentication, do the following:1. <strong>Log</strong> on to the collection server and generate an RSA key pair as thecaelmservice user. Copy the public key to the /tmp/authorized_keysdirectory on the reporting server.2. <strong>Log</strong> on to the reporting server as caelmadmin, create the .ssh directory, andmove the public key from the /tmp directory to the .ssh directory and set thekey file ownership to caelmservice.3. While logged on to the reporting server, generate a new RSA key pair as thecaelmservice user and copy it to the /tmp/authorized_keys directory on theremote storage server.4. <strong>Log</strong> on to the remote storage server, create the caelmadmin account, createthe caelmservice group and user account, create the /opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong>path, create the .ssh directory, move the public key from the /tmp directoryto the .ssh directory and set the key file ownership to caelmservice.5. Validate the configuration.Note: When the receiving server is also a <strong>CA</strong> <strong>Enterprise</strong> <strong>Log</strong> <strong>Manager</strong> server, youshould also use the caelmservice account on that machine.Chapter 5: Configuring Services 119

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!