13.07.2015 Views

Installing CA Enterprise Log Manager - CA Technologies

Installing CA Enterprise Log Manager - CA Technologies

Installing CA Enterprise Log Manager - CA Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring the Event <strong>Log</strong> StoreSet Key File Ownership on a Remote HostYou can set key file ownership and permissions on a remote storage server if yougenerated a key pair on the reporting server and copied the public key to thatremote storage server. This procedure assumes the remote storage server is nota <strong>CA</strong> <strong>Enterprise</strong> <strong>Log</strong> <strong>Manager</strong> server and that you need to create new users, agroup, and a directory structure that mirrors that of a <strong>CA</strong> <strong>Enterprise</strong> <strong>Log</strong> <strong>Manager</strong>server. If you copied the public key of a key pair generated on the reportingserver to a host that is a <strong>CA</strong> <strong>Enterprise</strong> <strong>Log</strong> <strong>Manager</strong>, use the procedure "Set KeyFile Ownership" on that server.To move the public key file to the correct location on the remote storageserver and set file ownership1. <strong>Log</strong> into the remote storage server as a root user using ssh.2. Create a new user called caelmadmin.3. Create a group called caelmservice and then create a new user calledcaelmservice.4. Create the directory, /opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong>.5. Change the home directory for the caelmservice user to/opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong> using the following command:usermod -d /opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong> caelmservice6. Set the file permissions for the caelmservice account using the followingcommand:chown -R caelmservice:caelmservice /opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong>7. Change to the directory, /opt/<strong>CA</strong>/<strong>Log</strong><strong>Manager</strong>.8. Create the directory, .ssh.9. Change the ownership of the .ssh folder to the caelmservice user and groupwith the command:chown caelmservice:caelmservice .ssh10. Change directory to the .ssh folder.11. Copy the authorized_keys file from the tmp folder with the command:cp /tmp/authorized_keys .12. Change the ownership of the authorized keys file with the command:chown caelmservice:caelmservice authorized_keys13. Change the permissions on the authorized keys file with the command:chmod 755 authorized_keysNon-interactive authentication is now configured between a <strong>CA</strong> <strong>Enterprise</strong><strong>Log</strong> <strong>Manager</strong> reporting server and the remote host used for storage.122 Implementation Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!