No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

eSight V300R010C00 Maintenance Guide 08

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Engineering

Engineering

This section describes configuration files related to engineering.

silent_suse_appbase.properties

Function

The configuration file defines settings for silent installation of eSight.

Path

eSight installation CD-ROM/etc/config

Description
Table 9-87 Configuration items in silent_suse_appbase.properties

Parameter

Description

Setting

Effective Mode

InstallLang

Indicates the eSight installation language.

Installation language, which can be ZH or EN

Installation

IpType

Indicates the type of the IP address.

0: IPv4

1: IPv6

2: dual stack

Installation

HostIP

Specifies an IPv4 address for eSight installation.

IPv4 address

Installation

HostIPV6

Specifies an IPv6 address for eSight installation.

IPv6 address

Installation

WebServerPort

Specifies the HTTP port for eSight access.

Port

Installation

InstallDir

Specifies the eSight installation directory.

Path

Installation

DBType

Specifies a database type for eSight installation.

The value is 0 because only the Oracle database is supported.

Installation

DBPort.oracle

Specifies an Oracle port.

Port number (31521 by default)

Installation

DBSID.oracle

Oracle SID

SID (eSight by default)

Installation

Precautions

Modify the configuration file before silent installation.

Configuration Example

#Installation language (Chinese:zh English:en)

InstallLang=en

#IP Address Type: 0--IPv4, 1--IPv6, 2--IP Dual-stack

IpType=0

#NMS IPV4 Address

HostIP=

#NMS IPV6 Address

HostIPV6=

#web server port

WebServerPort=8080

#The install path, installDir can not null and the path must be composed of characters or numbers or "-" or "_",

#and the length of the path must be less than 60 characters, and it is invalid to have space before "\" or "/" or ":".

InstallDir=/opt/eSight

#Database Type :Oracle:0 database type (0: oracle)

DBType=0

#DB server port. oracle database listening port

DBPort.oracle=31521

#DB SID. oracle database instance

DBSID.oracle=esight

ftpsconfig.xml

Function

The ftpsconfig.xml file is used to store the information about the FTPS protocol.

Path
NOTE:

In an HA system, you need to configure the file only on the active server.

<Installation directory>/mttools/etc/sysconf/ftpsconfig.xml

Description
Table 9-88 Parameters in ftpsconfig.xml

Parameter

Description

Mandatory/Optional

Setting

Effective Mode

key-store-path

Identity certificate name.

Optional

Data type: string

Value range: valid file name

Default value: no default value

Restart

key-store-password

Identity certificate password.

Optional

Data type: string

Value range: encrypted certificate passwords

Default value: no default value

Restart

trust-store-path

Trust certificate name.

Optional

Data type: string

Value range: valid file name

Default value: no default value

Restart

trust-store-password

Trust certificate password.

Optional

Data type: string

Value range: encrypted certificate passwords

Default value: no default value

Restart

sslprotocol

SSL protocol configuration.

NOTE:

SSLv2Hello and TLSv1 have security risks. TLSv1.1, TLSv1.2, or SSLv3 is recommended.

Mandatory

Data type: string

Value range: SSLv2Hello, TLSv1, TLSv1.1, TLSv1.2, SSLv3

Default value: TLSv1.2

Restart

includeCipherSuites

Encryption algorithm.

Mandatory

Data type: string

Value range: encryption algorithms that can be used by the SFTP server

Default value: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA256

Restart

isServerMustTrusted

Whether to check whether the server is trusted.

Mandatory

Data type: boolean

Value range:

  • true: Checking whether the server is trusted is supported.
  • false: Checking whether the server is trusted is not supported.

Default value: true

Restart

Configuration Example
<?xml version="1.0" encoding="utf-8"?>
<configure>   
    <!-- identity certificate name -->
    <key-store-path>iemp.keystore.ftps</key-store-path>
    <!-- identity certificate password -->
    <key-store-password>@0102000000005a4d0cf128ae01a82d44e990bf91f16bfe9d124103026c498bbdbe0d49625828</key-store-password>?
? <!-- trust certificate name -->
    <trust-store-path>iemp.truststore.ftps</trust-store-path>
    <!-- trust certificate password -->
    <trust-store-password>@0102000000005a4d0cf128ae01a82d44e990bf91f16bfe9d124103026c498bbdbe0d49625828</trust-store-password>?
    <!-- TSL version -->
    <sslprotocol>TLSv1.2</sslprotocol>
    <!--encryption algorithm-->
    <includeCipherSuites>TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA256</includeCipherSuites>
?<!--whether to check whether the server is trusted-->
    <isServerMustTrusted>true</isServerMustTrusted>?
</configure>
Translation
Download
Updated: 2019-08-03

Document ID: EDOC1100044373

Views: 26751

Downloads: 84

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next