No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

OceanStor BCManager 6.5.0 eReplication User Guide 02

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Replacing the Certificate of the eReplication Agent

Replacing the Certificate of the eReplication Agent

Function

For security purposes, users may want to use an SSL certificate issued by a third-party certification authority. The eReplication Agent allows users to replace the TLS authentication certificate of users but the users must provide the TLS authentication certificate and public/private key pair.

Format

  • Windows: agentcli.exe chgkey
  • Linux/AIX/HP-UX: /home/rdadmin/Agent/bin/agentcli chgkey
  • Solaris: /export/home/rdadmin/Agent/bin/agentcli chgkey

Parameters

None

Usage Guidelines

  • Windows
    1. Log in as an administrator to the application server where the eReplication Agent is installed.
    2. Open the CLI and run the cd Agent installation path\bin command.
    3. Run the agent_stop.bat command to stop the eReplication Agent.

      If the eReplication Agent is stopped, the eReplication Agent can no longer manage service hosts (such as database servers). Therefore, unless for maintenance or fault-locating purposes, do not stop the eReplication Agent.

    4. Put the new certificates and private key files in the specified directory installation path\bin\nginx\conf.
    5. Run the agentcli.exe chgkey command, and enter the login password for the Agent and press Enter.
    6. Enter a name for the new certificate and press Enter.
    7. Enter a name for the new private key file and press Enter.
    8. Enter the protection password of the private key file for two times.
    9. Run the agent_start.bat command to restart the eReplication Agent to make the configuration take effect.
  • Linux/AIX/HP-UX is used as an example
    1. Use PuTTY to log in as root to the application server where the eReplication Agent is installed.
    2. Run the TMOUT=0 command to prevent PuTTY from exiting due to session timeout.
      NOTE:

      After you run this command, the system continues to run when no operation is performed, resulting a risk. For security purposes, you are advised to run exit to exit the system after completing your operations.

    3. Run the su - rdadmin command to switch to user rdadmin.
    4. Run the cd /home/rdadmin/Agent/bin command to go to the script save path.
    5. Run the sh agent_stop.sh command to stop the eReplication Agent.

      If the eReplication Agent is stopped, the eReplication Agent can no longer manage service hosts (such as database servers). Therefore, unless for maintenance or fault-locating purposes, do not stop the eReplication Agent.

    6. Put the new certificates and private key files in the specified directory /home/rdadmin/Agent/bin/nginx/conf.
    7. Run the /home/rdadmin/Agent/bin/agentcli chgkey command, and enter the login password for the Agent and press Enter.
    8. Enter a name for the new certificate and press Enter.
    9. Enter a name for the new private key file and press Enter.
    10. Enter the protection password of the private key file for two times.
    11. Run the sh agent_start.sh command to restart the eReplication Agent to make the configuration take effect.

Example

Linux is used as an example.

linux87:/home/rdadmin/Agent/bin/agentcli chgkey
Enter password of admin: 
Change certificate file name:
server.crt
Change certificate key file name:
server.key
Enter new password:                  
Enter the new password again:                  
Operation processed successfully.
Please restart agent to enable the new password.
NOTE:

admin is the username configured during the eReplication Agent installation.

Translation
Download
Updated: 2019-05-21

Document ID: EDOC1100075861

Views: 14194

Downloads: 70

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next