Ingesting Data from Kafka Queues Deployed On-Prem into jsonar Cloud Systems
|
|
- Patricia Ellis
- 5 years ago
- Views:
Transcription
1 Ingesting Data from Kafka Queues Deployed On-Prem into jsonar Cloud Systems Most jsonar systems are deployed on the Cloud yet consume data generated within enterprise data centers. Since Kafka has emerged as one of the most popular integration platforms and enterprise service bus architectures, this tech note describes how to integrate and consume data produced and placed on an on-prem Kafka queue with a jsonar Cloud service. As shown in Figure 1, the setup is based on rsyslog. Rsyslog is available as part of any RHEL system. Figure 1: Data flow between on-prem Kafka and the jsonar Cloud service Rsyslog is configured to be a Kafka consumer and subscribes to any number of Kafka topics. Rsyslog is configured to compress the data and encrypt the data as it is passing on the public Internet. It is also normally configured to batch the sending of the data rather than stream the data. All these are standard rsyslog configs. Data arrives in the jsonar Cloud through the rsyslog layer and is processed by SonarGateway. Any number of enrichment, mapping and analytic rules can be defined on the Gateway and once the JSON documents have been processed they are inserted into the SonarW column-store.
2 1. Create Secure SonarGateway Connections This section describes how to set up Transport Layer Security (TLS) connections between the onprem Kafka and jsonar Cloud. The authentication here is two-way. The sender authenticates with the receiver, and vice-versa. Communication is encrypted and compressed. We ll call the machines: 1. kafka -- the on-prem machine forwarding kafka events to sonargateway 2. sonargateway the jsonar cloud receiving events. In the following assume that sonargateway, and kafka are RedHat machines. Note that the instructions work for multiple kafka machines. You can copy the same kafka certificates (if that suits your security needs) to multiple machines and they will authenticate in the same fashion. 1. Configuration On-Prem (called the agent host or the Kafka source host): 1.1 Certificate creation $ sudo cat <<'EOF' sudo tee /etc/yum.repos.d/rsyslog.repo [rsyslog_v8] name=adiscon CentOS-$releasever - local packages for $basearch baseurl= enabled=1 gpgcheck=0 gpgkey= protect=1 EOF $ sudo yum update rsyslog $ sudo yum install -y gnutls-utils rsyslog-gnutls Generate a private key and a self-signed CA certificate. You will be asked some questions during the certificate generation. For this example choose some simple values and used mostly defaults. Configure the certificate generation to suit your organization: $ certtool --generate-privkey --outfile ca-key.pem Generating a 2048 bit RSA private key... $ certtool --generate-self-signed --load-privkey ca-key.pem --outfile ca.pem Generating a self signed certificate... Details of the certificate's distinguished name. Press enter to ignore a field. Common name: SonarGateway
3 State or province name: BC Country name (2 chars): CA The certificate will expire in (days): 365 Extensions. Does the certificate belong to an authority? (y/n): y Enter the of the subject of the certificate: sonargateway@jsonar.com Will the certificate be used to sign other certificates? (y/n): y Other Information: Public Key ID: cf caeda4d2ea28f873ed924e74a76208c Is the above information ok? (y/n): y Signing certificate... $ chmod 400 ca-key.pem $ ls -l total 12 -r root root 5823 Oct 20 13:31 ca-key.pem -rw-r--r--. 1 root root 1216 Oct 20 13:37 ca.pem The security of the TLS connections depends on the security of ca-key.pem. Keep this file safe. Now generate certificates for the sonargateway and kafka machines, similar to the CA certificate. The key here is the Common name setting. You will have to refer to these names later when you configure rsyslog. Repeat this section twice -- once for the sonargateway machine and once for the kafka machine. $ certtool --generate-privkey --outfile key.pem Generating a 2048 bit RSA private key... $ certtool --generate-request --load-privkey key.pem --outfile request.pem Common name: sonargateway ###### < nd time use 'kafka' ###### State or province name: BC Country name (2 chars): CA Is this a TLS web client certificate? (y/n): y Is this a TLS web server certificate? (y/n): y Self signature: verified
4 $ certtool --generate-certificate --load-request request.pem --outfile cert.pem -- load-ca-certificate ca.pem --load-ca-privkey ca-key.pem Generating a signed certificate... The certificate will expire in (days): 365 Is this a TLS web client certificate? (y/n): y Is this a TLS web server certificate? (y/n): y Other Information: Public Key ID: 12af4f2b06018fc1f114a030f763385f1eeed Is the above information ok? (y/n): y Signing certificate... Now rename the two generated files: $ mv cert.pem sonargateway-cert.pem ## <---- 2nd time, to kafka-cert.pem $ mv key.pem sonargateway-key.pem ## <---- 2nd time, to kafka-key.pem Repeat these steps to generate a private key for kafka. Once you ve created both private keys copy the sonargateway*.pem and ca.pem files to the sonargateway. The command can look something like this: ## if sonargateway machine IP is $ scp -i ~/.ssh/aws.pem {sonargateway*,ca}.pem ec2-user@ : On the kafka machine move the files, restrict permissions, and set a selinux type for them. By using semanage you can keep selinux 'Enforcing': $ sudo bash $ mkdir -p /etc/rsyslog.d/sonar/gateway/tls $ mv *pem /etc/rsyslog.d/sonar/gateway/tls $ chmod 400 /etc/rsyslog.d/sonar/gateway/tls/*.pem $ chown root:root /etc/rsyslog.d/sonar/gateway/tls $ chown root:root /etc/rsyslog.d/sonar/gateway/tls/* $ semanage fcontext -a -t syslog_conf_t "/etc/rsyslog.d/sonar/gateway/tls(/.*)?" $ restorecon /etc/rsyslog.d/sonar/gateway/tls/*
5 1.2 Configure Rsyslog to communicate with the jsonar Master / Gateway Host Install the imkafka input module for rsyslog: $ sudo yum install rsyslog-kafka In what follows assume that the kafka machine is running the broker. If your broker is a separate on-prem machine you can also configure a TLS connection between that broker and the kafka machine. See the rsyslog imkafka documentation and apache kafka documentation for TLS. imkafka: stable/configuration/modules/imkafka.html Apache Kafka: $ cat >> /etc/rsyslog.d/kafka_forward.conf <<'EOF' global(defaultnetstreamdrivercafile="/etc/rsyslog.d/sonar/gateway/tls/ca.pem" defaultnetstreamdrivercertfile="/etc/rsyslog.d/sonar/gateway/tls/agent-cert.pem" defaultnetstreamdriverkeyfile="/etc/rsyslog.d/sonar/gateway/tls/agent-key.pem") module(load="imkafka") input(type="imkafka" broker=[" :9092"] # the ip/port of your kafka broker topic="topic1" consumergroup="default" ruleset="10546_kafka_forward") ruleset(name="10546_kafka_forward") { action(type="omfwd" keepalive="on" streamdriver="gtls" streamdrivermode="1" streamdriverauthmode="x509/name" streamdriverpermittedpeers="sonargateway" # must match the certificate common name ziplevel="9" # for compression compression.mode="single" # for compression protocol="tcp" queue.type="disk" # for message queuing queue.spooldirectory="/var/lib/rsyslog"
6 queue.filename="rsyslog_kafka_queue" action.resumeretrycount="-1" target=" " # the ip address of the jsonar Cloud port="10546") stop } EOF Restart the rsyslog service and check that you are listening for kafka input on port 9092 using lsof. $ sudo systemctl restart rsyslog $ lsof -i :9092 ## connection from the kafka broker COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME rsyslogd root 11u IPv t0 TCP kafka: >kafka_broker:xmlipcregsvc (ESTABLISHED) rsyslogd root 16u IPv t0 TCP kafka: >kafka_broker:xmlipcregsvc (ESTABLISHED) 2. Configurations On jsonar Master Host (Gateway / Master): 2.1 Configure SonarGateway Create a file that references the certificates: $ cat >> /etc/rsyslog.d/01-global-tls.conf <<'EOF' global(defaultnetstreamdrivercafile="/etc/rsyslog.d/sonar/gateway/tls/ca.pem" defaultnetstreamdrivercertfile="/etc/rsyslog.d/sonar/gateway/tls/sonargateway -cert.pem" defaultnetstreamdriverkeyfile="/etc/rsyslog.d/sonar/gateway/tls/sonargatewaykey.pem") EOF Then modify the input modules file: $ sed -i '/imtcp/d' /etc/rsyslog.d/sonar/gateway/include/modules.conf $ cat >> /etc/rsyslog.d/sonar/gateway/include/modules.conf <<'EOF' module(load="imtcp"
7 streamdriver.name="gtls" streamdriver.mode="1" streamdriver.authmode="x509/name" permittedpeer=["kafka"] keepalive="on" ) EOF From the directory where the certificate and pem files were copied to, run the following commands: $ sudo bash $ mkdir -p /etc/rsyslog.d/sonar/gateway/tls $ mv *pem /etc/rsyslog.d/sonar/gateway/tls $ chmod 400 /etc/rsyslog.d/sonar/gateway/tls/*.pem $ chown root:root /etc/rsyslog.d/sonar/gateway/tls $ chown root:root /etc/rsyslog.d/sonar/gateway/tls/* 2.2 Configure the SonarGateway Kafka Service: Edit /etc/sonar/gateway/kafka_consumer.json. In the second output_connection (around line 45) add two attributes to specify the database into which the data should be inserted and the collection into which it should be inserted. For example: { "output_connection": { "event_format": { "standard": "JSON" }, "target_db": "my_database, "default_collection": "my_kafka_data", "unique_label": "json", "group_label": "json" } } Uncomment the kafka listener in the sonargateway rsyslog configuration: $ vi /etc/rsyslog.d/sonargateway.conf #$IncludeConfig /etc/rsyslog.d/sonar/gateway/rulesets/ingest.conf $IncludeConfig /etc/rsyslog.d/sonar/gateway/rulesets/kafka_consumer.conf #$IncludeConfig /etc/rsyslog.d/sonar/gateway/rulesets/mapr.conf
8 Restart the rsyslog service and check that you are listening on port using lsof. $ sudo systemctl restart rsyslog $ lsof -i :10546 COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME rsyslogd root 5u IPv t0 TCP *:10546 (LISTEN) rsyslogd root 6u IPv t0 TCP *:10546 (LISTEN)
Configuring SSL CHAPTER
7 CHAPTER This chapter describes the steps required to configure your ACE appliance as a virtual Secure Sockets Layer (SSL) server for SSL initiation or termination. The topics included in this section
More informationConfiguring SSL. SSL Overview CHAPTER
7 CHAPTER This topic describes the steps required to configure your ACE appliance as a virtual Secure Sockets Layer (SSL) server for SSL initiation or termination. The topics included in this section are:
More informationConfiguring SSL. SSL Overview CHAPTER
CHAPTER 8 Date: 4/23/09 This topic describes the steps required to configure your ACE (both the ACE module and the ACE appliance) as a virtual Secure Sockets Layer (SSL) server for SSL initiation or termination.
More informationSputnik Installation and Configuration Guide
Sputnik Installation and Configuration Guide Contents Introduction... 2 Installing Sputnik (Local Linux Machine)... 2 Sputnik Operation... 2 Creating an Amazon EC2 instance for Sputnik... 3 Configuring
More informationPrecursor Steps & Storage Node
Precursor Steps & Storage Node In a basic HPC cluster, the head node is the orchestration unit and possibly the login portal for your end users. It s one of the most essential pieces to get working appropriately.
More informationDeploying Rubrik Datos IO to Protect MongoDB Database on GCP
DEPLOYMENT GUIDE Deploying Rubrik Datos IO to Protect MongoDB Database on GCP TABLE OF CONTENTS INTRODUCTION... 1 OBJECTIVES... 1 COSTS... 2 BEFORE YOU BEGIN... 2 PROVISIONING YOUR INFRASTRUCTURE FOR THE
More informationInstalling SmartSense on HDP
1 Installing SmartSense on HDP Date of Publish: 2018-07-12 http://docs.hortonworks.com Contents SmartSense installation... 3 SmartSense system requirements... 3 Operating system, JDK, and browser requirements...3
More informationTeradici PCoIP Connection Manager 1.8 and Security Gateway 1.14
Teradici PCoIP Connection Manager 1.8 and Security Gateway 1.14 TER1502010/A-1.8-1.14 Contents Document History 4 Who Should Read This Guide? 5 PCoIP Connection Manager and PCoIP Security Gateway Overview
More informationLinux Administration
Linux Administration This course will cover all aspects of Linux Certification. At the end of the course delegates will have the skills required to administer a Linux System. It is designed for professionals
More informationTechnical White Paper NetBackup 8.1 and later. NetBackup in the AWS Cloud: Required setup to use Amazon EFS as the NetBackup CloudCatalyst cache
Technical White Paper NetBackup 8.1 and later NetBackup in the AWS Cloud: Required setup to use Amazon EFS as the NetBackup CloudCatalyst cache 1 Contents 1.0 Summary... 3 2.0 Terminology... 3 3.0 Configuring
More informationUser ID Service. How to integrate Forcepoint User ID Service with other Forcepoint products 1.1. Revision A
User ID Service How to integrate Forcepoint User ID Service with other Forcepoint products 1.1 Revision A Contents Introduction on page 2 Requirements on page 3 Installation overview on page 4 Obtain installation
More informationPKI Quick Installation Guide. for PacketFence version 7.4.0
PKI Quick Installation Guide for PacketFence version 7.4.0 PKI Quick Installation Guide by Inverse Inc. Version 7.4.0 - Jan 2018 Copyright 2015 Inverse inc. Permission is granted to copy, distribute and/or
More informationHOW TO SECURELY CONFIGURE A LINUX HOST TO RUN CONTAINERS
HOW TO SECURELY CONFIGURE A LINUX HOST TO RUN CONTAINERS How To Securely Configure a Linux Host to Run Containers To run containers securely, one must go through a multitude of steps to ensure that a)
More informationBitnami OSQA for Huawei Enterprise Cloud
Bitnami OSQA for Huawei Enterprise Cloud Description OSQA is a question and answer system that helps manage and grow online communities similar to Stack Overflow. First steps with the Bitnami OSQA Stack
More informationRed Hat Quay 2.9 Deploy Red Hat Quay - Basic
Red Hat Quay 2.9 Deploy Red Hat Quay - Basic Deploy Red Hat Quay Last Updated: 2018-09-14 Red Hat Quay 2.9 Deploy Red Hat Quay - Basic Deploy Red Hat Quay Legal Notice Copyright 2018 Red Hat, Inc. The
More informationSetting up a Chaincoin Masternode
Setting up a Chaincoin Masternode Introduction So you want to set up your own Chaincoin Masternode? You ve come to the right place! These instructions are correct as of April, 2017, and relate to version
More informationBitnami Piwik for Huawei Enterprise Cloud
Bitnami Piwik for Huawei Enterprise Cloud Description Piwik is a real time web analytics software program. It provides detailed reports on website visitors: the search engines and keywords they used, the
More informationYour Apache ssl.conf in /etc/httpd.conf.d directory has the following SSLCertificate related directives.
If you ever need to use HTTPS or SSL with your website, you will need to have an SSL certificate created, which your Apache web server would use to hand out to the web browsers of the site visitors. The
More informationLinux Postfix Smtp (mail Server) Ssl Certificate Installation And Configuration
Linux Postfix Smtp (mail Server) Ssl Certificate Installation And Configuration Dec 30, 2014. HOW TO: Configure Godaddy Cert for Mail SSL instruction set to add a Godaddy cert (with intermediary file)
More informationBitnami Re:dash for Huawei Enterprise Cloud
Bitnami Re:dash for Huawei Enterprise Cloud Description Re:dash is an open source data visualization and collaboration tool. It was designed to allow fast and easy access to billions of records in all
More informationInstallation 1. Installing DPS. Date of Publish:
1 Installing DPS Date of Publish: 2018-05-18 http://docs.hortonworks.com Contents DPS Platform support requirements...3 Installation overview...4 Installation prerequisites...5 Setting up the local repository
More informationBitnami Coppermine for Huawei Enterprise Cloud
Bitnami Coppermine for Huawei Enterprise Cloud Description Coppermine is a multi-purpose, full-featured web picture gallery. It includes user management, private galleries, automatic thumbnail creation,
More informationBitnami ProcessMaker Community Edition for Huawei Enterprise Cloud
Bitnami ProcessMaker Community Edition for Huawei Enterprise Cloud Description ProcessMaker is an easy-to-use, open source workflow automation and Business Process Management platform, designed so Business
More informationSystem Requirements ENTERPRISE
System Requirements ENTERPRISE Hardware Prerequisites You must have a single bootstrap node, Mesos master nodes, and Mesos agent nodes. Bootstrap node 1 node with 2 cores, 16 GB RAM, 60 GB HDD. This is
More informationCentOS V5-6. User Guide
CentOS V5-6 User Guide 1 Table of Contents 1 Table of Contents... 2 2 Installation via Logtrust repository... 3 3 Update via Logtrust repository... 4 4 Installation via.rpm packages... 5 5 Configuration/reconfiguration...
More informationTechnical Memo V1.3 06th September 2018
Index 1 Introduction... 2 2 Installing MQTT broker... 2 3 Generate server and client certificate and key... 2 4 Test with Mosquitto MQTT client... 3 5 Test with MQTT.fx client... 3 6 Test with Mosquitto
More informationBitnami JFrog Artifactory for Huawei Enterprise Cloud
Bitnami JFrog Artifactory for Huawei Enterprise Cloud Description JFrog Artifactory is a Binary Repository Manager for Maven, Ivy, Gradle modules, etc. Integrates with CI servers for fully traceable builds.
More informationThis document provides instructions for upgrading a DC/OS cluster.
Upgrading ENTERPRISE This document provides instructions for upgrading a DC/OS cluster. If this upgrade is performed on a supported OS with all prerequisites fulfilled, this upgrade should preserve the
More informationRed Hat Enterprise Linux Atomic Host 7 Getting Started with Cockpit
Red Hat Enterprise Linux Atomic Host 7 Getting Started with Cockpit Getting Started with Cockpit Red Hat Atomic Host Documentation Team Red Hat Enterprise Linux Atomic Host 7 Getting Started with Cockpit
More informationVIRTUAL GPU LICENSE SERVER VERSION , , AND 5.1.0
VIRTUAL GPU LICENSE SERVER VERSION 2018.10, 2018.06, AND 5.1.0 DU-07754-001 _v7.0 through 7.2 March 2019 User Guide TABLE OF CONTENTS Chapter 1. Introduction to the NVIDIA vgpu Software License Server...
More informationa. puppet should point to master (i.e., append puppet to line with master in it. Use a text editor like Vim.
Head Node Make sure that you have completed the section on Precursor Steps and Storage. Key parts of that are necessary for you to continue on this. If you have issues, please let an instructor know to
More informationUsing Fluentd as an alternative to Splunk
Using Fluentd as an alternative to Splunk As infrastructure within organizations grows in size and the number of hosts, the cost of Splunk may become prohibitive. I created this document to demonstrate,
More informationInstallation and Upgrade 1. Installing DataPlane. Date of Publish:
1 Installing DataPlane Date of Publish: 2018-08-07 http://docs.hortonworks.com Contents DataPlane Platform support requirements...3 Installation overview...4 Pre-installation tasks... 6 Prepare your clusters...
More informationSAS Event Stream Processing for Edge Computing 4.3: Deployment Guide
SAS Event Stream Processing for Edge Computing 4.3: Deployment Guide SAS Documentation June 2017 The correct bibliographic citation for this manual is as follows: SAS Institute Inc. 2017. SAS Event Stream
More informationBitnami Kafka for Huawei Enterprise Cloud
Bitnami Kafka for Huawei Enterprise Cloud Description Apache Kafka is publish-subscribe messaging rethought as a distributed commit log. How to start or stop the services? Each Bitnami stack includes a
More informationUpgrade Instructions. NetBrain Integrated Edition 7.1. Two-Server Deployment
NetBrain Integrated Edition 7.1 Upgrade Instructions Two-Server Deployment Version 7.1a Last Updated 2018-09-04 Copyright 2004-2018 NetBrain Technologies, Inc. All rights reserved. Contents 1. Upgrading
More informationBitnami Dolibarr for Huawei Enterprise Cloud
Bitnami Dolibarr for Huawei Enterprise Cloud Description Dolibarr is an open source, free software package for small and medium companies, foundations or freelancers. It includes different features for
More informationBitnami ez Publish for Huawei Enterprise Cloud
Bitnami ez Publish for Huawei Enterprise Cloud Description ez Publish is an Enterprise Content Management platform with an easy to use Web Content Management System. It includes role-based multi-user access,
More informationInstallation Guide for Windows
Installation Guide for Windows Cisco IoT Data Connect - Edge and Fog Fabric (EFF) 1.0.1 Revised: August 25, 2017 These release notes provide an overview to Cisco IoT DataConnect Edge and Fog Fabric version
More informationTLS encryption and mutual authentication using syslog-ng Open Source Edition
TLS encryption and mutual authentication using syslog-ng Open Source Edition March 02, 2018 Copyright 1996-2018 Balabit, a One Identity business Table of Contents 1. Creating self-signed certificates...
More informationGyrfalcon 2.0 User's Guide
User's Guide November 26, 2013 Classified By: 2245665 Reason: 1.4(c) Declassify On: 20381126 Derived From: COL S-06 //20381126 November 2013 (U) Table of Changes Date Change Description Authority 11/26/13
More informationRed Hat Enterprise Linux 7 Getting Started with Cockpit
Red Hat Enterprise Linux 7 Getting Started with Cockpit Getting Started with Cockpit Red Hat Enterprise Linux Documentation Team Red Hat Enterprise Linux 7 Getting Started with Cockpit Getting Started
More informationCopyright Heraflux Technologies. Do not redistribute or copy as your own. 1
@kleegeek davidklee.net heraflux.com in/davidaklee Specialties / Focus Areas / Passions: Performance Tuning Business Continuity Virtualization & Cloud Infrastructure Architecture Health & Efficiency Capacity
More informationSQL Server Administration on Linux 2017
@kleegeek davidklee.net heraflux.com davidaklee Specialties / Focus Areas / Passions: Performance Tuning Business Continuity Virtualization & Cloud Infrastructure Architecture Health & Efficiency Capacity
More informationBitnami Mantis for Huawei Enterprise Cloud
Bitnami Mantis for Huawei Enterprise Cloud Description Mantis is a complete bug-tracking system that includes role-based access controls, changelog support, built-in reporting and more. A mobile client
More informationCloudLink Key Management for VMware vcenter Server Configuration Guide
CloudLink Key Management for VMware vcenter Server Dell EMC CloudLink SecureVM Version 6.0, 6.5, and 6.6 H15988.3 January 2018 This contains procedures to create a trusted connection between CloudLink
More informationCopyright and Legal Disclaimers
1 Copyright and Legal Disclaimers User Manual for DiConnect Enterprise R11. Document Release Date: June 25, 2014. Copyright 2014 by DiCentral Corporation. All rights reserved. This document and all content
More informationVMware Horizon View Deployment
VMware Horizon View provides end users with access to their machines and applications through a unified workspace across multiple devices, locations, and connections. The Horizon View Connection Server
More informationIf you had a freshly generated image from an LCI instructor, make sure to set the hostnames again:
Storage Node Setup A storage node (or system as your scale) is a very important unit for an HPC cluster. The computation is often about the data it produces and keeping that data safe is important. Safe
More informationInstalling HDF Services on an Existing HDP Cluster
3 Installing HDF Services on an Existing HDP Cluster Date of Publish: 2018-08-13 http://docs.hortonworks.com Contents Upgrade Ambari and HDP...3 Installing Databases...3 Installing MySQL... 3 Configuring
More informationPrerequisites: Students must be proficient in general computing skills but not necessarily experienced with Linux or Unix. Supported Distributions:
This GL124 course is designed to follow an identical set of topics as the Red Hat RH124 course with the added benefit of very comprehensive lab exercises and detailed lecture material. The Red Hat Enterprise
More informationDownloading and installing Db2 Developer Community Edition on Red Hat Enterprise Linux Roger E. Sanders Yujing Ke Published on October 24, 2018
Downloading and installing Db2 Developer Community Edition on Red Hat Enterprise Linux Roger E. Sanders Yujing Ke Published on October 24, 2018 This guide will help you download and install IBM Db2 software,
More informationBitnami OroCRM for Huawei Enterprise Cloud
Bitnami OroCRM for Huawei Enterprise Cloud Description OroCRM is a flexible open-source CRM application. OroCRM supports your business no matter the vertical. If you are a traditional B2B company, franchise,
More informationProftpd 지시자설정 10_29 페이지 년 10 월 29 일목요일 오후 2:08
Proftpd 지시자설정 2009 년 10 월 29 일목요일 오후 2:08 루트로접속막기 [root@ruffy&13:47& sbin]# cd /usr/local/ftp/etc/ [root@ruffy&14:05& etc]# vi proftpd.conf IP 대역접속제한 Order 는앞에서부터적용 (apache 와반대 ) 유저제한 디렉토리접근제한 젂송파일사이즈제한
More informationARCHER Data Services Service Layer
ARCHER 1.0 ARCHER Data Services Service Layer System Administrator s Guide ICAT & MCAText Installation Configuration Maintenance ARCHER Data Services Service Layer... 1 About ARCHER Data Services Service
More informationAn internal CA that is part of your IT infrastructure, like a Microsoft Windows CA
Purpose This document will describe how to setup to use SSL/TLS to provide encrypted connections to the. This document can also be used as an initial point for troubleshooting SSL/TLS connections. Target
More informationCassia MQTT User Guide
Cassia MQTT User Guide Contents 1. Introduction... 2 1.1. Client and Broker... 2 1.2. MQTT Connection... 2 1.3. Cassia MQTT Bypass Mode... 3 2. Settings on MQTT Server/Broker... 4 2.1. Configuration Files...
More informationHortonworks SmartSense
Hortonworks SmartSense Installation (January 8, 2018) docs.hortonworks.com Hortonworks SmartSense: Installation Copyright 2012-2018 Hortonworks, Inc. Some rights reserved. The Hortonworks Data Platform,
More informationTwo factor authentication for Apache using mod_auth_xradius
Two factor authentication for Apache using mod_auth_xradius sandbox-logintc.com/docs/connectors/apache_alt.html Introduction LoginTC makes it easy for administrators to add multi-factor to Apache. This
More informationBitnami ERPNext for Huawei Enterprise Cloud
Bitnami ERPNext for Huawei Enterprise Cloud Description ERPNext is an open source, web based application that helps small and medium sized business manage their accounting, inventory, sales, purchase,
More informationLinux Installation Guide
Linux Installation Guide Cisco IoT Data Connect - Edge and Fog Fabric (EFF) 1.0.1 Revised: August 25, 2017 Contents Introduction... 3 Features and Functions... 3 The Edge and Fog Fabric Components... 4
More informationBitnami Pimcore for Huawei Enterprise Cloud
Bitnami Pimcore for Huawei Enterprise Cloud Description Pimcore is the open source platform for managing digital experiences. It is the consolidated platform for web content management, product information
More informationPurpose. Target Audience. Overview. Prerequisites. Nagios Log Server. Sending NXLogs With SSL/TLS
Purpose This document describes how to setup encryption between and NXLog on Windows using self signed certificates. Target Audience This document is intended for use by Administrators who would like encryption
More informationLinux Essentials Objectives Topics:
Linux Essentials Linux Essentials is a professional development certificate program that covers basic knowledge for those working and studying Open Source and various distributions of Linux. Exam Objectives
More informationManage Certificates. Certificates Overview
Certificates Overview, page 1 Show Certificates, page 3 Download Certificates, page 4 Install Intermediate Certificates, page 4 Delete a Trust Certificate, page 5 Regenerate a Certificate, page 6 Upload
More informationIf you prefer to use your own SSH client, configure NG Admin with the path to the executable:
Each Barracuda NG Firewall system is routinely equipped with an SSH daemon listening on TCP port 22 on all administrative IP addresses (the primary box IP address and all other IP addresses that administrative
More informationOn-demand target, up and running
On-demand target, up and running ii On-demand target, up and running Contents Chapter 1. Assumptions........ 1 Chapter 2. Overview......... 3 Chapter 3. Component purpose.... 5 Chapter 5. Starting a session
More informationGrandstream Networks, Inc. GWN7000 Multi-WAN Gigabit VPN Router VPN Configuration Guide
Grandstream Networks, Inc. GWN7000 Multi-WAN Gigabit VPN Router VPN Configuration Guide Table of Contents SUPPORTED DEVICES... 5 INTRODUCTION... 6 GWN7000 VPN FEATURE... 7 OPENVPN CONFIGURATION... 8 OpenVPN
More informationBitnami Apache Solr for Huawei Enterprise Cloud
Bitnami Apache Solr for Huawei Enterprise Cloud Description Apache Solr is an open source enterprise search platform from the Apache Lucene project. It includes powerful full-text search, highlighting,
More informationRed Hat Virtualization 4.1
Red Hat Virtualization 4.1 Upgrade Guide Update and upgrade tasks for Red Hat Virtualization Last Updated: 2018-03-06 Red Hat Virtualization 4.1 Upgrade Guide Update and upgrade tasks for Red Hat Virtualization
More informationLABORATORIO Rsyslog (vagrant) PARTE-1 1/19
LABORATORIO Rsyslog (vagrant) PARTE-1 1/19 El objetivo de la práctica es monitorizar log's de forma centralizada, incluso filtrando por host's clientes, incluso al final de la misma incorporar log's a
More informationIoT Starter Kit Part 3: Connect to the cloud AWS IoT. 1 Local network
IoT Starter Kit Part 3: Connect to the cloud AWS IoT IoT Starter Kit is designed in the way to be connectable to different clouds via bidirectional MQTT channel. So, you can collect, store, process and
More informationZenoss Resource Manager Upgrade Guide
Zenoss Resource Manager Upgrade Guide Release 5.0.10 Zenoss, Inc. www.zenoss.com Zenoss Resource Manager Upgrade Guide Copyright 2016 Zenoss, Inc. All rights reserved. Zenoss and the Zenoss logo are trademarks
More informationControl-M Workload Automation
White Paper Control-M Workload Automation Deploying Control-M in Amazon Web Services Cloud for version 9.0.00 PAGE 1 OF 37 Copyright BMC Software, Inc. 2017 Table of Contents Table of Contents... 2 Disclaimer...
More informationController Installation
The following describes the controller installation process. Installing the Controller, page 1 Controller Deployment, page 2 Controller Virtual Hard Disk Storage, page 4 Custom Controller Web UI Certificates,
More informationRedhat OpenStack 5.0 and PLUMgrid OpenStack Networking Suite 2.0 Installation Hands-on lab guide
Redhat OpenStack 5.0 and PLUMgrid OpenStack Networking Suite 2.0 Installation Hands-on lab guide Oded Nahum Principal Systems Engineer PLUMgrid EMEA November 2014 Page 1 Page 2 Table of Contents Table
More informationSELinux Workshop Redux Jamie Duncan, Red Hat RVaLUG 19 April 2014
SELinux Workshop Redux Jamie Duncan, Red Hat RVaLUG 19 April 2014 Introduction The expectation is that you will either have a virtual machine to use, or that you will revert any changes made to your machine
More informationFigure 1 0: AMI Instances
Title: Configuring Control-M installation in Cloud environment. Last Update: July 4 th, 2018 Cause: Cloud Services Background Cloud Services is a collection of remote computing services that together make
More informationInstalling an HDF cluster
3 Installing an HDF cluster Date of Publish: 2018-08-13 http://docs.hortonworks.com Contents Installing Ambari...3 Installing Databases...3 Installing MySQL... 3 Configuring SAM and Schema Registry Metadata
More informationRed Hat JBoss Core Services
Red Hat JBoss Core Services 2.4.29 Apache HTTP Server Installation Guide For use with Red Hat JBoss middleware products. Last Updated: 2018-08-15 Red Hat JBoss Core Services 2.4.29 Apache HTTP Server
More informationBitnami Tiny Tiny RSS for Huawei Enterprise Cloud
Bitnami Tiny Tiny RSS for Huawei Enterprise Cloud Description Tiny Tiny RSS is an open source web-based news feed (RSS/Atom) reader and aggregator, designed to allow you to read news from any location,
More informationSecure Websites Using SSL And Certificates
By punk0mi Published: 2007-05-16 17:14 Secure Websites Using SSL And Certificates This how-to will guide you through the entire process of setting up a secure website using SSL and digital certificates.
More informationLinux Installation Guide
Linux Installation Guide Kinetic - Edge & Fog Processing Module (EFM) 1.2.0 Revised: November 30, 2017 Contents Introduction... 3 Features and Functions... 3 The Edge and Fog Processing Module Components...
More informationInstall and Configure Samba - CentOS 7
CentOS 7 Samba Guide Page 1 of 11 Install and Configure Samba - CentOS 7 What is Samba and why should I use it? Samba is a service that allows Linux machines to access and share files, folders and printers
More informationInfoblox Kubernetes1.0.0 IPAM Plugin
2h DEPLOYMENT GUIDE Infoblox Kubernetes1.0.0 IPAM Plugin NIOS version 8.X August 2018 2018 Infoblox Inc. All rights reserved. Infoblox Kubernetes 1.0.0 IPAM Deployment Guide August 2018 Page 1 of 18 Overview...
More informationBitnami MariaDB for Huawei Enterprise Cloud
Bitnami MariaDB for Huawei Enterprise Cloud First steps with the Bitnami MariaDB Stack Welcome to your new Bitnami application running on Huawei Enterprise Cloud! Here are a few questions (and answers!)
More informationInstalling Data Exchange Layer
Installation Guide McAfee Data Exchange Layer 4.0.0 Installing Data Exchange Layer System requirements Make sure that your system environment meets these requirements and that you have administrator rights.
More informationDC/OS on Google Compute Engine
DC/OS on Google Compute Engine You can configure a DC/OS cluster on Google Compute Engine (GCE) by using these scripts. Configure bootstrap node Install the DC/OS GCE scripts Configure parameters Important:
More informationPurpose. Target Audience. Solution Overview NCPA. Using NCPA For Passive Checks
Using For Passive Checks Purpose This document describes how to configure the Nagios Cross Platform Agent () to send passive check results to Nagios XI or Nagios Core using Nagios Remote Data Processor
More informationSending the data. User Guide
Sending the data User Guide 1 Table of Contents 1 Table of Contents... 2 2 Overview... 7 3 C Language... 8 4 Visual Studio C#... 9 5 Visual Studio F#...11 6 Java... 12 7 Lua... 13 8 Python... 14 8.1 Related
More informationBacula Server Installation and Configuration on Centos 6.2
Bacula Server Installation and Configuration on Centos 6.2 Author : Birjesh Kumar Categories : Backup Server, Backup tools, Linux Tools, Uncategorized Date : Apr 24, 2015 Facebook Twitter Google+ Gmail
More informationMSE System and Appliance Hardening Guidelines
MSE System and Appliance Hardening Guidelines This appendix describes the hardening of MSE, which requires some services and processes to be exposed to function properly. This is referred to as MSE Appliance
More informationRed Hat Virtualization 4.0
Red Hat Virtualization 4.0 Upgrade Guide Update and upgrade tasks for Red Hat Virtualization Last Updated: 2018-02-18 Red Hat Virtualization 4.0 Upgrade Guide Update and upgrade tasks for Red Hat Virtualization
More informationBitnami Open Atrium for Huawei Enterprise Cloud
Bitnami Open Atrium for Huawei Enterprise Cloud Description Open Atrium is designed to help teams collaborate by providing an intranet platform that includes a blog, a wiki, a calendar, a to do list, a
More informationEventTracker Linux Agent. Install Guide
EventTracker Linux Agent Install Guide Publication Date: March 23, 2017 Abstract This guide will help the users to install and configure EventTracker Linux agent, and verify the expected functionality
More informationSetting Up a Cisco Unified Communications Manager SIP Trunk Integration, page 1
Up a Cisco Unified Communications Manager SIP Trunk Integration This chapter provides instructions for setting up a Cisco Unified Communications Manager SIP trunk integration with Cisco Unity Connection.
More informationMeshCentral 2. Installer s Guide. Version July 31, 2018 Ylian Saint-Hilaire
MeshCentral 2 MeshCentral 2 Installer s Guide Version 0.0.4 July 31, 2018 Ylian Saint-Hilaire Table of Contents 1. Abstract... 1 2. Amazon Linux 2... 1 2.1 Getting the AWS instance setup... 1 2.2 Installing
More informationBitnami Trac for Huawei Enterprise Cloud
Bitnami Trac for Huawei Enterprise Cloud Description Trac is an enhanced wiki and issue tracking system for software development projects. It provides interfaces to Subversion and Git, an integrated Wiki
More informationNICE Desktop Cloud Visualization. Administrator Guide
NICE Desktop Cloud Visualization Administrator Guide NICE Desktop Cloud Visualization: Administrator Guide Copyright 2018 Amazon Web Services, Inc. and/or its affiliates. All rights reserved. Amazon's
More informationPart 1 : Getting Familiar with Linux. Hours. Part II : Administering Red Hat Enterprise Linux
Part 1 : Getting Familiar with Linux Chapter 1 : Getting started with Red Hat Enterprise Linux Chapter 2 Finding Your Way on the Command Line Hours Part II : Administering Red Hat Enterprise Linux Linux,
More information