Skip to content

Instantly share code, notes, and snippets.

@tmichaud314
Created December 15, 2014 23:46
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save tmichaud314/f0535cd273b39ba68c2b to your computer and use it in GitHub Desktop.
Save tmichaud314/f0535cd273b39ba68c2b to your computer and use it in GitHub Desktop.
OES Security Module configuration/RMI server startup success
After logging in:
[oracle@aus2-fge-dpm01v bin]$ sudo su oracle
[oracle@aus2-fge-dpm01v bin]$ export JAVA_HOME=/opt/oracle/software/jrockit
[oracle@aus2-fge-dpm01v bin]$ cd /opt/oracle/software/Middleware/oesclient/oessm/SMConfigTool
[oracle@aus2-fge-dpm01v bin]$ cp smconfig.rmi.controlled.prp di2.rmi.controlled.prp
[oracle@aus2-fge-dpm01v bin]$ vim di2.rmi.controlled.prp
<editted with the following diffs>
[oracle@aus2-fge-dpm01v bin]$ diff smconfig.rmi.controlled.prp di2.rmi.controlled.prp
[oracle@aus2-fge-dpm01v SMConfigTool]$ diff smconfig.rmi.controlled.prp di2.rmi.controlled.prp
20,21c20,21
< oracle.security.jps.runtime.pd.client.RegistrationServerHost=
< oracle.security.jps.runtime.pd.client.RegistrationServerPort=
---
> oracle.security.jps.runtime.pd.client.RegistrationServerHost=aus2-fge-dpm01v.dev.drillinginfo.com
> oracle.security.jps.runtime.pd.client.RegistrationServerPort=7002
26c26
< oracle.security.jps.pdp.rmism.RMIRegistryPortNumber=
---
> oracle.security.jps.pdp.rmism.RMIRegistryPortNumber=9405
30c30
< oracle.security.jps.runtime.pd.client.sm_name=
---
> oracle.security.jps.runtime.pd.client.sm_name=di2-rmi-sm
36c36
< oracle.security.jps.runtime.pd.client.DistributionServicePort=
---
> oracle.security.jps.runtime.pd.client.DistributionServicePort=8000
38,40d37
[oracle@aus2-fge-dpm01v bin]$ cat ../SMConfigTool/di2.rmi.controlled.prp
<!--
Copyright (c) 2010, 2011, Oracle and/or its affiliates. All rights reserved.
NAME
smconfig.rmi.controlled.prp
DESCRIPTION
This file specifies parameters used by SM configuration script (config.sh).
This file is for RMI SM in Controlled Policy Distribution Mode.
-->
# Policy dustribution mode. Possible values:
# controlled-push - if this mode is set you need to configire Policy Distribution configiration parameters
oracle.security.jps.runtime.pd.client.policyDistributionMode=controlled-push
# -------- Policy Distributor connectivity information - required for controlled-push distribution mode
# Only needed for controlled-push policy distribution mode
oracle.security.jps.runtime.pd.client.RegistrationServerHost=aus2-fge-dpm01v.dev.drillinginfo.com
oracle.security.jps.runtime.pd.client.RegistrationServerPort=7002
#---------- ONLY for RMI SM -----------------------------
# port number to accept authorization requests
oracle.security.jps.pdp.rmism.RMIRegistryPortNumber=9405
# Only Supply if you do not use -smConfigId at the command line
# SM name
oracle.security.jps.runtime.pd.client.sm_name=di2-rmi-sm
# >>>>>>>>>>>>OPTIONAL PARAMETERS<<<<<<<<<<<<<<<<<
# ------------ Only for Java SM, WS SM, and RMI SM in controlled-push mode --------------------
# port to listen for policy distribution. Picked automatically by SM config tool if not specified
oracle.security.jps.runtime.pd.client.DistributionServicePort=8000
oracle.security.jps.runtime.pd.client.sm_type=rmi
[oracle@aus2-fge-dpm01v bin]$ cd /opt/oracle/software/Middleware/oesclient/oessm/bin
[oracle@aus2-fge-dpm01v bin]$ ./config.sh -smConfigId di2-rmi-sm -prpFileName ../SMConfigTool/di2.rmi.controlled.prp
Configuring for Controlled Policy Distribution Mode
Security Module configuration is created at: /opt/oracle/software/Middleware/oesclient/oes_sm_instances/di2-rmi-sm
Enter password for key stores:<weblogic user's password found in S106 card>
Enter password for key stores again:<ditto>
Passwords are saved in credential store.
Keystores are initialized successfully.
Please enter a value for OES Admin Server User name:weblogic
Please enter a value for OES Admin Server Password:<weblogic user's password found in S106 card>
Please re-enter a value for OES Admin Server Password:<ditto>
Enrollment is proceeded successfully.
[oracle@aus2-fge-dpm01v bin]$ cd /opt/oracle/software/Middleware/oesclient/oes_sm_instances/di2-rmi-sm
[oracle@aus2-fge-dpm01v di2-rmi-sm]$ ls
bin config security startRMIServer.sh
[oracle@aus2-fge-dpm01v di2-rmi-sm]$ ./startRMIServer.sh
Dec 15, 2014 5:31:09 PM oracle.security.jps.internal.audit.dynamic.AuditStoreFactory getInstance
WARNING: file /opt/oracle/software/Middleware/oesclient/oes_sm_instances/di2-rmi-sm/config/audit-store.xml was not found
Dec 15, 2014 5:31:21 PM oracle.security.jps.az.internal.runtime.pd.register.PDPRegister run
INFO: PDP registration succeeded.
Dec 15, 2014 5:31:24 PM com.bea.security.ssmrmi.services.impl.RMIAuthorizationServiceImpl start
INFO: RMI Authorization service has started.
Dec 15, 2014 5:31:24 PM com.bea.security.ssmrmi.services.impl.RMIRoleServiceImpl start
INFO: RMI Role-Mapping service has started.
Dec 15, 2014 5:31:24 PM com.bea.security.ssmrmi.services.impl.RMIServiceLocatorImpl start
INFO: RMI Service Locator has started.
RMI-SSM has started.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment