Running RMAN backups from grid control but using oracle account with rsa keys vs a password ?
I'm a sysadmin trying to help out one of our DBA's setup the RMAN backups (Oracle 11g on rhel5 ) so they can schedule and control them from the OEM grid control. But we want the oracle user to use ssh keys instead of a password. I have the working rsa keys in place for the user but the GUI seems to require a password and all tests fail if we do not specify a password. I've looked around and been unsuccessful finding anything to resolve this so far. Is this something that can be done or does the software require a password ?
Hello,
I'm trying to perform these operations without entering any password, as user "fzd":fzd@machine1> scp /tmp/srcFile1 fzd@machine2:/tmp/$destFile
fzd@machine1> scp fzd@machine2:/tmp/$srcFile /tmp/$destFilebut alsofzd@machine1> scp /tmp/srcFile1 machine2:/tmp/$destFile
fzd@machine1> scp... (6 Replies)
hi ...can anyone help me with this..
i have to create a oracle account, whose passwd should be in oracle password loop
i know how to create account but i got stuck with oracle password loop
so please help me ASAP...
thanks in advance.. (0 Replies)
I have set up RSA private and pub keys between "NodeA" and "NodeB"
Everything works fine when I test with a regular user account. However it does not work as root. I followed the same procedure to set up the keys as the root user but I am still prompted for a password. I have verified my... (1 Reply)
GRID-CA-SIGN(1) Globus Commands GRID-CA-SIGN(1)NAME
grid-ca-sign - Sign a certificate with a SimpleCA for use on a grid
SYNOPSIS
grid-ca-sign [-help] [-h] [-usage] [-version] [-versions]
grid-ca-sign -in REQUEST -out CERTIFICATE
[-force] [-dir DIRECTORY]
[-openssl-help] [OPENSSL-OPTIONS]
DESCRIPTION
The grid-ca-sign program signs a certificate based on a request file with a CA certificate created by grid-ca-create. The new certificate
is written to a file. If the CA has already signed a certificate with the same subject name as contained in the certificate request, it
will refuse to sign the new request unless the -force option is provided on the command-line.
If run as a privileged user, grid-ca-sign uses the CA certificate and configuration located in ${localstatedir}/lib/globus/simple_ca to
sign the certificate. For a non-privileged user, grid-ca-sign uses the CA certificate and configuration located in $HOME/.globus/simpleCA.
The grid-ca-sign program an use a different CA configuration and certificate by using the -dir option.
The full set of command-line options to grid-ca-sign follows. In addition to these, unknown options will be passed to the openssl command
when creating the self-signed certificate.
-help, -h, -usage
Display the command-line options to grid-ca-sign and exit.
-version, -versions
Display the version number of the grid-ca-sign command. The second form includes details about the package containing grid-ca-sign.
-in REQUEST
Sign the request contained in the REQUEST file.
-out CERTIFICATE
Write the signed request to the CERTIFICATE file.
-force
Revoke any previously issued certificate with the same subject name as in the certificate request and issue a new certificate.
Otherwise, grid-ca-sign will refuse to sign the request.
-dir DIRECTORY
Sign the certificate using the Simple CA certificate and configuration located in DIRECTORY instead of the default.
-openssl-help
Print the command-line options available for the openssl ca command.
EXAMPLES
Sign a certificate request using the simple CA in $HOME/SimpleCA
% grid-ca-sign -in usercert_request.pem -out usercert.pem -dir $HOME/SimpleCA
To sign the request
please enter the password for the CA key:
The new signed certificate is at: /home/juser/.globus/simpleCA/newcerts/01.pem
ENVIRONMENT VARIABLES
The following environment variables affect the execution of grid-ca-sign:
GLOBUS_LOCATION
Non-standard installation path of the Globus toolkit.
SEE ALSO grid-cert-request(1), grid-ca-create(1), grid-default-ca(1), grid-ca-package(1)AUTHOR
University of Chicago
Globus Toolkit 5.2.0 07/22/2011 GRID-CA-SIGN(1)