Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信

上传人:n**** 文档编号:37429494 上传时间:2018-04-16 格式:DOCX 页数:44 大小:2.92MB
返回 下载 相关 举报
Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信_第1页
第1页 / 共44页
Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信_第2页
第2页 / 共44页
Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信_第3页
第3页 / 共44页
Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信_第4页
第4页 / 共44页
Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信_第5页
第5页 / 共44页
点击查看更多>>
资源描述

《Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信》由会员分享,可在线阅读,更多相关《Redhat6.5+Oracle 11.2 RAC安装完整步骤,包括单独完整DNS建立和SSL互信(44页珍藏版)》请在金锄头文库上搜索。

1、oracle RAC 集群实施文档集群实施文档一:对主机进行配置,需要在 2 台主机都进行配置。 1:关掉防火墙,关掉 SElinux ssh 到 redhat 主机 03S 和 04S 上: root03S # service iptables stopiptables:将链设置为政策 ACCEPT:nat mangle filter 确定 iptables:清除防火墙规则:确定 iptables:正在卸载模块:确定编辑编辑 selinux 配置文件修改配置文件修改 为为 SELINUX=disabled root 03S # vim /etc/selinux/config # This f

2、ile controls the state of SELinux on the system. # SELINUX= can take one of these three values: # enforcing - SELinux security policy is enforced. # permissive - SELinux prints warnings instead of enforcing. # disabled - No SELinux policy is loaded. SELINUX=disabled # SELINUXTYPE= can take one of th

3、ese two values: # targeted - Targeted processes are protected, # mls - Multi Level Security protection. SELINUXTYPE=targeted 再次查看 linux 防火墙与 selinux 服务 root03S named# chkconfig iptables off root03S named# service iptables stop root 03S named# service ip6tables stopiptables:将链设置为政策 ACCEPT:filter 确定 i

4、ptables:清除防火墙规则:确定 iptables:正在卸载模块:确定 root 03S named# service ip6tables stopip6tables:将 chains 设置为 ACCEPT 策略:filter 确定 ip6tables:清除防火墙规则:确定 :正在卸载模块:确定 root 04S named# chkconfig ip6tables off root 03S # ip6tables -L root 03S # iptables -L Chain INPUT (policy ACCEPT) target prot opt source destination

5、 Chain FORWARD (policy ACCEPT) target prot opt source destination Chain OUTPUT (policy ACCEPT) target prot opt source destination root 03S # getenforce Disabled2:设置:设置 hosts 文件文件主机名公网 IP私网 IP名称VIP名称SCAN IP名称01S-PRIV 01S-VIP 192.168.132.8RAC-SCAN192.168.132.9RAC-SCAN01S192.168.132.1192.168.1.1192.168

6、.132.11192.168.132.10RAC-SCAN02S192.168.132.2192.168.1.2 02S-PRIV192.168.132.1202S-VIP 03S-PRIV 03S-VIP192.168.132.15RAC-SCAN34192.168.132.16RAC-SCAN34 03S192.168.132.3192.168.1.3192.168.132.13192.168.132.17RAC-SCAN3404S192.168.132.4192.168.1.4 04S-PRIV192.168.132.1404S-VIP 192.168.131.8RAC-SCAN3192

7、.168.131.9RAC-SCAN301S192.168.131.1192.168.1.5 01S-PRIV192.168.131.1101S-VIP192.168.131.10RAC-SCAN302S192.168.131.2192.168.1.6 02S-PRIV192.168.131.1202S-VIP 03S-PRIV 03S-VIP192.168.131.15RAC-SCAN4192.168.131.16RAC-SCAN4 03S192.168.131.3192.168.1.7192.168.131.13192.168.131.17RAC-SCAN404S192.168.131.4

8、192.168.1.8 04S-PRIV192.168.131.1404S-VIP root 04S # vi /etc/hosts127.0.0.1 localhost localhost.localdomain localhost4 localhost4.localdomain4 :1 localhost localhost.localdomain localhost6 localhost6.localdomain6192.168.131.3 03S192.168.131.4 04S192.168.1.7 03S-PRIV 192.168.1.8 04S-PRIV192.168.131.1

9、3 03S-VIP192.168.131.14 04S-VIP192.168.131.15 RAC-SCAN4192.168.131.16 RAC-SCAN4192.168.131.17 RAC-SCAN4 3:配置:配置 DNS root 03S etc# rpm -qa|grep bind samba-winbind-3.6.9-164.el6.x86_64 ypbind-1.20.4-30.el6.x86_64 bind-9.8.2-0.17.rc1.el6_4.6.x86_64 PackageKit-device-rebind-0.5.8-21.el6.x86_64 samba-win

10、bind-clients-3.6.9-164.el6.x86_64 bind-utils-9.8.2-0.17.rc1.el6_4.6.x86_64 rpcbind-0.2.0-11.el6.x86_64 bind-libs-9.8.2-0.17.rc1.el6_4.6.x86_64root 03S etc# rpm -qa|grep name biosdevname-0.5.0-2.el6.x86_64(1 1)编辑)编辑 named.confnamed.confroot 03S etc# vi /etc/named.conf/ / named.conf / / Provided by Re

11、d Hat bind package to configure the ISC BIND named(8) DNS / server as a caching only nameserver (as a localhost DNS resolver only). / / See /usr/share/doc/bind*/sample/ for example named configuration files. /options listen-on port 53 127.0.0.1; ;listen-on-v6 port 53 :1; ;directory “/var/named“;dump

12、-file “/var/named/data/cache_dump.db“;statistics-file “/var/named/data/named_stats.txt“;memstatistics-file “/var/named/data/named_mem_stats.txt“;allow-query localhost; ;recursion yes;dnssec-enable yes;dnssec-validation yes;dnssec-lookaside auto;/* Path to ISC DLV key */bindkeys-file “/etc/named.iscd

13、lv.key“;managed-keys-directory “/var/named/dynamic“; ;logging channel default_debug file “data/named.run“;severity dynamic; ;zone “.“ IN type hint;file “named.ca“; ;include “/etc/named.rfc1912.zones“; include “/etc/named.root.key“;caldomain.“ IN type master;file “localdomain.zone“;allow-update none;

14、 ; ;#添加以下内容 zone “localhostdomain.“ IN type master; file “localdomain.zone”allow-update none ;s ; zone “132. 192.168.in-addr.arpa.“ IN type master;file “132. 192.168.in-addr.arpa“;allow-update none; ; ; zone “1.168.192.in-addr.arpa.“ IN type master;file “1.168.192.in-addr.arpa“;allow-update none; ;

15、;(2)编辑 /var/named 下的配置文件root 04S # vi /var/named/131. 192.168.in-addr.arpa#添加以下内容 $TTL 1H IN SOA localhost.localdomain. localhost.localdomain. ( 23H1H1W1H ) 131. 192.168.in-addr.arpa. IN NS localhost.localdomain.3 IN PTR 03S.localdomain 4 IN PTR 04S.localdomain 13 IN PTR 03S-vip.localdomain 14 IN PTR 04S-vip.localdomain 15 IN PTR RAC-SCAN4.localdomain 16 IN PTR RAC-SCAN4.localdomain 17 IN PTR RAC-SCAN4.localdom

展开阅读全文
相关资源
正为您匹配相似的精品文档
相关搜索

最新文档


当前位置:首页 > 电子/通信 > 综合/其它

电脑版 |金锄头文库版权所有
经营许可证:蜀ICP备13022795号 | 川公网安备 51140202000112号