AIX and Linux are the first BVQ platforms where data is not pulled from the systems by the BVQ scanner. Instead, data is sent (pushed) from the OS on the LPARs to the BVQ Server by an BVQ OS Agent using SCP/SFTP. This means, an ssh-server on the BVQ Server is receiving data from the OS instances. Once an AIX or Linux BVQ Scanner is configured, the ssh-server is being started automatically and is listening on port 2222. Note |
---|
| Please ensure that port 2222 is not blocked by a firewall! |
BVQ Scanner configurationTo configure an AIX or Linux BVQ scanner the following information is required: - NAME - Name of the AIX or Linux scanner
- INSTANCE GROUP NAME - Select a name which is used to group all AIX or Linux Instances (=partitions) together that are running the BVQ OS Agent for AIX or Linux. The number of instances per instance group should not exceed 50.
- USERNAME - This user authorizes the SCP/SFTP transfer from the AIX or Linux Instances to the BVQ Server. It will be configured during the installation process
- SSH PUBLIC KEY - Optional. Leave empty if you want to use the default ssh key-pair included in bvq_agent.tar.gz. If you want to use a different ssh key-pair type, then enter the content of the public ssh key file here and adjust bvq_config.sh on the OS agent accordingly.
Supported key types are:- ssh-rsa (default)
- ecdsa-sha2
- rsa-sha2-256
- ssh-ed25519
OS Agent installationThe BVQ Agent for AIX or Linux RPM installation package is automatically generated once a new BVQ AIX or Linux scanner configuration is being created in the BVQ WebUI. After the "Save"-button is pressed, the RPM package is automatically generated and can be downloaded directly. Further installation instructions can be found in the scanner configuration page or the readme included in the RPM download package. OS User requirements OS | user | group | Restrictions |
---|
AIX | root | system | none | AIX | other | system | No stats for FC adapters | AIX | other | staff | No stats for FC adapters and LV, VG objects | Linux | root | root | none (other uid / gid not supported) |
Alternatively, the BVQ AIX agent can be rolled out automatically to many systems using an AIX NIM server. The download package for AIX includes a script that helps configuring the NIM server. Note |
---|
| It is essential that BVQ Server and AIX/Linux clocks are in sync. Please ensure that NTP is configured and active on all monitored systems and the BVQ Server! The OS Agent cannot be installed or upgraded as long as NTP is not configured! |
|