RHEL 8.x Spectrum Protect Server Installation
From Notes_Wiki
Home > RHEL > RHEL 8.x > RHEL 8.x Backup tools > Spectrum Protect Backup > Spectrum Protect Server Installation
Minimum Requirements
- RHEL8 OS (CentOS not supported)
- Ensure GUI (X Windows System) is available.
- Java JRE should be install
- yum install java
- Disable SELINUX and Firewall
- Set proper hostname. This cannot be changed later. Ensure the same resolves to LAN IP in /etc/hosts file.
- Optionally configure a dedicated IP for backup configuration in case there is a separate backup network.
- Minimum 16GB RAM
Download Installers
- The installers are available at https://public.dhe.ibm.com/storage/tivoli-storage-management/maintenance/
Server Installation
- Login to backup server via SSH
- Copy the Spectrum protect server installation file in appropriate location in Backup server (Eg /root)
- Run the installer from a sub-folder as it creates many files/folders in the $PWD when executed.
- chmod +x /root/8.1.14.100-IBM-SPSRV-Linuxx86_64.bin
- mkdir /root/server-temp
- cd /root/server-temp
- ../8.1.14.100-IBM-SPSRV-Linuxx86_64.bin #Relative path to installer
- Run the installer
- cd /root/server-temp
- ./install.sh
- The installer might throw error if pre-requisites specified above are not matched.
- In Install screen, type N and press Enter
- In Licenses screen,
- Accept the license agreement - type A and press Enter
- For Next, Type N and press Enter
- In Shared Directory screen, type N and press Enter //(Default /opt/IBM/IBMIMShared)
- In Location screen, type N and press Enter //(Default /opt/tivoli/tsm)
- In "Custom panels" screen when prompted for "Select the product that you purchased",
- Select "IBM Spectrum Protect" product by entering 1 and press Enter
- Accept the license agreement - type A and press Enter
- Again Accept the license agreement - type A and press Enter
- For Next, Type N and press Enter
- In Summary screen, Choose Install by entering I and press Enter
- In Completion screen, Choose Finish by entering F and press Enter
Operations-Center-Installation
- Copy the Spectrum protect Ops center file to /root directory in Backup server
- Login to Backup server via SSH
- Extract the installation file
- chmod +x /root/8.1.14.000-IBM-SPOC-Linuxx86_64.bin
- mkdir /root/optemp
- cd /root/optemp
- ../8.1.14.000-IBM-SPOC-Linuxx86_64.bin
- Run the installer from a sub-folder as it creates many files/folders in the $PWD when executed.
- Run the installer
- ./install.sh
- In IBM Installation Manager screen, Choose "Install" by entering 1 and press Enter
- In Install screen, select "Operations Center" by entering 1 and press Enter
- In Select screen, Select "version" by entering 1 and press Enter
- In Install screen, type N and press Enter
- In Location screen, type N and press Enter (Default: /opt/tivoli/tsm)
- In Features screen, type N and press Enter
- In Custom panels screen
- Press Enter at port number prompt (Default 11090)
- Create Password
- Type N and press Enter
- In Summary screen, Choose Install by entering I and press Enter
- In Completion screen, Choose Finish by entering F
- In IBM Installation Manager, Choose Exit by entering X
Connect the Backup Server to Operations Center
- Login to Ops Center
- https://<backup-server-ip>:11090/oc
- username: admin
- In Introduction page, Verify backup server details, then Click on Next
- In At Risk indication page, Verify all the details, then click on Configure
- In Succeeded page, click on close
Unable to login to Ops Center web console due to TLS issues
If you are unable to login to Ops Center web cobsole due to TLS issues
The IBM Spectrum Protect server is not available or there was an issue creating an SSL connection. Verify that the server is running and that the certificate is valid. Try to log in again.
If issue still persists, Then first ensure that "3-User-Group-permissions.txt" and "4-Configuration-of-backup-server.txt" are completed. After that if required follow below steps:
- Login to backup server using SSH
- Stop the ops center service
- systemctl stop opscenter
- Run below command
- ikeycmd -cert -add -db /installation_dir/ui/Liberty/usr/servers/guiServer/gui-truststore.jks -file /server_instance_dir/cert256.arm -label 'label_description' -pw 'password' -type jks -format ascii -trust enable
- Ex:
- /opt/tivoli/tsm/ui/jre/bin/ikeycmd -cert -add -db /opt/tivoli/tsm/ui/Liberty/usr/servers/guiServer/gui-truststore.jks -file //spdata/spinst/cert256.arm -label 'label_description' -pw 'Abcd@1234@' -type jks -format ascii -trust enable
-
- Here Abcd@1234@ is the password given during "Custom Panels" screen of Ops Center
- Start the ops center service
- systemctl start opscenter
- It make take up to a minute to start. After that open Ops center using https://<ip>:11090/ and try login again
User and Group permissions
- Login to backup server via ssh
- Create group
- groupadd <groupname> -g <group-id>
- Ex:
- groupadd spsrvrs -g 1001
- Create user, add to the group and set password
- useradd -d <home-fodler-path> -u <uid> -g <gid> -s /bin/bash <username>
- Ex:
- useradd -d /home/spinst1 -u 1002 -g 1001 -s /bin/bash spinst1
- passwd spinst1
- Create required directories and set the permissions
- mkdir /spdata
- mkdir /spdata/spdb
- mkdir /spdata/splog
- mkdir /spdata/sparchlog
- mkdir /spdata/spinst
- mkdir /spdata/spback
- chown -R spinst1:spsrvrs /spdata
Configuration of backup server
- Login to backup server GUI console via root user
- Run the dsmcifgx
- cd /opt/tivoli/tsm/server/bin
- ./dsmicfgx
- Click OK on initial page with English language
- In Introduction page, Choose Next
- In Instance User ID page, Enter userid(spinst1), choose Next
- In Instance Directory page, Choose home directory(/spdata/spinst), then click Next
- In Database directories page,
- Select "The database directories are listed below"
- Enter /spdata/spdb
- Click choose Next
- In Recovery Log Directories page,
- Active log directory - /spdata/splog
- Primary archive log directory - /spdata/sparchlog
- Leave archive log mirror directory and secondary archive log directory as blank.
- Then click next
- In Server Information page,
- ServerName - BKSERVER
- Leave default settings, then choose Next
- In Administrator Credentials page,
- Administrator Name - admin
- Enter password twice, then choose Next
- In Server Communication page, leave default settings, then choose Next
- In Configuration Summary page, review the configuration, then choose Next
- In Configure Instance page, wait for "Configuration is complete" message, then click next
- In Configuration Successful page, click on Done
Certificate configure parameters in backup server
- Login to backup server
- Recreate SSL certificate
- cd /opt/tivoli/tsm/client/ba/bin/
- dsmcert -add -server <backupserver-hostname> -file <Path-to-cert256.arm>
- Ex:
- dsmcert -add -server bkserver -file /spdata/spinst/cert256.arm
- Change below parameters
- dsmadmc
- > SET SERVERHLADDRESS 10.2.26.30 //backup-configuration-ip
- > SET ACTLOGRETENTION 30
- > setopt CommTimeOut 3200
- Do you wish to proceed? -- Enter Y
- > setopt IdleTimeOut 60
- Do you wish to proceed? -- Enter Y
- > register license file=tsmee.lic
- > update admin admin passexp=0 sessionsecurity=TRANSitional
Home > RHEL > RHEL 8.x > RHEL 8.x Backup tools > Spectrum Protect Backup > Spectrum Protect Server Installation