OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
Legal Notices
Novell, Inc., makes no representations or warranties with respect to the contents or use of this documentation, and
specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose.
Further, Novell, Inc., reserves the right to revise this publication and to make changes to its content, at any time,
without obligation to notify any person or entity of such revisions or changes.
Further, Novell, Inc., makes no representations or warranties with respect to any software, and specifically disclaims
any express or implied warranties of merchantability or fitness for any particular purpose. Further, Novell, Inc.,
reserves the right to make changes to any and all parts of Novell software, at any time, without any obligation to
notify any person or entity of such changes.
Any products or technical information provided under this Agreement may be subject to U.S. export controls and the
trade laws of other countries. You agree to comply with all export control regulations and to obtain any required
licenses or classification to export, re-export or import deliverables. You agree not to export or re-export to entities on
the current U.S. export exclusion lists or to any embargoed or terrorist countries as specified in the U.S. export laws.
You agree to not use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. See the
Novell International Trade Services Web page (http://www.novell.com/info/exports/) for more information on
exporting Novell software. Novell assumes no responsibility for your failure to obtain any necessary export
approvals.
Novell, Inc., has intellectual property rights relating to technology embodied in the product that is described in this
document. In particular, and without limitation, these intellectual property rights may include one or more of the U.S.
patents listed on the Novell Legal Patents Web page (http://www.novell.com/company/legal/patents/) and one or
more additional patents or pending patent applications in the U.S. and in other countries.
Novell, Inc.
404 Wyman Street, Suite 500
Waltham, MA 02451
U.S.A.
www.novell.com
Online Documentation: To access the latest online documentation for this and other Novell products, see
the Novell Documentation Web page (http://www.novell.com/documentation).
Novell Trademarks
For Novell trademarks, see the Novell Trademark and Service Mark list (http://www.novell.com/company/legal/
trademarks/tmlist.html).
Third-Party Materials
All third-party trademarks are the property of their respective owners.
novdocx (en) 22 June 2009
novdocx (en) 22 June 2009
4OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
8OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
About This Guide
Most organizations test new products in a lab setting prior to making them available for general use.
This guide is designed to help you set up a Novell® Open Enterprise Server 2 SP2 server in a lab
environment, using a specific and simplified configuration. The configuration is limited in scope
and is meant only to acquaint you with OES 2 and provide exposure to the Novell products it
contains.
®
To help you with your transition from NetWare
guide also includes instructions for setting up a NetWare 6.5 SP8 virtual machine running on an
OES 2 SP2 host server.
Chapter 1, “Installing the OES 2 SP2 Server in Your Lab,” on page 11
Chapter 2, “Installing a NetWare Virtual Machine,” on page 27
Chapter 3, “eDirectory, Users and Groups, and Identity Services,” on page 45
to Open Enterprise Server 2 SP2 (OES 2 SP2), this
novdocx (en) 22 June 2009
Chapter 4, “eDirectory Linux Access (LUM),” on page 59
Chapter 5, “Novell CIFS on OES 2,” on page 65
Chapter 7, “Novell AFP,” on page 71
Chapter 6, “NetWare CIFS and AFP on OES 2,” on page 67
Chapter 8, “iFolder 3.8,” on page 73
Chapter 9, “iPrint,” on page 79
Chapter 10, “NetStorage,” on page 85
Chapter 11, “Getting Acquainted with OES,” on page 89
Appendix A, “Supplementary Information,” on page 107
Guide Purposes
The instructions in this guide will help you do the following:
Install an OES 2 SP2 server into a new eDirectory™ tree named EXAMPLE_TREE
Install selected OES 2 components on the server
Install an OES 2 SP2 virtual machine host server, create a virtual machine (VM) on the server,
and install NetWare 6.5 SP8 on the VM
Create seven different user types, at least one of which should closely align with the users on
your network
Perform simple tasks to get acquainted with basic OES 2 services on a Windows* 2000/XP
workstation
About the Information Flow in This Guide
The sections in this guide are designed to be accessed sequentially, guiding you through the main
tasks of setting up an OES 2 exploration lab:
1. Installing OES 2 and virtualized NetWare servers in the lab.
About This Guide9
2. Setting up the eDirectory infrastructure: User objects, Group objects, passwords, etc.
3. Reviewing the services featured in the guide and performing all additional setup tasks required
for testing and exploring the features.
4. Testing and exploring the features.
Using This Guide as a Reference
If you want to install additional OES 2 servers, create a different tree structure than the one specified
in this guide, or diverge from the instructions presented, you can still use these instructions as a
basic outline for setting up OES 2 services in a lab environment. However, be aware that any
divergence from the instructions presented or the order they are presented in, can cause ripple effects
through the rest of the guide. If you need to diverge, refer to the information found in the following
guides for assistance:
OES 2 SP1: Planning and Implementation Guide
OES 2 SP2: Installation Guide
OES2 SP1: Linux Tips for NetWare Administrators
OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
novdocx (en) 22 June 2009
Where is Novell Samba?
The Novell Samba service available in previous versions of OES is still available. However, because
it cannot run on the same server as Novell CIFS, instructions for installing and configuring a Samba
service have been removed from this guide.
If you are interested in experimenting with the Novell Samba, refer to the Lab Guide distributed
with the initial release of OES 2 and available from the Previous Releases page on the OES 2
documentation Web site (http://www.novell.com/documentation/oes2/previousreleases.html#previous-releases).
Feedback
We want to hear your comments and suggestions about this manual and the other documentation
included with this product. Please use the User Comments feature at the bottom of each page of the
online documentation, or go to www.novell.com/documentation/feedback.html and enter your
comments there.
Documentation Conventions
In this documentation, a greater-than symbol (>) is used to separate actions within a step and items
within a cross-reference path.
A trademark symbol (®, ™, etc.) denotes a Novell trademark. An asterisk (*) denotes a third-party
trademark.
10OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
1
Installing the OES 2 SP2 Server in
novdocx (en) 22 June 2009
Your Lab
Use the instructions in this section to install Novell® Open Enterprise Server 2 SP2 (OES 2 SP2) in
your lab.
Section 1.1, “Lab Setup Requirements,” on page 11
Section 1.2, “Obtaining Installation Media,” on page 12
Section 1.3, “Installing the Server Software,” on page 14
Section 1.4, “Setting the Root Password, Configuring the Network, and Updating the Server,”
on page 17
Section 1.5, “Configuring eDirectory and OES Services,” on page 20
Section 1.6, “Setting Up the Graphical User Interface,” on page 22
Section 1.7, “Completing the EVMS Configuration,” on page 22
Section 1.8, “Setting Up the Server as an SLP Directory Agent,” on page 23
Section 1.9, “Accessing iManager,” on page 24
Section 1.10, “Configuring the Browser for the eDirectory CA,” on page 25
Section 1.11, “Enabling Pop-Ups for iManager,” on page 26
1
1.1 Lab Setup Requirements
For the tasks and exercises described in this guide, you need the following:
A server-class computer with the following:
ComponentMinimumRecommended
ProcessorPentium* II or AMD* K7 450 MHz Pentium III, Pentium III Xeon*,
Pentium 4, Intel* Xeon 700 MHz,
AMD K8 CPUs (Athlon64 and
Opteron*), Intel EM64T or higher
processor
RAM1 GB2 GB
Display adapterSuper VGAVESA 1.2-compliant, high
resolution
Display monitorCompatible with adapter
CD driveSupport for the ElTorito
specification
Hard drive
(All data will be erased)
20 GB
Network cardEthernet 100 Mbps
Installing the OES 2 SP2 Server in Your Lab
11
ComponentMinimumRecommended
IP address IP address on the lab
subnet. For example,
192.168.1.100.
Subnet mask. For example,
255.255.255.0.
Default gateway. For
example, 192.168.1.1.
MouseNot requiredUSB or PS/2
A network printer with an assigned static IP address and a connection to your lab network.
A Windows workstation with
One of the following platforms installed:
Windows XP
Windows 2000
An Ethernet 100 Mbps adapter
*
novdocx (en) 22 June 2009
An IP address on the same subnet as the server
Mozilla
*
Firefox* browser installed. (This is optional, but Firefox is the assumed browser
for most of the instructions in this guide)
A print driver installed on the workstation for the network printer listed above.
(Optional for exploring Novell AFP and iPrint) An Apple* Macintosh* workstation with
Mac OS* 10.4 or later installed
Novell AFP supports earlier versions of Mac OS, but iPrint doesn’t.
An Ethernet adapter
An IP address on the same subnet as the server
A print driver installed on the workstation for the network printer listed above.
1.2 Obtaining Installation Media
To complete the instructions in this guide, you need to download various ISO files, depending on
your hardware.
Section 1.2.1, “Identifying the Files to Download,” on page 12
Section 1.2.2, “Downloading the Files,” on page 13
Section 1.2.3, “Creating the Installation Media,” on page 13
1.2.1 Identifying the Files to Download
You need to download the set of files in Ta ble 1-1 that matches the architecture (32-bit or 64-bit) of
your server computers:
12OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
Table 1-1 Files to Download
PlatformFiles needed
novdocx (en) 22 June 2009
32-bit server with CD drive
32-bit server with CD/DVD drive
64-bit server with CD drive
64-bit server with CD/DVD drive
SLES-10-SP3-CD-i386-GM-CD1.iso
SLES-10-SP3-CD-i386-GM-CD2.iso
SLES-10-SP3-CD-i386-GM-CD3.iso
SLES-10-SP3-CD-i386-GM-CD4.iso
OES2-SP2a-i386-CD1.iso
SLES-10-SP3-DVD-i386-GM-DVD1.iso
OES2-SP2a-i386-CD1.iso
SLES-10-SP3-CD-x86_64-GM-CD1.iso
SLES-10-SP3-CD-x86_64-GM-CD2.iso
SLES-10-SP3-CD-x86_64-GM-CD3.iso
SLES-10-SP3-CD-x86_64-GM-CD4.iso
OES2-SP2a-x86_64-CD1.iso
SLES-10-SP3-DVD-x86_64-GM-DVD1.iso
OES2-SP2a-x86_64-CD1.iso
NOTE: The SUSE® Linux Enterprise Server (SLES) 10 SP3 CD images are only available on the
SLES 10 SP3 download site (http://download.novell.com/Download?buildid=Z4ysu62Q4gw~).
1.2.2 Downloading the Files
After identifying which files you need to download:
1 Go to “Downloading OES 2 SP1 Software from the Novell Web Site” in the OES 2 SP1:
Planning and Implementation Guide.
2 Complete all the steps in the section, except the instructions on deciding which files to
download. You should have already identified the files you need, using the list in Section 1.2.1,
“Identifying the Files to Download,” on page 12.
3 Be sure to print the pages as instructed, record the two activation codes, print and check the
MD5 verification checksums, and so on.
4 After you have downloaded all of the files you need, continue with Creating the Installation
Media.
1.2.3 Creating the Installation Media
To prepare physical installation media:
1 Go to “Preparing Physical Media for a New Server Installation or an Upgrade ” in the OES 2
SP2: Installation Guide and use the instructions there to create media for installing your OES 2
server.
Continue with Installing the Server Software.
Installing the OES 2 SP2 Server in Your Lab13
1.3 Installing the Server Software
Complete the instructions in the following sections.
Section 1.3.1, “Prerequisites,” on page 14
Section 1.3.2, “Procedure,” on page 14
1.3.1 Prerequisites
Before installing OES 2 on your server, you must complete the following tasks:
Ensure that the server computer meets the requirements outlined in Section 1.1, “Lab Setup
Requirements,” on page 11.
Prepare the software for installation as explained in Section 1.2, “Obtaining Installation
Media,” on page 12.
1.3.2 Procedure
novdocx (en) 22 June 2009
WARNING: This procedure permanently erases any data currently on your server’s hard drive.
1 Prepare the BIOS on your server machine so that it will boot from the CD-ROM drive first.
2 Insert the SLES 10 SP3 CD1 or DVD1 into your server and reboot the machine.
3 When the boot selection page appears, immediately press the Down-arrow key to select the
Installation option, then press Enter.
If you don’t respond before the machine starts booting from the hard disk, reboot the server and
repeat this step.
4 After the boot process finishes, select an installation language, then click Next.
5 Read and agree to the software license agreement, then click Next.
6 Select New Installation, select the Include Add-On Products from Separate Menu option, then
click Next.
7 On the Add-on Product Installation page, click Add.
8 Select CD, then click Next.
9 Insert the OES 2 SP2 CD as prompted, then click Continue.
10 After the catalog is added, read and agree to the OES 2 license agreement, then click Next >
Next.
11 Select the time zone for the server, then click Next.
12 On the Installation Settings page, click Partitioning.
If your server has existing partitions, the OES install tries to add new SLES partitions to them.
13 To ensure a clean install, use the following table to navigate the partitioning pages and prepare
your system disk.
IMPORTANT: The steps in the following table prepare the system disk for management by
the EVMS volume manager. This is only required if you want to have NSS volumes on the
system disk, and is not the default use case. We have included the process in the lab guide to
provide exposure to installing NSS volumes on a single-drive server.
14OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
For more information, see “Installing with EVMS as the Volume Manager of the System
Preparing Hard Disk—Step 11. Select Custom Partitioning (for experts).
2. Click Next.
Expert Partitioner1. Click Expert > Delete partition table and disk label.
2. When you are prompted to select a new partition table
type, click OK.
Caution!1. Click Yes.
Expert Partitioner1. Click Create.
novdocx (en) 22 June 2009
Which type of partition do you
want to create?
Create a Primary Partition1. In the End field, type
Expert Partitioner1. Click Create.
Which type of partition do you
want to create?
Create a Primary Partition1. Select Do not format.
Expert Partitioner1. Click EVMS.
EVMS Configuration1. Click Create Container.
Create EVMS Container1. Select the 10 GB partition you just created.
1. Select Primary partition.
2. Click OK.
200M
.
2. In the Mount Point drop-down list, select /boot.
3. Click OK.
1. Select Primary partition.
2. Click OK.
2. In the File system ID drop-down list, select 0x8E Linux LVM.
10GB
3. In the End field, type
4. Click OK.
2. Click Add Volume.
3. Click OK.
.
EVMS Configuration1. Click Add.
Create Logical Volume1. In the Volume Name field, type
2. In the Size field, type
3. In the File System drop-down list, select Swap.
4. Click OK.
EVMS Configuration1. Click Add.
512M
.
Installing the OES 2 SP2 Server in Your Lab15
swap
.
Page NameAction
novdocx (en) 22 June 2009
Create Logical Volume1. In the Volume Name field, type
2. Click Max.
3. Make sure the Mount Point is set to /.
4. Click OK.
EVMS Configuration1. Click Next.
Expert Partitioner1. Click Finish.
14 On the Installation Settings page, click Software.
Use the following table to navigate and configure the software pages:
Page NameAction
Software Selection and System
Tasks
1. Under Primary Functions, deselect Print Server by
clicking it twice.
2. Under OES Services, select (or confirm the selection of)
the following:
Novell AFP
Novell CIFS
Novell eDirectory*
Novell iFolder
Novell iManager
Novell iPrint
Novell NCP Server/Dynamic Storage Technology*
Novell NetStorage
Novell Storage Services*
Services marked with an asterisk (*) are selected with
AFP and CIFS.
Novell Backup/Storage Management Services (SMS),
Novell Linux User Management, and Novell Remote
Manager are all selected by default when any other
selections are made, and they are installed on every OES
2 server.
3. Click Accept.
sys_linux
.
agfa fonts1. Click Accept.
Installation Settings1. Click Accept.
Confirm Installation1. Click Install.
15 When prompted, insert the SLES 10 media and click Retry.
If you are installing from DVD, insert DVD 1 when you are prompted for any SLES 10 media.
If you are installing from CDs, insert them in order as instructed.
After the files are copied, the system configuration takes a few minutes to complete.
16 Continue with Setting the Root Password, Configuring the Network, and Updating the Server.
16OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
1.4 Setting the Root Password, Configuring the
Network, and Updating the Server
After the initial system configuration and system reboot, the installation needs more information
root
about the
1 Use the following table to navigate and complete the various configuration pages.
user and the network.
novdocx (en) 22 June 2009
Installing the OES 2 SP2 Server in Your Lab17
Page NameAction
novdocx (en) 22 June 2009
Password for the System
Administrator “root”
Hostname and Domain Name1. In the Host Name field, type the DNS hostname for the IP
Network Configuration1. Click Network Interfaces.
Network Card Configuration
Overview
Host Name and Name Server
Configuration
1. Enter and confirm the
Next.
address you are assigning to the server. For example,
myserver.
2. In the Domain Name field, type the DNS Domain Name for
your network. For example,
mysite.company.example.com.
3. Deselect Change Hostname via DHCP.
4. Click Next.
1. If your server has multiple network cards, select the card
the server will use.
2. Click Edit.
3. Select Static Address Setup.
4. In the IP Address field, type the IP address for the server.
For example, 192.168.1.100
5. Change the Subnet Mask if needed. For example,
255.255.255.0.
6. Click Host Name and Name Server.
1. Type the IP address of at least one name server and type
your DNS domain name in the Domain Search field. For
example, company.example.com.
2. Click OK.
root
user password, then click
Network Address Setup1. Click Routing.
Routing Configuration1. Type the IP address of the default gateway for your lab
subnet. For example, 192.168.1.1.
2. Click OK.
Network Address Setup1. Click Next.
Network Card Configuration
Overview
Network Configuration1. Click Next.
Test Internet ConnectionYou will need to register your server on the Internet to
1. Click Next.
download the latest patches, so you should test the Internet
connection at this point to make sure everything is configured
correctly.
1. Select Yes, Test Connection to the Internet.
2. Click Next.
18OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
Page NameAction
Running Internet Connection Test After a few moments, the Test Status should indicate Success.
If it does not, you need to click Back and fix your network
configuration and the connection to the Internet. It is essential
that OES 2 servers always have the latest security and other
critical patches downloaded and installed.
1. Click Next.
novdocx (en) 22 June 2009
Novell Customer Center
Configuration
Manual Interaction Required1. Click Continue.
Novell Customer Center System
Registration
1. Click Next.
The server establishes a connection with the Novell Customer
Center.
1. In the fields indicated, type and confirm the e-mail address
to which you want administrative notifications sent.
2. In the Activation code for SLES components field, type the
SLES activation code you noted or printed while
downloading the image files.
If this code is not entered, the server can’t download
updates and patches through the Novell patch channels.
3. In the Activation code for OES components field, type the
OES 2 activation code you noted or printed while
downloading the image files.
If this code is not entered, the same patch channel
restriction applies as for SLES.
4. Click Submit.
Your registration information is sent to the Customer
Center. This might take a couple of minutes to complete.
5. Click Continue.
The update server is added to your system configuration.
Again, this might take a few minutes.
Novell Customer Center
Configuration pop-up
1. Click OK.
Installing the OES 2 SP2 Server in Your Lab19
Page NameAction
Online UpdateDepending on the patches that are in the Update channels, you
might need to run the update process more than once.
1. Select Run Update, then click Next.
Although you might need to scroll down to see them, the
correct patches are automatically selected. Do not change
the selections.
2. Click Accept.
The update patches are downloaded and installed.
3. When both status bars indicate 100%, click Next > OK.
The system refreshes or restarts, depending on the
patches in the channel.
4. If the patch dialog box reappears with additional patches
selected, click Accept and repeat Step 3.
If the Installation Settings page appears, continue with the
next row.
novdocx (en) 22 June 2009
Installation Settings1. If there is no red text under the CA Management link, click
Next > Next and skip to Section 1.5, “Configuring
eDirectory and OES Services,” on page 20.
If the system restarted, there is red text under CA
Management. This is because the installation no longer
root
has the
2. Click CA Management.
Managing CAs and Certificates1. Click Edit Default Settings.
Edit Default Settings1. Type the
Password fields, then click Next.
There is no need to fill in the other fields because the
default CA will be replaced with a secure eDirectory
Organizational CA later in the installation process.
Managing CAs and Certificates1. Click Next.
Installation Settings1. Click Next.
password in memory.
root
password in the Password and Confirm
2 Continue with Configuring eDirectory and OES Services.
1.5 Configuring eDirectory and OES Services
For the exercises in this guide, you need specific eDirectory, NTP, and SLP configurations.
TM
1 Use the following table to navigate and complete the eDirectory pages:
20OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
Page NameAction
novdocx (en) 22 June 2009
eDirectory Configuration - New or
Existing Tree
eDirectory Configuration - New
Tree Information
1. In the Tre e Na me field, type
Notice that the Use eDirectory Certificates for HTTPS Services option is selected. This option configures all of
the HTTPS services (OES 2 and SLES 10) to use the new
eDirectory tree’s Organizational CA for certificate
management and encryption of HTTPS communications.
For more information on the value this adds to your
network, see “Certificate Management” in the OES 2 SP1:
Planning and Implementation Guide.
2. Click Next.
1. In the FDN Admin Name with Context field, type
CN=admin.O=COMPANY
In this guide, the Admin User object is named admin (all
lowercase) to differentiate the name from the object itself
(Admin User), which is a standard eDirectory object and is
always capitalized in the documentation by convention.
The eDirectory Admin User object can have any name you
choose, although most administrators use “admin.”
In this guide, all container objects, such as COMPANY, are
created in uppercase so they are more easily
distinguished in the illustrations and procedures.
2. In the Admin Password and Verify Admin Password fields,
specify the password for the eDirectory Admin User.
3. Click Next.
EXAMPLE_TREE
.
.
eDirectory Configuration - Local
Server Configuration
eDirectory Configuration - NTP
and SLP
SLP Configuration1. Click Yes to confirm that SLP is not being configured at
Novell Modular Authentication
Services
Novell Open Enterprise Server
Configuration
1. Change the server context to
OU=SERVERS.OU=LAB.O=COMPANY
2. Click Next.
Time synchronization is required for eDirectory.
1. Type the IP address or DNS name of the reliable, external
Network Time Protocol (NTP) server you want the servers
in your tree to use for time synchronization.
2. Click Next.
this time.
Later in this guide you will configure this server as the SLP
Directory Agent. For more information on SLP, see “SLP”
in the OES 2 SP1: Planning and Implementation Guide.
1. Click Next.
1. Click Next.
The eDirectory and iManager configuration processes can
take a few minutes or much longer depending on the
server processor speed, etc. The other OES services
should self-configure fairly quickly.
.
Installing the OES 2 SP2 Server in Your Lab21
Page NameAction
User Authentication Method1. Click Next.
novdocx (en) 22 June 2009
New Local UserThe local
OES 2 servers, we recommend that all users except
defined in eDirectory. Therefore, you don’t create additional
local users.
1. Click Next.
Empty User Login1. Click Yes.
Release Notes1. Click Next.
root
user was created during the SLES install. On
root
be
The official OES 2 Release Notes (http://www.novell.com/
documentation/oes2/oes_readme/data/readme.html) are
published with the OES 2 Online Documentation (http://
www.novell.com/documentation/oes2).
2 Continue with Setting Up the Graphical User Interface.
1.6 Setting Up the Graphical User Interface
Although most Linux servers don’t have a graphical user interface loaded, the lab server you are
installing has the GNOME* interface loaded by default.
When the Hardware Configuration page appears:
1 Review the Graphics Cards configuration to make sure your monitor was detected and that
your color and resolution settings are the way you want them.
If the settings are correct, skip to Step 3.
2 If the configuration is incomplete or wrong, click the blue links to configure your monitor,
color, resolution, etc.
3 Click Next.
4 When the Installation Completed page appears, deselect Clone This System for Autoyast, then
click Finish.
5 When the login splash page appears, continue with Completing the EVMS Configuration.
1.7 Completing the EVMS Configuration
Because the lab exercises involve an NSS partition on the system hard disk, and because NSS
requires EVMS for full functionality on the system hard disk, the instructions in Section 1.3,
“Installing the Server Software,” on page 14 led you through setting up your lab server’s hard disk
to be managed by EVMS.
Now it’s time to finish the EVMS configuration:
root
1 Log in to the server as the
2 When the desktop loads, click Computer > YaST Administrator Settings.
3 In the YaST Control Center, click System > System Services (Runlevel).
4 Select Expert Mode.
user.
22OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
5 In the Service list, select boot.evms, click the Set/Reset drop-down list, then select Enable the
service.
6 In the Service list, select boot.lvm, click the Set/Reset drop-down list, then select Disable the
service.
7 In the Service list, select boot.md, click the Set/Reset drop-down list, then select Disable the
service.
8 Click Finish > Yes.
9 Close the YaST Control Center.
10 Restart the computer by clicking Computer > Log out > Log out.
root
11 At the bottom of the Login splash screen, click Reboot, then type the
Enter.
12 After the server restarts, continue with Setting Up the Server as an SLP Directory Agent.
password and press
1.8 Setting Up the Server as an SLP Directory
Agent
novdocx (en) 22 June 2009
For OES 2 services to work, the OES 2 server must have one of the following:
An eDirectory replica installed on the server. This is not automatic after the third server
installed in a tree because it is not recommended to have more than three to five replicas in the
tree.
This means that in a large network with many servers, most of the servers won’t have replicas,
which leaves only the OpenSLP option.
OpenSLP running on the server with eDirectory as a registered service. This requires that
you configure a network server (for example, the first server in the tree) as an SLP Directory
Agent (DA), and then configure the other network servers that don’t have an eDirectory replica
to point to the DA server.
For the lab setup, you don’t actually need SLP services set up because each of the two lab servers
(this server and the NetWare
the basics of setting up SLP on OES 2. For more information, see “SLP” in the OES 2 SP1:
Planning and Implementation Guide.
1 Log in to the server as
2 Click Computer > Home Folder.
3 In the left panel, double-click File System, then double-click the
4 Scroll down to the
5 In
slp.conf
;net.slp.useScopes = myScope1, myScope2, myScope3
, find the following line:
®
VM) has an eDirectory replica. However, it’s important to understand
root
.
etc
directory.
slp.conf
file, right-click the file, and select Open with gedit.
6 Remove the semicolon (;) and change the line as follows:
net.slp.useScopes = Directory
7 Find:
;net.slp.isDA = true
8 Remove the semicolon (;) so that it reads:
Installing the OES 2 SP2 Server in Your Lab23
net.slp.isDA = true
9 Save and close the file and the file browser.
10 Configure the firewall on the DA server to allow SLP daemon traffic:
10a Click Computer > YaST Administrator Settings, then click Security and Users > Firewall.
10b In the left navigation frame, click Allowed Services.
10c Click the Services to Allow drop-down list and select SLP Daemon.
10d Click Add > Next.
10e Click Accept.
11 Click Computer > Gnome Terminal.
12 At the command prompt, enter the following command to restart the SLP daemon with the
changed configuration:
rcslpd restart
13 Restart eDirectory by entering the following command:
rcndsd restart
novdocx (en) 22 June 2009
This registers eDirectory as an SLP service.
14 After eDirectory restarts, enter the following command:
slptool findsrvs service:ndap.novell
After a moment or two, the system should respond with a line that indicates EXAMPLE_TREE
is being advertised as a service in SLP.
15 Close the terminal by entering the following command:
exit
16 Continue with Accessing iManager.
1.9 Accessing iManager
IMPORTANT: You must access iManager multiple times in this guide. If you get a Tomcat error in
response to any launch requests, see Section A.2, “iManager Tomcat Error,” on page 109.
Novell iManager is the main browser-based tool you use to manage eDirectory and your OES 2
services.
To start iManager and prepare your browser for future sessions:
1 On your lab workstation, in your Web browser, open the OES 2 Welcome page by entering the
following URL:
http://IP_or_DNS
where IP_or_DNS is the IP address or DNS name of your OES 2 server.
2 In the left navigation bar, click Management Services.
3 Under Available Services, click iManager.
You can also start iManager directly by including
For example, enter
24OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
http://192.168.1.100/nps
/nps
.
after
IP_or_DNS
in the access URL.
4 You should receive a certificate security alert. Accept the certificate temporarily.
You eliminate this error in the next section.
5 Log in as the eDirectory Admin user:
5a In the Username field, type
5b In the Password field, type the eDirectory Admin user password.
5c In the Tree field, type
If SLP services are not working properly, you need to enter the IP address instead of the
tree name.
5d Click Login.
6 Do not close iManager. Continue with the next section, Configuring the Browser for the
eDirectory CA.
admin
.
example_tree
.
1.10 Configuring the Browser for the eDirectory
CA
The certificate error you received in the previous section was generated because Web browsers
don’t trust eDirectory-based certificate authorities by default.
novdocx (en) 22 June 2009
To eliminate the errors, you must import the eDirectory CA certificate into your browser.
Section 1.10.1, “Exporting the CA’s Self-Signed Certificate,” on page 25
Section 1.10.2, “Importing the CA Certificate into Mozilla Firefox on Windows,” on page 26
1.10.1 Exporting the CA’s Self-Signed Certificate
1 In iManager, click the Roles and Tasks icon Description: Roles and Tasks icon.
2 Click Novell Certificate Server > Configure Certificate Authority.
3 Click the Certificates tab, then select the check box for the self-signed certificate.
4 Click the Export sub-tab.
5 Deselect Export Private Key.
The Export Format changes to DER.
6 Click Next.
7 Click Save the Exported Certificate and save the file to disk, noting the filename and location if
indicated.
8 Click Close > OK.
9 Find the file you just saved. By default it is usually on the desktop.
10 To configure Mozilla Firefox on Windows, continue with Importing the CA Certificate into
Mozilla Firefox on Windows.
Instructions for configuring other browsers are in “Eliminating Browser Certificate Errors” in
the OES 2 SP1: Planning and Implementation Guide.
Installing the OES 2 SP2 Server in Your Lab25
1.10.2 Importing the CA Certificate into Mozilla Firefox on
Windows
1 In Firefox, click Tools > Options > Advanced.
2 Select the Encryption tab.
3 Click View Certificates.
4 Select the Authorities tab, then click Import.
5 Browse to the certificate file you downloaded in “Exporting the CA’s Self-Signed Certificate”
on page 25 and click Open.
6 Select Trust this CA to identify Web sites, then click OK > OK > OK.
Firefox now trusts certificates from the servers in your lab’s tree.
7 To verify success, close all instances of Firefox, then restart the browser and log in to iManager
again.
The certificate warning doesn’t appear.
novdocx (en) 22 June 2009
1.11 Enabling Pop-Ups for iManager
Some iManager plug-ins use pop-up dialog boxes that are blocked by most browsers. To use
iManager, you must enable pop-ups that originate from the servers where iManager is running.
Because there are as many ways to enable pop-ups as there are browser versions, we are only
including instructions for Firefox 3.5.x. If you are using a different browser, see the help included
with your browser for instructions.
1 On the Firefox menu bar, click Tools > Options > Content.
2 Disable all pop-up blocking by deselecting the Block Popup Windows option and clicking OK.
or
Add the lab server to the list of exceptions by doing the following:
2a Click the Exceptions button.
2b In the Address of Web Site field, type the OES 2 lab server’s IP address.
2c Click Allow > Close.
Continue with Chapter 2, “Installing a NetWare Virtual Machine,” on page 27.
26OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
2
Installing a NetWare Virtual
novdocx (en) 22 June 2009
Machine
Use the instructions in this section to install an Open Enterprise Server 2 (OES 2) virtual machine
host server in your lab, create a virtual machine on the server, and install NetWare
virtual machine.
This section describes the following:
Section 2.1, “Virtualization Host Server Requirements,” on page 27
Section 2.2, “Installing the Virtualization Host Server,” on page 28
Section 2.3, “Installing the NetWare 6.5 SP8 Virtual Machine,” on page 36
2.1 Virtualization Host Server Requirements
For the tasks and exercises described in this section, you need the following in addition to those
listed in Section 1.1, “Lab Setup Requirements,” on page 11.
A server-class computer with the following:
ComponentMinimumRecommended
®
6.5 SP8 on the
2
ProcessorPentium II or AMD K7 450 MHzPentium III, Pentium III Xeon,
Pentium 4, Intel Xeon 700 MHz,
AMD K8 CPUs (Athlon64 and
Opteron), Intel EM64T or higher
processor
RAM1 GB2 GB
Display adapterSuper VGAVESA 1.2-compliant, high
resolution
CD driveSupports the ElTorito
Specification
Hard drive
(All data will be erased)
Network cardEthernet 100 Mbps
IP address
40 GB
Two IP addresses on the lab
subnet (one for the OES 2
VM host and one for the
NetWare VM). For example,
192.168.1.120 and
192.168.1.130.
Subnet mask. For example,
255.255.255.0.
Default gateway. For
example, 192.168.1.1.
Installing a NetWare Virtual Machine
27
ComponentMinimumRecommended
MouseNot requiredUSB or PS/2
Installation software to match the processor type and removable media support of your VM
host server.
If you need to download and prepare different media than you used for the first server, go to
Section 1.2, “Obtaining Installation Media,” on page 12.
IMPORTANT: For installing the virtualized NetWare 6.5 SP8 guest server, you download the
NetWare DVD ISO file to the VM host server desktop after the host server is installed and
running.
2.2 Installing the Virtualization Host Server
Although it is possible to install NetWare 6.5 SP8 on a SUSE® Linux Enterprise Server (SLES) 10
SP3 server that has no OES 2 services installed, we recommend that you install the basic OES 2
services on the host server to provide backup services through SMS and management services
through Novell
®
Remote Manager.
novdocx (en) 22 June 2009
IMPORTANT: Virtualized NetWare in Xen* is an OES 2 product feature. Support of NetWare in a
Xen virtual machine is available to only OES 2 registered customers.
Complete the instructions in the following sections.
Section 2.2.1, “Prerequisites,” on page 28
Section 2.2.2, “Starting the Installation,” on page 28
Section 2.2.3, “Setting the Root Password, Configuring the Network, and Updating the
Server,” on page 31
Section 2.2.4, “Configuring LDAP and OES Services,” on page 34
Section 2.2.5, “Setting Up the Graphical User Interface,” on page 35
Section 2.2.6, “Booting with the Xen Kernel,” on page 36
2.2.1 Prerequisites
Before installing OES 2 on your server, you must complete the following task:
Ensure that the server computer meets the requirements outlined in Section 2.1, “Virtualization
Host Server Requirements,” on page 27.
2.2.2 Starting the Installation
WARNING: This procedure permanently erases any data currently on your server’s hard drive.
1 Prepare the BIOS on your server machine so that it will boot from the CD-ROM drive first.
2 Insert the first SLES 10 SP3 CD (or DVD) into your server and reboot the machine.
28OES 2 SP2: Lab Guide for Linux and Virtualized NetWare
3 When the boot selection page appears, immediately press the Down-arrow key to select the
Installation option, then press Enter.
If you don’t respond before the machine starts booting from the hard disk, reboot and repeat
this step.
4 After the boot process finishes, select an installation language, then click Next.
5 Read and agree to the software license agreement, then click Next.
6 Select New Installation, select the Include add-on product from separate menu option, then
click Next.
7 On the Add-on Product Installation page, click Add.
8 Select CD, then click Next.
9 Insert the OES 2 SP2 CD as prompted.
10 After the catalog is added, read and agree to the OES 2 license agreement, then click Next >
Next.
11 Select the time zone for the server, then click Next.
12 On the Installation Settings page, scroll down the list and click Partitioning.
novdocx (en) 22 June 2009
If your server has existing partitions, the OES install tries to add new SLES partitions to them.
13 To ensure a clean install, use the following table to navigate and configure the partitioning
Preparing Hard Disk—Step 11. Select Custom Partitioning (for experts).
2. Click Next.
Expert Partitioner1. Click Expert > Delete partition table and disk label.
2. When prompted to select a new partition table type, click
OK.
Caution!1. Click Yes.
Expert PartitionerFirst, you specify the
1. Click Create.
Which type of partition do you
want to create?
Create a Primary Partition1. In the File System drop-down list, select Swap.
1. Select Primary partition.
2. Click OK.
2. In the End field, type
3. Click OK.
swap
partition information.
512M
.
Expert PartitionerNext, you specify information for the partition for installing the
VM host server.
1. Click Create.
Which type of partition do you
want to create?
1. Select Primary partition.
2. Click OK.
Installing a NetWare Virtual Machine29
Page NameAction
novdocx (en) 22 June 2009
Create a Primary Partition1. In the End field, type
2. Click OK.
Expert Partitioner1. Click Create.
Which type of partition do you
want to create?
Create a Primary PartitionAnd finally, you specify information for the partition where the
Expert Partitioner1. Click Finish.
1. Select Primary partition.
2. Click OK.
NetWare virtual machine runs.
1. In the File System drop-down list, select Ext2.
Operating systems running in paravirtual mode should run
their kernels on non-journaling file systems, such as Ext2.
For more information, see “Paravirtual Mode and
Journaling File Systems (http://www.novell.com/
documentation/sles10/xen_admin/data/
sec_xen_filesystem.html)” in the Virtualization with XEN