Connection to OracleDB using SSL/TLS
Comments
-
Hello Greg,
could you try connection test on the SSL only available DB with the patch below?
1. backup your current /home/lpar2rrd/lpar2rrd/bin/oracledb-test-api.pl file.
2. Apply this patch:
https://download.lpar2rrd.com/patch/7.30-1-4-g6e97f/oracledb-test-api.pl.gz
Gunzip it and copy to /home/lpar2rrd/lpar2rrd/bin (755, lpar2rrd owner)
-rwxrwxr-x 1 lpar2rrd lpar2rrd 9896 Jan 17 08:15 oracledb-test-api.pl
If your web browser gunzips it automatically then just rename it: mv oracledb-test-api.pl.gz oracledb-test-api.pl
Assure that file size is the same as on above example
3. try the connection test in web ui and let us know if it worked.
-
Hello damerva,
Thank you for fast answer.
TCP Connection test works for port 2484/tcp. But DB data test failed with: ORA-29024: Certificate validation failure.
I explored the topic in more detail and I think topic is more complicated then changing only protocol and port.
To use TCPS we need wallet with client certificate, trusted by server. It is defined in sqlnet.ora file.
So I think there are changes to be done:
1. Host definition: possibility to choice between TCP/TCPS protocol with default ports: 1521, 2484.
2. Host definition: path to file with sqlnet.ora when TCPS is selected.
3. Use collected data in sqlplus calls.
In my test environment, TNS you use is sufficient:"(DESCRIPTION=(ADDRESS=(PROTOCOL=TCPS)(HOST=oracle-host)(PORT=2484))(CONNECT_DATA=(SERVICE_NAME=service-name)))" @/path-to/lpar2rrd/oracledb-sql/Standalone_L.sql"<br>
If you want, I will be happy to do the tests after implementation.
Best regards, Greg -
Hello again,
Do you plan any implementation for this functionality?
-
Hello Greg,
so after you set up listener.ora and sqlnet.ora the connection test started working, is that correct?
Howdy, Stranger!
Categories
- 1.6K All Categories
- 48 XORMON NG
- 25 XORMON
- 153 LPAR2RRD
- 13 VMware
- 16 IBM i
- 2 oVirt / RHV
- 4 MS Windows and Hyper-V
- Solaris / OracleVM
- XenServer / Citrix
- Nutanix
- 7 Database
- 2 Cloud
- 10 Kubernetes / OpenShift / Docker
- 124 STOR2RRD
- 19 SAN
- 7 LAN
- 17 IBM
- 3 EMC
- 12 Hitachi
- 5 NetApp
- 15 HPE
- Lenovo
- 1 Huawei
- 2 Dell
- Fujitsu
- 2 DataCore
- INFINIDAT
- 3 Pure Storage
- Oracle