- To use a firewall tool other than iptables:
Stop the iptables service.
B.1.3
Installing PSA
Execute the following command to install the PSA package.
The following explanation is based on the assumption that the PSA package (FJSVpsa-$VER-$REL.tar.gz) has
been extracted in the work directory ($WORK_DIR):
Syntax
cd $WORK_DIR/FJSVpsa
./INSTALL.sh
B.1.4
Automatic configuration during PSA installation
The following table lists settings for PSA operation. The installer automatically adds or updates these settings during
PSA installation.
TABLE B.4 Settings automatically added/changed during PSA installation
Target
Action
Remarks
syslog.conf file
Add
setting
snmpd.conf file
Add
setting
snmptrapd.conf file
Add
setting
services files
Add
setting
Added port: The installer does not check for duplicate port
numbers when adding a setting to the fj-webgate (24450)
services file. Change the setting as needed.
snmptrapd start option
Change
snmpd start option
Change
Dedicated PSA-to-MMB
communication LAN interface
Set IP
address
6.2.1 Configuring the PSA-to-MMB
, change settings as needed.
iptables setting
Add
setting
Only a chain for PSA-MMB communication is created during
manual installation of PSA version 2.6 or later.
Referring to Checking the firewall function (opening ports) in
B.1.6 Settings after PSA installation
, add the jump setting for the
chain for PSA-MMB communication to INPUT and OUTPUT
chains manually.
SELinux configuration file
(/etc/selinux/config)
Change
SELinux is disabled only for RHEL5. If SELinux is disabled, do
not change the settings.
PRIMEQUEST 1000 Series Installation Manual
APPENDIX B Manual PSA Installation and Uninstallation
237
C122-E107-09EN