This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

linux servers not visible on sophos enterprise console

Hi,

Everything was working fine and then we had to change the domain name and make the server on which enterprise console is installed into a domain controller. After this enterprise console stopped working. We re-installed enterprise console and it is working now but linux servers are not getting displayed. Linux servers are able to get updates from the enterprise console. Is there a log file or settings or config I can check to fix this issue? PFA screenshots of enterprise console and linux server getting updates successfully.

Thanks in advance for your help.

Regards,

Shinoj. 

:50592


This thread was automatically locked due to age.
  • Hello Shinoj,

    you've never told how (if at all) you resolved the communication issue back in March/April. Apparently you didn't change the name of the server, did you? Did you re-install SEC over the existing installation? I'd suggest you start with checking the router logs on the Linux servers (/opt/sophos-av/rms/Router/Logs/Router*.log).

    Christian

    :50594
  • Hi,

    Back then, there was some issue with update folder. Once update issue was fixed, servers got added to enterprise console without any further configuration changes and everything was working fine.

    There is no folder called Router in /opt/sophos-av/rms/

    [root@plapp1 shinojvg]# ls /opt/sophos-av/rms/
    conf lib svc.conf

    Regards,

    Shinoj.

    :50596
  • Hi Christian,

    Also note that we uninstalled and then installed enterprise console again.

    Regards,

    Shinoj.

    :50598
  • Hi,

    I re-installed from the new CID and now I get this router log :

    03.06.2014 15:08:09 7700 I SOF: ./Router/Logs/Router-20140603-140809.log
    03.06.2014 15:08:09 7700 I Sophos Messaging Router 3.0.0.1728 starting...
    03.06.2014 15:08:09 7700 I Setting ACE_FD_SETSIZE to 138
    03.06.2014 15:08:09 7700 I Initializing CORBA...
    03.06.2014 15:08:09 7700 I Setting connection cache limit to 10
    03.06.2014 15:08:09 7700 I Creating ORB runner with 4 threads
    03.06.2014 15:08:09 7700 I Getting parent router IOR from 10.134.98.176:8192
    03.06.2014 15:08:11 7700 I Getting parent router IOR from 192.168.150.126:8192
    03.06.2014 15:08:11 7700 I Getting a new router certificate...
    03.06.2014 15:08:12 7700 I Creating cryptographic key pair
    03.06.2014 15:08:13 7700 E Router::Start: Caught Certificate request refused by certification manager, subject identity not proven

    Regards,

    Shinoj.

    :50608
  • Hello Shinoj (and ruckus),

    might be my eyesight, this post is marked as solution but I don't see it. Anyway, when I did a quick search in the knowledgebase the following turned up: Caught Certificate request refused by certification manager, subject identity not proven. Is this the solution?

    Christian

    :50636
  • Yes check both Client and server and client certificates are same .

    Server

    -----------

    \\Servername\SophosUpdate\CIDs\Sxxx\SAVSCFXP\cac.pem and cac.dat   ( for windows )

    \Servername\SophosUpdateCIDs\Sxxx\savlinux\cac.pem and cac.dat              (for linux )

    Client

    -----------

    /opt/sophos-av/rms/cac.pem
    /opt/sophos-av/update/cache/Primary/cac.pem

    :50914