Important: If you add the vault user password to the entrust.conf file, then it can be seen in trace log files. We recommend that you do not include the password and let the vault user type it in manually when they are prompted when running the script.
Copy the script bundle to the first Oracle Server node.
As the Oracle user, create a folder and extract the bundle. The bundle contains the following files:
entrust.conf—The configuration file with some pre-populated values.
setup.sh—A bash script signed with the Entrust signature. Do not modify. This should be run as the ROOT user.
encrypt.sh—This should be run as the Oracle user.
Open the entrust_conf file and update the following parameters:
oracle_user—The name of the Oracle database admin user. Typically the value is "oracle".
oracle_user_group—The group to which the oracle_user belongs. Typically the value is "oinstall".
After editing the entrust_conf file, save your changes.
Run the setup.sh script using bash as the ROOT user:
bash>
sudo ./setup.sh first entrust.confWhere:
first is the node you are updating. This can be either first or other.
entrust.conf is the name of the configuration file that you downloaded.
If setup is successful, it prints the path of the Access Token file as follows:
Saving access token in file /opt/oracle/entrust/oracle.conf
Please make a note of this path, as it will be used later to open the wallet.
If you have an additional Oracle RAC node, Oracle Data Guard, or any alternate restore node, copy the script bundle to this node and extract it.
- Copy the modified entrust.conf file from the first node and overwrite the config file from the bundle.
Important: If you are using Oracle Data Guard, you will need to run a different script to set up the standby nodes. See Setting up Data Guard with Scripts.
Run the setup.sh script using bash as the ROOT user:
bash>
sudo ./setup.sh other entrust.confWhere:
other is the node you are updating. This can be either first or other.
entrust.conf is the name of the configuration file that you downloaded.