# firewall-cmd -direct -add-rule ipv4 filter output 0 -o lo -p tcp -m tcp -dport 27017 -m owner -uid-owner apache -j accept firewall-cmd -direct -add-rule ipv6 filter output 0 -o lo -p tcp -m tcp -dport 27017 -m owner -uid-owner apache -j accept firewall-cmd -direct.
# echo -e "server n update add n 3600 IN A n sendn" nsupdate -k /etc/y # nslookup n # echo -e "server n update delete n 3600 IN A n sendn" nsupdate -k /etc/y Run the satellite-installer script to make the following persistent changes.
# 1 igalep132 can't extend primary partition (Disk C).
# mkdir /root/sat_cert # cd /root/sat_cert Create a private key with which to sign the Certificate Signing Request (CSR).# ipa-getkeytab -p capsule/ -s m -k /etc/foreman-proxy/ytab Note When adding a keytab to a standby system with the same host name as the original system in service, add the r option to prevent generating new credentials and rendering the credentials on the original system.# echo -e "server n update add m 3600 IN A n sendn" nsupdate -k /etc/y On Satellite Server, test the DNS entry.# katello-service restart On Red Hat Enterprise Linux 6, edit the file /etc/security/nf and add the following line.# capsule-certs-generate -capsule-fqdn "m" -certs-tar m-certs.# firewall-cmd -add-port"53/udp" -add-port"53/tcp" -add-port"67/udp" -add-port"69/udp" -add-port"80/tcp" -add-port"443/tcp" -add-port"5647/tcp" -add-port"8000/tcp" -add-port"8140/tcp" Repeat the command adding the -permanent option to make the settings persistent.# chkconfig ntpd on Synchronizing Time by Using chronyd Install chronyd.