Skip to main content
McAfee Enterprise MVISION Cloud

Install Cloud Connector in Linux

NOTE: As of MVISION Cloud Connector 4.1.2, registering a Symbolic Server Name during installation is mandatory. The option to skip this step in the Cloud Connector wizard has been removed.   

Important Notes

IMPORTANT: As of MVISION Cloud Connector 5.2.0, Cloud Connector cannot be installed without the Cloud Connector User role configured in your account. Make sure you have the Cloud Connector User role granted to your account before you install the latest Cloud Connector.

IMPORTANT: Certificate validation happens at installation and when MVISION Cloud Connector is running. During install, if the server certificate validation is successful, no console messages are displayed. If you use a proxy server with SSL termination to connect Cloud Connector to MVISION Cloud, the proxy server’s certificate MUST be provided at install time using the parameter
-Vcertificates=<server file path1>:<server file path2>. Only digitally signed certificates in CRT format are supported. If you perform an upgrade for one release using the
-Vcertificates=<server file path1>:<server file path2> option, you must use it again for all subsequent upgrades.

IMPORTANT: As of CC 3.5, the installer parameter -Venv=<environment_url> is no longer supported. 

NOTE: If you want to change the Java KeyStore (JKS) password, contact MVISION Cloud Support for assistance. 

Prerequisites 

Before you begin, review the required MVISION Cloud Connector Prerequisites

Install CC for Linux

You can install Cloud Connector on a physical server or a virtual machine running Linux 64-bit (Ubuntu or RHEL). For requirements, see Enterprise Connector Prerequisites

NOTE: JVM version 1.8 is bundled with the Cloud Connector installer. 

This procedure includes the output you see from the install wizard when you select the different install options.

  1. Log in to your Unix or Linux system. 
  2. Log in as SUDO user with the command: Sudo su
  3. Copy or download the MVISION Cloud Connector installer to your system. 
  4. Start the installation wizard with the command: sh shnlp_unix64_x_x_x_x-SNAPSHOT.sh. Follow the prompts. 

root@aws-qalp00:/shn/Thiru/Builds# sh shnlp_unix64_4_2_0_1-SNAPSHOT.sh
Unpacking JRE ...
perl: warning: Setting locale failed.
perl: warning: Please check that your locale settings:
    LANGUAGE = (unset),
    LC_ALL = (unset),
    LC_CTYPE = "UTF-8",
    LANG = "en_US.UTF-8"
are supported and installed on your system.

perl: warning: Falling back to a fallback locale ("en_US.UTF-8").
update-rc.d: error: initscript does not exist: /etc/init.d/shnlps
Starting Installer ...
This will install Log Processor on your computer.

OK [o, Enter], Cancel [c]
o

Click Next to continue, or Cancel to exit Setup.
Select the folder where you would like Log Processor to be installed, then click Next.
Where should Log Processor be installed?
[/opt/shnlp]

 

  1. Enter the folder where you want to install MVISION Cloud Connector, and decide whether to use Symlinks [Y] or your local IP address [N]. 

Where should Log Processor be installed?
[/opt/shnlp]
/shn/Thiru/Fresh_Ec_iNSTALL
Create symlinks?
Yes [y, Enter], No [n]
y
Select the folder where you would like Log Processor to create symlinks, then click Next.
[/usr/local/bin]

Please select your connection status
The MVISION Cloud Connector needs to connect to MVISION Cloud on the Internet. If this computer requires the use of a proxy server to connect to MVISION Cloud service, please specify below.

This machine can directly connect to the internet [1, Enter], This machine requires a proxy server to connect to the internet [2]

 

  1. Select the connection status:
    1. This system can directly connect to the internet [1]. The wizard asks for your tenant login credentials and environment details with the salt value. If you want to change to custom environment, select Y and continue.

      Please select your connection status
      The MVISION Cloud Connector needs to connect to MVISION Cloud on the Internet. If this computer requires the use of a proxy server to connect to MVISION Cloud service, please specify below.

      This machine can directly connect to the internet [1, Enter], This machine requires a proxy server to connect to the internet [2]

      1

      Please enter your credentials for MVISION Cloud service
      Please enter your MVISION Cloud tenant login credentials for the MVISION Cloud Connector.

      Username:
      []
      user@gmail.com
      Password:

      Environment:
      SHNPOC (Sandbox) [1, Enter]
      Production [2]
      EUPROD (Frankfurt) [3]
      GovCloud [4]
      Preprod [5]

      1

      The 'Salt' will be used as a customer-specific secret to compute hashes during data tokenization. Use a password-like string for this. Make sure to write down the 'Salt' value in a safe place as it will be needed for additional installations.

      Salt

    2. This computer requires a proxy server to connect to the internet [2]. If you require a proxy, be ready to enter your proxy settings information, tenant login details, select environment, and salt values.

Please select your connection status
The MVISION Cloud Connector needs to connect to MVISION Cloud on the Internet. If this computer requires the use of a proxy server to connect to MVISION Cloud service, please specify below.
This machine can directly connect to the internet [1, Enter], This machine requires a proxy server to connect to the internet [2]

2

Proxy configuration settings
Proxy Hostname or IP:
[]
172.16.206.113
Proxy Port:
[8080]
3128
Proxy Type:
https [1, Enter]
NTLM [2]
1
Proxy User (Optional):
[]
Proxy Password (Optional):

Please enter your credentials for MVISION Cloud service

Please enter your MVISION Cloud tenant login credentials for the MVISION Cloud Connector.
Username:
[]
user@gmail.com
Password:

Environment:
SHNPOC (Sandbox) [1, Enter]
Production [2]
EUPROD (Frankfurt) [3]
GovCloud [4]
Preprod [5]
1

The 'Salt' will be used as a customer-specific secret to compute hashes during data tokenization. Use a password-like string for this. Make sure to write down the 'Salt' value in a safe place as it will be needed for additional installations.

Salt

 

  1. Select Tenant for McAfee Enterprise Cloud Connector.

    Tenant Name

    Krishna only cloud [1, Enter]

    uxreview [2]

NOTE: This option is displayed only when your user ID exists on more than one tenant, so you can select the tenant you want to login to. 

  1. Custom Environment URL. Do you want to create a custom environment URL?
    1. Yes. Change the custom DNS name. MVISION Cloud Connector suggests a custom DNS name. Then, select the IP address and port to use. 

      Custom Environment URL:?
      Yes [y, Enter], No [n]
      y

      [https://shnpoc.myshn.net/shnapi/]
      https://qat.shn.io/shnapi/
      About to get suggestion for server symbolic (DNS) name from URL:https://qat.shn.io/shnapi/rest/dobf/...stsymbolicname
      It is strongly suggested to use the following as De-Tokenization server symbolic (DNS) name:t55332-1884390404.do.devshn.net
      Setting symbolicname to t55332-1884390404.do.devshn.net
      After setting symbolicname to t55332-1884390404.do.devshn.net
      --------------Testing port 8443
      --------------Port 8443 is available

      Configure network settings for providing MVISION Cloud Connector Services

      Note: If you don't want to create new DNS record or register Symbolic Server name for de-tokenization, you can select Yes at the following question. Select this only when you reinstalling EC on the same host, or you are instructed by to do so by McAfee Enterprise Support.

      IP Addresses available on this host: 172.17.0.1 172.23.7.45 127.0.0.1

      Local IP Address:
      [172.17.0.1]
      172.23.7.45
      Port:
      [8443]
      8448

      The Symbolic Server Name setting allows you to choose a user specified DNS name for the MVISION Cloud Connector services like De-Tokenization. If you leave this to the default/suggested value MVISION Cloud will create the DNS record as shown. If you supply your own Symbolic Server Name then you need to register this in your own DNS servers.

      Do you want to change the Symbolic Server Name?
      Yes [y], No [n, Enter]

    2. No. If you leave this as the default value, MVISION Cloud creates the suggested DNS record as shown.

      Custom Environment URL:?
      Yes [y], No [n, Enter]
      n

      About to get suggestion for server symbolic (DNS) name from URL:https://shnpoc.myshn.net/shnapi/rest...stsymbolicname
      It is strongly suggested to use the following as De-Tokenization server symbolic (DNS) name:t5520-1828932514.do.myshn.net
      Setting symbolicname to t5520-1828932514.do.myshn.net
      After setting symbolicname to t5520-1828932514.do.myshn.net
      --------------Testing port 8443
      --------------Port 8443 is available

      Configure network settings for providing MVISION Cloud Connector Services

      Note: If you don't want to create new DNS record or register Symbolic Server name for de-tokenization, you can select Yes at the following question. Select this only when you reinstalling EC on the same host, or you are instructed by to do so by McAfee Enterprise Support.

      IP Addresses available on this host: 172.17.0.1 172.23.7.45 127.0.0.1
      Local IP Address:
      [172.17.0.1]
      172.23.7.45
      Port:
      [8443]
      84448

      The Symbolic Server Name setting allows you to choose a user-specified DNS name for the MVISION Cloud Connector services like De-Tokenization. If you leave this to the default/suggested value MVISION Cloud will create the DNS record as shown. If you supply your own Symbolic Server Name then you need to register this in your own DNS servers.

      Do you want to change the Symbolic Server Name?
      Yes [y], No [n, Enter]

  2. The wizard asks if you want to change the Symbolic Server Name.
    1. No. If you don't want to change the Symbolic Server Name, accept the default Symbolic Server Name. 

      Activate the checkbox to use a Custom Symbolic Server Name, which allows you to enter a DNS name for MVISION Cloud Connector services such as de-tokenization, and to provide a relevant name to the CC instance. Deactivate the checkbox to use the default value for the DNS record, as shown.

      Note:

      1. The Symbolic Server Name should not contain any special characters other than hyphen (-).
      2. The Symbolic Server Name should not start with a hyphen (-).
      3. The trailing domain name cannot be changed.

      If you don't want to create a new DNS record for de-tokenization, you can select Yes at the following question. Select this only when you are reinstalling CC on the same host, or you are instructed to do so by McAfee Enterprise Support.

      Yes [y], No [n, Enter]
      n

      Choose the configuration to be used by this LogProcessor installation
      Select Configuration:
      thiruecunix [1, Enter]
      thiruwindows [2]
      1

      Fetching certificate from MVISION Cloud
      Uploading CSR to MVISION Cloud
      Extracting files ...

      Log Processor Configuration In Progress ...
      Syslog Server Configuration in progress ...

      Setup has finished installing MVISION Cloud on your computer. The application may be launched by selecting the installed icons.

      Click Finish to exit Setup.

      MVISION Cloud Connector was installed successfully. The installed services for log processing and syslog have not been started yet on this computer. As next steps perform a quality check of the log data and then start the services manually.

      Finishing installation ...

    2. Yes. If you do want to change the Symbolic Server name, follow the prompts to enter the change.

      Activate the checkbox to use a Custom Symbolic Server Name, which allows you to enter a DNS name for MVISION Cloud Connector services such as de-tokenization, and to provide a relevant name to the CC instance. Deactivate the checkbox to use the default value for the DNS record, as shown.

      Note:

      1. The Symbolic Server Name should not contain any special characters other than hyphen (-).
      2. The Symbolic Server Name should not start with a hyphen (-).
      3. The trailing domain name cannot be changed.

      If you don't want to create a new DNS record for de-tokenization, you can select Yes at the following question. Select this only when you are reinstalling CC on the same host, or you are instructed to do so by McAfee Enterprise Support.

      Yes [y], No [n, Enter]

      y

      Custom Symbolic Server Name:
      [1292596912]
      ec-install-skyhigh-cust
      Choose the configuration to be used by this LogProcessor installation
      Select Configuration:
      thiruecunix [1, Enter]
      thiruwindows [2]

      1

      Fetching certificate from MVISION Cloud
      Uploading CSR to MVISION Cloud
      Extracting files ...

      Log Processor Configuration In Progress ...
      Syslog Server Configuration in progress ...
      Setup has finished installing MVISION Cloud on your computer. The application may be launched by selecting the installed icons.

      Click Finish to exit Setup.

      MVISION Cloud Connector was installed successfully. The installed services for log processing and syslog have not been started yet on this computer. As next steps perform a quality check of the log data and then start the services manually.

      Finishing installation ...

The installation is complete. 

  • Was this article helpful?