Installing BigFix on Linux (BigFix scenario)

To install the BigFix® platform on Linux, run the install.sh script and go through the installation of the BigFix server and the first BigFix client. Then, install the BigFix console on a Windows computer.

Before you begin

The BigFix platform installed on Linux can use MS SQL Server or DB2 as a database. However, License Metric Tool that is installed on Linux requires DB2 database. If you want to share the same database between BigFix and License Metric Tool, use DB2.
Ensure that you have the DB2 installed and running before you start the installation of BigFix.
  • If you are using BigFix 10.x, the DB2 database is included in the BigFix installer and can be installed together with the BigFix server.
  • If you are using BigFix 11.x, the DB2 database is not included in the BigFix installer. To install the DB2 database, download the following packages:
    • Download the installer for the latest patch of DB2 11.5 or 12.1 from Fix Central.
    • Download the DB2 license activator for the version of DB2 that you want to use from Passport Advantage:
      • DB2_DSE_Activation_11.5.zip (with part number CC6L7ML). The activator works for any 11.5.x version.
      • DB2_DSE_Activation_12.1.zip (with part number M0M9YEN). The activator works for any 12.1.x version.

About this task

The following procedure shows the most common installation scenario for Linux that is based on the BigFix 11.0.5 installer and uses DB2 as a database. If it does not fit your environment, you need more information about each step, or other installation tasks, see: Installing on Linux systems in the BigFix documentation.

Procedure

  1. Go to the directory with the installation package, and extract the installation files.
    tar xvf installation_package
  2. From the extracted directory, go to ServerInstaller_n.n.nnn.n-rhe7.x86_64, and run the installation script.
    ./install.sh
  3. To choose the production installation, enter 2.
    Select the type of installation
    [1]  Evaluation: Request a free evaluation license from HCL Technologies Limited. This license allows you to install a fully functional copy of the BigFix on up to 1000 clients, for a period of 30 days.
    [2] Production: Install using a production license or an authorization for a production license.
    Choose one of the options above or press <Enter> to accept the default value: [1]
    2
     
  4. To accept the license agreement, enter 1.
  5. To install all BigFix components, enter 1.
    Select the BigFix features that you want to install:
    [1]  All components (server, client, Web Reports and WebUI)
    [2]  Server and client only 
    [3]  Web Reports only 
    [4]  WebUI and client only 
    [5]  Server, WebUI and client only 
    [6]  Web Reports, WebUI and client only 
    [7]  Server, Web Reports and client only 
    Choose one of the options above or press <Enter> to accept the default value: [1]
    1
  6. To create a single or master database, enter 1.
    Select the database replication:
    [1]  Single or master database
    [2]  Replicated database
    Choose one of the options above or press <Enter> to accept the default value: [1]
    1
     
  7. To use a local instance of DB2, enter 1.
    Select the database:
    [1]  Use a local database
    [2]  Use a remote database
    Choose one of the options above or press <Enter> to accept the default value: [1]
    1
     
  8. Specify the installation location for BigFix or press Enter to accept the default value
    Choose the server's root folder
    Specify the location for the server's root folder 
    or press <Enter> to accept the default value: /var/opt/BESServer
  9. Specify the installation location for Web Reports or press Enter to accept the default value.
    Choose the Web Reports server's root folder
    Specify the location for the Web Reports server's root folder 
    or press <Enter> to accept the default value: /var/opt/BESWebReportsServer
  10. Specify the port number for Web Reports or press Enter to accept the default value.
    Web Reports will be automatically configured to use HTTPS. Choose the Web Reports server HTTPS port number.
    Specify the port number or press <Enter> to accept the default value: 8083
  11. Specify the port number for WebUI or press Enter to accept the default value.
    WebUI's port number
    Specify the port number or press <Enter> to accept the default value: 443
  12. Specify the redirect port number for WebUI or press Enter to accept the default value.
    WebUI's redirect port number
    Specify the port number or press <Enter> to accept the default value: 80
  13. Specify the name of the local DB2 instance or press Enter to accept the default value.
    Local DB2 instance name
    The DB2 instance used by the BigFix requires specific configuration for performance optimization. It is therefore suggested that you use a dedicated DB2 instance. 
    Specify the name of the local DB2 instance that you want to use or press <Enter> to accept the default value: db2inst1
  14. Specify the administrative user of the local DB2 instance or press Enter to accept the default value.
    Local DB2 administrative user
    Specify the user name of the local DB2 instance owner that you want to use 
    or press <Enter> to accept the default value: db2inst1
  15. Specify the password of the administrative user of the local DB2 instance
    Local DB2 administrative user password
    Specify the password of the local DB2 administrative user:
  16. Enter the password again for verification.
  17. To configure the DB2 instance to optimize the BigFix server, enter 1.
    DB2 instance configuration
    The specified DB2 instance can be configured to optimize the BigFix performance. Be aware that the configuration settings will be applied to all databases that belong to the selected DB2 instance.
    [1]  Configure the specified DB2 instance.
    [2]  Skip the DB2 instance configuration.
    Choose one of the options above or press <Enter> to accept the default value: [1]
    1
     
  18. Create the initial administrative user for BigFix or press Enter to accept the default value.
    Create the initial administrative user
    Specify the Username for the new user or press <Enter> to accept the default value: BFAdmin
  19. Specify the password for the initial administrative user.
    Create the initial administrative user
    Specify the password for the new user:
  20. Enter the password again for verification.
  21. To run the installation using a license authorization file, enter 1.
    Choose the type of setup that best suits your needs:
    [1]  I want to install with a BES license authorization file.
    [2]  I want to install with a production license that I already have.
    [3]  I want to install with an existing masthead.
    Choose one of the options above or press <Enter> to accept the default value: [1]
    
    1
  22. If you are not using a proxy, enter 2.
    Proxy usage
    [1]  Use the proxy to access the internet
    [2]  Do not use the proxy
    Choose one of the options above or press <Enter> to accept the default value: [2]
    2
  23. Specify the location of your license authorization file or press Enter to accept the default value.
    License authorization location
    Enter the location of the license authorization file that you received from HCL
    or press <Enter> to accept the default value: ./license/LicenseAuthorization.BESLicenseAuthorization
  24. Specify the DNS name or IP address of the server on which you are performing the installation, or press Enter to accept the default value.
    Important: Ensure that the DNS name or IP address is correct as it cannot be changed later on.
    Server DNS name
    This name is recorded into your license and will be used by Clients to identify the BigFix Server. It cannot be changed after a license is created. Enter the DNS name of your BigFix server or press <Enter> to accept the default value: <default_value>
  25. Specify the site admin private key password.
    Attention: If you forget the password, a new license certificate needs to be created, which requires a new installation.
    Site admin private key password
    Specify the related site admin private key password:
  26. Enter the password again for verification.
  27. Specify the key size to encrypt the credentials or press Enter to accept the default value.
    Key size level
    Provide the key size that you want to use:
    [1]  'Min' level (2048 bits)
    [2]  'Max' level (4096 bits)
    Choose one of the options above or press <Enter> to accept the default value: [2]
  28. Specify the license folder in which the license file is to be generated and saved.
    Attention: Ensure that the files are stored in a secure folder. If you lose the private key file or forget its password, a new license certificate needs to be created, which requires a new installation.
    Choose the license folder
    Specify a folder for your private key (license.pvk), the license certificate (license.crt), and the site masthead (masthead.afxm) or press <Enter> to accept the default value: ./license
  29. Submit the request to HCL to obtain the license certificate.
    • If your server can access the internet, enter 1. The request will be submitted automatically.
    • If your server cannot access the Internet, enter 2, and submit the request manually:
      1. The request.BESLicenseRequest is generated and saved to a folder with your license files. Copy this request to a computer with internet access.
      2. On the computer with internet access, go to BES License Request Handler and submit the request file.
      3. The license.crt file is saved to your computer. Copy it back to the BigFix server.
      4. Return to the installation and enter 1 to import the certificate and continue with the installation.
  30. Specify the value of the deployment encoding (FXF encoding) that will be used for the content.
  31. To accept the default masthead values, enter 1.
    Advanced masthead parameters
    The masthead will be created using the following defaults:  
            Server port number: 52311  
            Use of FIPS 140-2 compliant cryptography: Disabled  
            Gather interval: One Day  
            Initial action lock: Unlocked  
            Action lock controller: Console  
            Action lock exemptions: Disabled  
            Unicode filenames in archives: Enabled 
    The above default values are suitable for most of BigFix deployments. 
    [1] Use default values 
    [2] Use custom values
    Choose one of the options above or press <Enter> to accept the default value: [1]
    1
  32. To run Web Reports as a root, enter 1.
    Use root user for Web Reports
    If you specify true, Web Reports service will run with root privileges.
    [1]  True
    [2]  False
    Choose one of the options above or press <Enter> to accept the default value: [2]
    2
  33. Specify the port number of the local DB2.
    Local DB2 port
    Specify the local DB2 port number:
  34. When the installation is complete, install the BigFix console.
    Important: The BigFix console is supported only on Windows.
    1. Go to /var/opt/BESInstallers.
    2. Copy the Console folder to a Windows computer.
    3. On the Windows computer, run the setup.exe script, and follow instructions in the installation wizard.
  35. If you want to install the License Metric Tool server on a different computer, install the BigFix client on that computer.

What to do next

You can proceed with the installation of the BigFix client on every computer from which you want to collect software inventory data or with the installation of the License Metric Tool server. You can perform these tasks in any order.