Page 1 of 1

Nagios log server installation fail

Posted: Tue Nov 07, 2017 4:10 pm
by aajibad1
Hi,

I am trying to install on nagios server on AWSec2 INSTANCE NAME="Red Hat Enterprise Linux Server" VERSION="7.4 (Maipo)". However, I keep getting error
Nothing to do
7 Nov 20:54:57 ntpdate[2380]: no server suitable for synchronization found

===================
INSTALLATION ERROR!
===================
Installation step failed - exiting.
Check for error messages in the install log (install.log).

If you require assistance in resolving the issue, please include install.log
in your communications with Nagios Enterprises technical support.
.
please help

Re: Nagios log server installation fail

Posted: Tue Nov 07, 2017 4:45 pm
by bolson
The error is exactly as described in this error message:

Code: Select all

7 Nov 20:54:57 ntpdate[2380]: no server suitable for synchronization found
The installation script is attempting to synchronize system time and php time with an ntp server.

It is failing either because no ntp server is specified in /etc/ntp.conf or because the configured ntp server is unreachable.

Re: Nagios log server installation fail

Posted: Wed Nov 08, 2017 11:00 am
by mcapra
If you're not familiar with NTP, it'd be good to know if this environment is offline or behind a proxy of some sort. Also if your org blocks NTP requests that aren't made to an internal NTP server (my org does this). You can designate an internal NTP server in the install script in that case.

Re: Nagios log server installation fail

Posted: Wed Nov 08, 2017 11:18 am
by aajibad1
Thi sis my personal environment on AWS . I don't see why it shouldn't resolve into its ntp server . below is my /etc/ntp.conf:
# For more information about this file, see the man pages
# ntp.conf(5), ntp_acc(5), ntp_auth(5), ntp_clock(5), ntp_misc(5), ntp_mon(5).

driftfile /var/lib/ntp/drift

# Permit time synchronization with our time source, but do not
# permit the source to query or modify the service on this system.
restrict default nomodify notrap nopeer noquery

# Permit all access over the loopback interface. This could
# be tightened as well, but to do so would effect some of
# the administrative functions.
restrict 127.0.0.1
restrict ::1

# Hosts on local network are less restricted.
#restrict 192.168.1.0 mask 255.255.255.0 nomodify notrap

# Use public servers from the pool.ntp.org project.
# Please consider joining the pool (http://www.pool.ntp.org/join.html).
server 0.rhel.pool.ntp.org iburst
server 1.rhel.pool.ntp.org iburst
server 2.rhel.pool.ntp.org iburst
server 3.rhel.pool.ntp.org iburst

#broadcast 192.168.1.255 autokey # broadcast server
#broadcastclient # broadcast client
#broadcast 224.0.1.1 autokey # multicast server
#multicastclient 224.0.1.1 # multicast client
#manycastserver 239.255.254.254 # manycast server
#manycastclient 239.255.254.254 autokey # manycast client

# Enable public key cryptography.
#crypto

includefile /etc/ntp/crypto/pw

# Key file containing the keys and key identifiers used when operating
# with symmetric key cryptography.
keys /etc/ntp/keys

# Specify the key identifiers which are trusted.
#trustedkey 4 8 42

# Specify the key identifier to use with the ntpdc utility.
#requestkey 8

# Specify the key identifier to use with the ntpq utility.
#controlkey 8

# Enable writing of statistics records.
#statistics clockstats cryptostats loopstats peerstats

# Disable the monitoring facility to prevent amplification attacks using ntpdc
# monlist command when default restrict does not include the noquery flag. See
# CVE-2013-5211 for more details.
# Note: Monitoring will not be disabled with the limited restriction flag.
disable monitor

Re: Nagios log server installation fail

Posted: Wed Nov 08, 2017 11:25 am
by aajibad1
I got it working now ! All I needed to do is to open UDP 123 port .

Re: Nagios log server installation fail

Posted: Wed Nov 08, 2017 11:30 am
by cdienger
Line 72 of the fullinstall script designates the ntp server it tries to contact. By default it is pool.ntp.org, but can be changed to an internal server if needed. If an ntp server isn't available at all, you could probably just comment out lines 69 through 73 and set the time manually with the Linux date command if needed.