This is a Quick Install guide for the Data Loss Prevention Enforce Server
For the full "DLP Quick Install Guide for Linux" please visit the following link: DLP Quick Install Guides
Linux
The Enforce Server is a core component required for Data Loss Prevention.
VERSION DISCLAIMER: <DLPversion> = 15.8, 16.0, 16.0.1 or 16.0.2 |
Note: Username and Passwords provided below are for example only, choose your own values to match your company requirements.
Download Installers: https://support.broadcom.com/group/ecx/productdownloads?subfamily=Data%20Loss%20Prevention
DLP Platform Installer: Symantec_DLP_<DLPversion>_Platform_Lin-IN_<DLPfullversion>.zip
Oracle Client Installer: Linux.X64_<ORACLEversion>_client.zip
** The Oracle Client MUST be installed if Oracle is not installed locally on the Enforce Server.
Pre-requisites:
RHEL Developer Subscription:
RHEL Registration Quick Install Guide for Linux
Firewalld:
DLP on RHEL: How to open firewalld ports
DLPInstallers directory:
- At the root level create a new directory called "DLPInstallers", this will be used to download all of the DLP related software.
mkdir /DLPInstallers
- Download all of the DLP/Oracle installers and place them into this "DLPInstallers" directory.
Install Java:
Java AdoptOpenJRE Quick Install Guide for Linux
Install the Oracle 19c Client:
Oracle 19c Client Quick install Guide for Linux
Create the Environment Variables:
Environment Variables Quick Install Guide for Linux
Install the DLP Enforce Server:
- Copy the Installer to your staging directory "Symantec_DLP_<DLPversion>
_Platform_Lin-IN_<DLPfullversion>.zip"
/DLPInstallers/<DLPversion>/Symantec_DLP_<DLPversion>_Platform_Lin-IN_<DLPfullversion>.zip
- Unzip the Platform installer
unzip Symantec_DLP_<DLPversion>_Platform_Lin-IN_<DLPfullversion>.zip
- This will unzip everything to a DLP directory
/DLPInstallers/<DLPversion>/DLP
- CD to the installer packages
cd /DLPInstallers/
DLP/
<DLPversion>/New_Installs/Release
- Unzip the EnforceServer.zip
unzip EnforceServer.zip
- CHMOD the "install.sh" file to 755 as well so it can be executed
chmod 755 install.sh
- Install/Confirm the Dependencies
- Create a new "downloads" directory
mkdir downloads
- Run the following YUM command to download the dependencies
yum install --downloadonly --downloaddir=./downloads *.rpm
- CD into the downloads directory
cd downloads
- Run the following YUM command to install the dependencies
yum localinstall *.rpm
If upgrading and you receive the error:
Can not load RPM file: *.rpm.
Could not open: *.rpm
That means the dependencies have already been fulfilled
- Run the "install.sh" to install the Enforce Server software
- CD back to the "Release" directory where the "install.sh" installer is located.
cd /DLPInstallers/<DLPversion>/DLP/<DLPversion>/New_Installs/Release
- run the "install.sh" for the Enforce Server
./install.sh -t enforce
** note that this command will install using the default directories
** If you wish to use Customer Directories, please check the Admin Guide for more details
*** if you are upgrading DLP return to the upgrade guide at this point.
Run the Configuration Utility: ( **Not Required for Upgrades** )
- CD to the "/protect/install/" directory
cd /opt/Symantec/DataLossPrevention/EnforceServer/<DLPversion>/Protect/install
- Run the EnforceServerConfigurationUtility
./EnforceServerConfigurationUtility -jreDirectory=/opt/AdoptOpenJRE/<JREversion>
- Accept the Agreement
1
- Enter your JRE Directory
/opt/AdoptOpenJRE/<JREversion>
- Use FIPS? (only use this if required)
1
- Select New User
1
- Create a new Service Account
SymantecDLP
- Enter your ORACLE_HOME
/opt/oracle/product/<ORACLEversion>/client_1
- Enter your Oracle Hostname or IP
10.252.165.138
- Enter your Oracle Port
1521
- Enter your Oracle Servicename
protect
- Enter your Oracle Username
protect
- Enter your Oracle Password
protect
- Initialize your Database (this will wipe the database)
1
- Enforce Administrator Password
Broadcom1
- External Storage
1
- Select additional languages (1 for None)
1
Log into the Enforce Console:
- Open a Browser
https://<enforce hostname or ip>
Add your DLP Licenses:
- To add your DLP License, follow the steps found here
Installation:
Proceed with installing a Detection Server
Upgrading:
Return to the Quick Upgrade Guide to continue with your Migration
For additional guides please see the "Getting Started with Data Loss Prevention"
To provide feedback please click on the "Feedback" link or send an email to "dlpquickguides.pdl@broadcom.com"