@ChrissK
Isnât this best practice? See: Distributed Monitoring - Icinga 2
/var/lib/icinga2/certs on ma01:
26200253 4 -rw-r--r--. 1 998 icinga 1720 Mar 21 17:17 ca.crt
26200252 4 -rw-r--r--. 1 998 icinga 1846 Mar 21 17:17 otn-ac-monp-ma01.localdomain.crt
26200251 4 -rw-r--r--. 1 998 icinga 1736 Mar 21 17:17 otn-ac-monp-ma01.localdomain.csr
26200250 4 -rw-------. 1 998 icinga 3247 Mar 21 17:17 otn-ac-monp-ma01.localdomain.key
26311172 4 -rw-r--r-- 1 998 icinga 1895 Mar 21 17:51 otn-ac-monp-sa01.localdomain.crt
26311169 4 -rw------- 1 998 icinga 3243 Mar 21 17:51 otn-ac-monp-sa01.localdomain.key
26311174 4 -rw-r--r-- 1 998 icinga 1895 Mar 21 17:51 otn-ac-monp-sa02.localdomain.crt
26311173 4 -rw------- 1 998 icinga 3247 Mar 21 17:51 otn-ac-monp-sa02.localdomain.key
26308181 4 -rw-r--r-- 1 998 icinga 1895 Mar 21 17:51 otn-ac-monp-sa03.localdomain.crt
26308178 4 -rw------- 1 998 icinga 3243 Mar 21 17:51 otn-ac-monp-sa03.localdomain.key
26311176 4 -rw-r--r-- 1 998 icinga 1895 Mar 21 17:51 otn-ac-monp-sa04.localdomain.crt
26311171 4 -rw------- 1 998 icinga 3243 Mar 21 17:51 otn-ac-monp-sa04.localdomain.key
26311178 4 -rw-r--r-- 1 998 icinga 1895 Mar 21 17:51 otn-ac-monp-sa05.localdomain.crt
26311177 4 -rw------- 1 998 icinga 3243 Mar 21 17:51 otn-ac-monp-sa05.localdomain.key
26311179 4 -rw-r--r-- 1 998 icinga 1899 Mar 21 17:51 otn-ac-monp-sa06.localdomain.crt
26308184 4 -rw------- 1 998 icinga 3247 Mar 21 17:51 otn-ac-monp-sa06.localdomain.key
/var/lib/icinga2/certs on ma02:
26200253 4 -rw-r--r--. 1 icinga icinga 1720 Apr 13 17:54 ca.crt
26191552 4 -rw-r--r-- 1 icinga icinga 1720 Apr 13 17:43 ca.crt.orig
26200252 4 -rw-r--r--. 1 icinga icinga 1846 Apr 13 17:54 otn-ac-monp-ma02.localdomain.crt
26191551 4 -rw-r--r-- 1 icinga icinga 1846 Apr 13 17:30 otn-ac-monp-ma02.localdomain.crt.orig
26200251 4 -rw-r--r--. 1 icinga icinga 1736 Mar 21 17:17 otn-ac-monp-ma02.localdomain.csr
26200250 4 -rw-------. 1 icinga icinga 3243 Apr 13 17:53 otn-ac-monp-ma02.localdomain.key
26191531 4 -rw------- 1 icinga icinga 3243 Apr 13 17:30 otn-ac-monp-ma02.localdomain.key.orig
26191557 4 -rw------- 1 icinga icinga 40 Apr 13 17:55 ticket
icinga2 variable list on ma01
ActiveStages = {
_api = "5f0ba41f-68cd-4055-aafc-0349fb0628ce"
}
Icinga = Object of type 'Namespace'
Internal = Object of type 'Namespace'
ManubulonPluginDir = /usr/lib64/nagios/plugins
MaxConcurrentChecks = 512
NodeName = otn-ac-monp-ma01.localdomain
NscpPath =
PluginContribDir = /usr/lib64/nagios/plugins
PluginDir = /usr/lib64/nagios/plugins
ReloadTimeout = 300
StatsFunctions = Object of type 'Namespace'
System = Object of type 'Namespace'
TicketSalt = xxx
Types = Object of type 'Namespace'
ZoneName = otn-ac-monp-ma01.localdomain
api_token = xxx
vars = {
ilo_pwd = "f33cadcf776bbe2ab6a97c7bc00476af"
ilo_user = "ac-ilo-operator"
}
icinga2 variable list on ma02
ActiveStages = {
_api = "4b401d99-0ddb-4f22-b048-c7fd84c4192e"
}
Icinga = Object of type 'Namespace'
Internal = Object of type 'Namespace'
ManubulonPluginDir = /usr/lib64/nagios/plugins
MaxConcurrentChecks = 512
NodeName = otn-ac-monp-ma02.localdomain
NscpPath =
PluginContribDir = /usr/lib64/nagios/plugins
PluginDir = /usr/lib64/nagios/plugins
ReloadTimeout = 300
StatsFunctions = Object of type 'Namespace'
System = Object of type 'Namespace'
TicketSalt =
Types = Object of type 'Namespace'
ZoneName = otn-ac-monp-ma02.localdomain
api_token = xxx
(there is no ticket salt)
icinga2 object list --type zone --name âotn-ac-monp-ma01.localdomainâ on ma01
Object 'otn-ac-monp-ma01.localdomain' of type 'Zone':
% declared in '/etc/icinga2/zones.conf', lines 43:1-43:60
* __name = "otn-ac-monp-ma01.localdomain"
* endpoints = [ "otn-ac-monp-ma01.localdomain", "otn-ac-monp-ma02.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 44:3-44:115
* global = false
* name = "otn-ac-monp-ma01.localdomain"
* package = "_etc"
* parent = ""
* source_location
* first_column = 1
* first_line = 43
* last_column = 60
* last_line = 43
* path = "/etc/icinga2/zones.conf"
* templates = [ "otn-ac-monp-ma01.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 43:1-43:60
* type = "Zone"
* zone = ""
icinga2 object list --type zone --name âotn-ac-monp-ma02.localdomainâ on ma02
Object 'otn-ac-monp-ma02.localdomain' of type 'Zone':
% declared in '/etc/icinga2/zones.conf', lines 18:1-18:60
* __name = "otn-ac-monp-ma02.localdomain"
* endpoints = [ "otn-ac-monp-ma02.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 19:2-19:65
* global = false
* name = "otn-ac-monp-ma02.localdomain"
* package = "_etc"
* parent = "otn-ac-monp-ma01.localdomain"
% = modified in '/etc/icinga2/zones.conf', lines 20:2-20:58
* source_location
* first_column = 1
* first_line = 18
* last_column = 60
* last_line = 18
* path = "/etc/icinga2/zones.conf"
* templates = [ "otn-ac-monp-ma02.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 18:1-18:60
* type = "Zone"
* zone = ""
icinga2 object list --type endpoint --name âotn-ac-monp-ma01.localdomainâ on ma01
Object 'otn-ac-monp-ma01.localdomain' of type 'Endpoint':
% declared in '/etc/icinga2/zones.conf', lines 40:1-40:64
* __name = "otn-ac-monp-ma01.localdomain"
* host = "otn-ac-monp-ma01.localdomain"
% = modified in '/etc/icinga2/zones.conf', lines 41:3-41:57
* log_duration = 86400
* name = "otn-ac-monp-ma01.localdomain"
* package = "_etc"
* port = "5665"
* source_location
* first_column = 1
* first_line = 40
* last_column = 64
* last_line = 40
* path = "/etc/icinga2/zones.conf"
* templates = [ "otn-ac-monp-ma01.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 40:1-40:64
* type = "Endpoint"
* zone = ""
icinga2 object list --type endpoint --name âotn-ac-monp-ma02.localdomainâ on ma01
Object 'otn-ac-monp-ma02.localdomain' of type 'Endpoint':
% declared in '/etc/icinga2/zones.conf', lines 47:1-47:64
* __name = "otn-ac-monp-ma02.localdomain"
* host = ""
* log_duration = 86400
* name = "otn-ac-monp-ma02.localdomain"
* package = "_etc"
* port = "5665"
* source_location
* first_column = 1
* first_line = 47
* last_column = 64
* last_line = 47
* path = "/etc/icinga2/zones.conf"
* templates = [ "otn-ac-monp-ma02.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 47:1-47:64
* type = "Endpoint"
* zone = ""
icinga2 object list --type endpoint --name âotn-ac-monp-ma02.localdomainâ on ma02
Object 'otn-ac-monp-ma02.localdomain' of type 'Endpoint':
% declared in '/etc/icinga2/zones.conf', lines 15:1-15:64
* __name = "otn-ac-monp-ma02.localdomain"
* host = ""
* log_duration = 86400
* name = "otn-ac-monp-ma02.localdomain"
* package = "_etc"
* port = "5665"
* source_location
* first_column = 1
* first_line = 15
* last_column = 64
* last_line = 15
* path = "/etc/icinga2/zones.conf"
* templates = [ "otn-ac-monp-ma02.localdomain" ]
% = modified in '/etc/icinga2/zones.conf', lines 15:1-15:64
* type = "Endpoint"
* zone = ""