# Master - Satellite - Client Setup (How?)

**URL:** <https://community.icinga.com/t/master-satellite-client-setup-how/5485>\
**Category:** Icinga 2\
**Created:** [September 10, 2020, 11:54am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485 "2020-09-10T11:54:55Z")\
**Posts on this page:** 19\
**Page:** 1

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 10, 2020, 11:54am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/1 "2020-09-10T11:54:55Z")

</div>

Hey,

at first what I want:

- One Server with Icinga Web2 and the director to manage configurations/hosts/groups etc. from Company/Network “B” & “C” and also to see the checks/problems…

- Two other icinga2 servers that do there jobs/checks in Company/Network “B” and “C”. Per Company/Network I want to use one icinga2-server.

* * *

What I still have:

- one ubuntu server with icinga2 + web + director (works fine)
- two ubuntu server with icinga2

* * *

My question:

How can I connect these icinga2-servers to the “master” to manage these icinga2-instances from the master and also see the checks on the master-web?

P.S. I dont understand the part with the “endpoints” and the “zones”. I read a lot about it, but dont understand. I think the connection between the servers are using the zone to connect, right?

Please let me know, what can I do or send me tutorials to setup my wish. 🙂

Best regards,  
phylipp

---

<div class="post-metadata">

**Author:** ![stevie-sy](https://community.icinga.com/letter_avatar_proxy/v4/letter/s/898d66/32.png) [@stevie-sy](https://community.icinga.com/u/stevie-sy)\
**Post date:** [September 10, 2020, 12:33pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/2 "2020-09-10T12:33:34Z")

</div>

Hi,

I understand at the beginning is looks complicated. But it isn’t

in each zone are 1 or 2 nodes (called Endpoints)

zone1 (e.g. called master) -\> connects to zone 2 (e.g. zone worker1). If there are two nodes in a zone both agree with each other who then checks what.

You have to extend your zones.conf like described here [https://icinga.com/docs/icinga2/latest/doc/06-distributed-monitoring/#top-down](https://icinga.com/docs/icinga2/latest/doc/06-distributed-monitoring/#top-down)

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 10, 2020, 12:39pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/3 "2020-09-10T12:39:53Z")

</div>

Okay,

because my plan is e.g.:

Icinga2 + Web + Director (Network A - Overview over checks and problems from Icinga2 in Network B)  
⬆  
Icinga2 (Network B - Do checks like ping)  
⬆  
Switch / Desktop PC (Network B - Is a normal network device to monitor is it alive)

---

<div class="post-metadata">

**Author:** ![stevie-sy](https://community.icinga.com/letter_avatar_proxy/v4/letter/s/898d66/32.png) [@stevie-sy](https://community.icinga.com/u/stevie-sy)\
**Post date:** [September 10, 2020, 12:47pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/4 "2020-09-10T12:47:57Z")

</div>

Yes, it’s like described in the docs.

the master zone (network a) has to know the child zone (network b), the child zone has know about the master zone.  
If you install icinga as agent on the desktop pc, this installation has only to know about the parent zone (network b)

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 10, 2020, 12:49pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/5 "2020-09-10T12:49:34Z")

</div>

Okay, I need to run the icinga2 node wizard or not?

---

<div class="post-metadata">

**Author:** ![stevie-sy](https://community.icinga.com/letter_avatar_proxy/v4/letter/s/898d66/32.png) [@stevie-sy](https://community.icinga.com/u/stevie-sy)\
**Post date:** [September 10, 2020, 1:08pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/6 "2020-09-10T13:08:32Z")

</div>

It depends.  
The node wizard overwrites the existing config file like zone.conf, constants.conf etc. If it’s a problem (for you), is that to be considered. You could also extend the config files and restart icinga2. Certificates can also be created manually

---

<div class="post-metadata">

**Author:** ![homerjay](https://community.icinga.com/user_avatar/community.icinga.com/homerjay/32/377_2.png) [@homerjay](https://community.icinga.com/u/homerjay)\
**Post date:** [September 10, 2020, 1:52pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/7 "2020-09-10T13:52:31Z")

</div>

I totally agree that at the beginning, the concept or zones, endpoint etc. is quite hard to understand.  
Especially hard to get, if you are new to monitoring.

**Master:**  
The master(s) are the alpha and omega. They know all hosts, services and so on.  
In short: They know everything.  
Masters can execute checks directly or indirectly by a satellite.  
If the master checks directly, the endpoint (see below) is in the zone of the master.

**Satellite**  
They execute checks of specific zone. Instead of the masters, the checks for this zone are executed by the satellites and reported back to the master.  
If the zone gets to big, another satellite can be installed and the satellites share the work for their zone.  
It is **not** always necessary to have satellites, that depends on the infrastructure.

**Endpoints**  
Each host in a zone is an endpoint; also master and satellite. Endpoints are in 1 (one) zone, and in **only** one zone.  
The endpoints, which are not master or satellite, only know their parent and the zone they are in (master or satellite zone - whatever called) and their own, unique zone, not the other endpoints.

I described something [here](https://community.icinga.com/t/satellite-checks-greyed-out-and-client-stuck-at-pending/5075/7).

* * *

Every icinga-agent, whatever role, can be installed by the node-wizard, but there are also other ways. Since this is a totally other question than your initial one, I am not sure was is the actual problem.

Maybe it is a bit easier if you explain us which points are not clear.

* * *

Greetings.

---

<div class="post-metadata">

**Author:** ![Pooh](https://community.icinga.com/letter_avatar_proxy/v4/letter/p/f05b48/32.png) [@Pooh](https://community.icinga.com/u/Pooh)\
**Post date:** [September 10, 2020, 2:18pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/8 "2020-09-10T14:18:17Z")

</div>

Personally I think the word “zone” should be changed, and especially that the  
examples in the documentation  
[https://icinga.com/docs/icinga2/latest/doc/06-distributed-monitoring/#zones](https://icinga.com/docs/icinga2/latest/doc/06-distributed-monitoring/#zones)  
which use “EU” and “USA” should be changed, because they really do make people  
think that a zone is some geographical region, or at the very least a group of  
related machines.

Anyone not using a High Availability setup will have each endpoint in exactly  
one zone, and each zone will contain exactly one endpoint (an HA setup will  
have exactly two endpoints in the Master zone, but that’s the only exception).

In general it is a direct one-to-one correspondence, and I think this is not  
clear to people new to Icinga.

The word “client” got changed a few months ago to “agent”, and this has  
probably helped people to understand the structure of things a bit better; I  
hope the same can be done for the word “zone” to help avoid people thinking  
that a zone is a group of several machines all sharing some common property  
such as location, function, operating system, development/production, business  
unit, etc. It isn’t.

I suggest the word “node” to replace “zone”, because the things shown on  
distributed monitoring setups with Master, Satellites and Agents, joined to  
each other by lines in a hierachy, are graph nodes.

Ther emay well be other, possibly better, suggestions 🙂

Regards,

Antony.

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 11, 2020, 4:45am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/9 "2020-09-11T04:45:58Z")

</div>

> [@homerjay](#):
>
> Every icinga-agent, whatever role, can be installed by the node-wizard, but there are also other ways. Since this is a totally other question than your initial one, I am not sure was is the actual problem.
> 
> Maybe it is a bit easier if you explain us which points are not clear.

* * *

My Problem is now. What is my step to do?

I have my three icinga-servers and all servers works fine. What should I do now?

I think I have to create the zone.conf, right? But how? Has maybe someone a example config for this thread to explain? Maybe it is easier to understand for me.

But so far, many thanks to all comments and help!

---

<div class="post-metadata">

**Author:** ![rsx](https://community.icinga.com/user_avatar/community.icinga.com/rsx/32/2094_2.png) [@rsx](https://community.icinga.com/u/rsx)\
**Post date:** [September 14, 2020, 10:22am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/10 "2020-09-14T10:22:45Z")

</div>

If I’ve understood everything correctly, you need would these steps (al least):

1. Run `icinga2 node wizard` on your master (selecting to configure it as master, which is the very first question. And disable `conf.d` inclusion).
2. Run `icinga2 node wizard` on your first satellite (selecting to configure it as satellite/agent with its own zone name and having your master as the parent. And disable `conf.d` inclusion).
3. Do the same as #2 for your second satellite (selecting to configure it as satellite/agent with its own zone name and having your master as the parent. And disable `conf.d` inclusion).
4. Manually add zone and endpoint objects to `zones.conf` on your master
5. Sign your certificates if required
6. restart all icinga cores
7. Configure director and run `kickstart wizard`
8. Start configuring your host and service objects

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 14, 2020, 11:33am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/11 "2020-09-14T11:33:16Z")

</div>

Hey,

perfect instruction! Thats what I need.

Just one question:

Point “4.” - In my folder /etc/icinga2/zones.d/ I have to setup/create manual the folders / zones?

Like …:

/zones.d/master/  
/zones.d/zone1/  
/zones.d/zone2/

And I have to create this on all icinga-cores manual right?

After that… Can I see the status of my satellites on the director modul? To check if the satellites are online/connected to the master?

* * *

One question for the future… Where in the director can I select in which zone I want to create or execute a host/service?

Big thanks!

---

<div class="post-metadata">

**Author:** ![rsx](https://community.icinga.com/user_avatar/community.icinga.com/rsx/32/2094_2.png) [@rsx](https://community.icinga.com/u/rsx)\
**Post date:** [September 14, 2020, 12:43pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/12 "2020-09-14T12:43:13Z")

</div>

> [@phylipp](#):
>
> Point “4.” - In my folder /etc/icinga2/zones.d/ I have to setup/create manual the folders / zones?

No, as you are using the director (means it will do the job for you).

> [@phylipp](#):
>
> And I have to create this on all icinga-cores manual right?

No, as you are using the director (means it will do the job for you).

> [@phylipp](#):
>
> After that… Can I see the status of my satellites on the director modul? To check if the satellites are online/connected to the master?

It depends on how you arrange your service objects.

> [@phylipp](#):
>
> One question for the future… Where in the director can I select in which zone I want to create or execute a host/service?

Please do not created any zones with director (even this is still possible). Each host object needs to be a member of a zone (you your case: master, sat1 or sat2) and this defines where a service check is executed by the default. For checks that should be executed on an agent, you need to define these checks with the option **run on agent** in the director.

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 14, 2020, 12:58pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/13 "2020-09-14T12:58:43Z")

</div>

Perfect!

I’ll test it and come back tomorrow to this thread. 🙂

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 15, 2020, 10:25am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/14 "2020-09-15T10:25:38Z")

</div>

Hey, I’m back.

Now my setup is installed.

I added via director one host (ubuntu server 20.04) with a simple ssh-check and a hostalive ping-check for a HP-Switch.

So far so good, all is fine, both checks works perfectly.

But now I see this:

 ![2020-09-15 12_22_31-Window](https://community.icinga.com/uploads/default/original/2X/5/5aae4f60a74ad8b16dbee4482ccf45a0ac3f4ff7.png)

icinga01 - satellite 1 for network A  
icinga02 - satellite 2 for network B  
icinga03 - master

The switch and my ubuntu-server are in the same network from the master.

But how can I change this to a satellite for a host that is in the network e.g. from satellite 1?

My plan is to just use the director to manage all services/hosts and commands. 🙂

Best regards,  
phylipp

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 15, 2020, 10:38am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/15 "2020-09-15T10:38:59Z")

</div>

I think I got it.

Is the option to find in the part of “host templates” at the bottom? 🙂

---

<div class="post-metadata">

**Author:** ![rsx](https://community.icinga.com/user_avatar/community.icinga.com/rsx/32/2094_2.png) [@rsx](https://community.icinga.com/u/rsx)\
**Post date:** [September 15, 2020, 10:54am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/16 "2020-09-15T10:54:33Z")

</div>

Just change the zone where a host belongs to and yes, it’s part of a host template or a host itself.

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 15, 2020, 11:48am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/17 "2020-09-15T11:48:08Z")

</div>

Okay…

But in the overview to create a new host I have no entry to set the zone, thats right?

 ![new_host](https://community.icinga.com/uploads/default/original/2X/8/8df2cdb5aeca2e17bd46375a2e122ce8c354511b.png)

---

<div class="post-metadata">

**Author:** ![rsx](https://community.icinga.com/user_avatar/community.icinga.com/rsx/32/2094_2.png) [@rsx](https://community.icinga.com/u/rsx)\
**Post date:** [September 15, 2020, 11:49am UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/18 "2020-09-15T11:49:43Z")

</div>

It’s called **Cluster Zone**.

---

<div class="post-metadata">

**Author:** ![phylipp](https://community.icinga.com/user_avatar/community.icinga.com/phylipp/32/6310_2.png) [@phylipp](https://community.icinga.com/u/phylipp)\
**Post date:** [September 15, 2020, 12:23pm UTC](https://community.icinga.com/t/master-satellite-client-setup-how/5485/19 "2020-09-15T12:23:44Z")

</div>

Many thanks.

All works fine. U are my man.
