--- doc/build/Attic/install.html 2002/04/26 13:17:51 1.17 +++ doc/build/Attic/install.html 2003/05/02 19:25:01 1.40 @@ -1,9 +1,10 @@ - + - + + LON-CAPA Installation @@ -14,6 +15,7 @@

You will need to check all the following things to ensure proper installation of your LON-CAPA system. +

+

+NOTE: +If you want to simultaneously install both RedHat 7.3 and LON-CAPA +(to ensure 100% reliability), follow these +alternative directions. +


  @@ -42,17 +52,19 @@ LON-CAPA server:

Make a LON-CAPA system work with shadow passwords

-

@@ -81,7 +93,7 @@ wget http://www.wwnet.net/~janc/software running the following command

-tar xzvf mod_auth_external-2.1.13.tar.gz +tar xzvf mod_auth_external-2.1.15.tar.gz

Step #Description
1 -

Is your system using shadow passwords? (Note: LON-CAPA will -work with either MD5/non-MD5 configured systems). If your -system is not using shadow passwords, then do not perform -any of the additional steps. If your system is using shadow -passwords, then you will need to perform the additional steps below. +

Is your system using shadow passwords? (Note: LON-CAPA will work +with either MD5/non-MD5 configured systems). It is strongly +recommended to use shadow passwords. If your system is currently not +using shadow passwords, run the "pwconv" command (as root) in order to +convert to shadow passwords. If you choose not to use shadow +passwords, then do not perform any of the additional steps. If your +system is using shadow passwords, then you will need to perform the +additional steps below.

How to detect: @@ -70,7 +82,7 @@ the steps below. running the following command

-wget http://www.wwnet.net/~janc/software/mod_auth_external-2.1.13.tar.gz +wget http://www.unixpapa.com/software/mod_auth_external-2.1.15.tar.gz

@@ -91,7 +103,7 @@ running the following command running the following command

-cd mod_auth_external-2.1.13/pwauth/ +cd mod_auth_external-2.1.15/pwauth/

@@ -101,7 +113,7 @@ running the following command

Determine the user id of 'www': -
grep ^www /etc/passwd | cut -d':' -f3 +
id -u www
Change the line
#define SERVER_UIDS 99 /* user "nobody" */ @@ -131,22 +143,29 @@ running the following command

Edit (creating the file) /etc/pam.d/pwauth to have the contents: +

         auth       required     /lib/security/pam_pwdb.so shadow nullok
         auth       required     /lib/security/pam_nologin.so
         account    required     /lib/security/pam_pwdb.so
 
-

-

Installing LON-CAPA files

Download the most current - -loncapa.tar.gz. + +loncapa-current.tar.gz.

+ + +
wget http://install.lon-capa.org/versions/loncapa-current.tar.gz + +
+tar xzvf loncapa-current.tar.gz +
+cd loncapa-N.N (N.N is the version number)

The UPDATE command will refresh your filesystem with all the latest LON-CAPA software. @@ -163,29 +182,79 @@ against an FTP repository.
./CHECKRPMS
+

+Also, please be sure to install the LON-CAPA-systemperl RPM as described on +the Downloads page. +

+ +

Fixing /etc/hosts

+

+A common RedHat glitch of new installations (RedHat's fault, not LON-CAPA) +is the generation of /etc/hosts. +

+

+It should look something like this (except the myschool line +should be replaced with settings specific to your machine): +

+ + +
+
+127.0.0.1		localhost.localdomain localhost
+12.34.56.78		www.myschool.edu myschool
+

Configuring the MySQL database

The following commands describe how to configure the MySQL database on your LON-CAPA server. +
Note: +

+ +

+The following instructions assume you are logged in as 'root'.

+

Entering the mysql shell

-Enter the mysql shell---
 mysql -u root -p mysql
+OR
+mysql -u root mysql (depending on whether you have set a root password)
+
+
+

Creating the mysql 'www' user (after entering mysql shell)

+
+
+mysql> CREATE DATABASE loncapa;
 
-Run these commands---
-CREATE DATABASE loncapa;
-
-INSERT INTO user (Host, User, Password)
-VALUES ('localhost','www',password('SOMEPASSWORD'));
-
-GRANT ALL PRIVILEGES ON *.* TO www@localhost;
+mysql> INSERT INTO user (Host, User, Password)
+mysql> VALUES ('localhost','www',password('localhostkey'));
 
-FLUSH PRIVILEGES;
+mysql> INSERT INTO db VALUES ('localhost','loncapa','www',
+mysql> 'Y','Y','Y','Y','Y','Y','N','Y','Y','Y');
 
+mysql> FLUSH PRIVILEGES;
+
+
+

SECURITY: set a password for the mysql 'root' user

+
+
 shell> mysql -u root mysql
-mysql> SET PASSWORD FOR root@localhost=PASSWORD('new_password');
+mysql> SET PASSWORD FOR root@localhost=PASSWORD('ROOTPASSWORD');
+
+
+

SECURITY: only allow access from localhost

+
+
+shell> mysql -u root -p mysql
+mysql> DELETE FROM user WHERE host<>'localhost';
 
@@ -207,5 +276,6 @@ will recommend you perform various steps performance of your LON-CAPA server.

+