Re: Adding Node to RAC Fails with SSH Equivalency on NxN Check

From: David Barbour <david.barbour1_at_gmail.com>
Date: Tue, 12 Apr 2022 14:53:52 -0500
Message-ID: <CAFH+ifdrHd+fY7xGJE=UmC+=o8k2kFY4gL3bHyLtONHH3T-TqQ_at_mail.gmail.com>



Fortunately - or unfortunately as the case may be - they are the same across all the nodes.

On Tue, Apr 12, 2022 at 1:26 PM Andrew Kerber <andrew.kerber_at_gmail.com> wrote:

> I would think you verified this, but you did verify the uid and gid are
> the same right?
>
> On Tue, Apr 12, 2022 at 10:41 AM David Barbour <david.barbour1_at_gmail.com>
> wrote:
>
>> Morning Listers,
>>
>> Oracle 19.11 RHEL 7.6
>>
>> We are switching servers and the new nodes are running RHEL 8.3.
>>
>> When attempting to add one of the new nodes to the existing RAC,
>> gridSetup.sh errors out on passwordless ssh connectivity.
>>
>> I've verified I can ssh without a password from the command line between
>> all 3 servers as both the oracle and grid users.
>>
>> The install log shows:
>> Preparing to check passwordless SSH Connectivity between nodes: [node1,
>> node3]
>> Testing passwordless SSH connectivity between the selected nodes.
>> OverallStatus of User Equivalence check using CVU is SUCCESSFUL
>>
>> Preparing to check passwordless SSH Connectivity between nodes: [node1,
>> node2, node3]
>> Testing passwordless SSH connectivity between the selected nodes.
>> OverallStatus of User Equivalence check using CVU is SUCCESSFUL
>>
>> Verifying passwordless SSH connectivity setup on all the cluster nodes
>> using cvu's NxN check
>> Remote node(s) not configured for passwordless SSH connectivity :[node3]
>>
>> Any ideas here? What is the NxN check? selinux is set to permissive.
>>
>> /var/log/secure (on the new node) shows:
>> Accepted password for grid from 192.168.194.133 port 35715 ssh2
>>
>> /var/log/secure on the installing node shows:
>> Accepted publickey for grid from 192.168.194.134 port 39409 ssh2
>>
>> Scratching my head here. The known_hosts and authorized_keys files look
>> good. Took out FQDN per some Oracle note. Have rebuilt these by hand
>> adding RSA in addition to ECDSA but no joy.
>>
>>
>
> --
> Andrew W. Kerber
>
> 'If at first you dont succeed, dont take up skydiving.'
>

--
http://www.freelists.org/webpage/oracle-l
Received on Tue Apr 12 2022 - 21:53:52 CEST

Original text of this message