30.9 Re-authenticating Sentinel in Multi-Factor Authentication Mode

When you upgrade the Sentinel server in MFA mode, existing NetFlow Collector Managers do not re-authenticate to the Sentinel server automatically. You must perform the following steps to manually re-authenticate NetFlow Collector Managers to the Sentinel server.

To re-authenticate Sentinel in MFA mode:

  1. Log in to the NetFlow Collector Manager computer.

  2. Go to /opt/novell/sentinel/setup.

  3. Run the configure.sh script.

    You are prompted to log in to the Sentinel Server.

  4. Specify your LDAP user name and password.

  5. Provide the Sentinel client id and Sentinel client secret.

    To retrieve the Sentinel client ID and Sentinel client secret, go to the following URL:

    https://Sentinel_FQDN:port/SentinelAuthServices/oauth/clients

    Where:

    • Sentinel_FQDN is the fully qualified domain name of the Sentinel server.

      For example, abc.netiq.com

      where abc is Sentinel server host name, netiq.com is the domain name.

    • Port is the port Sentinel uses (typically 8443).

    The specified URL uses your current Sentinel session to retrieve the Sentinel client ID and Sentinel client secret.