Hi Diana,
You can use this for SCOM 2016:
Replace scxmaint & scxmon with your account used in SCOM, You can use a same account or 2 different account as well.
Example user configuration for Operations Manager 2016 agent v1.1
Example assumes users named: scxmaint & scxmon
Replace usernames & corresponding /tmp/scx-<username> specification for your environment
General requirements
These are any accounts you are using that use SUDO elevation including the Agent Maintenance account and or the monitoring account
Defaults:scxmaint !requiretty
Defaults:scxmon !requiretty
Agent maintenance
Agent maintenance for LINUX
Certificate signing
scxmaint ALL=(root) NOPASSWD: /bin/sh -c cp /tmp/scx-scxmaint/scx.pem /etc/opt/microsoft/scx/ssl/scx.pem; rm -rf /tmp/scx-scxmaint; /opt/microsoft/scx/bin/tools/scxadmin -restart
scxmaint ALL=(root) NOPASSWD: /bin/sh -c cat /etc/opt/microsoft/scx/ssl/scx.pem
Agent maintenance for UNIX
Certificate signing
scxmaint ALL=(root) NOPASSWD: /usr/bin/sh -c cp /tmp/scx-scxmaint/scx.pem /etc/opt/microsoft/scx/ssl/scx.pem; rm -rf /tmp/scx-scxmaint; /opt/microsoft/scx/bin/tools/scxadmin -restart
scxmaint ALL=(root) NOPASSWD: /usr/bin/sh -c cat /etc/opt/microsoft/scx/ssl/scx.pem
Install or upgrade
AIX
scxmaint ALL=(root) NOPASSWD: /usr/bin/sh -c sh /tmp/scx-scxmaint/scx-1.[5-9].[0-9]-[0-9][0-9][0-9].aix.[[:digit:]].ppc.sh --install ; EC=$?; cd /tmp; rm -rf /tmp/scx-scxmaint; exit $EC
scxmaint ALL=(root) NOPASSWD: /usr/bin/sh -c sh /tmp/scx-scxmaint/scx-1.[5-9].[0-9]-[0-9][0-9][0-9].aix.[[:digit:]].ppc.sh --upgrade --force ; EC=$?; cd /tmp; rm -rf /tmp/scx-scxmaint; exit $EC
Uninstall
Uninstall for LINUX
scxmaint ALL=(root) NOPASSWD: /bin/sh -c /opt/microsoft/scx/bin/uninstall
Uninstall for UNIX
scxmaint ALL=(root) NOPASSWD: /usr/bin/sh -c /opt/microsoft/scx/bin/uninstall
Log file monitoring
scxmon ALL=(root) NOPASSWD: /opt/microsoft/scx/bin/scxlogfilereader -p