Skip to content

Instantly share code, notes, and snippets.

@zultron
Created July 24, 2017 17:50
Show Gist options
  • Save zultron/6f9aeb47d304c7bcab93d023e36484ba to your computer and use it in GitHub Desktop.
Save zultron/6f9aeb47d304c7bcab93d023e36484ba to your computer and use it in GitHub Desktop.
freeipa logs: fail at `[29/44]: setting up initial replication`; 2017-07-24
Configuring client side components
Warning: skipping DNS resolution of host h11.example.com
Warning: skipping DNS resolution of host h01.example.com
Configuring directory server (dirsrv). Estimated time: 1 minute
[1/44]: creating directory server user
[2/44]: creating directory server instance
[3/44]: updating configuration in dse.ldif
[4/44]: restarting directory server
[5/44]: adding default schema
[6/44]: enabling memberof plugin
[7/44]: enabling winsync plugin
[8/44]: configuring replication version plugin
[9/44]: enabling IPA enrollment plugin
[10/44]: enabling ldapi
[11/44]: configuring uniqueness plugin
[12/44]: configuring uuid plugin
[13/44]: configuring modrdn plugin
[14/44]: configuring DNS plugin
[15/44]: enabling entryUSN plugin
[16/44]: configuring lockout plugin
[17/44]: configuring topology plugin
[18/44]: creating indices
[19/44]: enabling referential integrity plugin
[20/44]: configuring certmap.conf
[21/44]: configure autobind for root
[22/44]: configure new location for managed entries
[23/44]: configure dirsrv ccache
[24/44]: enabling SASL mapping fallback
[25/44]: restarting directory server
[26/44]: creating DS keytab
[27/44]: retrieving DS Certificate
[28/44]: restarting directory server
[29/44]: setting up initial replication
Starting replication, please wait until this has completed.
Update in progress, 1 seconds elapsed
Update in progress, 2 seconds elapsed
Update in progress, 3 seconds elapsed
Update in progress, 4 seconds elapsed
Update in progress, 5 seconds elapsed
Update in progress, 6 seconds elapsed
Update in progress, 7 seconds elapsed
Update in progress, 8 seconds elapsed
Update in progress, 9 seconds elapsed
Update in progress, 10 seconds elapsed
Update in progress, 12 seconds elapsed
Update in progress, 13 seconds elapsed
Update in progress, 14 seconds elapsed
Update in progress, 15 seconds elapsed
Update in progress, 16 seconds elapsed
Update in progress, 17 seconds elapsed
Update in progress, 18 seconds elapsed
Update in progress, 19 seconds elapsed
Update in progress, 20 seconds elapsed
Update in progress, 21 seconds elapsed
Update in progress, 23 seconds elapsed
Update in progress, 24 seconds elapsed
Update in progress, 25 seconds elapsed
Update in progress, 26 seconds elapsed
Update in progress, 27 seconds elapsed
Update in progress, 28 seconds elapsed
Update in progress, 29 seconds elapsed
Update in progress, 30 seconds elapsed
Update in progress, 31 seconds elapsed
Update in progress, 32 seconds elapsed
Update in progress, 33 seconds elapsed
Update in progress, 35 seconds elapsed
Update in progress, 36 seconds elapsed
Update in progress, 37 seconds elapsed
Update in progress, 38 seconds elapsed
Update in progress, 39 seconds elapsed
Update in progress, 40 seconds elapsed
Update in progress, 41 seconds elapsed
Update in progress, 42 seconds elapsed
Update in progress, 43 seconds elapsed
Update in progress, 44 seconds elapsed
Update in progress, 46 seconds elapsed
Update in progress, 47 seconds elapsed
Update in progress, 48 seconds elapsed
Update in progress, 49 seconds elapsed
Update in progress, 50 seconds elapsed
Update in progress, 51 seconds elapsed
Update in progress, 52 seconds elapsed
Update in progress, 53 seconds elapsed
Update in progress, 54 seconds elapsed
Update in progress, 55 seconds elapsed
Update in progress, 57 seconds elapsed
Update in progress, 58 seconds elapsed
Update in progress, 59 seconds elapsed
Update in progress, 60 seconds elapsed
Update in progress, 61 seconds elapsed
Update in progress, 62 seconds elapsed
Update in progress, 63 seconds elapsed
Update in progress, 64 seconds elapsed
Update in progress, 65 seconds elapsed
Update in progress, 66 seconds elapsed
Update in progress, 67 seconds elapsed
Update in progress, 69 seconds elapsed
Update in progress, 70 seconds elapsed
Update in progress, 71 seconds elapsed
Update in progress, 72 seconds elapsed
Update in progress, 73 seconds elapsed
Update in progress, 74 seconds elapsed
Update in progress, 75 seconds elapsed
Update in progress, 76 seconds elapsed
Update in progress, 77 seconds elapsed
Update in progress, 78 seconds elapsed
Update in progress, 80 seconds elapsed
Update in progress, 81 seconds elapsed
Update in progress, 82 seconds elapsed
Update in progress, 83 seconds elapsed
Update in progress, 84 seconds elapsed
Update in progress, 85 seconds elapsed
Update in progress, 86 seconds elapsed
Update in progress, 87 seconds elapsed
Update in progress, 88 seconds elapsed
Update in progress, 89 seconds elapsed
Update in progress, 90 seconds elapsed
Update in progress, 92 seconds elapsed
Update in progress, 93 seconds elapsed
Update in progress, 94 seconds elapsed
Update in progress, 95 seconds elapsed
Update in progress, 96 seconds elapsed
Update in progress, 97 seconds elapsed
Update in progress, 98 seconds elapsed
Update in progress, 99 seconds elapsed
Update in progress, 100 seconds elapsed
Update in progress, 101 seconds elapsed
Update in progress, 103 seconds elapsed
Update in progress, 104 seconds elapsed
Update in progress, 105 seconds elapsed
Update in progress, 106 seconds elapsed
Update in progress, 107 seconds elapsed
Update in progress, 108 seconds elapsed
Update in progress, 109 seconds elapsed
Update in progress, 110 seconds elapsed
Update in progress, 111 seconds elapsed
Update in progress, 112 seconds elapsed
Update in progress, 113 seconds elapsed
Update in progress, 115 seconds elapsed
Update in progress, 116 seconds elapsed
Update in progress, 117 seconds elapsed
Update in progress, 118 seconds elapsed
Update in progress, 119 seconds elapsed
Update in progress, 120 seconds elapsed
Update in progress, 121 seconds elapsed
Update in progress, 122 seconds elapsed
Update in progress, 123 seconds elapsed
Update in progress, 124 seconds elapsed
Update in progress, 126 seconds elapsed
Update in progress, 127 seconds elapsed
Update in progress, 128 seconds elapsed
Update in progress, 129 seconds elapsed
Update in progress, 130 seconds elapsed
Update in progress, 131 seconds elapsed
Update in progress, 132 seconds elapsed
Update in progress, 133 seconds elapsed
Update in progress, 134 seconds elapsed
Update in progress, 135 seconds elapsed
Update in progress, 137 seconds elapsed
Update in progress, 138 seconds elapsed
Update in progress, 139 seconds elapsed
Update in progress, 140 seconds elapsed
Update in progress, 141 seconds elapsed
Update in progress, 142 seconds elapsed
Update in progress, 143 seconds elapsed
Update in progress, 144 seconds elapsed
Update in progress, 145 seconds elapsed
Update in progress, 146 seconds elapsed
Update in progress, 147 seconds elapsed
Update in progress, 149 seconds elapsed
Update in progress, 150 seconds elapsed
Update in progress, 151 seconds elapsed
Update in progress, 152 seconds elapsed
Update in progress, 153 seconds elapsed
Update in progress, 154 seconds elapsed
Update in progress, 155 seconds elapsed
Update in progress, 156 seconds elapsed
Update in progress, 157 seconds elapsed
Update in progress, 158 seconds elapsed
Update in progress, 160 seconds elapsed
Update in progress, 161 seconds elapsed
Update in progress, 162 seconds elapsed
Update in progress, 163 seconds elapsed
Update in progress, 164 seconds elapsed
Update in progress, 165 seconds elapsed
Update in progress, 166 seconds elapsed
Update in progress, 167 seconds elapsed
Update in progress, 168 seconds elapsed
Update in progress, 169 seconds elapsed
Update in progress, 170 seconds elapsed
Update in progress, 172 seconds elapsed
Update in progress, 173 seconds elapsed
Update in progress, 174 seconds elapsed
Update in progress, 175 seconds elapsed
Update in progress, 176 seconds elapsed
Update in progress, 177 seconds elapsed
Update in progress, 178 seconds elapsed
Update in progress, 179 seconds elapsed
Update in progress, 180 seconds elapsed
Update in progress, 181 seconds elapsed
Update in progress, 183 seconds elapsed
Update in progress, 184 seconds elapsed
Update in progress, 185 seconds elapsed
Update in progress, 186 seconds elapsed
Update in progress, 187 seconds elapsed
Update in progress, 188 seconds elapsed
Update in progress, 189 seconds elapsed
Update in progress, 190 seconds elapsed
Update in progress, 191 seconds elapsed
Update in progress, 192 seconds elapsed
Update in progress, 193 seconds elapsed
Update in progress, 195 seconds elapsed
Update in progress, 196 seconds elapsed
Update in progress, 197 seconds elapsed
Update in progress, 198 seconds elapsed
Update in progress, 199 seconds elapsed
Update in progress, 200 seconds elapsed
Update in progress, 201 seconds elapsed
Update in progress, 202 seconds elapsed
Update in progress, 203 seconds elapsed
Update in progress, 204 seconds elapsed
Update in progress, 206 seconds elapsed
Update in progress, 207 seconds elapsed
Update in progress, 208 seconds elapsed
Update in progress, 209 seconds elapsed
Update in progress, 210 seconds elapsed
Update in progress, 211 seconds elapsed
Update in progress, 212 seconds elapsed
Update in progress, 213 seconds elapsed
Update in progress, 214 seconds elapsed
Update in progress, 215 seconds elapsed
Update in progress, 217 seconds elapsed
Update in progress, 218 seconds elapsed
Update in progress, 219 seconds elapsed
Update in progress, 220 seconds elapsed
Update in progress, 221 seconds elapsed
Update in progress, 222 seconds elapsed
Update in progress, 223 seconds elapsed
Update in progress, 224 seconds elapsed
Update in progress, 225 seconds elapsed
Update in progress, 226 seconds elapsed
Update in progress, 227 seconds elapsed
Update in progress, 229 seconds elapsed
Update in progress, 230 seconds elapsed
Update in progress, 231 seconds elapsed
Update in progress, 232 seconds elapsed
Update in progress, 233 seconds elapsed
Update in progress, 234 seconds elapsed
Update in progress, 235 seconds elapsed
Update in progress, 236 seconds elapsed
Update in progress, 237 seconds elapsed
Update in progress, 238 seconds elapsed
Update in progress, 240 seconds elapsed
Update in progress, 241 seconds elapsed
Update in progress, 242 seconds elapsed
Update in progress, 243 seconds elapsed
Update in progress, 244 seconds elapsed
Update in progress, 245 seconds elapsed
Update in progress, 246 seconds elapsed
Update in progress, 247 seconds elapsed
Update in progress, 248 seconds elapsed
Update in progress, 249 seconds elapsed
Update in progress, 251 seconds elapsed
Update in progress, 252 seconds elapsed
Update in progress, 253 seconds elapsed
Update in progress, 254 seconds elapsed
Update in progress, 255 seconds elapsed
Update in progress, 256 seconds elapsed
Update in progress, 257 seconds elapsed
Update in progress, 258 seconds elapsed
Update in progress, 259 seconds elapsed
Update in progress, 260 seconds elapsed
Update in progress, 261 seconds elapsed
Update in progress, 263 seconds elapsed
Update in progress, 264 seconds elapsed
Update in progress, 265 seconds elapsed
Update in progress, 266 seconds elapsed
Update in progress, 267 seconds elapsed
Update in progress, 268 seconds elapsed
Update in progress, 269 seconds elapsed
Update in progress, 270 seconds elapsed
Update in progress, 271 seconds elapsed
Update in progress, 272 seconds elapsed
Update in progress, 274 seconds elapsed
Update in progress, 275 seconds elapsed
Update in progress, 276 seconds elapsed
Update in progress, 277 seconds elapsed
Update in progress, 278 seconds elapsed
Update in progress, 279 seconds elapsed
Update in progress, 280 seconds elapsed
Update in progress, 281 seconds elapsed
Update in progress, 282 seconds elapsed
Update in progress, 283 seconds elapsed
Update in progress, 285 seconds elapsed
Update in progress, 286 seconds elapsed
Update in progress, 287 seconds elapsed
Update in progress, 288 seconds elapsed
Update in progress, 289 seconds elapsed
Update in progress, 290 seconds elapsed
Update in progress, 291 seconds elapsed
Update in progress, 292 seconds elapsed
Update in progress, 293 seconds elapsed
Update in progress, 294 seconds elapsed
Update in progress, 295 seconds elapsed
Update in progress, 297 seconds elapsed
Update in progress, 298 seconds elapsed
Update in progress, 299 seconds elapsed
Update in progress, 300 seconds elapsed
Update in progress, 301 seconds elapsed
Update in progress, 302 seconds elapsed
Update in progress, 303 seconds elapsed
Update in progress, 304 seconds elapsed
Update in progress, 305 seconds elapsed
Update in progress, 306 seconds elapsed
Update in progress, 308 seconds elapsed
Update in progress, 309 seconds elapsed
Update in progress, 310 seconds elapsed
Update in progress, 311 seconds elapsed
Update in progress, 312 seconds elapsed
Update in progress, 313 seconds elapsed
Update in progress, 314 seconds elapsed
Update in progress, 315 seconds elapsed
Update in progress, 316 seconds elapsed
Update in progress, 317 seconds elapsed
Update in progress, 318 seconds elapsed
Update in progress, 320 seconds elapsed
Update in progress, 321 seconds elapsed
Update in progress, 322 seconds elapsed
Update in progress, 323 seconds elapsed
Update in progress, 324 seconds elapsed
Update in progress, 325 seconds elapsed
Update in progress, 326 seconds elapsed
Update in progress, 327 seconds elapsed
Update in progress, 328 seconds elapsed
Update in progress, 329 seconds elapsed
Update in progress, 331 seconds elapsed
Update in progress, 332 seconds elapsed
Update in progress, 333 seconds elapsed importing plugin module ipaserver.plugins.group
ipa : DEBUG importing plugin module ipaserver.plugins.hbac
ipa : DEBUG ipaserver.plugins.hbac is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.hbacrule
ipa : DEBUG importing plugin module ipaserver.plugins.hbacsvc
ipa : DEBUG importing plugin module ipaserver.plugins.hbacsvcgroup
ipa : DEBUG importing plugin module ipaserver.plugins.hbactest
ipa : DEBUG importing plugin module ipaserver.plugins.host
ipa : DEBUG importing plugin module ipaserver.plugins.hostgroup
ipa : DEBUG importing plugin module ipaserver.plugins.idrange
ipa : DEBUG importing plugin module ipaserver.plugins.idviews
ipa : DEBUG importing plugin module ipaserver.plugins.internal
ipa : DEBUG importing plugin module ipaserver.plugins.join
ipa : DEBUG importing plugin module ipaserver.plugins.krbtpolicy
ipa : DEBUG importing plugin module ipaserver.plugins.ldap2
ipa : DEBUG importing plugin module ipaserver.plugins.location
ipa : DEBUG importing plugin module ipaserver.plugins.migration
ipa : DEBUG importing plugin module ipaserver.plugins.misc
ipa : DEBUG importing plugin module ipaserver.plugins.netgroup
ipa : DEBUG importing plugin module ipaserver.plugins.otp
ipa : DEBUG ipaserver.plugins.otp is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.otpconfig
ipa : DEBUG importing plugin module ipaserver.plugins.otptoken
ipa : DEBUG importing plugin module ipaserver.plugins.passwd
ipa : DEBUG importing plugin module ipaserver.plugins.permission
ipa : DEBUG importing plugin module ipaserver.plugins.ping
ipa : DEBUG importing plugin module ipaserver.plugins.pkinit
ipa : DEBUG ipaserver.plugins.pkinit is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.privilege
ipa : DEBUG importing plugin module ipaserver.plugins.pwpolicy
ipa : DEBUG importing plugin module ipaserver.plugins.rabase
ipa : DEBUG ipaserver.plugins.rabase is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.radiusproxy
ipa : DEBUG importing plugin module ipaserver.plugins.realmdomains
ipa : DEBUG importing plugin module ipaserver.plugins.role
ipa : DEBUG importing plugin module ipaserver.plugins.schema
ipa : DEBUG importing plugin module ipaserver.plugins.selfservice
ipa : DEBUG importing plugin module ipaserver.plugins.selinuxusermap
ipa : DEBUG importing plugin module ipaserver.plugins.server
ipa : DEBUG importing plugin module ipaserver.plugins.serverrole
ipa : DEBUG importing plugin module ipaserver.plugins.serverroles
ipa : DEBUG importing plugin module ipaserver.plugins.service
ipa : DEBUG importing plugin module ipaserver.plugins.servicedelegation
ipa : DEBUG importing plugin module ipaserver.plugins.session
ipa : DEBUG importing plugin module ipaserver.plugins.stageuser
ipa : DEBUG importing plugin module ipaserver.plugins.sudo
ipa : DEBUG ipaserver.plugins.sudo is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.sudocmd
ipa : DEBUG importing plugin module ipaserver.plugins.sudocmdgroup
ipa : DEBUG importing plugin module ipaserver.plugins.sudorule
ipa : DEBUG importing plugin module ipaserver.plugins.topology
ipa : DEBUG importing plugin module ipaserver.plugins.trust
ipa : DEBUG importing plugin module ipaserver.plugins.user
ipa : DEBUG importing plugin module ipaserver.plugins.vault
ipa : DEBUG importing plugin module ipaserver.plugins.virtual
ipa : DEBUG ipaserver.plugins.virtual is not a valid plugin module
ipa : DEBUG importing plugin module ipaserver.plugins.xmlserver
ipa : DEBUG importing all plugin modules in ipaserver.install.plugins...
ipa : DEBUG importing plugin module ipaserver.install.plugins.adtrust
ipa : DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master
ipa : DEBUG importing plugin module ipaserver.install.plugins.dns
ipa : DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements
ipa : DEBUG importing plugin module ipaserver.install.plugins.rename_managed
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_ca_topology
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_idranges
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_nis
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_pacs
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_passsync
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_referint
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_services
ipa : DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness
ipa : DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt
ipa : DEBUG Starting external process
ipa : DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=83415367
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=keyctl pipe 83415367
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=ipa_session=acad300ad4579a7d8b8674d151383236; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 17:55:57 GMT; Secure; HttpOnly
ipa : DEBUG stderr=
ipa.ipalib.rpc.jsonclient: DEBUG found session_cookie in persistent storage for principal 'host/h11.example.com@EXAMPLE.COM', cookie: 'ipa_session=acad300ad4579a7d8b8674d151383236; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 17:55:57 GMT; Secure; HttpOnly'
ipa.ipalib.rpc.jsonclient: DEBUG setting session_cookie into context 'ipa_session=acad300ad4579a7d8b8674d151383236;'
ipa.ipalib.rpc.jsonclient: INFO trying https://h01.example.com/ipa/session/json
ipa.ipalib.rpc.jsonclient: DEBUG Created connection context.jsonclient_113710288
ipa.ipalib.rpc.jsonclient: INFO Forwarding 'env' to json server 'https://h01.example.com/ipa/session/json'
ipa : DEBUG NSSConnection init h01.example.com
ipa : DEBUG Connecting: 1.2.3.4:0
ipa : DEBUG approved_usage = SSL Server intended_usage = SSL Server
ipa : DEBUG cert valid True for "CN=h01.example.com,O=EXAMPLE.COM"
ipa : DEBUG handshake complete, peer = 1.2.3.4:443
ipa : DEBUG Protocol: TLS1.2
ipa : DEBUG Cipher: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ipa : DEBUG received Set-Cookie 'ipa_session=acad300ad4579a7d8b8674d151383236; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 17:56:17 GMT; Secure; HttpOnly'
ipa : DEBUG storing cookie 'ipa_session=acad300ad4579a7d8b8674d151383236; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 17:56:17 GMT; Secure; HttpOnly' for principal host/h11.example.com@EXAMPLE.COM
ipa : DEBUG Starting external process
ipa : DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=83415367
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=83415367
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=keyctl pupdate 83415367
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa.ipalib.rpc.jsonclient: DEBUG Destroyed connection context.jsonclient_113710288
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Created connection context.ldap2_82548560
ipa.ipaserver.plugins.domainlevel.domainlevel_get: DEBUG raw: domainlevel_get(version=u'2.213')
ipa.ipaserver.plugins.domainlevel.domainlevel_get: DEBUG domainlevel_get(version=u'2.213')
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldaps://h01.example.com from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x6c74b00>
ipa.ipaserver.plugins.hostgroup.hostgroup_find: DEBUG raw: hostgroup_find(None, cn=u'ipaservers', version=u'2.213', host=[u'h11.example.com'])
ipa.ipaserver.plugins.hostgroup.hostgroup_find: DEBUG hostgroup_find(None, cn=u'ipaservers', all=False, raw=False, version=u'2.213', no_members=True, pkey_only=False, host=(u'h11.example.com',))
ipa : DEBUG KRB5CCNAME set to None
ipa : DEBUG Failed to find default ccache: Major (851968): Unspecified GSS failure. Minor code may provide more information, Minor (2529639053): No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_0)
ipa : DEBUG Initializing principal admin@EXAMPLE.COM using password
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/kinit admin@EXAMPLE.COM -c /tmp/tmpF21FkO
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=Password for admin@EXAMPLE.COM:
ipa : DEBUG stderr=
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Destroyed connection context.ldap2_82548560
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Created connection context.ldap2_82548560
ipa.ipaserver.plugins.hostgroup.hostgroup_show: DEBUG raw: hostgroup_show(u'ipaservers', rights=True, all=True, version=u'2.213')
ipa.ipaserver.plugins.hostgroup.hostgroup_show: DEBUG hostgroup_show(u'ipaservers', rights=True, all=True, raw=False, version=u'2.213', no_members=False)
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldaps://h01.example.com from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x6c74ab8>
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Destroyed connection context.ldap2_82548560
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Created connection context.ldap2_82548560
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldaps://h01.example.com from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x6c74b00>
ipa : DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
ipa.ipaserver.plugins.dns.dns_is_enabled: DEBUG raw: dns_is_enabled(version=u'2.213')
ipa.ipaserver.plugins.dns.dns_is_enabled: DEBUG dns_is_enabled(version=u'2.213')
ipa : DEBUG Name h11.example.com. resolved to set([UnsafeIPAddress('10.33.128.2')])
ipa : DEBUG IP address 10.33.128.2 belongs to a private range, using forward policy only
ipa : DEBUG will use DNS forwarders: []
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Destroyed connection context.ldap2_82548560
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Created connection context.ldap2_82548560
ipa.ipaserver.plugins.hostgroup.hostgroup_add_member: DEBUG raw: hostgroup_add_member(u'ipaservers', version=u'2.213', host=[u'h11.example.com'])
ipa.ipaserver.plugins.hostgroup.hostgroup_add_member: DEBUG hostgroup_add_member(u'ipaservers', all=False, raw=False, version=u'2.213', no_members=False, host=(u'h11.example.com',))
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG add_entry_to_group: dn=fqdn=h11.example.com,cn=computers,cn=accounts,dc=zultron,dc=com group_dn=cn=ipaservers,cn=hostgroups,cn=accounts,dc=zultron,dc=com member_attr=member
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldaps://h01.example.com from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x75341b8>
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Destroyed connection context.ldap2_82548560
ipa : DEBUG Backing up system configuration file '/etc/ipa/default.conf'
ipa : DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl start messagebus.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active messagebus.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl restart certmonger.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active certmonger.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl enable certmonger.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=Created symlink from /etc/systemd/system/multi-user.target.wants/certmonger.service to /usr/lib/systemd/system/certmonger.service.
ipa.ipaplatform.base.tasks: DEBUG group dirsrv exists
ipa.ipaplatform.base.tasks: DEBUG user dirsrv exists
ipa.ipaserver.plugins.ldap2.ldap2: DEBUG Created connection context.ldap2_82548560
ipa : DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
ipa : DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
ipa : DEBUG Configuring directory server (dirsrv). Estimated time: 1 minute
ipa : DEBUG [1/44]: creating directory server user
ipa.ipaplatform.base.tasks: DEBUG group dirsrv exists
ipa.ipaplatform.base.tasks: DEBUG user dirsrv exists
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [2/44]: creating directory server instance
ipa : DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
ipa : DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'
ipa : DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
ipa : DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
ipa : DEBUG
dn: dc=zultron,dc=com
objectClass: top
objectClass: domain
objectClass: pilotObject
dc: zultron
info: IPA V2.0
ipa : DEBUG writing inf template
ipa : DEBUG
[General]
FullMachineName= h11.example.com
SuiteSpotUserID= dirsrv
SuiteSpotGroup= dirsrv
ServerRoot= /usr/lib64/dirsrv
[slapd]
ServerPort= 389
ServerIdentifier= ZULTRON-COM
Suffix= dc=zultron,dc=com
RootDN= cn=Directory Manager
InstallLdifFile= /var/lib/dirsrv/boot.ldif
inst_dir= /var/lib/dirsrv/scripts-ZULTRON-COM
ipa : DEBUG calling setup-ds.pl
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/sbin/setup-ds.pl --silent --logfile - -f /tmp/tmps3gDeQ
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=[17/07/24:17:36:35] - [Setup] Info Your new DS instance 'ZULTRON-COM' was successfully created.
Your new DS instance 'ZULTRON-COM' was successfully created.
[17/07/24:17:36:35] - [Setup] Success Exiting . . .
Log file is '-'
Exiting . . .
Log file is '-'
ipa : DEBUG stderr=
ipa : DEBUG completed creating ds instance
ipa : DEBUG duration: 6 seconds
ipa : DEBUG [3/44]: updating configuration in dse.ldif
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl stop dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG duration: 1 seconds
ipa : DEBUG [4/44]: restarting directory server
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl --system daemon-reload
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG wait_for_open_ports: localhost [389] timeout 300
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG duration: 1 seconds
ipa : DEBUG [5/44]: adding default schema
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [6/44]: enabling memberof plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/memberof-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmppNVuXu
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=replace nsslapd-pluginenabled:
on
add memberofgroupattr:
memberUser
add memberofgroupattr:
memberHost
modifying entry "cn=MemberOf Plugin,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [7/44]: enabling winsync plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-winsync-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp6zbShs
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipa-winsync
add nsslapd-pluginpath:
libipa_winsync
add nsslapd-plugininitfunc:
ipa_winsync_plugin_init
add nsslapd-pluginDescription:
Allows IPA to work with the DS windows sync feature
add nsslapd-pluginid:
ipa-winsync
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
on
add nsslapd-plugin-depends-on-type:
database
add ipaWinSyncRealmFilter:
(objectclass=krbRealmContainer)
add ipaWinSyncRealmAttr:
cn
add ipaWinSyncNewEntryFilter:
(cn=ipaConfig)
add ipaWinSyncNewUserOCAttr:
ipauserobjectclasses
add ipaWinSyncUserFlatten:
true
add ipaWinsyncHomeDirAttr:
ipaHomesRootDir
add ipaWinsyncLoginShellAttr:
ipaDefaultLoginShell
add ipaWinSyncDefaultGroupAttr:
ipaDefaultPrimaryGroup
add ipaWinSyncDefaultGroupFilter:
(gidNumber=*)(objectclass=posixGroup)(objectclass=groupOfNames)
add ipaWinSyncAcctDisable:
both
add ipaWinSyncForceSync:
true
add ipaWinSyncUserAttr:
uidNumber -1
gidNumber -1
adding new entry "cn=ipa-winsync,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [8/44]: configuring replication version plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/version-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp2h18FJ
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Version Replication
add nsslapd-pluginpath:
libipa_repl_version
add nsslapd-plugininitfunc:
repl_version_plugin_init
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
off
add nsslapd-pluginid:
ipa_repl_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA Replication version plugin
add nsslapd-plugin-depends-on-type:
database
add nsslapd-plugin-depends-on-named:
Multimaster Replication Plugin
adding new entry "cn=IPA Version Replication,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [9/44]: enabling IPA enrollment plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmp4ZO_zq -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpie4W2T
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipa_enrollment_extop
add nsslapd-pluginpath:
libipa_enrollment_extop
add nsslapd-plugininitfunc:
ipaenrollment_init
add nsslapd-plugintype:
extendedop
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipa_enrollment_extop
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
RedHat
add nsslapd-plugindescription:
Enroll hosts into the IPA domain
add nsslapd-plugin-depends-on-type:
database
add nsslapd-realmTree:
dc=zultron,dc=com
adding new entry "cn=ipa_enrollment_extop,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [10/44]: enabling ldapi
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpCskCuN -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpaqNuTs
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=replace nsslapd-ldapilisten:
on
modifying entry "cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [11/44]: configuring uniqueness plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpPXEyjv -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpHPFQvM
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
krbPrincipalName uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
krbPrincipalName
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
krbCanonicalName uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
krbCanonicalName
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=krbCanonicalName uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
netgroup uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
cn
add uniqueness-subtrees:
cn=ng,cn=alt,dc=zultron,dc=com
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
adding new entry "cn=netgroup uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipaUniqueID uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
ipaUniqueID
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=ipaUniqueID uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
sudorule name uniqueness
add nsslapd-pluginDescription:
Enforce unique attribute values
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
cn
add uniqueness-subtrees:
cn=sudorules,cn=sudo,dc=zultron,dc=com
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
adding new entry "cn=sudorule name uniqueness,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [12/44]: configuring uuid plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/uuid-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpOK6w01
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA UUID
add nsslapd-pluginpath:
libipa_uuid
add nsslapd-plugininitfunc:
ipauuid_init
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipauuid_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA UUID plugin
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA UUID,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpxaRW3I -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpvkTC3R
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
extensibleObject
add cn:
IPA Unique IDs
add ipaUuidAttr:
ipaUniqueID
add ipaUuidMagicRegen:
autogenerate
add ipaUuidFilter:
(|(objectclass=ipaObject)(objectclass=ipaAssociation))
add ipaUuidScope:
dc=zultron,dc=com
add ipaUuidEnforce:
TRUE
adding new entry "cn=IPA Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete
add objectclass:
top
extensibleObject
add cn:
IPK11 Unique IDs
add ipaUuidAttr:
ipk11UniqueID
add ipaUuidMagicRegen:
autogenerate
add ipaUuidFilter:
(objectclass=ipk11Object)
add ipaUuidScope:
dc=zultron,dc=com
add ipaUuidEnforce:
FALSE
adding new entry "cn=IPK11 Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [13/44]: configuring modrdn plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/modrdn-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp6Xw3rD
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA MODRDN
add nsslapd-pluginpath:
libipa_modrdn
add nsslapd-plugininitfunc:
ipamodrdn_init
add nsslapd-plugintype:
betxnpostoperation
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipamodrdn_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA MODRDN plugin
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginPrecedence:
60
adding new entry "cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpSzAc0v -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpJLOKHg
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
extensibleObject
add cn:
Kerberos Principal Name
add ipaModRDNsourceAttr:
uid
add ipaModRDNtargetAttr:
krbPrincipalName
add ipaModRDNsuffix:
@EXAMPLE.COM
add ipaModRDNfilter:
(&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
dc=zultron,dc=com
adding new entry "cn=Kerberos Principal Name,cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
add objectclass:
top
extensibleObject
add cn:
Kerberos Canonical Name
add ipaModRDNsourceAttr:
uid
add ipaModRDNtargetAttr:
krbCanonicalName
add ipaModRDNsuffix:
@EXAMPLE.COM
add ipaModRDNfilter:
(&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
dc=zultron,dc=com
adding new entry "cn=Kerberos Canonical Name,cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [14/44]: configuring DNS plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-dns-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpAtYZvt
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsslapdPlugin
extensibleObject
add cn:
IPA DNS
add nsslapd-plugindescription:
IPA DNS support plugin
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipa_dns
add nsslapd-plugininitfunc:
ipadns_init
add nsslapd-pluginpath:
libipa_dns.so
add nsslapd-plugintype:
preoperation
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-pluginversion:
1.0
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA DNS,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [15/44]: enabling entryUSN plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/entryusn.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpDVn2Zr
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=replace nsslapd-entryusn-global:
on
modifying entry "cn=config"
modify complete
replace nsslapd-entryusn-import-initval:
next
modifying entry "cn=config"
modify complete
replace nsslapd-pluginenabled:
on
modifying entry "cn=USN,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [16/44]: configuring lockout plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/lockout-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp6L6W_w
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Lockout
add nsslapd-pluginpath:
libipa_lockout
add nsslapd-plugininitfunc:
ipalockout_init
add nsslapd-plugintype:
object
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipalockout_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA Lockout plugin
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA Lockout,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [17/44]: configuring topology plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpA_o7oq -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmphlDsm1
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Topology Configuration
add nsslapd-pluginPath:
libtopology
add nsslapd-pluginInitfunc:
ipa_topo_init
add nsslapd-pluginType:
object
add nsslapd-pluginEnabled:
on
add nsslapd-topo-plugin-shared-config-base:
cn=ipa,cn=etc,dc=zultron,dc=com
add nsslapd-topo-plugin-shared-replica-root:
dc=zultron,dc=com
o=ipaca
add nsslapd-topo-plugin-shared-binddngroup:
cn=replication managers,cn=sysaccounts,cn=etc,dc=zultron,dc=com
add nsslapd-topo-plugin-startup-delay:
20
add nsslapd-pluginId:
none
add nsslapd-plugin-depends-on-named:
ldbm database
Multimaster Replication Plugin
add nsslapd-pluginVersion:
1.0
add nsslapd-pluginVendor:
none
add nsslapd-pluginDescription:
none
adding new entry "cn=IPA Topology Configuration,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [18/44]: creating indices
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/indices.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpB1x4D3
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectClass:
top
nsIndex
add cn:
krbPrincipalName
add nsSystemIndex:
false
add nsIndexType:
eq
sub
add nsMatchingRule:
caseIgnoreIA5Match
caseExactIA5Match
adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
ou
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
carLicense
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
title
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
manager
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
secretary
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
displayname
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add nsIndexType:
sub
modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
uidnumber
add nsSystemIndex:
false
add nsIndexType:
eq
add nsMatchingRule:
integerOrderingMatch
adding new entry "cn=uidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
gidnumber
add nsSystemIndex:
false
add nsIndexType:
eq
add nsMatchingRule:
integerOrderingMatch
adding new entry "cn=gidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
replace nsIndexType:
eq
pres
modifying entry "cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
replace nsIndexType:
eq
pres
modifying entry "cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add ObjectClass:
top
nsIndex
add cn:
fqdn
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=fqdn,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add ObjectClass:
top
nsIndex
add cn:
macAddress
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=macAddress,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberHost
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberHost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberUser
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberUser,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
sourcehost
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=sourcehost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberservice
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberservice,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
managedby
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=managedby,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberallowcmd
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberdenycmd
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipasudorunas
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipasudorunasgroup
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
automountkey
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=automountkey,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipakrbprincipalalias
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipauniqueid
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipaMemberCa
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipaMemberCa,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipaMemberCertProfile
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipaMemberCertProfile,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
userCertificate
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=userCertificate,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipalocation
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=ipalocation,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
krbCanonicalName
add objectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=krbCanonicalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [19/44]: enabling referential integrity plugin
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/referint-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpF843CO
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=replace nsslapd-pluginenabled:
on
modifying entry "cn=referential integrity postoperation,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [20/44]: configuring certmap.conf
ipa : DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
ipa : DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
ipa : DEBUG Saving StateFile to '/var/lib/ipa/sysupgrade/sysupgrade.state'
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [21/44]: configure autobind for root
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/root-autobind.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpc7pTim
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add objectClass:
extensibleObject
top
add cn:
root-autobind
add uidNumber:
0
add gidNumber:
0
adding new entry "cn=root-autobind,cn=config"
modify complete
replace nsslapd-ldapiautobind:
on
modifying entry "cn=config"
modify complete
replace nsslapd-ldapimaptoentries:
on
modifying entry "cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [22/44]: configure new location for managed entries
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpx966O9 -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpKrU0nc
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=add nsslapd-pluginConfigArea:
cn=Definitions,cn=Managed Entries,cn=etc,dc=zultron,dc=com
modifying entry "cn=Managed Entries,cn=plugins,cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [23/44]: configure dirsrv ccache
ipa : DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
ipa : DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/sbin/selinuxenabled
ipa : DEBUG Process finished, return code=1
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [24/44]: enabling SASL mapping fallback
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpF9b47B -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpgkmPOX
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=replace nsslapd-sasl-mapping-fallback:
on
modifying entry "cn=config"
modify complete
ipa : DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
ipa : DEBUG duration: 0 seconds
ipa : DEBUG [25/44]: restarting directory server
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl --system daemon-reload
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG wait_for_open_ports: localhost [389] timeout 300
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG duration: 2 seconds
ipa : DEBUG [26/44]: creating DS keytab
ipa : DEBUG Backing up system configuration file '/etc/dirsrv/ds.keytab'
ipa : DEBUG -> Not backing up - '/etc/dirsrv/ds.keytab' doesn't exist
ipa.ipaserver.plugins.service.service_add: DEBUG raw: service_add(u'ldap/h11.example.com@EXAMPLE.COM', force=True, version=u'2.213')
ipa.ipaserver.plugins.service.service_add: DEBUG service_add(<ipapython.kerberos.Principal object at 0x75e49d0>, force=True, all=False, raw=False, version=u'2.213', no_members=False)
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldaps://h01.example.com from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x76af170>
ipa.ipaserver.plugins.host.host_show: DEBUG raw: host_show(u'h11.example.com', version=u'2.213')
ipa.ipaserver.plugins.host.host_show: DEBUG host_show(u'h11.example.com', rights=False, all=False, raw=False, version=u'2.213', no_members=False)
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/sbin/ipa-getkeytab -k /etc/dirsrv/ds.keytab -p ldap/h11.example.com@EXAMPLE.COM -s h01.example.com
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=Keytab successfully retrieved and stored in: /etc/dirsrv/ds.keytab
ipa : DEBUG duration: 2 seconds
ipa : DEBUG [27/44]: retrieving DS Certificate
ipa : DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -L -n EXAMPLE.COM IPA CA -a
ipa : DEBUG Process finished, return code=255
ipa : DEBUG stdout=
ipa : DEBUG stderr=certutil: Could not find cert: EXAMPLE.COM IPA CA
: PR_FILE_NOT_FOUND_ERROR: File not found
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -N -f /etc/dirsrv/slapd-ZULTRON-COM//pwdfile.txt
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -A -n EXAMPLE.COM IPA CA -t CT,C,C -a
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG certmonger request is in state dbus.String(u'NEWLY_ADDED_READING_KEYINFO', variant_level=1)
ipa : DEBUG certmonger request is in state dbus.String(u'MONITORING', variant_level=1)
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x75eccf8>
ipa : DEBUG duration: 6 seconds
ipa : DEBUG [28/44]: restarting directory server
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl --system daemon-reload
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG wait_for_open_ports: localhost [389] timeout 300
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG duration: 2 seconds
ipa : DEBUG [29/44]: setting up initial replication
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x75ec638>
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl --system daemon-reload
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=
ipa : DEBUG stderr=
ipa : DEBUG Starting external process
ipa : DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
ipa : DEBUG Process finished, return code=0
ipa : DEBUG stdout=active
ipa : DEBUG stderr=
ipa : DEBUG wait_for_open_ports: localhost [389] timeout 300
ipa : DEBUG Fetching nsDS5ReplicaId from master [attempt 1/5]
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldap://h01.example.com:389 from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldap://h01.example.com:389 conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x75da170>
ipa : DEBUG Successfully updated nsDS5ReplicaId.
ipa.ipapython.ipaldap.SchemaCache: DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
ipa.ipapython.ipaldap.SchemaCache: DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x87e9b00>
-- Logs begin at Mon 2017-07-24 17:35:42 UTC, end at Mon 2017-07-24 17:37:00 UTC. --
Jul 24 17:35:42 h11.example.com systemd-journal[52]: Runtime journal is using 8.0M (max allowed 2.6G, trying to leave 4.0G free of 22.9G available → current limit 2.6G).
Jul 24 17:35:42 h11.example.com systemd-journal[52]: Permanent journal is using 8.0M (max allowed 2.6G, trying to leave 4.0G free of 22.9G available → current limit 2.6G).
Jul 24 17:35:42 h11.example.com systemd-journal[52]: Time spent on flushing to /var is 9.468ms for 2 entries.
Jul 24 17:35:42 h11.example.com systemd-journal[52]: Journal started
-- Subject: The journal has been started
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- The system journal process has started up, opened the journal
-- files for writing and is now ready to process requests.
Jul 24 17:35:42 h11.example.com systemd-tmpfiles[54]: "/var/lib/systemd" already exists and is not a directory.
Jul 24 17:35:42 h11.example.com systemd[1]: Reached target Minimal target for containerized FreeIPA server.
-- Subject: Unit container-ipa.target has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit container-ipa.target has finished starting up.
--
-- The start-up result is done.
Jul 24 17:35:42 h11.example.com systemd[1]: Starting Minimal target for containerized FreeIPA server.
-- Subject: Unit container-ipa.target has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit container-ipa.target has begun starting up.
Jul 24 17:35:45 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:45 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:46 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:46 h11.example.com python2[89]: GSSAPI client step 2
Jul 24 17:35:48 h11.example.com ipa-getkeytab[101]: GSSAPI client step 1
Jul 24 17:35:48 h11.example.com ipa-getkeytab[101]: GSSAPI client step 1
Jul 24 17:35:49 h11.example.com ipa-getkeytab[101]: GSSAPI client step 1
Jul 24 17:35:49 h11.example.com ipa-getkeytab[101]: GSSAPI client step 2
Jul 24 17:35:57 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:57 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:58 h11.example.com python2[89]: GSSAPI client step 1
Jul 24 17:35:58 h11.example.com python2[89]: GSSAPI client step 2
Jul 24 17:36:04 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:04 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:04 h11.example.com systemd[1]: Starting System Security Services Daemon...
-- Subject: Unit sssd.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit sssd.service has begun starting up.
Jul 24 17:36:04 h11.example.com sssd[164]: Starting up
Jul 24 17:36:05 h11.example.com sssd[be[example.com]][165]: Starting up
Jul 24 17:36:05 h11.example.com sssd[sudo][167]: Starting up
Jul 24 17:36:05 h11.example.com sssd[nss][166]: Starting up
Jul 24 17:36:05 h11.example.com sssd[pam][168]: Starting up
Jul 24 17:36:05 h11.example.com sssd[pac][169]: Starting up
Jul 24 17:36:05 h11.example.com systemd[1]: Started System Security Services Daemon.
-- Subject: Unit sssd.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit sssd.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:05 h11.example.com systemd[1]: Reached target User and Group Name Lookups.
-- Subject: Unit nss-user-lookup.target has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit nss-user-lookup.target has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:05 h11.example.com systemd[1]: Starting User and Group Name Lookups.
-- Subject: Unit nss-user-lookup.target has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit nss-user-lookup.target has begun starting up.
Jul 24 17:36:05 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:06 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:06 h11.example.com sssd_be[165]: GSSAPI client step 1
Jul 24 17:36:06 h11.example.com sssd_be[165]: GSSAPI client step 1
Jul 24 17:36:06 h11.example.com sssd_be[165]: GSSAPI client step 1
Jul 24 17:36:06 h11.example.com sssd_be[165]: GSSAPI client step 2
Jul 24 17:36:08 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:08 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:08 h11.example.com systemd[1]: Starting Read and set NIS domainname from /etc/sysconfig/network...
-- Subject: Unit rhel-domainname.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit rhel-domainname.service has begun starting up.
Jul 24 17:36:08 h11.example.com rhel-domainname[212]: Skipping invocation of /usr/bin/domainname example.com in unprivileged container.
Jul 24 17:36:08 h11.example.com systemd[1]: Started Read and set NIS domainname from /etc/sysconfig/network.
-- Subject: Unit rhel-domainname.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit rhel-domainname.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:17 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:17 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:18 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:21 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:21 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:22 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:22 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:23 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:23 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:23 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:24 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:25 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:25 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:26 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:26 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:27 h11.example.com systemd[1]: Starting Certificate monitoring and PKI enrollment...
-- Subject: Unit certmonger.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit certmonger.service has begun starting up.
Jul 24 17:36:27 h11.example.com systemd[1]: Started Certificate monitoring and PKI enrollment.
-- Subject: Unit certmonger.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit certmonger.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:28 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:28 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:28 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com ipa-submit[231]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com ipa-submit[231]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:36:28 h11.example.com ipa-submit[231]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com ipa-submit[231]: GSSAPI client step 1
Jul 24 17:36:28 h11.example.com ipa-submit[231]: GSSAPI client step 2
Jul 24 17:36:32 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:32 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:32 h11.example.com systemd[1]: Created slice system-dirsrv.slice.
-- Subject: Unit system-dirsrv.slice has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit system-dirsrv.slice has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:32 h11.example.com systemd[1]: Starting system-dirsrv.slice.
-- Subject: Unit system-dirsrv.slice has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit system-dirsrv.slice has begun starting up.
Jul 24 17:36:32 h11.example.com systemd[1]: Starting 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun starting up.
Jul 24 17:36:33 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:33.390275464 +0000] 389-Directory/1.3.5.10 B2017.145.2037 starting up
Jul 24 17:36:33 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:33.489200504 +0000] Db home directory is not set. Possibly nsslapd-directory (optionally nsslapd-db-home-directory) is missing in the config file.
Jul 24 17:36:33 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:33.549827944 +0000] resizing db cache size: 129228800 -> 10000000
Jul 24 17:36:34 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:34.991223162 +0000] slapd started. Listening on All Interfaces port 389 for LDAP requests
Jul 24 17:36:35 h11.example.com systemd[1]: Started 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:35 h11.example.com systemd[1]: Stopping 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun shutting down
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun shutting down.
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.284795304 +0000] slapd shutting down - signaling operation threads - op stack size 0 max work q size 0 max work q stack size 0
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.312970540 +0000] slapd shutting down - closing down internal subsystems and plugins
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.449180867 +0000] Waiting for 4 database threads to stop
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.742932888 +0000] All database threads now stopped
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.758270633 +0000] slapd shutting down - freed 0 work q stack objects - freed 0 op stack objects
Jul 24 17:36:35 h11.example.com ns-slapd[368]: [24/Jul/2017:17:36:35.990013883 +0000] slapd stopped.
Jul 24 17:36:36 h11.example.com systemd[1]: Stopped 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished shutting down
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished shutting down.
Jul 24 17:36:36 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:36 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:36 h11.example.com systemd[1]: Starting 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun starting up.
Jul 24 17:36:36 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:36.544805736 +0000] 389-Directory/1.3.5.10 B2017.145.2037 starting up
Jul 24 17:36:36 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:36.598599542 +0000] resizing max db lock count: 10000 -> 50000
Jul 24 17:36:36 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:36.976268170 +0000] slapd started. Listening on All Interfaces port 389 for LDAP requests
Jul 24 17:36:36 h11.example.com systemd[1]: Started 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:37 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:37.481183036 +0000] The change of nsslapd-ldapilisten will not take effect until the server is restarted
Jul 24 17:36:38 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:38.589151759 +0000] default_mr_indexer_create: warning - plugin [caseIgnoreIA5Match] does not handle caseExactIA5Match
Jul 24 17:36:39 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:39 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:39 h11.example.com systemd[1]: Stopping 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun shutting down
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun shutting down.
Jul 24 17:36:39 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:39.731128882 +0000] slapd shutting down - signaling operation threads - op stack size 2 max work q size 1 max work q stack size 1
Jul 24 17:36:39 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:39.764621517 +0000] slapd shutting down - closing down internal subsystems and plugins
Jul 24 17:36:39 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:39.898113744 +0000] Waiting for 4 database threads to stop
Jul 24 17:36:40 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:40.780137682 +0000] All database threads now stopped
Jul 24 17:36:40 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:40.801829560 +0000] slapd shutting down - freed 1 work q stack objects - freed 2 op stack objects
Jul 24 17:36:40 h11.example.com ns-slapd[426]: [24/Jul/2017:17:36:40.982437700 +0000] slapd stopped.
Jul 24 17:36:41 h11.example.com systemd[1]: Starting 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun starting up.
Jul 24 17:36:41 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:41.398969364 +0000] 389-Directory/1.3.5.10 B2017.145.2037 starting up
Jul 24 17:36:41 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:41.431626066 +0000] default_mr_indexer_create: warning - plugin [caseIgnoreIA5Match] does not handle caseExactIA5Match
Jul 24 17:36:41 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:41.795579695 +0000] slapd started. Listening on All Interfaces port 389 for LDAP requests
Jul 24 17:36:41 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:41.822900276 +0000] Listening on /var/run/slapd-ZULTRON-COM.socket for LDAPI requests
Jul 24 17:36:41 h11.example.com systemd[1]: Started 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:43 h11.example.com ipa-getkeytab[547]: GSSAPI client step 1
Jul 24 17:36:43 h11.example.com ipa-getkeytab[547]: GSSAPI client step 1
Jul 24 17:36:44 h11.example.com ipa-getkeytab[547]: GSSAPI client step 1
Jul 24 17:36:44 h11.example.com ipa-getkeytab[547]: GSSAPI client step 2
Jul 24 17:36:48 h11.example.com certmonger[564]: Certificate named "Server-Cert" in token "NSS Certificate DB" in database "/etc/dirsrv/slapd-ZULTRON-COM" issued by CA and saved.
Jul 24 17:36:50 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:50.076364517 +0000] Warning: Adding configuration attribute "nsslapd-security"
Jul 24 17:36:50 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:50 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:50 h11.example.com systemd[1]: Stopping 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun shutting down
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun shutting down.
Jul 24 17:36:50 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:50.933686281 +0000] slapd shutting down - signaling operation threads - op stack size 2 max work q size 1 max work q stack size 1
Jul 24 17:36:50 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:50.950416523 +0000] slapd shutting down - closing down internal subsystems and plugins
Jul 24 17:36:50 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:50.982225760 +0000] Waiting for 4 database threads to stop
Jul 24 17:36:51 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:51.477007564 +0000] All database threads now stopped
Jul 24 17:36:51 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:51.505454340 +0000] slapd shutting down - freed 1 work q stack objects - freed 2 op stack objects
Jul 24 17:36:51 h11.example.com ns-slapd[505]: [24/Jul/2017:17:36:51.804102148 +0000] slapd stopped.
Jul 24 17:36:51 h11.example.com systemd[1]: Starting 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun starting up.
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.177601027 +0000] SSL alert: Sending pin request to SVRCore. You may need to run systemd-tty-ask-password-agent to provide the password.
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.197317341 +0000] SSL alert: Security Initialization: Enabling default cipher set.
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.210525597 +0000] SSL alert: Configured NSS Ciphers
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.220781484 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.233943823 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.252055956 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.265830481 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.276286550 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.287685676 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.299682568 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.309671030 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.323225993 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.338560541 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.354025369 +0000] SSL alert: TLS_DHE_DSS_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.367086473 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.377753826 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.386127592 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.397327118 +0000] SSL alert: TLS_DHE_DSS_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.407097149 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.419342159 +0000] SSL alert: TLS_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.429574077 +0000] SSL alert: TLS_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.444385404 +0000] SSL alert: TLS_RSA_WITH_AES_256_CBC_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.455983589 +0000] SSL alert: TLS_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.469907027 +0000] SSL alert: TLS_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.480819551 +0000] SSL alert: TLS_RSA_WITH_AES_128_CBC_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.518750461 +0000] SSL alert: TLS_AES_128_GCM_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.531780281 +0000] SSL alert: TLS_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.546016193 +0000] SSL alert: TLS_AES_256_GCM_SHA384: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.556758330 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.567410753 +0000] SSL alert: TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.577865263 +0000] SSL alert: TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.615121292 +0000] SSL Initialization - Configured SSL version range: min: TLS1.0, max: TLS1.2
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.627894943 +0000] 389-Directory/1.3.5.10 B2017.145.2037 starting up
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.674562514 +0000] default_mr_indexer_create: warning - plugin [caseIgnoreIA5Match] does not handle caseExactIA5Match
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.702316564 +0000] attrcrypt - No symmetric key found for cipher AES in backend userRoot, attempting to create one...
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.722629702 +0000] attrcrypt - Key for cipher AES successfully generated and stored
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.739758666 +0000] attrcrypt - No symmetric key found for cipher 3DES in backend userRoot, attempting to create one...
Jul 24 17:36:52 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:52.770336717 +0000] attrcrypt - Key for cipher 3DES successfully generated and stored
Jul 24 17:36:53 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:53.001358036 +0000] slapd started. Listening on All Interfaces port 389 for LDAP requests
Jul 24 17:36:53 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:53.015580221 +0000] Listening on All Interfaces port 636 for LDAPS requests
Jul 24 17:36:53 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:53.033297954 +0000] Listening on /var/run/slapd-ZULTRON-COM.socket for LDAPI requests
Jul 24 17:36:53 h11.example.com systemd[1]: Started 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:53 h11.example.com systemd[1]: Reloading.
Jul 24 17:36:53 h11.example.com systemd[1]: Attempted to remove disk file system, and we can't allow that.
Jul 24 17:36:53 h11.example.com systemd[1]: Stopping 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun shutting down
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun shutting down.
Jul 24 17:36:54 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:54.028683462 +0000] slapd shutting down - signaling operation threads - op stack size 2 max work q size 1 max work q stack size 1
Jul 24 17:36:54 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:54.051153722 +0000] slapd shutting down - closing down internal subsystems and plugins
Jul 24 17:36:54 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:54.217048309 +0000] Waiting for 4 database threads to stop
Jul 24 17:36:54 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:54.705120042 +0000] All database threads now stopped
Jul 24 17:36:54 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:54.743752859 +0000] slapd shutting down - freed 1 work q stack objects - freed 2 op stack objects
Jul 24 17:36:55 h11.example.com ns-slapd[582]: [24/Jul/2017:17:36:55.003211624 +0000] slapd stopped.
Jul 24 17:36:55 h11.example.com systemd[1]: Starting 389 Directory Server ZULTRON-COM....
-- Subject: Unit dirsrv@ZULTRON-COM.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has begun starting up.
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.379534210 +0000] SSL alert: Sending pin request to SVRCore. You may need to run systemd-tty-ask-password-agent to provide the password.
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.394448382 +0000] SSL alert: Security Initialization: Enabling default cipher set.
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.405178978 +0000] SSL alert: Configured NSS Ciphers
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.440759213 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.466402580 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.486157195 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.497174437 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.506312532 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.519330204 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.535381095 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.547388743 +0000] SSL alert: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.567247854 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.582441797 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.610442917 +0000] SSL alert: TLS_DHE_DSS_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.630538802 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.662818282 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.682268063 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.702590656 +0000] SSL alert: TLS_DHE_DSS_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.726693012 +0000] SSL alert: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.740644145 +0000] SSL alert: TLS_RSA_WITH_AES_256_GCM_SHA384: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.757015826 +0000] SSL alert: TLS_RSA_WITH_AES_256_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.786321536 +0000] SSL alert: TLS_RSA_WITH_AES_256_CBC_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.824514382 +0000] SSL alert: TLS_RSA_WITH_AES_128_GCM_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.834453350 +0000] SSL alert: TLS_RSA_WITH_AES_128_CBC_SHA: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.846581107 +0000] SSL alert: TLS_RSA_WITH_AES_128_CBC_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.860036205 +0000] SSL alert: TLS_AES_128_GCM_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.895627902 +0000] SSL alert: TLS_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.922377411 +0000] SSL alert: TLS_AES_256_GCM_SHA384: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.938751517 +0000] SSL alert: TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.949620988 +0000] SSL alert: TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.963422724 +0000] SSL alert: TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256: enabled
Jul 24 17:36:55 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:55.996421765 +0000] SSL Initialization - Configured SSL version range: min: TLS1.0, max: TLS1.2
Jul 24 17:36:56 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:56.011003393 +0000] 389-Directory/1.3.5.10 B2017.145.2037 starting up
Jul 24 17:36:56 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:56.048927163 +0000] default_mr_indexer_create: warning - plugin [caseIgnoreIA5Match] does not handle caseExactIA5Match
Jul 24 17:36:56 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:56.636973386 +0000] slapd started. Listening on All Interfaces port 389 for LDAP requests
Jul 24 17:36:56 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:56.657270675 +0000] Listening on All Interfaces port 636 for LDAPS requests
Jul 24 17:36:56 h11.example.com ns-slapd[641]: [24/Jul/2017:17:36:56.667316949 +0000] Listening on /var/run/slapd-ZULTRON-COM.socket for LDAPI requests
Jul 24 17:36:56 h11.example.com systemd[1]: Started 389 Directory Server ZULTRON-COM..
-- Subject: Unit dirsrv@ZULTRON-COM.service has finished start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit dirsrv@ZULTRON-COM.service has finished starting up.
--
-- The start-up result is done.
Jul 24 17:36:56 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:56 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:56 h11.example.com python2[79]: GSSAPI client step 1
Jul 24 17:36:57 h11.example.com python2[79]: GSSAPI client step 2
Jul 24 17:37:00 h11.example.com ns-slapd[641]: GSSAPI client step 1
Jul 24 17:37:00 h11.example.com ns-slapd[641]: GSSAPI client step 1
Jul 24 17:37:00 h11.example.com ns-slapd[641]: GSSAPI client step 1
Jul 24 17:37:00 h11.example.com ns-slapd[641]: GSSAPI client step 1
Jul 24 17:37:00 h11.example.com ns-slapd[641]: GSSAPI client step 2
Jul 24 17:37:00 h11.example.com ns-slapd[641]: [24/Jul/2017:17:37:00.976597038 +0000] NSMMReplicationPlugin - agmt="cn=meToh01.example.com" (h01:389): The remote replica has a different database generation ID than the local database. You may have to reinitialize the remote replica, or the local replica.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment