Skip to content

Instantly share code, notes, and snippets.

@zultron
Created July 24, 2017 21:13
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save zultron/d7bed6d0c00ae8daef292ba4bb2c04e0 to your computer and use it in GitHub Desktop.
Save zultron/d7bed6d0c00ae8daef292ba4bb2c04e0 to your computer and use it in GitHub Desktop.
freeipa logs: hang at `[29/44]: setting up initial replication`; 2017-07-24 #2
2017-07-24T21:06:31Z DEBUG Logging to /var/log/ipareplica-install.log
2017-07-24T21:06:31Z DEBUG ipa-replica-install was invoked with arguments [] and options: {'no_dns_sshfp': None, 'skip_schema_check': None, 'setup_kra': None, 'ip_addresses': None, 'mkhomedir': None, 'http_cert_files': None, 'ssh_trust_dns': None, 'reverse_zones': None, 'no_forwarders': True, 'keytab': None, 'no_ntp': True, 'domain_name': 'example.com', 'http_cert_name': None, 'dirsrv_cert_files': None, 'no_dnssec_validation': None, 'no_reverse': None, 'unattended': True, 'auto_reverse': True, 'auto_forwarders': None, 'no_host_dns': True, 'no_sshd': None, 'no_ui_redirect': True, 'dirsrv_config_file': None, 'forwarders': None, 'verbose': False, 'setup_ca': True, 'realm_name': 'EXAMPLE.COM', 'skip_conncheck': True, 'no_ssh': None, 'forward_policy': None, 'dirsrv_cert_name': None, 'quiet': False, 'server': 'h01.example.com', 'setup_dns': True, 'host_name': 'h11.example.com', 'log_file': None, 'allow_zone_overlap': True}
2017-07-24T21:06:31Z DEBUG IPA version 4.4.0-14.el7.centos.7
2017-07-24T21:06:31Z DEBUG Starting external process
2017-07-24T21:06:31Z DEBUG args=/usr/sbin/selinuxenabled
2017-07-24T21:06:31Z DEBUG Process finished, return code=1
2017-07-24T21:06:31Z DEBUG stdout=
2017-07-24T21:06:31Z DEBUG stderr=
2017-07-24T21:06:31Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2017-07-24T21:06:31Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:06:31Z DEBUG httpd is not configured
2017-07-24T21:06:31Z DEBUG kadmin is not configured
2017-07-24T21:06:31Z DEBUG dirsrv is not configured
2017-07-24T21:06:31Z DEBUG pki-tomcatd is not configured
2017-07-24T21:06:31Z DEBUG install is not configured
2017-07-24T21:06:31Z DEBUG krb5kdc is not configured
2017-07-24T21:06:31Z DEBUG ntpd is not configured
2017-07-24T21:06:31Z DEBUG named is not configured
2017-07-24T21:06:31Z DEBUG ipa_memcached is not configured
2017-07-24T21:06:31Z DEBUG filestore is tracking no files
2017-07-24T21:06:31Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index'
2017-07-24T21:06:31Z DEBUG Configuring client side components
2017-07-24T21:06:31Z DEBUG Starting external process
2017-07-24T21:06:31Z DEBUG args=/usr/sbin/ipa-client-install --unattended --no-ntp --domain example.com --server h01.example.com --realm EXAMPLE.COM --hostname h11.example.com --principal admin
2017-07-24T21:06:54Z DEBUG Process finished, return code=0
2017-07-24T21:06:54Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2017-07-24T21:06:54Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:06:54Z DEBUG Starting external process
2017-07-24T21:06:54Z DEBUG args=/usr/sbin/httpd -t -D DUMP_VHOSTS
2017-07-24T21:06:54Z DEBUG Process finished, return code=0
2017-07-24T21:06:54Z DEBUG stdout=VirtualHost configuration:
*:8443 h11.example.com (/etc/httpd/conf.d/nss.conf:83)
2017-07-24T21:06:54Z DEBUG stderr=
2017-07-24T21:06:54Z DEBUG importing all plugin modules in ipaserver.plugins...
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.aci
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.automember
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.automount
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.baseldap
2017-07-24T21:06:54Z DEBUG ipaserver.plugins.baseldap is not a valid plugin module
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.baseuser
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.batch
2017-07-24T21:06:54Z DEBUG importing plugin module ipaserver.plugins.ca
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.caacl
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.cert
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.certprofile
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.config
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.delegation
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.dns
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.dnsserver
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.dogtag
2017-07-24T21:06:55Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.domainlevel
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.group
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hbac
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.hbac is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hbacrule
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hbacsvc
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hbacsvcgroup
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hbactest
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.host
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.hostgroup
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.idrange
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.idviews
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.internal
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.join
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.krbtpolicy
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.ldap2
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.location
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.migration
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.misc
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.netgroup
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.otp
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.otp is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.otpconfig
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.otptoken
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.passwd
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.permission
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.ping
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.pkinit
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.pkinit is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.privilege
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.pwpolicy
2017-07-24T21:06:55Z DEBUG Starting external process
2017-07-24T21:06:55Z DEBUG args=klist -V
2017-07-24T21:06:55Z DEBUG Process finished, return code=0
2017-07-24T21:06:55Z DEBUG stdout=Kerberos 5 version 1.14.1
2017-07-24T21:06:55Z DEBUG stderr=
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.rabase
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.rabase is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.radiusproxy
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.realmdomains
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.role
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.schema
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.selfservice
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.selinuxusermap
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.server
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.serverrole
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.serverroles
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.service
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.servicedelegation
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.session
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.stageuser
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.sudo
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.sudo is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.sudocmd
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.sudocmdgroup
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.sudorule
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.topology
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.trust
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.user
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.vault
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.virtual
2017-07-24T21:06:55Z DEBUG ipaserver.plugins.virtual is not a valid plugin module
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.plugins.xmlserver
2017-07-24T21:06:55Z DEBUG importing all plugin modules in ipaserver.install.plugins...
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.install.plugins.adtrust
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.install.plugins.dns
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements
2017-07-24T21:06:55Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_ca_topology
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_nis
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_referint
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_services
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness
2017-07-24T21:06:56Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt
2017-07-24T21:06:58Z DEBUG Check if h11.example.com is a primary hostname for localhost
2017-07-24T21:06:58Z DEBUG Primary hostname for localhost: h11.example.com
2017-07-24T21:06:58Z DEBUG Initializing principal host/h11.example.com@EXAMPLE.COM using keytab /etc/krb5.keytab
2017-07-24T21:06:58Z DEBUG using ccache /tmp/krbccN82eqU/ccache
2017-07-24T21:06:59Z DEBUG Attempt 1/1: success
2017-07-24T21:06:59Z DEBUG importing all plugin modules in ipaserver.plugins...
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.aci
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.automember
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.automount
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.baseldap
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.baseldap is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.baseuser
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.batch
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.ca
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.caacl
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.cert
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.certprofile
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.config
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.delegation
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.dns
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.dnsserver
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.dogtag
2017-07-24T21:06:59Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.domainlevel
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.group
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hbac
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.hbac is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hbacrule
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hbacsvc
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hbacsvcgroup
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hbactest
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.host
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.hostgroup
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.idrange
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.idviews
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.internal
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.join
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.krbtpolicy
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.ldap2
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.location
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.migration
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.misc
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.netgroup
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.otp
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.otp is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.otpconfig
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.otptoken
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.passwd
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.permission
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.ping
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.pkinit
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.pkinit is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.privilege
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.pwpolicy
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.rabase
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.rabase is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.radiusproxy
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.realmdomains
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.role
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.schema
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.selfservice
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.selinuxusermap
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.server
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.serverrole
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.serverroles
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.service
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.servicedelegation
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.session
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.stageuser
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.sudo
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.sudo is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.sudocmd
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.sudocmdgroup
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.sudorule
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.topology
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.trust
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.user
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.vault
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.virtual
2017-07-24T21:06:59Z DEBUG ipaserver.plugins.virtual is not a valid plugin module
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.plugins.xmlserver
2017-07-24T21:06:59Z DEBUG importing all plugin modules in ipaserver.install.plugins...
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.adtrust
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.dns
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_ca_topology
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_nis
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_referint
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_services
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness
2017-07-24T21:06:59Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt
2017-07-24T21:07:01Z DEBUG Starting external process
2017-07-24T21:07:01Z DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
2017-07-24T21:07:01Z DEBUG Process finished, return code=0
2017-07-24T21:07:01Z DEBUG stdout=980939448
2017-07-24T21:07:01Z DEBUG stderr=
2017-07-24T21:07:01Z DEBUG Starting external process
2017-07-24T21:07:01Z DEBUG args=keyctl pipe 980939448
2017-07-24T21:07:01Z DEBUG Process finished, return code=0
2017-07-24T21:07:01Z DEBUG stdout=ipa_session=34490ab4703a4df699c871e30e978318; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 21:26:45 GMT; Secure; HttpOnly
2017-07-24T21:07:01Z DEBUG stderr=
2017-07-24T21:07:01Z DEBUG found session_cookie in persistent storage for principal 'host/h11.example.com@EXAMPLE.COM', cookie: 'ipa_session=34490ab4703a4df699c871e30e978318; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 21:26:45 GMT; Secure; HttpOnly'
2017-07-24T21:07:01Z DEBUG setting session_cookie into context 'ipa_session=34490ab4703a4df699c871e30e978318;'
2017-07-24T21:07:01Z INFO trying https://h01.example.com/ipa/session/json
2017-07-24T21:07:01Z DEBUG Created connection context.jsonclient_143894480
2017-07-24T21:07:01Z INFO Forwarding 'env' to json server 'https://h01.example.com/ipa/session/json'
2017-07-24T21:07:01Z DEBUG NSSConnection init h01.example.com
2017-07-24T21:07:01Z DEBUG Connecting: 1.2.3.4:0
2017-07-24T21:07:02Z DEBUG approved_usage = SSL Server intended_usage = SSL Server
2017-07-24T21:07:02Z DEBUG cert valid True for "CN=h01.example.com,O=EXAMPLE.COM"
2017-07-24T21:07:02Z DEBUG handshake complete, peer = 1.2.3.4:443
2017-07-24T21:07:02Z DEBUG Protocol: TLS1.2
2017-07-24T21:07:02Z DEBUG Cipher: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
2017-07-24T21:07:02Z DEBUG received Set-Cookie 'ipa_session=34490ab4703a4df699c871e30e978318; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 21:27:02 GMT; Secure; HttpOnly'
2017-07-24T21:07:02Z DEBUG storing cookie 'ipa_session=34490ab4703a4df699c871e30e978318; Domain=h01.example.com; Path=/ipa; Expires=Mon, 24 Jul 2017 21:27:02 GMT; Secure; HttpOnly' for principal host/h11.example.com@EXAMPLE.COM
2017-07-24T21:07:02Z DEBUG Starting external process
2017-07-24T21:07:02Z DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
2017-07-24T21:07:02Z DEBUG Process finished, return code=0
2017-07-24T21:07:02Z DEBUG stdout=980939448
2017-07-24T21:07:02Z DEBUG stderr=
2017-07-24T21:07:02Z DEBUG Starting external process
2017-07-24T21:07:02Z DEBUG args=keyctl search @s user ipa_session_cookie:host/h11.example.com@EXAMPLE.COM
2017-07-24T21:07:02Z DEBUG Process finished, return code=0
2017-07-24T21:07:02Z DEBUG stdout=980939448
2017-07-24T21:07:02Z DEBUG stderr=
2017-07-24T21:07:02Z DEBUG Starting external process
2017-07-24T21:07:02Z DEBUG args=keyctl pupdate 980939448
2017-07-24T21:07:02Z DEBUG Process finished, return code=0
2017-07-24T21:07:02Z DEBUG stdout=
2017-07-24T21:07:02Z DEBUG stderr=
2017-07-24T21:07:02Z DEBUG Destroyed connection context.jsonclient_143894480
2017-07-24T21:07:03Z DEBUG Created connection context.ldap2_113031248
2017-07-24T21:07:03Z DEBUG raw: domainlevel_get(version=u'2.213')
2017-07-24T21:07:03Z DEBUG domainlevel_get(version=u'2.213')
2017-07-24T21:07:03Z DEBUG flushing ldaps://h01.example.com from SchemaCache
2017-07-24T21:07:03Z DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x893ce60>
2017-07-24T21:07:04Z DEBUG raw: hostgroup_find(None, cn=u'ipaservers', version=u'2.213', host=[u'h11.example.com'])
2017-07-24T21:07:04Z DEBUG hostgroup_find(None, cn=u'ipaservers', all=False, raw=False, version=u'2.213', no_members=True, pkey_only=False, host=(u'h11.example.com',))
2017-07-24T21:07:05Z DEBUG KRB5CCNAME set to None
2017-07-24T21:07:05Z DEBUG Failed to find default ccache: Major (851968): Unspecified GSS failure. Minor code may provide more information, Minor (2529639053): No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_0)
2017-07-24T21:07:05Z DEBUG Initializing principal admin@EXAMPLE.COM using password
2017-07-24T21:07:05Z DEBUG Starting external process
2017-07-24T21:07:05Z DEBUG args=/usr/bin/kinit admin@EXAMPLE.COM -c /tmp/tmp5xVg6G
2017-07-24T21:07:05Z DEBUG Process finished, return code=0
2017-07-24T21:07:05Z DEBUG stdout=Password for admin@EXAMPLE.COM:
2017-07-24T21:07:05Z DEBUG stderr=
2017-07-24T21:07:05Z DEBUG Destroyed connection context.ldap2_113031248
2017-07-24T21:07:06Z DEBUG Created connection context.ldap2_113031248
2017-07-24T21:07:06Z DEBUG raw: hostgroup_show(u'ipaservers', rights=True, all=True, version=u'2.213')
2017-07-24T21:07:06Z DEBUG hostgroup_show(u'ipaservers', rights=True, all=True, raw=False, version=u'2.213', no_members=False)
2017-07-24T21:07:06Z DEBUG flushing ldaps://h01.example.com from SchemaCache
2017-07-24T21:07:06Z DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x893ce18>
2017-07-24T21:07:08Z DEBUG Destroyed connection context.ldap2_113031248
2017-07-24T21:07:08Z DEBUG Created connection context.ldap2_113031248
2017-07-24T21:07:08Z DEBUG flushing ldaps://h01.example.com from SchemaCache
2017-07-24T21:07:08Z DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x893ce60>
2017-07-24T21:07:09Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:09Z DEBUG raw: dns_is_enabled(version=u'2.213')
2017-07-24T21:07:09Z DEBUG dns_is_enabled(version=u'2.213')
2017-07-24T21:07:10Z DEBUG Name h11.example.com. resolved to set([UnsafeIPAddress('10.33.128.2')])
2017-07-24T21:07:10Z DEBUG IP address 10.33.128.2 belongs to a private range, using forward policy only
2017-07-24T21:07:10Z DEBUG will use DNS forwarders: []
2017-07-24T21:07:10Z INFO Reverse record for IP address 10.33.128.2 already exists
2017-07-24T21:07:10Z DEBUG Destroyed connection context.ldap2_113031248
2017-07-24T21:07:10Z DEBUG Created connection context.ldap2_113031248
2017-07-24T21:07:10Z DEBUG raw: hostgroup_add_member(u'ipaservers', version=u'2.213', host=[u'h11.example.com'])
2017-07-24T21:07:10Z DEBUG hostgroup_add_member(u'ipaservers', all=False, raw=False, version=u'2.213', no_members=False, host=(u'h11.example.com',))
2017-07-24T21:07:10Z DEBUG add_entry_to_group: dn=fqdn=h11.example.com,cn=computers,cn=accounts,dc=zultron,dc=com group_dn=cn=ipaservers,cn=hostgroups,cn=accounts,dc=zultron,dc=com member_attr=member
2017-07-24T21:07:11Z DEBUG flushing ldaps://h01.example.com from SchemaCache
2017-07-24T21:07:11Z DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x8957368>
2017-07-24T21:07:12Z DEBUG Destroyed connection context.ldap2_113031248
2017-07-24T21:07:12Z DEBUG Backing up system configuration file '/etc/ipa/default.conf'
2017-07-24T21:07:12Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:12Z DEBUG Starting external process
2017-07-24T21:07:12Z DEBUG args=/bin/systemctl start messagebus.service
2017-07-24T21:07:12Z DEBUG Process finished, return code=0
2017-07-24T21:07:12Z DEBUG stdout=
2017-07-24T21:07:12Z DEBUG stderr=
2017-07-24T21:07:12Z DEBUG Starting external process
2017-07-24T21:07:12Z DEBUG args=/bin/systemctl is-active messagebus.service
2017-07-24T21:07:12Z DEBUG Process finished, return code=0
2017-07-24T21:07:12Z DEBUG stdout=active
2017-07-24T21:07:12Z DEBUG stderr=
2017-07-24T21:07:12Z DEBUG Starting external process
2017-07-24T21:07:12Z DEBUG args=/bin/systemctl restart certmonger.service
2017-07-24T21:07:12Z DEBUG Process finished, return code=0
2017-07-24T21:07:12Z DEBUG stdout=
2017-07-24T21:07:12Z DEBUG stderr=
2017-07-24T21:07:12Z DEBUG Starting external process
2017-07-24T21:07:12Z DEBUG args=/bin/systemctl is-active certmonger.service
2017-07-24T21:07:12Z DEBUG Process finished, return code=0
2017-07-24T21:07:12Z DEBUG stdout=active
2017-07-24T21:07:12Z DEBUG stderr=
2017-07-24T21:07:12Z DEBUG Starting external process
2017-07-24T21:07:12Z DEBUG args=/bin/systemctl enable certmonger.service
2017-07-24T21:07:12Z DEBUG Process finished, return code=0
2017-07-24T21:07:12Z DEBUG stdout=
2017-07-24T21:07:12Z DEBUG stderr=Created symlink from /etc/systemd/system/multi-user.target.wants/certmonger.service to /usr/lib/systemd/system/certmonger.service.
2017-07-24T21:07:12Z DEBUG group dirsrv exists
2017-07-24T21:07:12Z DEBUG user dirsrv exists
2017-07-24T21:07:13Z DEBUG Created connection context.ldap2_113031248
2017-07-24T21:07:13Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2017-07-24T21:07:13Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:13Z DEBUG Configuring directory server (dirsrv). Estimated time: 1 minute
2017-07-24T21:07:13Z DEBUG [1/44]: creating directory server user
2017-07-24T21:07:13Z DEBUG group dirsrv exists
2017-07-24T21:07:13Z DEBUG user dirsrv exists
2017-07-24T21:07:13Z DEBUG duration: 0 seconds
2017-07-24T21:07:13Z DEBUG [2/44]: creating directory server instance
2017-07-24T21:07:13Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2017-07-24T21:07:13Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'
2017-07-24T21:07:13Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
2017-07-24T21:07:13Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:13Z DEBUG
dn: dc=zultron,dc=com
objectClass: top
objectClass: domain
objectClass: pilotObject
dc: zultron
info: IPA V2.0
2017-07-24T21:07:13Z DEBUG writing inf template
2017-07-24T21:07:13Z DEBUG
[General]
FullMachineName= h11.example.com
SuiteSpotUserID= dirsrv
SuiteSpotGroup= dirsrv
ServerRoot= /usr/lib64/dirsrv
[slapd]
ServerPort= 389
ServerIdentifier= ZULTRON-COM
Suffix= dc=zultron,dc=com
RootDN= cn=Directory Manager
InstallLdifFile= /var/lib/dirsrv/boot.ldif
inst_dir= /var/lib/dirsrv/scripts-ZULTRON-COM
2017-07-24T21:07:13Z DEBUG calling setup-ds.pl
2017-07-24T21:07:13Z DEBUG Starting external process
2017-07-24T21:07:13Z DEBUG args=/usr/sbin/setup-ds.pl --silent --logfile - -f /tmp/tmpjiZJmb
2017-07-24T21:07:17Z DEBUG Process finished, return code=0
2017-07-24T21:07:17Z DEBUG stdout=[17/07/24:21:07:17] - [Setup] Info Your new DS instance 'ZULTRON-COM' was successfully created.
Your new DS instance 'ZULTRON-COM' was successfully created.
[17/07/24:21:07:17] - [Setup] Success Exiting . . .
Log file is '-'
Exiting . . .
Log file is '-'
2017-07-24T21:07:17Z DEBUG stderr=
2017-07-24T21:07:17Z DEBUG completed creating ds instance
2017-07-24T21:07:17Z DEBUG duration: 3 seconds
2017-07-24T21:07:17Z DEBUG [3/44]: updating configuration in dse.ldif
2017-07-24T21:07:17Z DEBUG Starting external process
2017-07-24T21:07:17Z DEBUG args=/bin/systemctl stop dirsrv@ZULTRON-COM.service
2017-07-24T21:07:18Z DEBUG Process finished, return code=0
2017-07-24T21:07:18Z DEBUG stdout=
2017-07-24T21:07:18Z DEBUG stderr=
2017-07-24T21:07:18Z DEBUG duration: 1 seconds
2017-07-24T21:07:18Z DEBUG [4/44]: restarting directory server
2017-07-24T21:07:18Z DEBUG Starting external process
2017-07-24T21:07:18Z DEBUG args=/bin/systemctl --system daemon-reload
2017-07-24T21:07:18Z DEBUG Process finished, return code=0
2017-07-24T21:07:18Z DEBUG stdout=
2017-07-24T21:07:18Z DEBUG stderr=
2017-07-24T21:07:18Z DEBUG Starting external process
2017-07-24T21:07:18Z DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=
2017-07-24T21:07:20Z DEBUG stderr=
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=active
2017-07-24T21:07:20Z DEBUG stderr=
2017-07-24T21:07:20Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=active
2017-07-24T21:07:20Z DEBUG stderr=
2017-07-24T21:07:20Z DEBUG duration: 1 seconds
2017-07-24T21:07:20Z DEBUG [5/44]: adding default schema
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [6/44]: enabling memberof plugin
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/memberof-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmptzTuSH
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=replace nsslapd-pluginenabled:
on
add memberofgroupattr:
memberUser
add memberofgroupattr:
memberHost
modifying entry "cn=MemberOf Plugin,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:20Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [7/44]: enabling winsync plugin
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-winsync-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpKkY9FN
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipa-winsync
add nsslapd-pluginpath:
libipa_winsync
add nsslapd-plugininitfunc:
ipa_winsync_plugin_init
add nsslapd-pluginDescription:
Allows IPA to work with the DS windows sync feature
add nsslapd-pluginid:
ipa-winsync
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
on
add nsslapd-plugin-depends-on-type:
database
add ipaWinSyncRealmFilter:
(objectclass=krbRealmContainer)
add ipaWinSyncRealmAttr:
cn
add ipaWinSyncNewEntryFilter:
(cn=ipaConfig)
add ipaWinSyncNewUserOCAttr:
ipauserobjectclasses
add ipaWinSyncUserFlatten:
true
add ipaWinsyncHomeDirAttr:
ipaHomesRootDir
add ipaWinsyncLoginShellAttr:
ipaDefaultLoginShell
add ipaWinSyncDefaultGroupAttr:
ipaDefaultPrimaryGroup
add ipaWinSyncDefaultGroupFilter:
(gidNumber=*)(objectclass=posixGroup)(objectclass=groupOfNames)
add ipaWinSyncAcctDisable:
both
add ipaWinSyncForceSync:
true
add ipaWinSyncUserAttr:
uidNumber -1
gidNumber -1
adding new entry "cn=ipa-winsync,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:20Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [8/44]: configuring replication version plugin
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/version-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpEJNHUt
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Version Replication
add nsslapd-pluginpath:
libipa_repl_version
add nsslapd-plugininitfunc:
repl_version_plugin_init
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
off
add nsslapd-pluginid:
ipa_repl_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA Replication version plugin
add nsslapd-plugin-depends-on-type:
database
add nsslapd-plugin-depends-on-named:
Multimaster Replication Plugin
adding new entry "cn=IPA Version Replication,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:20Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [9/44]: enabling IPA enrollment plugin
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpB2smfv -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpCupmVD
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipa_enrollment_extop
add nsslapd-pluginpath:
libipa_enrollment_extop
add nsslapd-plugininitfunc:
ipaenrollment_init
add nsslapd-plugintype:
extendedop
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipa_enrollment_extop
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
RedHat
add nsslapd-plugindescription:
Enroll hosts into the IPA domain
add nsslapd-plugin-depends-on-type:
database
add nsslapd-realmTree:
dc=zultron,dc=com
adding new entry "cn=ipa_enrollment_extop,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:20Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [10/44]: enabling ldapi
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpiSXQqL -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpneDhND
2017-07-24T21:07:20Z DEBUG Process finished, return code=0
2017-07-24T21:07:20Z DEBUG stdout=replace nsslapd-ldapilisten:
on
modifying entry "cn=config"
modify complete
2017-07-24T21:07:20Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:20Z DEBUG duration: 0 seconds
2017-07-24T21:07:20Z DEBUG [11/44]: configuring uniqueness plugin
2017-07-24T21:07:20Z DEBUG Starting external process
2017-07-24T21:07:20Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmptpkLPf -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpHAhGdB
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
krbPrincipalName uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
krbPrincipalName
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
krbCanonicalName uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
krbCanonicalName
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=krbCanonicalName uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
netgroup uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
cn
add uniqueness-subtrees:
cn=ng,cn=alt,dc=zultron,dc=com
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
adding new entry "cn=netgroup uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
ipaUniqueID uniqueness
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
ipaUniqueID
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
add nsslapd-pluginDescription:
Enforce unique attribute values
add uniqueness-subtrees:
dc=zultron,dc=com
add uniqueness-exclude-subtrees:
cn=staged users,cn=accounts,cn=provisioning,dc=zultron,dc=com
add uniqueness-across-all-subtrees:
on
adding new entry "cn=ipaUniqueID uniqueness,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
sudorule name uniqueness
add nsslapd-pluginDescription:
Enforce unique attribute values
add nsslapd-pluginPath:
libattr-unique-plugin
add nsslapd-pluginInitfunc:
NSUniqueAttr_Init
add nsslapd-pluginType:
preoperation
add nsslapd-pluginEnabled:
on
add uniqueness-attribute-name:
cn
add uniqueness-subtrees:
cn=sudorules,cn=sudo,dc=zultron,dc=com
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginId:
NSUniqueAttr
add nsslapd-pluginVersion:
1.1.0
add nsslapd-pluginVendor:
Fedora Project
adding new entry "cn=sudorule name uniqueness,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [12/44]: configuring uuid plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/uuid-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp718i9w
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA UUID
add nsslapd-pluginpath:
libipa_uuid
add nsslapd-plugininitfunc:
ipauuid_init
add nsslapd-plugintype:
preoperation
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipauuid_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA UUID plugin
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA UUID,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpqOlM_2 -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpNgtXcA
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
extensibleObject
add cn:
IPA Unique IDs
add ipaUuidAttr:
ipaUniqueID
add ipaUuidMagicRegen:
autogenerate
add ipaUuidFilter:
(|(objectclass=ipaObject)(objectclass=ipaAssociation))
add ipaUuidScope:
dc=zultron,dc=com
add ipaUuidEnforce:
TRUE
adding new entry "cn=IPA Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete
add objectclass:
top
extensibleObject
add cn:
IPK11 Unique IDs
add ipaUuidAttr:
ipk11UniqueID
add ipaUuidMagicRegen:
autogenerate
add ipaUuidFilter:
(objectclass=ipk11Object)
add ipaUuidScope:
dc=zultron,dc=com
add ipaUuidEnforce:
FALSE
adding new entry "cn=IPK11 Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [13/44]: configuring modrdn plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/modrdn-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpjLkcfM
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA MODRDN
add nsslapd-pluginpath:
libipa_modrdn
add nsslapd-plugininitfunc:
ipamodrdn_init
add nsslapd-plugintype:
betxnpostoperation
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipamodrdn_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA MODRDN plugin
add nsslapd-plugin-depends-on-type:
database
add nsslapd-pluginPrecedence:
60
adding new entry "cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpGL68Fp -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpXAL9QY
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
extensibleObject
add cn:
Kerberos Principal Name
add ipaModRDNsourceAttr:
uid
add ipaModRDNtargetAttr:
krbPrincipalName
add ipaModRDNsuffix:
@EXAMPLE.COM
add ipaModRDNfilter:
(&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
dc=zultron,dc=com
adding new entry "cn=Kerberos Principal Name,cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
add objectclass:
top
extensibleObject
add cn:
Kerberos Canonical Name
add ipaModRDNsourceAttr:
uid
add ipaModRDNtargetAttr:
krbCanonicalName
add ipaModRDNsuffix:
@EXAMPLE.COM
add ipaModRDNfilter:
(&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
dc=zultron,dc=com
adding new entry "cn=Kerberos Canonical Name,cn=IPA MODRDN,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [14/44]: configuring DNS plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-dns-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpKLuVGC
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
nsslapdPlugin
extensibleObject
add cn:
IPA DNS
add nsslapd-plugindescription:
IPA DNS support plugin
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipa_dns
add nsslapd-plugininitfunc:
ipadns_init
add nsslapd-pluginpath:
libipa_dns.so
add nsslapd-plugintype:
preoperation
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-pluginversion:
1.0
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA DNS,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [15/44]: enabling entryUSN plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/entryusn.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpqKaurL
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=replace nsslapd-entryusn-global:
on
modifying entry "cn=config"
modify complete
replace nsslapd-entryusn-import-initval:
next
modifying entry "cn=config"
modify complete
replace nsslapd-pluginenabled:
on
modifying entry "cn=USN,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [16/44]: configuring lockout plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/lockout-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpSAeKlb
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectclass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Lockout
add nsslapd-pluginpath:
libipa_lockout
add nsslapd-plugininitfunc:
ipalockout_init
add nsslapd-plugintype:
object
add nsslapd-pluginenabled:
on
add nsslapd-pluginid:
ipalockout_version
add nsslapd-pluginversion:
1.0
add nsslapd-pluginvendor:
Red Hat, Inc.
add nsslapd-plugindescription:
IPA Lockout plugin
add nsslapd-plugin-depends-on-type:
database
adding new entry "cn=IPA Lockout,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [17/44]: configuring topology plugin
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpIQRPTG -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpB5xvtg
2017-07-24T21:07:21Z DEBUG Process finished, return code=0
2017-07-24T21:07:21Z DEBUG stdout=add objectClass:
top
nsSlapdPlugin
extensibleObject
add cn:
IPA Topology Configuration
add nsslapd-pluginPath:
libtopology
add nsslapd-pluginInitfunc:
ipa_topo_init
add nsslapd-pluginType:
object
add nsslapd-pluginEnabled:
on
add nsslapd-topo-plugin-shared-config-base:
cn=ipa,cn=etc,dc=zultron,dc=com
add nsslapd-topo-plugin-shared-replica-root:
dc=zultron,dc=com
o=ipaca
add nsslapd-topo-plugin-shared-binddngroup:
cn=replication managers,cn=sysaccounts,cn=etc,dc=zultron,dc=com
add nsslapd-topo-plugin-startup-delay:
20
add nsslapd-pluginId:
none
add nsslapd-plugin-depends-on-named:
ldbm database
Multimaster Replication Plugin
add nsslapd-pluginVersion:
1.0
add nsslapd-pluginVendor:
none
add nsslapd-pluginDescription:
none
adding new entry "cn=IPA Topology Configuration,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:21Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:21Z DEBUG duration: 0 seconds
2017-07-24T21:07:21Z DEBUG [18/44]: creating indices
2017-07-24T21:07:21Z DEBUG Starting external process
2017-07-24T21:07:21Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/indices.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmp4T4J8O
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=add objectClass:
top
nsIndex
add cn:
krbPrincipalName
add nsSystemIndex:
false
add nsIndexType:
eq
sub
add nsMatchingRule:
caseIgnoreIA5Match
caseExactIA5Match
adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
ou
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
carLicense
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
title
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
manager
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
secretary
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
displayname
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add nsIndexType:
sub
modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
uidnumber
add nsSystemIndex:
false
add nsIndexType:
eq
add nsMatchingRule:
integerOrderingMatch
adding new entry "cn=uidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add objectClass:
top
nsIndex
add cn:
gidnumber
add nsSystemIndex:
false
add nsIndexType:
eq
add nsMatchingRule:
integerOrderingMatch
adding new entry "cn=gidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
replace nsIndexType:
eq
pres
modifying entry "cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
replace nsIndexType:
eq
pres
modifying entry "cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add ObjectClass:
top
nsIndex
add cn:
fqdn
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=fqdn,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add ObjectClass:
top
nsIndex
add cn:
macAddress
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=macAddress,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberHost
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberHost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberUser
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberUser,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
sourcehost
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=sourcehost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberservice
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberservice,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
managedby
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=managedby,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberallowcmd
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
memberdenycmd
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipasudorunas
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipasudorunasgroup
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
automountkey
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=automountkey,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipakrbprincipalalias
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipauniqueid
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
adding new entry "cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipaMemberCa
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipaMemberCa,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipaMemberCertProfile
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
sub
adding new entry "cn=ipaMemberCertProfile,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
userCertificate
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=userCertificate,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
ipalocation
add ObjectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
pres
adding new entry "cn=ipalocation,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
add cn:
krbCanonicalName
add objectClass:
top
nsIndex
add nsSystemIndex:
false
add nsIndexType:
eq
sub
adding new entry "cn=krbCanonicalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:22Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [19/44]: enabling referential integrity plugin
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/referint-conf.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpXUwAkr
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=replace nsslapd-pluginenabled:
on
modifying entry "cn=referential integrity postoperation,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:22Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [20/44]: configuring certmap.conf
2017-07-24T21:07:22Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-07-24T21:07:22Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-07-24T21:07:22Z DEBUG Saving StateFile to '/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [21/44]: configure autobind for root
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/root-autobind.ldif -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmppHMM_W
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=add objectClass:
extensibleObject
top
add cn:
root-autobind
add uidNumber:
0
add gidNumber:
0
adding new entry "cn=root-autobind,cn=config"
modify complete
replace nsslapd-ldapiautobind:
on
modifying entry "cn=config"
modify complete
replace nsslapd-ldapimaptoentries:
on
modifying entry "cn=config"
modify complete
2017-07-24T21:07:22Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [22/44]: configure new location for managed entries
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpTdYn6N -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpNE614d
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=add nsslapd-pluginConfigArea:
cn=Definitions,cn=Managed Entries,cn=etc,dc=zultron,dc=com
modifying entry "cn=Managed Entries,cn=plugins,cn=config"
modify complete
2017-07-24T21:07:22Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [23/44]: configure dirsrv ccache
2017-07-24T21:07:22Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
2017-07-24T21:07:22Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/usr/sbin/selinuxenabled
2017-07-24T21:07:22Z DEBUG Process finished, return code=1
2017-07-24T21:07:22Z DEBUG stdout=
2017-07-24T21:07:22Z DEBUG stderr=
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [24/44]: enabling SASL mapping fallback
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpVAA0hX -H ldap://h11.example.com:389 -x -D cn=Directory Manager -y /tmp/tmpQmaUhJ
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=replace nsslapd-sasl-mapping-fallback:
on
modifying entry "cn=config"
modify complete
2017-07-24T21:07:22Z DEBUG stderr=ldap_initialize( ldap://h11.example.com:389/??base )
2017-07-24T21:07:22Z DEBUG duration: 0 seconds
2017-07-24T21:07:22Z DEBUG [25/44]: restarting directory server
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/bin/systemctl --system daemon-reload
2017-07-24T21:07:22Z DEBUG Process finished, return code=0
2017-07-24T21:07:22Z DEBUG stdout=
2017-07-24T21:07:22Z DEBUG stderr=
2017-07-24T21:07:22Z DEBUG Starting external process
2017-07-24T21:07:22Z DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
2017-07-24T21:07:24Z DEBUG Process finished, return code=0
2017-07-24T21:07:24Z DEBUG stdout=
2017-07-24T21:07:24Z DEBUG stderr=
2017-07-24T21:07:24Z DEBUG Starting external process
2017-07-24T21:07:24Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:24Z DEBUG Process finished, return code=0
2017-07-24T21:07:24Z DEBUG stdout=active
2017-07-24T21:07:24Z DEBUG stderr=
2017-07-24T21:07:24Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-07-24T21:07:24Z DEBUG Starting external process
2017-07-24T21:07:24Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:25Z DEBUG Process finished, return code=0
2017-07-24T21:07:25Z DEBUG stdout=active
2017-07-24T21:07:25Z DEBUG stderr=
2017-07-24T21:07:25Z DEBUG duration: 2 seconds
2017-07-24T21:07:25Z DEBUG [26/44]: creating DS keytab
2017-07-24T21:07:25Z DEBUG Backing up system configuration file '/etc/dirsrv/ds.keytab'
2017-07-24T21:07:25Z DEBUG -> Not backing up - '/etc/dirsrv/ds.keytab' doesn't exist
2017-07-24T21:07:25Z DEBUG raw: service_add(u'ldap/h11.example.com@EXAMPLE.COM', force=True, version=u'2.213')
2017-07-24T21:07:25Z DEBUG service_add(<ipapython.kerberos.Principal object at 0x92061d0>, force=True, all=False, raw=False, version=u'2.213', no_members=False)
2017-07-24T21:07:25Z DEBUG flushing ldaps://h01.example.com from SchemaCache
2017-07-24T21:07:25Z DEBUG retrieving schema for SchemaCache url=ldaps://h01.example.com conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x699afc8>
2017-07-24T21:07:26Z DEBUG raw: host_show(u'h11.example.com', version=u'2.213')
2017-07-24T21:07:26Z DEBUG host_show(u'h11.example.com', rights=False, all=False, raw=False, version=u'2.213', no_members=False)
2017-07-24T21:07:26Z DEBUG Starting external process
2017-07-24T21:07:26Z DEBUG args=/usr/sbin/ipa-getkeytab -k /etc/dirsrv/ds.keytab -p ldap/h11.example.com@EXAMPLE.COM -s h01.example.com
2017-07-24T21:07:27Z DEBUG Process finished, return code=0
2017-07-24T21:07:27Z DEBUG stdout=
2017-07-24T21:07:27Z DEBUG stderr=Keytab successfully retrieved and stored in: /etc/dirsrv/ds.keytab
2017-07-24T21:07:27Z DEBUG duration: 2 seconds
2017-07-24T21:07:27Z DEBUG [27/44]: retrieving DS Certificate
2017-07-24T21:07:27Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2017-07-24T21:07:27Z DEBUG Starting external process
2017-07-24T21:07:27Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -L -n EXAMPLE.COM IPA CA -a
2017-07-24T21:07:27Z DEBUG Process finished, return code=255
2017-07-24T21:07:27Z DEBUG stdout=
2017-07-24T21:07:27Z DEBUG stderr=certutil: Could not find cert: EXAMPLE.COM IPA CA
: PR_FILE_NOT_FOUND_ERROR: File not found
2017-07-24T21:07:27Z DEBUG Starting external process
2017-07-24T21:07:27Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -N -f /etc/dirsrv/slapd-ZULTRON-COM//pwdfile.txt
2017-07-24T21:07:27Z DEBUG Process finished, return code=0
2017-07-24T21:07:27Z DEBUG stdout=
2017-07-24T21:07:27Z DEBUG stderr=
2017-07-24T21:07:27Z DEBUG Starting external process
2017-07-24T21:07:27Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-ZULTRON-COM/ -A -n EXAMPLE.COM IPA CA -t CT,C,C -a
2017-07-24T21:07:27Z DEBUG Process finished, return code=0
2017-07-24T21:07:27Z DEBUG stdout=
2017-07-24T21:07:27Z DEBUG stderr=
2017-07-24T21:07:27Z DEBUG certmonger request is in state dbus.String(u'NEWLY_ADDED_READING_KEYINFO', variant_level=1)
2017-07-24T21:07:32Z DEBUG certmonger request is in state dbus.String(u'SUBMITTING', variant_level=1)
2017-07-24T21:07:37Z DEBUG certmonger request is in state dbus.String(u'SUBMITTING', variant_level=1)
2017-07-24T21:07:42Z DEBUG certmonger request is in state dbus.String(u'MONITORING', variant_level=1)
2017-07-24T21:07:43Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
2017-07-24T21:07:43Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x93768c0>
2017-07-24T21:07:43Z DEBUG duration: 15 seconds
2017-07-24T21:07:43Z DEBUG [28/44]: restarting directory server
2017-07-24T21:07:43Z DEBUG Starting external process
2017-07-24T21:07:43Z DEBUG args=/bin/systemctl --system daemon-reload
2017-07-24T21:07:43Z DEBUG Process finished, return code=0
2017-07-24T21:07:43Z DEBUG stdout=
2017-07-24T21:07:43Z DEBUG stderr=
2017-07-24T21:07:43Z DEBUG Starting external process
2017-07-24T21:07:43Z DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
2017-07-24T21:07:46Z DEBUG Process finished, return code=0
2017-07-24T21:07:46Z DEBUG stdout=
2017-07-24T21:07:46Z DEBUG stderr=
2017-07-24T21:07:46Z DEBUG Starting external process
2017-07-24T21:07:46Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:46Z DEBUG Process finished, return code=0
2017-07-24T21:07:46Z DEBUG stdout=active
2017-07-24T21:07:46Z DEBUG stderr=
2017-07-24T21:07:46Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-07-24T21:07:46Z DEBUG Starting external process
2017-07-24T21:07:46Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:46Z DEBUG Process finished, return code=0
2017-07-24T21:07:46Z DEBUG stdout=active
2017-07-24T21:07:46Z DEBUG stderr=
2017-07-24T21:07:46Z DEBUG duration: 3 seconds
2017-07-24T21:07:46Z DEBUG [29/44]: setting up initial replication
2017-07-24T21:07:46Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
2017-07-24T21:07:46Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x91fadd0>
2017-07-24T21:07:47Z DEBUG Starting external process
2017-07-24T21:07:47Z DEBUG args=/bin/systemctl --system daemon-reload
2017-07-24T21:07:47Z DEBUG Process finished, return code=0
2017-07-24T21:07:47Z DEBUG stdout=
2017-07-24T21:07:47Z DEBUG stderr=
2017-07-24T21:07:47Z DEBUG Starting external process
2017-07-24T21:07:47Z DEBUG args=/bin/systemctl restart dirsrv@ZULTRON-COM.service
2017-07-24T21:07:50Z DEBUG Process finished, return code=0
2017-07-24T21:07:50Z DEBUG stdout=
2017-07-24T21:07:50Z DEBUG stderr=
2017-07-24T21:07:50Z DEBUG Starting external process
2017-07-24T21:07:50Z DEBUG args=/bin/systemctl is-active dirsrv@ZULTRON-COM.service
2017-07-24T21:07:50Z DEBUG Process finished, return code=0
2017-07-24T21:07:50Z DEBUG stdout=active
2017-07-24T21:07:50Z DEBUG stderr=
2017-07-24T21:07:50Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-07-24T21:07:50Z DEBUG Fetching nsDS5ReplicaId from master [attempt 1/5]
2017-07-24T21:07:50Z DEBUG flushing ldap://h01.example.com:389 from SchemaCache
2017-07-24T21:07:50Z DEBUG retrieving schema for SchemaCache url=ldap://h01.example.com:389 conn=<ldap.ldapobject.SimpleLDAPObject instance at 0xa4fb128>
2017-07-24T21:07:51Z DEBUG Successfully updated nsDS5ReplicaId.
2017-07-24T21:07:51Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket from SchemaCache
2017-07-24T21:07:51Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-ZULTRON-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0xa4f6bd8>
2017-07-24T21:07:52Z DEBUG Fetching nsDS5ReplicaId from master [attempt 1/5]
2017-07-24T21:07:52Z DEBUG Successfully updated nsDS5ReplicaId.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment