report.html

Report generated on 16-Jun-2019 at 19:04:33 by pytest-html v1.20.0

Environment

Packages {'pytest': '3.6.4', 'py': '1.5.4', 'pluggy': '0.6.0'}
Platform Linux-5.0.17-200.fc29.x86_64-x86_64-with-fedora-29-Twenty_Nine
Plugins {'metadata': '1.8.0', 'html': '1.20.0', 'sourceorder': '0.5', 'multihost': '3.0'}
Python 3.7.3

Summary

1 tests ran in 5601.83 seconds.

0 passed, 0 skipped, 1 failed, 1 errors, 0 expected failures, 0 unexpected passes

Results

Result Test Duration Links
Error test_replication_layouts.py::TestStarTopologyWithCA::()::test_star_topology_with_ca::teardown 1030.51
class_integration_logs = {<ipatests.pytest_ipa.integration.host.Host master.ipa.test (master)>: ['/ipatests/env.sh', '/var/log/dirsrv/slapd-IPA...', '/var/log/dirsrv/slapd-IPA-TEST/access', '/var/log/ipaserver-install.log', '/var/log/ipaserver-uninstall.log', ...]}
request = <SubRequest 'integration_logs' for <Function 'test_star_topology_with_ca'>>

@yield_fixture
def integration_logs(class_integration_logs, request):
"""Provides access to test integration logs, and collects after each test
"""
yield class_integration_logs
hosts = class_integration_logs.keys()
> collect_test_logs(request.node, class_integration_logs, request.config)

/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/__init__.py:196:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/__init__.py:72: in collect_test_logs
beakerlib_plugin=test_config.pluginmanager.getplugin('BeakerLibPlugin'),
/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/__init__.py:140: in collect_logs
cmd = host.run_command(['mktemp'])
/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/host.py:71: in run_command
encoding=encoding
/usr/lib/python3.7/site-packages/pytest_multihost/host.py:237: in run_command
encoding=encoding)
/usr/lib/python3.7/site-packages/pytest_multihost/transport.py:317: in start_shell
ssh = self._transport.open_channel('session')
/usr/lib/python3.7/site-packages/paramiko/transport.py:933: in open_channel
raise e
/usr/lib/python3.7/site-packages/paramiko/transport.py:1982: in run
ptype, m = self.packetizer.read_message()
/usr/lib/python3.7/site-packages/paramiko/packet.py:441: in read_message
header = self.read_all(self.__block_size_in, check_rekey=True)
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _

self = <paramiko.packet.Packetizer object at 0x7f3d40bc47f0>, n = 16
check_rekey = True

def read_all(self, n, check_rekey=False):
"""
Read as close to N bytes as possible, blocking as long as necessary.

:param int n: number of bytes to read
:return: the data read, as a `str`

:raises:
``EOFError`` -- if the socket was closed before all the bytes could
be read
"""
out = bytes()
# handle over-reading from reading the banner line
if len(self.__remainder) > 0:
out = self.__remainder[:n]
self.__remainder = self.__remainder[n:]
n -= len(out)
while n > 0:
got_timeout = False
if self.handshake_timed_out():
raise EOFError()
try:
> x = self.__socket.recv(n)
E OSError: [Errno 113] No route to host

/usr/lib/python3.7/site-packages/paramiko/packet.py:288: OSError
------------------------------ Captured log setup ------------------------------
__init__.py 267 INFO Preparing host master.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica1.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica0.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica2.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh------------------------------ Captured log call -------------------------------
__init__.py 261 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'master.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'master.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:45721 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:839 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:54957 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1934,fd=5),("systemd",pid=1,fd=98)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=505,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:54085 [::]:* users:(("rpc.statd",pid=1935,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1934,fd=7),("systemd",pid=1,fd=100)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=505,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:41313 [::]:* transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45389 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:60015 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1934,fd=4),("systemd",pid=1,fd=97)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=530,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:22 192.168.121.1:44844 users:(("sshd",pid=13885,fd=5),("sshd",pid=13876,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:715 192.168.121.1:2049 transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:22 192.168.121.201:33270 users:(("sshd",pid=14426,fd=5),("sshd",pid=14424,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:35397 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1934,fd=6),("systemd",pid=1,fd=99)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:40117 [::]:* users:(("rpc.statd",pid=1935,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=530,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '192.168.121.1', '--auto-reverse'] transport.py 513 DEBUG RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '192.168.121.1', '--auto-reverse'] transport.py 558 DEBUG Checking DNS domain ipa.test, please wait ... transport.py 558 DEBUG Checking DNS domain ipa.test., please wait ... transport.py 558 DEBUG Checking DNS domain 121.168.192.in-addr.arpa., please wait ... transport.py 558 DEBUG Reverse zone 121.168.192.in-addr.arpa. will be created transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Checking DNS domain ipa.test, please wait ... transport.py 558 DEBUG transport.py 558 DEBUG The log file for this installation can be found in /var/log/ipaserver-install.log transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG This program will set up the FreeIPA Server. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG This includes: transport.py 558 DEBUG * Configure a stand-alone CA (dogtag) for certificate management transport.py 558 DEBUG * Configure the NTP client (chronyd) transport.py 558 DEBUG * Create and configure an instance of Directory Server transport.py 558 DEBUG * Create and configure a Kerberos Key Distribution Center (KDC) transport.py 558 DEBUG * Configure Apache (httpd) transport.py 558 DEBUG * Configure DNS (bind) transport.py 558 DEBUG * Configure the KDC to enable PKINIT transport.py 558 DEBUG transport.py 558 DEBUG Warning: skipping DNS resolution of host master.ipa.test transport.py 558 DEBUG Checking DNS forwarders, please wait ... transport.py 558 DEBUG Using reverse zone(s) 121.168.192.in-addr.arpa. transport.py 558 DEBUG transport.py 558 DEBUG The IPA Master Server will be configured with: transport.py 558 DEBUG Hostname: master.ipa.test transport.py 558 DEBUG IP address(es): 192.168.121.170 transport.py 558 DEBUG Domain name: ipa.test transport.py 558 DEBUG Realm name: IPA.TEST transport.py 558 DEBUG transport.py 558 DEBUG The CA will be configured with: transport.py 558 DEBUG Subject DN: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Subject base: O=IPA.TEST transport.py 558 DEBUG Chaining: self-signed transport.py 558 DEBUG transport.py 558 DEBUG BIND DNS server will be configured to serve IPA domain with: transport.py 558 DEBUG Forwarders: 192.168.121.1 transport.py 558 DEBUG Forward policy: only transport.py 558 DEBUG Reverse zone(s): 121.168.192.in-addr.arpa. transport.py 558 DEBUG transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG Warning: IPA was unable to sync time with chrony! transport.py 558 DEBUG Time synchronization is required for IPA to work correctly transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/45]: creating directory server instance transport.py 558 DEBUG [2/45]: enabling ldapi transport.py 558 DEBUG [3/45]: configure autobind for root transport.py 558 DEBUG [4/45]: stopping directory server transport.py 558 DEBUG [5/45]: updating configuration in dse.ldif transport.py 558 DEBUG [6/45]: starting directory server transport.py 558 DEBUG [7/45]: adding default schema transport.py 558 DEBUG [8/45]: enabling memberof plugin transport.py 558 DEBUG [9/45]: enabling winsync plugin transport.py 558 DEBUG [10/45]: configure password logging transport.py 558 DEBUG [11/45]: configuring replication version plugin transport.py 558 DEBUG [12/45]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/45]: configuring uniqueness plugin transport.py 558 DEBUG [14/45]: configuring uuid plugin transport.py 558 DEBUG [15/45]: configuring modrdn plugin transport.py 558 DEBUG [16/45]: configuring DNS plugin transport.py 558 DEBUG [17/45]: enabling entryUSN plugin transport.py 558 DEBUG [18/45]: configuring lockout plugin transport.py 558 DEBUG [19/45]: configuring topology plugin transport.py 558 DEBUG [20/45]: creating indices transport.py 558 DEBUG [21/45]: enabling referential integrity plugin transport.py 558 DEBUG [22/45]: configuring certmap.conf transport.py 558 DEBUG [23/45]: configure new location for managed entries transport.py 558 DEBUG [24/45]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/45]: enabling SASL mapping fallback transport.py 558 DEBUG [26/45]: restarting directory server transport.py 558 DEBUG [27/45]: adding sasl mappings to the directory transport.py 558 DEBUG [28/45]: adding default layout transport.py 558 DEBUG [29/45]: adding delegation layout transport.py 558 DEBUG [30/45]: creating container for managed entries transport.py 558 DEBUG [31/45]: configuring user private groups transport.py 558 DEBUG [32/45]: configuring netgroups from hostgroups transport.py 558 DEBUG [33/45]: creating default Sudo bind user transport.py 558 DEBUG [34/45]: creating default Auto Member layout transport.py 558 DEBUG [35/45]: adding range check plugin transport.py 558 DEBUG [36/45]: creating default HBAC rule allow_all transport.py 558 DEBUG [37/45]: adding entries for topology management transport.py 558 DEBUG [38/45]: initializing group membership transport.py 558 DEBUG [39/45]: adding master entry transport.py 558 DEBUG [40/45]: initializing domain level transport.py 558 DEBUG [41/45]: configuring Posix uid/gid generation transport.py 558 DEBUG [42/45]: adding replication acis transport.py 558 DEBUG [43/45]: activating sidgen plugin transport.py 558 DEBUG [44/45]: activating extdom plugin transport.py 558 DEBUG [45/45]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/10]: adding kerberos container to the directory transport.py 558 DEBUG [2/10]: configuring KDC transport.py 558 DEBUG [3/10]: initialize kerberos container transport.py 558 DEBUG [4/10]: adding default ACIs transport.py 558 DEBUG [5/10]: creating a keytab for the directory transport.py 558 DEBUG [6/10]: creating a keytab for the machine transport.py 558 DEBUG [7/10]: adding the password extension to the directory transport.py 558 DEBUG [8/10]: creating anonymous principal transport.py 558 DEBUG [9/10]: starting the KDC transport.py 558 DEBUG [10/10]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/5]: Making sure custodia container exists transport.py 558 DEBUG [2/5]: Generating ipa-custodia config file transport.py 558 DEBUG [3/5]: Generating ipa-custodia keys transport.py 558 DEBUG [4/5]: starting ipa-custodia transport.py 558 DEBUG [5/5]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: configuring certificate server instance transport.py 558 DEBUG [2/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [3/30]: reindex attributes transport.py 558 DEBUG [4/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [5/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [6/30]: backing up CS.cfg transport.py 558 DEBUG [7/30]: disabling nonces transport.py 558 DEBUG [8/30]: set up CRL publishing transport.py 558 DEBUG [9/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [10/30]: starting certificate server instance transport.py 558 DEBUG [11/30]: configure certmonger for renewals transport.py 558 DEBUG [12/30]: requesting RA certificate from CA transport.py 558 DEBUG [13/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [14/30]: restarting certificate server transport.py 558 DEBUG [15/30]: publishing the CA certificate transport.py 558 DEBUG [16/30]: adding RA agent as a trusted user transport.py 558 DEBUG [17/30]: authorizing RA to modify profiles transport.py 558 DEBUG [18/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [19/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [20/30]: configure certificate renewals transport.py 558 DEBUG [21/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [22/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [23/30]: restarting certificate server transport.py 558 DEBUG [24/30]: updating IPA configuration transport.py 558 DEBUG [25/30]: enabling CA instance transport.py 558 DEBUG [26/30]: migrating certificate profiles to LDAP transport.py 558 DEBUG [27/30]: importing IPA certificate profiles transport.py 558 DEBUG [28/30]: adding default CA ACL transport.py 558 DEBUG [29/30]: adding 'ipa' CA entry transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: adding CA certificate entry transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG Configuring DNS (named) transport.py 558 DEBUG [1/12]: generating rndc key file transport.py 558 DEBUG [2/12]: adding DNS container transport.py 558 DEBUG [3/12]: setting up our zone transport.py 558 DEBUG [4/12]: setting up reverse zone transport.py 558 DEBUG [5/12]: setting up our own record transport.py 558 DEBUG [6/12]: setting up records for other masters transport.py 558 DEBUG [7/12]: adding NS record to the zones transport.py 558 DEBUG [8/12]: setting up kerberos principal transport.py 558 DEBUG [9/12]: setting up named.conf transport.py 558 DEBUG [10/12]: setting up server configuration transport.py 558 DEBUG [11/12]: configuring named to start on boot transport.py 558 DEBUG [12/12]: changing resolv.conf to point to ourselves transport.py 558 DEBUG Done configuring DNS (named). transport.py 558 DEBUG Restarting the web server to pick up resolv.conf changes transport.py 558 DEBUG Configuring DNS key synchronization service (ipa-dnskeysyncd) transport.py 558 DEBUG [1/7]: checking status transport.py 558 DEBUG [2/7]: setting up bind-dyndb-ldap working directory transport.py 558 DEBUG [3/7]: setting up kerberos principal transport.py 558 DEBUG [4/7]: setting up SoftHSM transport.py 558 DEBUG [5/7]: adding DNSSEC containers transport.py 558 DEBUG [6/7]: creating replica keys transport.py 558 DEBUG [7/7]: configuring ipa-dnskeysyncd to start on boot transport.py 558 DEBUG Done configuring DNS key synchronization service (ipa-dnskeysyncd). transport.py 558 DEBUG Restarting ipa-dnskeysyncd transport.py 558 DEBUG Restarting named transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG Configuring client side components transport.py 558 DEBUG Using existing certificate '/etc/ipa/ca.crt'. transport.py 558 DEBUG Client hostname: master.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG The ipa-server-install command was successful transport.py 558 DEBUG transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG Setup complete transport.py 558 DEBUG transport.py 558 DEBUG Next steps: transport.py 558 DEBUG 1. You must make sure these network ports are open: transport.py 558 DEBUG TCP Ports: transport.py 558 DEBUG * 80, 443: HTTP/HTTPS transport.py 558 DEBUG * 389, 636: LDAP/LDAPS transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG UDP Ports: transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG * 123: ntp transport.py 558 DEBUG transport.py 558 DEBUG 2. You can now obtain a kerberos ticket using the command: 'kinit admin' transport.py 558 DEBUG This ticket will allow you to use the IPA tools (e.g., ipa user-add) transport.py 558 DEBUG and the web user interface. transport.py 558 DEBUG transport.py 558 DEBUG Be sure to back up the CA certificates stored in /root/cacert.p12 transport.py 558 DEBUG These files are required to create replicas. The password for these transport.py 558 DEBUG files is the Directory Manager password transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-mod', 'ipa.test', '--default-ttl', '1', '--ttl', '1'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-mod', 'ipa.test', '--default-ttl', '1', '--ttl', '1'] transport.py 558 DEBUG ipa: WARNING: Service named-pkcs11.service requires restart on IPA server <all IPA DNS servers> to apply configuration changes. transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560706906 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Time to live: 1 transport.py 558 DEBUG Default time to live: 1 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'master.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'master.ipa.test.'] transport.py 558 DEBUG Record name: master transport.py 558 DEBUG A record: 192.168.121.170 transport.py 558 DEBUG SSHFP record: 4 1 4F7CB9F257C1B4461C93751DDFC777284E657D89, 4 2 7A74A426909F7B8CD81300F54AEB525945310EFE18EB683DFE9CB94E 6524A6FA, 3 1 6C7898369DEC88E6CC46992711FCC9BFE9ABDF2D, 3 2 7C251C1C297FB815344A9F9580C9E24D030A7B5E11FADCFB974C95CF 4E0B5E80, 1 1 CCC8A4E5E103BCEB646638774263D32033793F6C, 1 2 38C5F8C23CD83B1E7FD7497933E957AA53C0D9EC3C79376E713D196A 7BF42D27 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica1.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica1.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica1.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica1.ipa.test.', '--a-rec', '192.168.121.21'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica1.ipa.test.', '--a-rec', '192.168.121.21'] transport.py 558 DEBUG Record name: replica1 transport.py 558 DEBUG A record: 192.168.121.21 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica0.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica0.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica0.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica0.ipa.test.', '--a-rec', '192.168.121.131'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica0.ipa.test.', '--a-rec', '192.168.121.131'] transport.py 558 DEBUG Record name: replica0 transport.py 558 DEBUG A record: 192.168.121.131 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica2.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica2.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica2.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica2.ipa.test.', '--a-rec', '192.168.121.87'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica2.ipa.test.', '--a-rec', '192.168.121.87'] transport.py 558 DEBUG Record name: replica2 transport.py 558 DEBUG A record: 192.168.121.87 transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica1.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica1.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:50875 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:38623 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1567,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=5),("systemd",pid=1,fd=79)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=523,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:871 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:40592 [::]:* transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=7),("systemd",pid=1,fd=81)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:47331 [::]:* users:(("rpc.statd",pid=1967,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=523,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:36927 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40169 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=4),("systemd",pid=1,fd=78)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=584,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.21:22 192.168.121.201:41150 users:(("sshd",pid=14456,fd=5),("sshd",pid=14454,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:33213 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:45123 [::]:* users:(("rpc.statd",pid=1967,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=6),("systemd",pid=1,fd=80)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=584,fd=7)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG Allow PTR sync: TRUE transport.py 558 DEBUG IPA DNS servers: master.ipa.test transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica1.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:50875 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:38623 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1567,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=5),("systemd",pid=1,fd=79)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=523,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:871 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:40592 [::]:* transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=7),("systemd",pid=1,fd=81)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:47331 [::]:* users:(("rpc.statd",pid=1967,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=523,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:36927 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40169 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=4),("systemd",pid=1,fd=78)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=584,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.21:22 192.168.121.201:41150 users:(("sshd",pid=14456,fd=5),("sshd",pid=14454,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:33213 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:45123 [::]:* users:(("rpc.statd",pid=1967,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=6),("systemd",pid=1,fd=80)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=584,fd=7)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica1.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica1.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica1.ipa.test: 192.168.121.21. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.21. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560706917 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.21', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.21', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica1.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.21 (replica1.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica1.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica0.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43313 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=497,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43721 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:840 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=497,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:50912 [::]:* users:(("rpc.statd",pid=1936,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:38846 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45841 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:47377 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=532,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.131:22 192.168.121.201:39374 users:(("sshd",pid=14417,fd=5),("sshd",pid=14415,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:55761 [::]:* users:(("rpc.statd",pid=1936,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:37427 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=532,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43313 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=497,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43721 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:840 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=497,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:50912 [::]:* users:(("rpc.statd",pid=1936,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:38846 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45841 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:47377 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=532,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.131:22 192.168.121.201:39374 users:(("sshd",pid=14417,fd=5),("sshd",pid=14415,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:55761 [::]:* users:(("rpc.statd",pid=1936,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:37427 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=532,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica0.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica0.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica0.ipa.test: 192.168.121.131. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.131. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560707674 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.131', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.131', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica0.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.131 (replica0.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica0.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica1.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica2.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica2.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55152 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55267 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=8)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1548,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=496,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:855 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=496,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39270 [::]:* users:(("rpc.statd",pid=1949,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39470 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=551,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:33155 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40581 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=10)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.87:22 192.168.121.201:36114 users:(("sshd",pid=14439,fd=5),("sshd",pid=14437,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=551,fd=7)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:33721 [::]:* users:(("rpc.statd",pid=1949,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:38983 [::]:* transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica2.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55152 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55267 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=8)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1548,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=496,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:855 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=496,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39270 [::]:* users:(("rpc.statd",pid=1949,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39470 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=551,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:33155 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40581 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=10)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.87:22 192.168.121.201:36114 users:(("sshd",pid=14439,fd=5),("sshd",pid=14437,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=551,fd=7)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:33721 [::]:* users:(("rpc.statd",pid=1949,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:38983 [::]:* transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica2.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica2.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica2.ipa.test: 192.168.121.87. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.87. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560708486 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.87', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.87', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica2.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.87 (replica2.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [error] CalledProcessError: CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') transport.py 558 DEBUG Your system may be partly configured. transport.py 558 DEBUG Run /usr/sbin/ipa-server-install --uninstall to clean up. transport.py 558 DEBUG transport.py 558 DEBUG CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') transport.py 558 DEBUG The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information transport.py 217 DEBUG Exit code: 1 host.py 74 ERROR stderr: Lookup failed: Preferred host replica2.ipa.test does not provide DNS. Reverse DNS resolution of address 192.168.121.87 (replica2.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) Custodia uses 'master.ipa.test' as master peer. CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information---------------------------- Captured log teardown -----------------------------
__init__.py 134 INFO Collecting logs from: master.ipa.test transport.py 318 INFO RUN ['mktemp'] transport.py 513 DEBUG RUN ['mktemp'] transport.py 558 DEBUG /tmp/tmp.ZxIHmPLtri transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['tar', 'cJvf', '/tmp/tmp.ZxIHmPLtri', '--ignore-failed-read', '/ipatests/env.sh', '/var/log/dirsrv/slapd-IPA-TEST/errors', '/var/log/dirsrv/slapd-IPA-TEST/access', '/var/log/ipaserver-install.log', '/var/log/ipaserver-uninstall.log', '/var/log/ipaclient-install.log', '/var/log/ipaclient-uninstall.log', '/var/log/ipareplica-install.log', '/var/log/ipareplica-conncheck.log', '/var/log/ipareplica-ca-install.log', '/var/log/ipaserver-kra-install.log', '/var/log/ipa-custodia.audit.log', '/var/log/ipaclient-uninstall.log', '/var/log/iparestore.log', '/var/log/ipabackup.log', '/var/log/kadmind.log', '/var/log/krb5kdc.log', '/var/log/httpd/error_log', '/var/log/pki/', '/var/log/audit/audit.log', '/ipatests/env.sh', '/var/log/sssd'] transport.py 513 DEBUG RUN ['tar', 'cJvf', '/tmp/tmp.ZxIHmPLtri', '--ignore-failed-read', '/ipatests/env.sh', '/var/log/dirsrv/slapd-IPA-TEST/errors', '/var/log/dirsrv/slapd-IPA-TEST/access', '/var/log/ipaserver-install.log', '/var/log/ipaserver-uninstall.log', '/var/log/ipaclient-install.log', '/var/log/ipaclient-uninstall.log', '/var/log/ipareplica-install.log', '/var/log/ipareplica-conncheck.log', '/var/log/ipareplica-ca-install.log', '/var/log/ipaserver-kra-install.log', '/var/log/ipa-custodia.audit.log', '/var/log/ipaclient-uninstall.log', '/var/log/iparestore.log', '/var/log/ipabackup.log', '/var/log/kadmind.log', '/var/log/krb5kdc.log', '/var/log/httpd/error_log', '/var/log/pki/', '/var/log/audit/audit.log', '/ipatests/env.sh', '/var/log/sssd'] transport.py 558 DEBUG tar: Removing leading `/' from member names transport.py 558 DEBUG tar: Removing leading `/' from hard link targets transport.py 558 DEBUG tar: /var/log/ipaserver-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaclient-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-conncheck.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-ca-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaserver-kra-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaclient-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/iparestore.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipabackup.log: Warning: Cannot stat: No such file or directory transport.py 217 DEBUG Exit code: 0 transport.py 284 DEBUG READ /tmp/tmp.ZxIHmPLtri transport.py 318 INFO RUN ['rm', '-f', '/tmp/tmp.ZxIHmPLtri'] transport.py 513 DEBUG RUN ['rm', '-f', '/tmp/tmp.ZxIHmPLtri'] transport.py 217 DEBUG Exit code: 0 __init__.py 134 INFO Collecting logs from: replica1.ipa.test transport.py 1746 ERROR Socket exception: No route to host (113) __init__.py 134 INFO Collecting logs from: master.ipa.test transport.py 318 INFO RUN ['mktemp'] transport.py 513 DEBUG RUN ['mktemp'] transport.py 558 DEBUG /tmp/tmp.F8PcLrJ8Rx transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['tar', 'cJvf', '/tmp/tmp.F8PcLrJ8Rx', '--ignore-failed-read', '/ipatests/env.sh', '/var/log/dirsrv/slapd-IPA-TEST/errors', '/var/log/dirsrv/slapd-IPA-TEST/access', '/var/log/ipaserver-install.log', '/var/log/ipaserver-uninstall.log', '/var/log/ipaclient-install.log', '/var/log/ipaclient-uninstall.log', '/var/log/ipareplica-install.log', '/var/log/ipareplica-conncheck.log', '/var/log/ipareplica-ca-install.log', '/var/log/ipaserver-kra-install.log', '/var/log/ipa-custodia.audit.log', '/var/log/ipaclient-uninstall.log', '/var/log/iparestore.log', '/var/log/ipabackup.log', '/var/log/kadmind.log', '/var/log/krb5kdc.log', '/var/log/httpd/error_log', '/var/log/pki/', '/var/log/audit/audit.log', '/ipatests/env.sh', '/var/log/sssd'] transport.py 513 DEBUG RUN ['tar', 'cJvf', '/tmp/tmp.F8PcLrJ8Rx', '--ignore-failed-read', '/ipatests/env.sh', '/var/log/dirsrv/slapd-IPA-TEST/errors', '/var/log/dirsrv/slapd-IPA-TEST/access', '/var/log/ipaserver-install.log', '/var/log/ipaserver-uninstall.log', '/var/log/ipaclient-install.log', '/var/log/ipaclient-uninstall.log', '/var/log/ipareplica-install.log', '/var/log/ipareplica-conncheck.log', '/var/log/ipareplica-ca-install.log', '/var/log/ipaserver-kra-install.log', '/var/log/ipa-custodia.audit.log', '/var/log/ipaclient-uninstall.log', '/var/log/iparestore.log', '/var/log/ipabackup.log', '/var/log/kadmind.log', '/var/log/krb5kdc.log', '/var/log/httpd/error_log', '/var/log/pki/', '/var/log/audit/audit.log', '/ipatests/env.sh', '/var/log/sssd'] transport.py 558 DEBUG tar: Removing leading `/' from member names transport.py 558 DEBUG tar: Removing leading `/' from hard link targets transport.py 558 DEBUG tar: /var/log/ipaserver-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaclient-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-conncheck.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipareplica-ca-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaserver-kra-install.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipaclient-uninstall.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/iparestore.log: Warning: Cannot stat: No such file or directory transport.py 558 DEBUG tar: /var/log/ipabackup.log: Warning: Cannot stat: No such file or directory transport.py 217 DEBUG Exit code: 0 transport.py 284 DEBUG READ /tmp/tmp.F8PcLrJ8Rx transport.py 318 INFO RUN ['rm', '-f', '/tmp/tmp.F8PcLrJ8Rx'] transport.py 513 DEBUG RUN ['rm', '-f', '/tmp/tmp.F8PcLrJ8Rx'] transport.py 217 DEBUG Exit code: 0 __init__.py 134 INFO Collecting logs from: replica1.ipa.test transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-server-install', '--uninstall', '-U', '--ignore-topology-disconnect', '--ignore-last-of-role'] transport.py 513 DEBUG RUN ['ipa-server-install', '--uninstall', '-U', '--ignore-topology-disconnect', '--ignore-last-of-role'] transport.py 558 DEBUG Deleting this server will leave your installation without a CRL generation master. transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG Forcing removal of master.ipa.test transport.py 558 DEBUG Ignoring topology connectivity errors. transport.py 558 DEBUG Deleting this server will leave your installation without a DNS. transport.py 558 DEBUG Ignoring these warnings and proceeding with removal transport.py 558 DEBUG ------------------------------------ transport.py 558 DEBUG Deleted IPA server "master.ipa.test" transport.py 558 DEBUG ------------------------------------ transport.py 558 DEBUG Shutting down all IPA services transport.py 558 DEBUG Unconfiguring CA transport.py 558 DEBUG Unconfiguring named transport.py 558 DEBUG Unconfiguring ipa-dnskeysyncd transport.py 558 DEBUG Unconfiguring web server transport.py 558 DEBUG Unconfiguring krb5kdc transport.py 558 DEBUG Unconfiguring kadmin transport.py 558 DEBUG Unconfiguring directory server transport.py 558 DEBUG Unconfiguring ipa-custodia transport.py 558 DEBUG Unconfiguring ipa-otpd transport.py 558 DEBUG Removing Kerberos service principals from /etc/krb5.keytab transport.py 558 DEBUG Disabling client Kerberos and LDAP configurations transport.py 558 DEBUG Redundant SSSD configuration file /etc/sssd/sssd.conf was moved to /etc/sssd/sssd.conf.deleted transport.py 558 DEBUG Restoring client configuration files transport.py 558 DEBUG Unconfiguring the NIS domain. transport.py 558 DEBUG nscd daemon is not installed, skip configuration transport.py 558 DEBUG nslcd daemon is not installed, skip configuration transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Client uninstall complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG The ipa-server-install command was successful transport.py 558 DEBUG Removing IPA client configuration transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['pkidestroy', '-s', 'CA', '-i', 'pki-tomcat'] transport.py 513 DEBUG RUN ['pkidestroy', '-s', 'CA', '-i', 'pki-tomcat'] transport.py 558 DEBUG ERROR: PKI instance '/var/lib/pki/pki-tomcat' does NOT exist! transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 255 transport.py 318 INFO RUN ['rm', '-rf', '/var/log/pki/pki-tomcat', '/etc/sysconfig/pki-tomcat', '/etc/sysconfig/pki/tomcat/pki-tomcat', '/var/lib/pki/pki-tomcat', '/etc/pki/pki-tomcat', '/var/run/ipa/renewal.lock', '/var/lib/ipa/replica-info-master.ipa.test.gpg'] transport.py 513 DEBUG RUN ['rm', '-rf', '/var/log/pki/pki-tomcat', '/etc/sysconfig/pki-tomcat', '/etc/sysconfig/pki/tomcat/pki-tomcat', '/var/lib/pki/pki-tomcat', '/etc/pki/pki-tomcat', '/var/run/ipa/renewal.lock', '/var/lib/ipa/replica-info-master.ipa.test.gpg'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/keytabs -name '*.keytab' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/keytabs -name '*.keytab' | xargs rm -fv transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /run/ipa -name 'krb5*' | xargs rm -fv transport.py 513 DEBUG RUN find /run/ipa -name 'krb5*' | xargs rm -fv transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN if [ -d '/ipatests/file_backup'/ ]; then cp -arvf '/ipatests/file_backup'/* /; fi ; (find /ipatests/file_backup | sed 's/\/ipatests\/file_backup//g' | sed '/^$/d' | xargs -d ' ' /sbin/restorecon -v ||:) transport.py 513 DEBUG RUN if [ -d '/ipatests/file_backup'/ ]; then cp -arvf '/ipatests/file_backup'/* /; fi ; (find /ipatests/file_backup | sed 's/\/ipatests\/file_backup//g' | sed '/^$/d' | xargs -d ' ' /sbin/restorecon -v ||:) transport.py 558 DEBUG '/ipatests/file_backup/etc/hostname' -> '/etc/hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['xargs', '-d', '\\n', '-a', '/ipatests/file_remove', 'rm', '-vf'] transport.py 513 DEBUG RUN ['xargs', '-d', '\\n', '-a', '/ipatests/file_remove', 'rm', '-vf'] transport.py 558 DEBUG xargs: Cannot open input file ‘/ipatests/file_remove’: No such file or directory transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['rm', '-rvf', '/ipatests/file_backup', '/ipatests/file_remove'] transport.py 513 DEBUG RUN ['rm', '-rvf', '/ipatests/file_backup', '/ipatests/file_remove'] transport.py 558 DEBUG removed '/ipatests/file_backup/etc/hostname' transport.py 558 DEBUG removed directory '/ipatests/file_backup/etc' transport.py 558 DEBUG removed directory '/ipatests/file_backup' transport.py 217 DEBUG Exit code: 0 transport.py 284 DEBUG READ /ipatests/backup_hostname transport.py 318 INFO RUN ['hostname', 'master.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'master.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '/ipatests/backup_hostname'] transport.py 513 DEBUG RUN ['rm', '/ipatests/backup_hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kdestroy', '-A'] transport.py 513 DEBUG RUN ['kdestroy', '-A'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-rvf', '/ipatests'] transport.py 513 DEBUG RUN ['rm', '-rvf', '/ipatests'] transport.py 558 DEBUG removed '/ipatests/env.sh' transport.py 558 DEBUG removed directory '/ipatests' transport.py 217 DEBUG Exit code: 0
Failed test_replication_layouts.py::TestStarTopologyWithCA::()::test_star_topology_with_ca 4569.46
self = <ipatests.test_integration.test_replication_layouts.TestStarTopologyWithCA object at 0x7f3d41f4c710>

def test_star_topology_with_ca(self):
tasks.install_topo('star', self.master, self.replicas, [],
> setup_replica_cas=True)

/usr/lib/python3.7/site-packages/ipatests/test_integration/test_replication_layouts.py:81:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/tasks.py:1232: in install_topo
setup_kra=setup_replica_kras
/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/tasks.py:482: in install_replica
stdin_text=stdin_text)
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _

self = <ipatests.pytest_ipa.integration.host.Host replica2.ipa.test (replica)>
argv = ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', ...]
set_env = True, stdin_text = None, log_stdout = True, raiseonerr = True
cwd = None, bg = False, encoding = 'utf-8'

def run_command(self, argv, set_env=True, stdin_text=None,
log_stdout=True, raiseonerr=True,
cwd=None, bg=False, encoding='utf-8'):
# Wrap run_command to log stderr on raiseonerr=True
result = super(Host, self).run_command(
argv, set_env=set_env, stdin_text=stdin_text,
log_stdout=log_stdout, raiseonerr=False, cwd=cwd, bg=bg,
encoding=encoding
)
if result.returncode and raiseonerr:
result.log.error('stderr: %s', result.stderr_text)
raise subprocess.CalledProcessError(
result.returncode, argv,
> result.stderr_text
)
E subprocess.CalledProcessError: Command '['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.87', '--realm', 'IPA.TEST', '--domain', 'ipa.test']' returned non-zero exit status 1.

/usr/lib/python3.7/site-packages/ipatests/pytest_ipa/integration/host.py:77: CalledProcessError
------------------------------ Captured log setup ------------------------------
__init__.py 267 INFO Preparing host master.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica1.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica0.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 267 INFO Preparing host replica2.ipa.test transport.py 1746 INFO Connected (version 2.0, client OpenSSH_7.9) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1746 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 158 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh------------------------------ Captured log call -------------------------------
__init__.py 261 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding master.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'master.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'master.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:45721 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:839 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:54957 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1934,fd=5),("systemd",pid=1,fd=98)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=505,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:54085 [::]:* users:(("rpc.statd",pid=1935,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1934,fd=7),("systemd",pid=1,fd=100)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=505,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:41313 [::]:* transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45389 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:60015 0.0.0.0:* users:(("rpc.statd",pid=1935,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1934,fd=4),("systemd",pid=1,fd=97)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=530,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:22 192.168.121.1:44844 users:(("sshd",pid=13885,fd=5),("sshd",pid=13876,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:715 192.168.121.1:2049 transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.170:22 192.168.121.201:33270 users:(("sshd",pid=14426,fd=5),("sshd",pid=14424,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:35397 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1934,fd=6),("systemd",pid=1,fd=99)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:40117 [::]:* users:(("rpc.statd",pid=1935,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=530,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '192.168.121.1', '--auto-reverse'] transport.py 513 DEBUG RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '192.168.121.1', '--auto-reverse'] transport.py 558 DEBUG Checking DNS domain ipa.test, please wait ... transport.py 558 DEBUG Checking DNS domain ipa.test., please wait ... transport.py 558 DEBUG Checking DNS domain 121.168.192.in-addr.arpa., please wait ... transport.py 558 DEBUG Reverse zone 121.168.192.in-addr.arpa. will be created transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Checking DNS domain ipa.test, please wait ... transport.py 558 DEBUG transport.py 558 DEBUG The log file for this installation can be found in /var/log/ipaserver-install.log transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG This program will set up the FreeIPA Server. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG This includes: transport.py 558 DEBUG * Configure a stand-alone CA (dogtag) for certificate management transport.py 558 DEBUG * Configure the NTP client (chronyd) transport.py 558 DEBUG * Create and configure an instance of Directory Server transport.py 558 DEBUG * Create and configure a Kerberos Key Distribution Center (KDC) transport.py 558 DEBUG * Configure Apache (httpd) transport.py 558 DEBUG * Configure DNS (bind) transport.py 558 DEBUG * Configure the KDC to enable PKINIT transport.py 558 DEBUG transport.py 558 DEBUG Warning: skipping DNS resolution of host master.ipa.test transport.py 558 DEBUG Checking DNS forwarders, please wait ... transport.py 558 DEBUG Using reverse zone(s) 121.168.192.in-addr.arpa. transport.py 558 DEBUG transport.py 558 DEBUG The IPA Master Server will be configured with: transport.py 558 DEBUG Hostname: master.ipa.test transport.py 558 DEBUG IP address(es): 192.168.121.170 transport.py 558 DEBUG Domain name: ipa.test transport.py 558 DEBUG Realm name: IPA.TEST transport.py 558 DEBUG transport.py 558 DEBUG The CA will be configured with: transport.py 558 DEBUG Subject DN: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Subject base: O=IPA.TEST transport.py 558 DEBUG Chaining: self-signed transport.py 558 DEBUG transport.py 558 DEBUG BIND DNS server will be configured to serve IPA domain with: transport.py 558 DEBUG Forwarders: 192.168.121.1 transport.py 558 DEBUG Forward policy: only transport.py 558 DEBUG Reverse zone(s): 121.168.192.in-addr.arpa. transport.py 558 DEBUG transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG Warning: IPA was unable to sync time with chrony! transport.py 558 DEBUG Time synchronization is required for IPA to work correctly transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/45]: creating directory server instance transport.py 558 DEBUG [2/45]: enabling ldapi transport.py 558 DEBUG [3/45]: configure autobind for root transport.py 558 DEBUG [4/45]: stopping directory server transport.py 558 DEBUG [5/45]: updating configuration in dse.ldif transport.py 558 DEBUG [6/45]: starting directory server transport.py 558 DEBUG [7/45]: adding default schema transport.py 558 DEBUG [8/45]: enabling memberof plugin transport.py 558 DEBUG [9/45]: enabling winsync plugin transport.py 558 DEBUG [10/45]: configure password logging transport.py 558 DEBUG [11/45]: configuring replication version plugin transport.py 558 DEBUG [12/45]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/45]: configuring uniqueness plugin transport.py 558 DEBUG [14/45]: configuring uuid plugin transport.py 558 DEBUG [15/45]: configuring modrdn plugin transport.py 558 DEBUG [16/45]: configuring DNS plugin transport.py 558 DEBUG [17/45]: enabling entryUSN plugin transport.py 558 DEBUG [18/45]: configuring lockout plugin transport.py 558 DEBUG [19/45]: configuring topology plugin transport.py 558 DEBUG [20/45]: creating indices transport.py 558 DEBUG [21/45]: enabling referential integrity plugin transport.py 558 DEBUG [22/45]: configuring certmap.conf transport.py 558 DEBUG [23/45]: configure new location for managed entries transport.py 558 DEBUG [24/45]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/45]: enabling SASL mapping fallback transport.py 558 DEBUG [26/45]: restarting directory server transport.py 558 DEBUG [27/45]: adding sasl mappings to the directory transport.py 558 DEBUG [28/45]: adding default layout transport.py 558 DEBUG [29/45]: adding delegation layout transport.py 558 DEBUG [30/45]: creating container for managed entries transport.py 558 DEBUG [31/45]: configuring user private groups transport.py 558 DEBUG [32/45]: configuring netgroups from hostgroups transport.py 558 DEBUG [33/45]: creating default Sudo bind user transport.py 558 DEBUG [34/45]: creating default Auto Member layout transport.py 558 DEBUG [35/45]: adding range check plugin transport.py 558 DEBUG [36/45]: creating default HBAC rule allow_all transport.py 558 DEBUG [37/45]: adding entries for topology management transport.py 558 DEBUG [38/45]: initializing group membership transport.py 558 DEBUG [39/45]: adding master entry transport.py 558 DEBUG [40/45]: initializing domain level transport.py 558 DEBUG [41/45]: configuring Posix uid/gid generation transport.py 558 DEBUG [42/45]: adding replication acis transport.py 558 DEBUG [43/45]: activating sidgen plugin transport.py 558 DEBUG [44/45]: activating extdom plugin transport.py 558 DEBUG [45/45]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/10]: adding kerberos container to the directory transport.py 558 DEBUG [2/10]: configuring KDC transport.py 558 DEBUG [3/10]: initialize kerberos container transport.py 558 DEBUG [4/10]: adding default ACIs transport.py 558 DEBUG [5/10]: creating a keytab for the directory transport.py 558 DEBUG [6/10]: creating a keytab for the machine transport.py 558 DEBUG [7/10]: adding the password extension to the directory transport.py 558 DEBUG [8/10]: creating anonymous principal transport.py 558 DEBUG [9/10]: starting the KDC transport.py 558 DEBUG [10/10]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/5]: Making sure custodia container exists transport.py 558 DEBUG [2/5]: Generating ipa-custodia config file transport.py 558 DEBUG [3/5]: Generating ipa-custodia keys transport.py 558 DEBUG [4/5]: starting ipa-custodia transport.py 558 DEBUG [5/5]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: configuring certificate server instance transport.py 558 DEBUG [2/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [3/30]: reindex attributes transport.py 558 DEBUG [4/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [5/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [6/30]: backing up CS.cfg transport.py 558 DEBUG [7/30]: disabling nonces transport.py 558 DEBUG [8/30]: set up CRL publishing transport.py 558 DEBUG [9/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [10/30]: starting certificate server instance transport.py 558 DEBUG [11/30]: configure certmonger for renewals transport.py 558 DEBUG [12/30]: requesting RA certificate from CA transport.py 558 DEBUG [13/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [14/30]: restarting certificate server transport.py 558 DEBUG [15/30]: publishing the CA certificate transport.py 558 DEBUG [16/30]: adding RA agent as a trusted user transport.py 558 DEBUG [17/30]: authorizing RA to modify profiles transport.py 558 DEBUG [18/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [19/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [20/30]: configure certificate renewals transport.py 558 DEBUG [21/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [22/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [23/30]: restarting certificate server transport.py 558 DEBUG [24/30]: updating IPA configuration transport.py 558 DEBUG [25/30]: enabling CA instance transport.py 558 DEBUG [26/30]: migrating certificate profiles to LDAP transport.py 558 DEBUG [27/30]: importing IPA certificate profiles transport.py 558 DEBUG [28/30]: adding default CA ACL transport.py 558 DEBUG [29/30]: adding 'ipa' CA entry transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: adding CA certificate entry transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG Configuring DNS (named) transport.py 558 DEBUG [1/12]: generating rndc key file transport.py 558 DEBUG [2/12]: adding DNS container transport.py 558 DEBUG [3/12]: setting up our zone transport.py 558 DEBUG [4/12]: setting up reverse zone transport.py 558 DEBUG [5/12]: setting up our own record transport.py 558 DEBUG [6/12]: setting up records for other masters transport.py 558 DEBUG [7/12]: adding NS record to the zones transport.py 558 DEBUG [8/12]: setting up kerberos principal transport.py 558 DEBUG [9/12]: setting up named.conf transport.py 558 DEBUG [10/12]: setting up server configuration transport.py 558 DEBUG [11/12]: configuring named to start on boot transport.py 558 DEBUG [12/12]: changing resolv.conf to point to ourselves transport.py 558 DEBUG Done configuring DNS (named). transport.py 558 DEBUG Restarting the web server to pick up resolv.conf changes transport.py 558 DEBUG Configuring DNS key synchronization service (ipa-dnskeysyncd) transport.py 558 DEBUG [1/7]: checking status transport.py 558 DEBUG [2/7]: setting up bind-dyndb-ldap working directory transport.py 558 DEBUG [3/7]: setting up kerberos principal transport.py 558 DEBUG [4/7]: setting up SoftHSM transport.py 558 DEBUG [5/7]: adding DNSSEC containers transport.py 558 DEBUG [6/7]: creating replica keys transport.py 558 DEBUG [7/7]: configuring ipa-dnskeysyncd to start on boot transport.py 558 DEBUG Done configuring DNS key synchronization service (ipa-dnskeysyncd). transport.py 558 DEBUG Restarting ipa-dnskeysyncd transport.py 558 DEBUG Restarting named transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG Configuring client side components transport.py 558 DEBUG Using existing certificate '/etc/ipa/ca.crt'. transport.py 558 DEBUG Client hostname: master.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG The ipa-server-install command was successful transport.py 558 DEBUG transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG Setup complete transport.py 558 DEBUG transport.py 558 DEBUG Next steps: transport.py 558 DEBUG 1. You must make sure these network ports are open: transport.py 558 DEBUG TCP Ports: transport.py 558 DEBUG * 80, 443: HTTP/HTTPS transport.py 558 DEBUG * 389, 636: LDAP/LDAPS transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG UDP Ports: transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG * 123: ntp transport.py 558 DEBUG transport.py 558 DEBUG 2. You can now obtain a kerberos ticket using the command: 'kinit admin' transport.py 558 DEBUG This ticket will allow you to use the IPA tools (e.g., ipa user-add) transport.py 558 DEBUG and the web user interface. transport.py 558 DEBUG transport.py 558 DEBUG Be sure to back up the CA certificates stored in /root/cacert.p12 transport.py 558 DEBUG These files are required to create replicas. The password for these transport.py 558 DEBUG files is the Directory Manager password transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding master.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-mod', 'ipa.test', '--default-ttl', '1', '--ttl', '1'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-mod', 'ipa.test', '--default-ttl', '1', '--ttl', '1'] transport.py 558 DEBUG ipa: WARNING: Service named-pkcs11.service requires restart on IPA server <all IPA DNS servers> to apply configuration changes. transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560706906 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Time to live: 1 transport.py 558 DEBUG Default time to live: 1 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'master.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'master.ipa.test.'] transport.py 558 DEBUG Record name: master transport.py 558 DEBUG A record: 192.168.121.170 transport.py 558 DEBUG SSHFP record: 4 1 4F7CB9F257C1B4461C93751DDFC777284E657D89, 4 2 7A74A426909F7B8CD81300F54AEB525945310EFE18EB683DFE9CB94E 6524A6FA, 3 1 6C7898369DEC88E6CC46992711FCC9BFE9ABDF2D, 3 2 7C251C1C297FB815344A9F9580C9E24D030A7B5E11FADCFB974C95CF 4E0B5E80, 1 1 CCC8A4E5E103BCEB646638774263D32033793F6C, 1 2 38C5F8C23CD83B1E7FD7497933E957AA53C0D9EC3C79376E713D196A 7BF42D27 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica1.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica1.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica1.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica1.ipa.test.', '--a-rec', '192.168.121.21'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica1.ipa.test.', '--a-rec', '192.168.121.21'] transport.py 558 DEBUG Record name: replica1 transport.py 558 DEBUG A record: 192.168.121.21 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica0.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica0.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica0.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica0.ipa.test.', '--a-rec', '192.168.121.131'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica0.ipa.test.', '--a-rec', '192.168.121.131'] transport.py 558 DEBUG Record name: replica0 transport.py 558 DEBUG A record: 192.168.121.131 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica2.ipa.test.'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-show', 'ipa.test', 'replica2.ipa.test.'] transport.py 558 DEBUG ipa: ERROR: replica2.ipa.test.: DNS resource record not found transport.py 217 DEBUG Exit code: 2 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica2.ipa.test.', '--a-rec', '192.168.121.87'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', 'ipa.test', 'replica2.ipa.test.', '--a-rec', '192.168.121.87'] transport.py 558 DEBUG Record name: replica2 transport.py 558 DEBUG A record: 192.168.121.87 transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica1.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica1.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:50875 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:38623 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1567,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=5),("systemd",pid=1,fd=79)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=523,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:871 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:40592 [::]:* transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=7),("systemd",pid=1,fd=81)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:47331 [::]:* users:(("rpc.statd",pid=1967,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=523,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:36927 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40169 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=4),("systemd",pid=1,fd=78)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=584,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.21:22 192.168.121.201:41150 users:(("sshd",pid=14456,fd=5),("sshd",pid=14454,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:33213 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:45123 [::]:* users:(("rpc.statd",pid=1967,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=6),("systemd",pid=1,fd=80)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=584,fd=7)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica1.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG Allow PTR sync: TRUE transport.py 558 DEBUG IPA DNS servers: master.ipa.test transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica1.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:50875 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:38623 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1567,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=5),("systemd",pid=1,fd=79)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=523,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:871 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:40592 [::]:* transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=7),("systemd",pid=1,fd=81)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:47331 [::]:* users:(("rpc.statd",pid=1967,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=523,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:36927 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40169 0.0.0.0:* users:(("rpc.statd",pid=1967,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1966,fd=4),("systemd",pid=1,fd=78)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=584,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.21:22 192.168.121.201:41150 users:(("sshd",pid=14456,fd=5),("sshd",pid=14454,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:33213 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:45123 [::]:* users:(("rpc.statd",pid=1967,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1966,fd=6),("systemd",pid=1,fd=80)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=584,fd=7)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica1.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica1.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica1.ipa.test: 192.168.121.21. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.21. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560706917 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.21', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.21', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica1.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.21 (replica1.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica1.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica1.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica0.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43313 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=497,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43721 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:840 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=497,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:50912 [::]:* users:(("rpc.statd",pid=1936,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:38846 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45841 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:47377 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=532,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.131:22 192.168.121.201:39374 users:(("sshd",pid=14417,fd=5),("sshd",pid=14415,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:55761 [::]:* users:(("rpc.statd",pid=1936,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:37427 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=532,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica0.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1543,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43313 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=497,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:43721 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:840 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=497,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:50912 [::]:* users:(("rpc.statd",pid=1936,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:38846 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1935,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:45841 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:47377 0.0.0.0:* users:(("rpc.statd",pid=1936,fd=10)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=532,fd=3)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.131:22 192.168.121.201:39374 users:(("sshd",pid=14417,fd=5),("sshd",pid=14415,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1935,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:55761 [::]:* users:(("rpc.statd",pid=1936,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:37427 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=532,fd=4)) transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica0.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica0.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica0.ipa.test: 192.168.121.131. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.131. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560707674 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.131', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.131', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica0.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.131 (replica0.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica0.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name replica1.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 297 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 tasks.py 1228 INFO Installing replica <Host replica2.ipa.test (replica)> from <Host master.ipa.test (master)> transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica2.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55152 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55267 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=8)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1548,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=496,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:855 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=496,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39270 [::]:* users:(("rpc.statd",pid=1949,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39470 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=551,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:33155 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40581 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=10)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.87:22 192.168.121.201:36114 users:(("sshd",pid=14439,fd=5),("sshd",pid=14437,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=551,fd=7)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:33721 [::]:* users:(("rpc.statd",pid=1949,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:38983 [::]:* transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 261 INFO Adding replica2.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica2.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55152 0.0.0.0:* transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:55267 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=8)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:68 0.0.0.0:* users:(("dhclient",pid=1548,fd=7)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=5),("systemd",pid=1,fd=102)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=496,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:855 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=9)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=7),("systemd",pid=1,fd=104)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=496,fd=6)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39270 [::]:* users:(("rpc.statd",pid=1949,fd=11)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:39470 [::]:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=1948,fd=4),("systemd",pid=1,fd=101)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=551,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 64 0.0.0.0:33155 0.0.0.0:* transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:40581 0.0.0.0:* users:(("rpc.statd",pid=1949,fd=10)) transport.py 558 DEBUG tcp ESTAB 0 0 192.168.121.87:22 192.168.121.201:36114 users:(("sshd",pid=14439,fd=5),("sshd",pid=14437,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=1948,fd=6),("systemd",pid=1,fd=103)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=551,fd=7)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:33721 [::]:* users:(("rpc.statd",pid=1949,fd=12)) transport.py 558 DEBUG tcp LISTEN 0 64 [::]:38983 [::]:* transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 217 DEBUG Exit code: 1 tasks.py 143 WARNING ipa: ERROR: DNS zone with name "121.168.192.in-addr.arpa." already exists transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica2.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2019-06-16 17:33:29 transport.py 558 DEBUG Valid Until: 2039-06-16 17:33:29 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica2.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica2.ipa.test: 192.168.121.87. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.87. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.2.dev transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 261 INFO Adding replica2.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1560708486 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.87', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '192.168.121.87', '--realm', 'IPA.TEST', '--domain', 'ipa.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica2.ipa.test does not provide DNS. transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.87 (replica2.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/42]: creating directory server instance transport.py 558 DEBUG [2/42]: enabling ldapi transport.py 558 DEBUG [3/42]: configure autobind for root transport.py 558 DEBUG [4/42]: stopping directory server transport.py 558 DEBUG [5/42]: updating configuration in dse.ldif transport.py 558 DEBUG [6/42]: starting directory server transport.py 558 DEBUG [7/42]: adding default schema transport.py 558 DEBUG [8/42]: enabling memberof plugin transport.py 558 DEBUG [9/42]: enabling winsync plugin transport.py 558 DEBUG [10/42]: configure password logging transport.py 558 DEBUG [11/42]: configuring replication version plugin transport.py 558 DEBUG [12/42]: enabling IPA enrollment plugin transport.py 558 DEBUG [13/42]: configuring uniqueness plugin transport.py 558 DEBUG [14/42]: configuring uuid plugin transport.py 558 DEBUG [15/42]: configuring modrdn plugin transport.py 558 DEBUG [16/42]: configuring DNS plugin transport.py 558 DEBUG [17/42]: enabling entryUSN plugin transport.py 558 DEBUG [18/42]: configuring lockout plugin transport.py 558 DEBUG [19/42]: configuring topology plugin transport.py 558 DEBUG [20/42]: creating indices transport.py 558 DEBUG [21/42]: enabling referential integrity plugin transport.py 558 DEBUG [22/42]: configuring certmap.conf transport.py 558 DEBUG [23/42]: configure new location for managed entries transport.py 558 DEBUG [24/42]: configure dirsrv ccache and keytab transport.py 558 DEBUG [25/42]: enabling SASL mapping fallback transport.py 558 DEBUG [26/42]: restarting directory server transport.py 558 DEBUG [27/42]: creating DS keytab transport.py 558 DEBUG [28/42]: ignore time skew for initial replication transport.py 558 DEBUG [29/42]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [30/42]: prevent time skew after initial replication transport.py 558 DEBUG [31/42]: adding sasl mappings to the directory transport.py 558 DEBUG [32/42]: updating schema transport.py 558 DEBUG [33/42]: setting Auto Member configuration transport.py 558 DEBUG [34/42]: enabling S4U2Proxy delegation transport.py 558 DEBUG [35/42]: initializing group membership transport.py 558 DEBUG [36/42]: adding master entry transport.py 558 DEBUG [37/42]: initializing domain level transport.py 558 DEBUG [38/42]: configuring Posix uid/gid generation transport.py 558 DEBUG [39/42]: adding replication acis transport.py 558 DEBUG [40/42]: activating sidgen plugin transport.py 558 DEBUG [41/42]: activating extdom plugin transport.py 558 DEBUG [42/42]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: reindex attributes transport.py 558 DEBUG [8/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [9/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [10/30]: backing up CS.cfg transport.py 558 DEBUG [11/30]: disabling nonces transport.py 558 DEBUG [12/30]: set up CRL publishing transport.py 558 DEBUG [13/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [14/30]: destroying installation admin user transport.py 558 DEBUG [15/30]: starting certificate server instance transport.py 558 DEBUG [16/30]: Finalize replication settings transport.py 558 DEBUG [17/30]: configure certmonger for renewals transport.py 558 DEBUG [18/30]: Importing RA key transport.py 558 DEBUG [19/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [20/30]: restarting certificate server transport.py 558 DEBUG [21/30]: authorizing RA to modify profiles transport.py 558 DEBUG [22/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [23/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [24/30]: configure certificate renewals transport.py 558 DEBUG [25/30]: configure Server-Cert certificate renewal transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [error] CalledProcessError: CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') transport.py 558 DEBUG Your system may be partly configured. transport.py 558 DEBUG Run /usr/sbin/ipa-server-install --uninstall to clean up. transport.py 558 DEBUG transport.py 558 DEBUG CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') transport.py 558 DEBUG The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information transport.py 217 DEBUG Exit code: 1 host.py 74 ERROR stderr: Lookup failed: Preferred host replica2.ipa.test does not provide DNS. Reverse DNS resolution of address 192.168.121.87 (replica2.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) Custodia uses 'master.ipa.test' as master peer. CalledProcessError(Command ['/bin/systemctl', 'restart', 'pki-tomcatd@pki-tomcat.service'] returned non-zero exit status 1: 'Job for pki-tomcatd@pki-tomcat.service failed.\nSee "systemctl status pki-tomcatd@pki-tomcat.service" and "journalctl -xe" for details.\n') The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information