report.html

Report generated on 13-Nov-2018 at 07:54:43 by pytest-html v1.19.0

Environment

Packages {'pytest': '3.4.2', 'py': '1.5.4', 'pluggy': '0.6.0'}
Platform Linux-4.17.19-200.fc28.x86_64-x86_64-with-fedora-28-Twenty_Eight
Plugins {'metadata': '1.7.0', 'html': '1.19.0', 'sourceorder': '0.5', 'multihost': '3.0'}
Python 3.6.6

Summary

2 tests ran in 1340.41 seconds.

2 passed, 0 skipped, 0 failed, 0 errors, 0 expected failures, 0 unexpected passes

Results

Result Test Duration Links
Passed test_dnssec.py::TestInstallDNSSECFirst::()::test_sign_root_zone 9.91
------------------------------ Captured log setup ------------------------------
__init__.py 250 INFO Preparing host replica0.ipa.test transport.py 1687 INFO Connected (version 2.0, client OpenSSH_7.8) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1687 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 131 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 250 INFO Preparing host master.ipa.test transport.py 1687 INFO Connected (version 2.0, client OpenSSH_7.8) transport.py 247 DEBUG Authenticating with private RSA key using user root transport.py 1687 INFO Authentication (publickey) successful! transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG -bash: line 1: cd: /ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests sftp.py 131 INFO [chan 1] Opened sftp connection (server version 3) transport.py 301 DEBUG STAT / transport.py 312 INFO MKDIR /ipatests transport.py 293 INFO WRITE /ipatests/env.sh __init__.py 244 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 244 INFO Adding master.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding master.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'master.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'master.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U'] transport.py 513 DEBUG RUN ['ipa-server-install', '-n', 'ipa.test', '-r', 'IPA.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U'] transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG transport.py 558 DEBUG The log file for this installation can be found in /var/log/ipaserver-install.log transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG This program will set up the FreeIPA Server. transport.py 558 DEBUG Version 4.7.90test transport.py 558 DEBUG transport.py 558 DEBUG This includes: transport.py 558 DEBUG * Configure a stand-alone CA (dogtag) for certificate management transport.py 558 DEBUG * Configure the NTP client (chronyd) transport.py 558 DEBUG * Create and configure an instance of Directory Server transport.py 558 DEBUG * Create and configure a Kerberos Key Distribution Center (KDC) transport.py 558 DEBUG * Configure Apache (httpd) transport.py 558 DEBUG * Configure the KDC to enable PKINIT transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG The IPA Master Server will be configured with: transport.py 558 DEBUG Hostname: master.ipa.test transport.py 558 DEBUG IP address(es): 192.168.121.202 transport.py 558 DEBUG Domain name: ipa.test transport.py 558 DEBUG Realm name: IPA.TEST transport.py 558 DEBUG transport.py 558 DEBUG The CA will be configured with: transport.py 558 DEBUG Subject DN: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Subject base: O=IPA.TEST transport.py 558 DEBUG Chaining: self-signed transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG Warning: IPA was unable to sync time with chrony! transport.py 558 DEBUG Time synchronization is required for IPA to work correctly transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/44]: creating directory server instance transport.py 558 DEBUG [2/44]: enabling ldapi transport.py 558 DEBUG [3/44]: configure autobind for root transport.py 558 DEBUG [4/44]: stopping directory server transport.py 558 DEBUG [5/44]: updating configuration in dse.ldif transport.py 558 DEBUG [6/44]: starting directory server transport.py 558 DEBUG [7/44]: adding default schema transport.py 558 DEBUG [8/44]: enabling memberof plugin transport.py 558 DEBUG [9/44]: enabling winsync plugin transport.py 558 DEBUG [10/44]: configuring replication version plugin transport.py 558 DEBUG [11/44]: enabling IPA enrollment plugin transport.py 558 DEBUG [12/44]: configuring uniqueness plugin transport.py 558 DEBUG [13/44]: configuring uuid plugin transport.py 558 DEBUG [14/44]: configuring modrdn plugin transport.py 558 DEBUG [15/44]: configuring DNS plugin transport.py 558 DEBUG [16/44]: enabling entryUSN plugin transport.py 558 DEBUG [17/44]: configuring lockout plugin transport.py 558 DEBUG [18/44]: configuring topology plugin transport.py 558 DEBUG [19/44]: creating indices transport.py 558 DEBUG [20/44]: enabling referential integrity plugin transport.py 558 DEBUG [21/44]: configuring certmap.conf transport.py 558 DEBUG [22/44]: configure new location for managed entries transport.py 558 DEBUG [23/44]: configure dirsrv ccache transport.py 558 DEBUG [24/44]: enabling SASL mapping fallback transport.py 558 DEBUG [25/44]: restarting directory server transport.py 558 DEBUG [26/44]: adding sasl mappings to the directory transport.py 558 DEBUG [27/44]: adding default layout transport.py 558 DEBUG [28/44]: adding delegation layout transport.py 558 DEBUG [29/44]: creating container for managed entries transport.py 558 DEBUG [30/44]: configuring user private groups transport.py 558 DEBUG [31/44]: configuring netgroups from hostgroups transport.py 558 DEBUG [32/44]: creating default Sudo bind user transport.py 558 DEBUG [33/44]: creating default Auto Member layout transport.py 558 DEBUG [34/44]: adding range check plugin transport.py 558 DEBUG [35/44]: creating default HBAC rule allow_all transport.py 558 DEBUG [36/44]: adding entries for topology management transport.py 558 DEBUG [37/44]: initializing group membership transport.py 558 DEBUG [38/44]: adding master entry transport.py 558 DEBUG [39/44]: initializing domain level transport.py 558 DEBUG [40/44]: configuring Posix uid/gid generation transport.py 558 DEBUG [41/44]: adding replication acis transport.py 558 DEBUG [42/44]: activating sidgen plugin transport.py 558 DEBUG [43/44]: activating extdom plugin transport.py 558 DEBUG [44/44]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/10]: adding kerberos container to the directory transport.py 558 DEBUG [2/10]: configuring KDC transport.py 558 DEBUG [3/10]: initialize kerberos container transport.py 558 DEBUG [4/10]: adding default ACIs transport.py 558 DEBUG [5/10]: creating a keytab for the directory transport.py 558 DEBUG [6/10]: creating a keytab for the machine transport.py 558 DEBUG [7/10]: adding the password extension to the directory transport.py 558 DEBUG [8/10]: creating anonymous principal transport.py 558 DEBUG [9/10]: starting the KDC transport.py 558 DEBUG [10/10]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/5]: Making sure custodia container exists transport.py 558 DEBUG [2/5]: Generating ipa-custodia config file transport.py 558 DEBUG [3/5]: Generating ipa-custodia keys transport.py 558 DEBUG [4/5]: starting ipa-custodia transport.py 558 DEBUG [5/5]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/28]: configuring certificate server instance transport.py 558 DEBUG [2/28]: exporting Dogtag certificate store pin transport.py 558 DEBUG [3/28]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [4/28]: backing up CS.cfg transport.py 558 DEBUG [5/28]: disabling nonces transport.py 558 DEBUG [6/28]: set up CRL publishing transport.py 558 DEBUG [7/28]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [8/28]: starting certificate server instance transport.py 558 DEBUG [9/28]: configure certmonger for renewals transport.py 558 DEBUG [10/28]: requesting RA certificate from CA transport.py 558 DEBUG [11/28]: setting audit signing renewal to 2 years transport.py 558 DEBUG [12/28]: restarting certificate server transport.py 558 DEBUG [13/28]: publishing the CA certificate transport.py 558 DEBUG [14/28]: adding RA agent as a trusted user transport.py 558 DEBUG [15/28]: authorizing RA to modify profiles transport.py 558 DEBUG [16/28]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [17/28]: Ensure lightweight CAs container exists transport.py 558 DEBUG [18/28]: configure certificate renewals transport.py 558 DEBUG [19/28]: configure Server-Cert certificate renewal transport.py 558 DEBUG [20/28]: Configure HTTP to proxy connections transport.py 558 DEBUG [21/28]: restarting certificate server transport.py 558 DEBUG [22/28]: updating IPA configuration transport.py 558 DEBUG [23/28]: enabling CA instance transport.py 558 DEBUG [24/28]: migrating certificate profiles to LDAP transport.py 558 DEBUG [25/28]: importing IPA certificate profiles transport.py 558 DEBUG [26/28]: adding default CA ACL transport.py 558 DEBUG [27/28]: adding 'ipa' CA entry transport.py 558 DEBUG [28/28]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: adding CA certificate entry transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG Configuring client side components transport.py 558 DEBUG Using existing certificate '/etc/ipa/ca.crt'. transport.py 558 DEBUG Client hostname: master.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.90test transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG unable to resolve host name master.ipa.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG The ipa-server-install command was successful transport.py 558 DEBUG transport.py 558 DEBUG Please add records in this file to your DNS system: /tmp/ipa.system.records.ejx6igy6.db transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG Setup complete transport.py 558 DEBUG transport.py 558 DEBUG Next steps: transport.py 558 DEBUG 1. You must make sure these network ports are open: transport.py 558 DEBUG TCP Ports: transport.py 558 DEBUG * 80, 443: HTTP/HTTPS transport.py 558 DEBUG * 389, 636: LDAP/LDAPS transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG UDP Ports: transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 123: ntp transport.py 558 DEBUG transport.py 558 DEBUG 2. You can now obtain a kerberos ticket using the command: 'kinit admin' transport.py 558 DEBUG This ticket will allow you to use the IPA tools (e.g., ipa user-add) transport.py 558 DEBUG and the web user interface. transport.py 558 DEBUG transport.py 558 DEBUG Be sure to back up the CA certificates stored in /root/cacert.p12 transport.py 558 DEBUG These files are required to create replicas. The password for these transport.py 558 DEBUG files is the Directory Manager password transport.py 217 DEBUG Exit code: 0 tasks.py 267 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123', '-h', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123', '-h', 'master.ipa.test'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding master.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-dns-install', '--dnssec-master', '--forwarder', '192.168.121.1', '-U'] transport.py 513 DEBUG RUN ['ipa-dns-install', '--dnssec-master', '--forwarder', '192.168.121.1', '-U'] transport.py 558 DEBUG transport.py 558 DEBUG The log file for this installation can be found in /var/log/ipaserver-install.log transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG This program will setup DNS for the FreeIPA Server. transport.py 558 DEBUG transport.py 558 DEBUG This includes: transport.py 558 DEBUG * Configure DNS (bind) transport.py 558 DEBUG * Configure SoftHSM (required by DNSSEC) transport.py 558 DEBUG * Configure ipa-dnskeysyncd (required by DNSSEC) transport.py 558 DEBUG * Configure ipa-ods-exporter (required by DNSSEC key master) transport.py 558 DEBUG * Configure OpenDNSSEC (required by DNSSEC key master) transport.py 558 DEBUG * Generate DNSSEC master key (required by DNSSEC key master) transport.py 558 DEBUG transport.py 558 DEBUG NOTE: DNSSEC zone signing is not enabled by default transport.py 558 DEBUG transport.py 558 DEBUG Plan carefully, replacing DNSSEC key master is not recommended transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG To accept the default shown in brackets, press the Enter key. transport.py 558 DEBUG transport.py 558 DEBUG Checking DNS forwarders, please wait ... transport.py 558 DEBUG Configuring DNS (named) transport.py 558 DEBUG [1/11]: generating rndc key file transport.py 558 DEBUG [2/11]: adding DNS container transport.py 558 DEBUG [3/11]: setting up our zone transport.py 558 DEBUG [4/11]: setting up our own record transport.py 558 DEBUG [5/11]: setting up records for other masters transport.py 558 DEBUG [6/11]: adding NS record to the zones transport.py 558 DEBUG [7/11]: setting up kerberos principal transport.py 558 DEBUG [8/11]: setting up named.conf transport.py 558 DEBUG [9/11]: setting up server configuration transport.py 558 DEBUG [10/11]: configuring named to start on boot transport.py 558 DEBUG [11/11]: changing resolv.conf to point to ourselves transport.py 558 DEBUG Done configuring DNS (named). transport.py 558 DEBUG Restarting the web server to pick up resolv.conf changes transport.py 558 DEBUG Configuring DNS key synchronization service (ipa-dnskeysyncd) transport.py 558 DEBUG [1/7]: checking status transport.py 558 DEBUG [2/7]: setting up bind-dyndb-ldap working directory transport.py 558 DEBUG [3/7]: setting up kerberos principal transport.py 558 DEBUG [4/7]: setting up SoftHSM transport.py 558 DEBUG [5/7]: adding DNSSEC containers transport.py 558 DEBUG [6/7]: creating replica keys transport.py 558 DEBUG [7/7]: configuring ipa-dnskeysyncd to start on boot transport.py 558 DEBUG Done configuring DNS key synchronization service (ipa-dnskeysyncd). transport.py 558 DEBUG Configuring IPA OpenDNSSEC exporter daemon (ipa-ods-exporter) transport.py 558 DEBUG [1/6]: checking status transport.py 558 DEBUG [2/6]: setting up DNS Key Exporter transport.py 558 DEBUG [3/6]: setting up kerberos principal transport.py 558 DEBUG [4/6]: disabling default signer daemon transport.py 558 DEBUG [5/6]: starting DNS Key Exporter transport.py 558 DEBUG [6/6]: configuring DNS Key Exporter to start on boot transport.py 558 DEBUG Done configuring IPA OpenDNSSEC exporter daemon (ipa-ods-exporter). transport.py 558 DEBUG Configuring OpenDNSSEC enforcer daemon (ods-enforcerd) transport.py 558 DEBUG [1/8]: checking status transport.py 558 DEBUG [2/8]: setting up configuration files transport.py 558 DEBUG [3/8]: setting up ownership and file mode bits transport.py 558 DEBUG [4/8]: generating master key transport.py 558 DEBUG [5/8]: setting up OpenDNSSEC transport.py 558 DEBUG [6/8]: setting up ipa-dnskeysyncd transport.py 558 DEBUG [7/8]: starting OpenDNSSEC enforcer transport.py 558 DEBUG [8/8]: configuring OpenDNSSEC enforcer to start on boot transport.py 558 DEBUG Done configuring OpenDNSSEC enforcer daemon (ods-enforcerd). transport.py 558 DEBUG Restarting ipa-dnskeysyncd transport.py 558 DEBUG Restarting named transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG Setup complete transport.py 558 DEBUG transport.py 558 DEBUG Global DNS configuration in LDAP server is empty transport.py 558 DEBUG You can use 'dnsconfig-mod' command to set global DNS options that transport.py 558 DEBUG would override settings in local named.conf files transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG You must make sure these network ports are open: transport.py 558 DEBUG TCP Ports: transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG UDP Ports: transport.py 558 DEBUG * 53: bind transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 301 DEBUG STAT /ipatests/file_backup transport.py 301 DEBUG STAT /ipatests transport.py 312 INFO MKDIR /ipatests/file_backup transport.py 312 INFO MKDIR /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/errors to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/dirsrv/slapd-IPA-TEST/access to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaserver-install.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaserver-uninstall.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipareplica-install.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipareplica-conncheck.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipareplica-ca-install.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaserver-kra-install.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipa-custodia.audit.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaclient-uninstall.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/iparestore.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipabackup.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/kadmind.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/krb5kdc.log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/httpd/error_log to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/pki/ to list of logs to collect __init__.py 244 INFO Adding replica0.ipa.test:/var/log/audit/audit.log to list of logs to collect transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG Allow PTR sync: TRUE transport.py 558 DEBUG IPA DNS servers: master.ipa.test transport.py 558 DEBUG IPA DNSSec key master: master.ipa.test transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'ipa.test'] transport.py 558 DEBUG Zone name: ipa.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.ipa.test. transport.py 558 DEBUG SOA serial: 1542094802 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/var/log/ipaclient-install.log to list of logs to collect transport.py 318 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/ipatests/env.sh to list of logs to collect transport.py 301 DEBUG STAT /ipatests transport.py 293 INFO WRITE /ipatests/env.sh transport.py 301 DEBUG STAT /etc/hostname transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 293 INFO WRITE /etc/hostname transport.py 318 INFO RUN ['hostname', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['hostname', 'replica0.ipa.test'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN hostname > '/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 318 INFO RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '121.168.192.in-addr.arpa.'] transport.py 558 DEBUG Zone name: 121.168.192.in-addr.arpa. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster transport.py 558 DEBUG SOA serial: 1542094869 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG BIND update policy: grant IPA.TEST krb5-subdomain 121.168.192.in-addr.arpa. PTR; transport.py 558 DEBUG Dynamic update: FALSE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnszone-mod', '121.168.192.in-addr.arpa.', '--dynamic-update=TRUE'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-mod', '121.168.192.in-addr.arpa.', '--dynamic-update=TRUE'] transport.py 558 DEBUG Zone name: 121.168.192.in-addr.arpa. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster transport.py 558 DEBUG SOA serial: 1542094870 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Dynamic update: TRUE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 513 DEBUG RUN ['ipa-client-install', '-U', '--domain', 'ipa.test', '--realm', 'IPA.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.ipa.test'] transport.py 558 DEBUG Client hostname: replica0.ipa.test transport.py 558 DEBUG Realm: IPA.TEST transport.py 558 DEBUG DNS Domain: ipa.test transport.py 558 DEBUG IPA Server: master.ipa.test transport.py 558 DEBUG BaseDN: dc=ipa,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=IPA.TEST transport.py 558 DEBUG Valid From: 2018-11-13 07:34:00 transport.py 558 DEBUG Valid Until: 2038-11-13 07:34:00 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm IPA.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm IPA.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica0.ipa.test) does not have A/AAAA record. transport.py 558 DEBUG Failed to update DNS records. transport.py 558 DEBUG Missing A/AAAA record(s) for host replica0.ipa.test: 192.168.121.47. transport.py 558 DEBUG Missing reverse record(s) for address(es): 192.168.121.47. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Could not update DNS SSHFP records. transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring ipa.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up FreeIPA client. transport.py 558 DEBUG Version 4.7.90test transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa-replica-install', '-p', 'Secret.123', '-w', 'Secret.123', '-U', '--setup-ca', '--setup-dns', '--forwarder', '192.168.121.1', '--ip-address', '192.168.121.47', '-r', 'IPA.TEST'] transport.py 513 DEBUG RUN ['ipa-replica-install', '-p', 'Secret.123', '-w', 'Secret.123', '-U', '--setup-ca', '--setup-dns', '--forwarder', '192.168.121.1', '--ip-address', '192.168.121.47', '-r', 'IPA.TEST'] transport.py 558 DEBUG Reverse DNS resolution of address 192.168.121.202 (master.ipa.test) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Checking DNS forwarders, please wait ... transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/41]: creating directory server instance transport.py 558 DEBUG [2/41]: enabling ldapi transport.py 558 DEBUG [3/41]: configure autobind for root transport.py 558 DEBUG [4/41]: stopping directory server transport.py 558 DEBUG [5/41]: updating configuration in dse.ldif transport.py 558 DEBUG [6/41]: starting directory server transport.py 558 DEBUG [7/41]: adding default schema transport.py 558 DEBUG [8/41]: enabling memberof plugin transport.py 558 DEBUG [9/41]: enabling winsync plugin transport.py 558 DEBUG [10/41]: configuring replication version plugin transport.py 558 DEBUG [11/41]: enabling IPA enrollment plugin transport.py 558 DEBUG [12/41]: configuring uniqueness plugin transport.py 558 DEBUG [13/41]: configuring uuid plugin transport.py 558 DEBUG [14/41]: configuring modrdn plugin transport.py 558 DEBUG [15/41]: configuring DNS plugin transport.py 558 DEBUG [16/41]: enabling entryUSN plugin transport.py 558 DEBUG [17/41]: configuring lockout plugin transport.py 558 DEBUG [18/41]: configuring topology plugin transport.py 558 DEBUG [19/41]: creating indices transport.py 558 DEBUG [20/41]: enabling referential integrity plugin transport.py 558 DEBUG [21/41]: configuring certmap.conf transport.py 558 DEBUG [22/41]: configure new location for managed entries transport.py 558 DEBUG [23/41]: configure dirsrv ccache transport.py 558 DEBUG [24/41]: enabling SASL mapping fallback transport.py 558 DEBUG [25/41]: restarting directory server transport.py 558 DEBUG [26/41]: creating DS keytab transport.py 558 DEBUG [27/41]: ignore time skew for initial replication transport.py 558 DEBUG [28/41]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [29/41]: prevent time skew after initial replication transport.py 558 DEBUG [30/41]: adding sasl mappings to the directory transport.py 558 DEBUG [31/41]: updating schema transport.py 558 DEBUG [32/41]: setting Auto Member configuration transport.py 558 DEBUG [33/41]: enabling S4U2Proxy delegation transport.py 558 DEBUG [34/41]: initializing group membership transport.py 558 DEBUG [35/41]: adding master entry transport.py 558 DEBUG [36/41]: initializing domain level transport.py 558 DEBUG [37/41]: configuring Posix uid/gid generation transport.py 558 DEBUG [38/41]: adding replication acis transport.py 558 DEBUG [39/41]: activating sidgen plugin transport.py 558 DEBUG [40/41]: activating extdom plugin transport.py 558 DEBUG [41/41]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list to TLSv1.0 - TLSv1.2 transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Custodia uses 'master.ipa.test' as master peer. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/28]: creating certificate server db transport.py 558 DEBUG [2/28]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed Update in progress, 4 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/28]: creating ACIs for admin transport.py 558 DEBUG [4/28]: creating installation admin user transport.py 558 DEBUG [5/28]: configuring certificate server instance transport.py 558 DEBUG [6/28]: exporting Dogtag certificate store pin transport.py 558 DEBUG [7/28]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [8/28]: backing up CS.cfg transport.py 558 DEBUG [9/28]: disabling nonces transport.py 558 DEBUG [10/28]: set up CRL publishing transport.py 558 DEBUG [11/28]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [12/28]: destroying installation admin user transport.py 558 DEBUG [13/28]: starting certificate server instance transport.py 558 DEBUG [14/28]: Finalize replication settings transport.py 558 DEBUG [15/28]: configure certmonger for renewals transport.py 558 DEBUG [16/28]: Importing RA key transport.py 558 DEBUG [17/28]: setting audit signing renewal to 2 years transport.py 558 DEBUG [18/28]: restarting certificate server transport.py 558 DEBUG [19/28]: authorizing RA to modify profiles transport.py 558 DEBUG [20/28]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [21/28]: Ensure lightweight CAs container exists transport.py 558 DEBUG [22/28]: configure certificate renewals transport.py 558 DEBUG [23/28]: configure Server-Cert certificate renewal transport.py 558 DEBUG [24/28]: Configure HTTP to proxy connections transport.py 558 DEBUG [25/28]: restarting certificate server transport.py 558 DEBUG [26/28]: updating IPA configuration transport.py 558 DEBUG [27/28]: enabling CA instance transport.py 558 DEBUG [28/28]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/11]: stopping directory server transport.py 558 DEBUG [2/11]: saving configuration transport.py 558 DEBUG [3/11]: disabling listeners transport.py 558 DEBUG [4/11]: enabling DS global lock transport.py 558 DEBUG [5/11]: disabling Schema Compat transport.py 558 DEBUG [6/11]: starting directory server transport.py 558 DEBUG [7/11]: updating schema transport.py 558 DEBUG [8/11]: upgrading server transport.py 558 DEBUG [9/11]: stopping directory server transport.py 558 DEBUG [10/11]: restoring configuration transport.py 558 DEBUG [11/11]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG Configuring DNS (named) transport.py 558 DEBUG [1/8]: generating rndc key file transport.py 558 DEBUG [2/8]: setting up our own record transport.py 558 DEBUG [3/8]: adding NS record to the zones transport.py 558 DEBUG [4/8]: setting up kerberos principal transport.py 558 DEBUG [5/8]: setting up named.conf transport.py 558 DEBUG [6/8]: setting up server configuration transport.py 558 DEBUG [7/8]: configuring named to start on boot transport.py 558 DEBUG [8/8]: changing resolv.conf to point to ourselves transport.py 558 DEBUG Done configuring DNS (named). transport.py 558 DEBUG Restarting the web server to pick up resolv.conf changes transport.py 558 DEBUG Configuring DNS key synchronization service (ipa-dnskeysyncd) transport.py 558 DEBUG [1/7]: checking status transport.py 558 DEBUG [2/7]: setting up bind-dyndb-ldap working directory transport.py 558 DEBUG [3/7]: setting up kerberos principal transport.py 558 DEBUG [4/7]: setting up SoftHSM transport.py 558 DEBUG [5/7]: adding DNSSEC containers transport.py 558 DEBUG DNSSEC container exists (step skipped) transport.py 558 DEBUG [6/7]: creating replica keys transport.py 558 DEBUG [7/7]: configuring ipa-dnskeysyncd to start on boot transport.py 558 DEBUG Done configuring DNS key synchronization service (ipa-dnskeysyncd). transport.py 558 DEBUG Restarting ipa-dnskeysyncd transport.py 558 DEBUG Restarting named transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG API Version number was not sent, forward compatibility not guaranteed. Assuming server's API version, 2.230 transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 558 DEBUG transport.py 558 DEBUG Global DNS configuration in LDAP server is not empty transport.py 558 DEBUG The following configuration options override local settings in named.conf: transport.py 558 DEBUG transport.py 558 DEBUG Allow PTR sync: TRUE transport.py 558 DEBUG IPA DNS servers: master.ipa.test transport.py 558 DEBUG IPA DNSSec key master: master.ipa.test transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 tasks.py 267 INFO Set LDAP debug level transport.py 318 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123', '-h', 'replica0.ipa.test'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123', '-h', 'replica0.ipa.test'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 __init__.py 244 INFO Adding replica0.ipa.test:/var/log/sssd to list of logs to collect transport.py 301 DEBUG STAT /bin/systemctl transport.py 318 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_ipa.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_ipa.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@IPA.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /etc/trusted-key.key transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/trusted-key.key', '/ipatests/file_backup/etc/trusted-key.key'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/trusted-key.key', '/ipatests/file_backup/etc/trusted-key.key'] transport.py 217 DEBUG Exit code: 0 transport.py 301 DEBUG STAT /etc/trusted-key.key transport.py 301 DEBUG STAT /ipatests/file_backup/etc transport.py 318 INFO RUN ['cp', '-af', '/etc/trusted-key.key', '/ipatests/file_backup/etc/trusted-key.key'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/trusted-key.key', '/ipatests/file_backup/etc/trusted-key.key'] transport.py 217 DEBUG Exit code: 0------------------------------ Captured log call -------------------------------
transport.py 318 INFO RUN ['ipa', 'dnszone-add', '.', '--skip-overlap-check', '--dnssec', 'true', '--ttl', '1', '--default-ttl', '1'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '.', '--skip-overlap-check', '--dnssec', 'true', '--ttl', '1', '--default-ttl', '1'] transport.py 558 DEBUG Zone name: . transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster transport.py 558 DEBUG SOA serial: 1542095419 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Time to live: 1 transport.py 558 DEBUG Default time to live: 1 transport.py 558 DEBUG BIND update policy: grant IPA.TEST krb5-self * A; grant IPA.TEST krb5-self * AAAA; grant IPA.TEST krb5-self * SSHFP; transport.py 558 DEBUG Dynamic update: FALSE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 558 DEBUG Allow in-line DNSSEC signing: TRUE transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', '.', 'master.ipa.test', '--a-rec=192.168.121.202'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', '.', 'master.ipa.test', '--a-rec=192.168.121.202'] transport.py 558 DEBUG ipa: WARNING: Relative record name 'master.ipa.test' contains the zone name '.' as a suffix, which results in FQDN 'master.ipa.test.'. This is usually a mistake caused by a missing dot at the end of the name specification. transport.py 558 DEBUG Record name: master.ipa.test transport.py 558 DEBUG A record: 192.168.121.202 transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', '.', 'replica0.ipa.test', '--a-rec=192.168.121.47'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', '.', 'replica0.ipa.test', '--a-rec=192.168.121.47'] transport.py 558 DEBUG Record name: replica0.ipa.test transport.py 558 DEBUG A record: 192.168.121.47 transport.py 558 DEBUG ipa: WARNING: Relative record name 'replica0.ipa.test' contains the zone name '.' as a suffix, which results in FQDN 'replica0.ipa.test.'. This is usually a mistake caused by a missing dot at the end of the name specification. transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', '.', 'ipa.test', '--ns-rec=master.ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', '.', 'ipa.test', '--ns-rec=master.ipa.test'] transport.py 558 DEBUG ipa: WARNING: Relative record name 'ipa.test' contains the zone name '.' as a suffix, which results in FQDN 'ipa.test.'. This is usually a mistake caused by a missing dot at the end of the name specification. transport.py 558 DEBUG Record name: ipa.test transport.py 558 DEBUG NS record: master.ipa.test transport.py 217 DEBUG Exit code: 0 test_dnssec.py 75 INFO Waiting for signed SOA record of . from server 192.168.121.202 (timeout 100 sec) test_dnssec.py 75 INFO Waiting for signed SOA record of . from server 192.168.121.47 (timeout 300 sec)
Passed test_dnssec.py::TestInstallDNSSECFirst::()::test_chain_of_trust 49.52
------------------------------ Captured log call -------------------------------
transport.py 318 INFO RUN ['ipa', 'dnszone-add', 'example.test.', '--skip-overlap-check', '--dnssec', 'true', '--ttl', '1', '--default-ttl', '1'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', 'example.test.', '--skip-overlap-check', '--dnssec', 'true', '--ttl', '1', '--default-ttl', '1'] transport.py 558 DEBUG Zone name: example.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.ipa.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster transport.py 558 DEBUG SOA serial: 1542095438 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Time to live: 1 transport.py 558 DEBUG Default time to live: 1 transport.py 558 DEBUG BIND update policy: grant IPA.TEST krb5-self * A; grant IPA.TEST krb5-self * AAAA; grant IPA.TEST krb5-self * SSHFP; transport.py 558 DEBUG Dynamic update: FALSE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 558 DEBUG Allow in-line DNSSEC signing: TRUE transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', '.', 'example.test.', '--ns-rec=master.ipa.test'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', '.', 'example.test.', '--ns-rec=master.ipa.test'] transport.py 558 DEBUG Record name: example.test transport.py 558 DEBUG NS record: master.ipa.test transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'restart', 'named-pkcs11.service'] transport.py 513 DEBUG RUN ['systemctl', 'restart', 'named-pkcs11.service'] transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['systemctl', 'restart', 'named-pkcs11.service'] transport.py 513 DEBUG RUN ['systemctl', 'restart', 'named-pkcs11.service'] transport.py 217 DEBUG Exit code: 0 test_dnssec.py 75 INFO Waiting for signed SOA record of example.test. from server 192.168.121.202 (timeout 100 sec) test_dnssec.py 75 INFO Waiting for signed SOA record of example.test. from server 192.168.121.47 (timeout 200 sec) transport.py 318 INFO RUN ['ipa', 'dnsrecord-add', '.', 'example.test.', '--ns-rec', 'master.ipa.test', '--ds-rec', '13492 8 2 aa95a8feba48e68155fb93f9072727ad381262129e560bd32f65b48cd28c9aff'] transport.py 513 DEBUG RUN ['ipa', 'dnsrecord-add', '.', 'example.test.', '--ns-rec', 'master.ipa.test', '--ds-rec', '13492 8 2 aa95a8feba48e68155fb93f9072727ad381262129e560bd32f65b48cd28c9aff'] transport.py 558 DEBUG Record name: example.test transport.py 558 DEBUG DS record: 13492 8 2 aa95a8feba48e68155fb93f9072727ad381262129e560bd32f65b48cd28c9aff transport.py 558 DEBUG NS record: master.ipa.test transport.py 217 DEBUG Exit code: 0 test_dnssec.py 75 INFO Waiting for signed DS record of example.test. from server 192.168.121.47 (timeout 100 sec) transport.py 293 INFO WRITE /etc/trusted-key.key transport.py 293 INFO WRITE /etc/trusted-key.key transport.py 318 INFO RUN ['drill', '@localhost', '-k', '/etc/trusted-key.key', '-S', 'example.test.', 'SOA'] transport.py 513 DEBUG RUN ['drill', '@localhost', '-k', '/etc/trusted-key.key', '-S', 'example.test.', 'SOA'] transport.py 558 DEBUG ;; Number of trusted keys: 1 transport.py 558 DEBUG ;; Chasing: example.test. SOA transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG DNSSEC Trust tree: transport.py 558 DEBUG example.test. (SOA) transport.py 558 DEBUG |---example.test. (DNSKEY keytag: 2373 alg: 8 flags: 256) transport.py 558 DEBUG |---example.test. (DNSKEY keytag: 13492 alg: 8 flags: 257) transport.py 558 DEBUG |---example.test. (DS keytag: 13492 digest type: 2) transport.py 558 DEBUG |---. (DNSKEY keytag: 27354 alg: 8 flags: 256) transport.py 558 DEBUG |---. (DNSKEY keytag: 62536 alg: 8 flags: 257) transport.py 558 DEBUG ;; Chase successful transport.py 217 DEBUG Exit code: 0 transport.py 318 INFO RUN ['drill', '@localhost', '-k', '/etc/trusted-key.key', '-S', 'example.test.', 'SOA'] transport.py 513 DEBUG RUN ['drill', '@localhost', '-k', '/etc/trusted-key.key', '-S', 'example.test.', 'SOA'] transport.py 558 DEBUG ;; Number of trusted keys: 1 transport.py 558 DEBUG ;; Chasing: example.test. SOA transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG DNSSEC Trust tree: transport.py 558 DEBUG example.test. (SOA) transport.py 558 DEBUG |---example.test. (DNSKEY keytag: 2373 alg: 8 flags: 256) transport.py 558 DEBUG |---example.test. (DNSKEY keytag: 13492 alg: 8 flags: 257) transport.py 558 DEBUG |---example.test. (DS keytag: 13492 digest type: 2) transport.py 558 DEBUG |---. (DNSKEY keytag: 27354 alg: 8 flags: 256) transport.py 558 DEBUG |---. (DNSKEY keytag: 62536 alg: 8 flags: 257) transport.py 558 DEBUG ;; Chase successful transport.py 217 DEBUG Exit code: 0