report.html

Report generated on 31-Jul-2020 at 17:12:35 by pytest-html v1.22.1

Environment

Packages {'pytest': '3.10.1', 'py': '1.9.0', 'pluggy': '0.13.1'}
Platform Linux-4.18.0-228.el8.x86_64-x86_64-with-redhat-8.3-Ootpa
Plugins {'metadata': '1.10.0', 'html': '1.22.1', 'multihost': '3.0', 'sourceorder': '0.5'}
Python 3.6.8

Summary

1 tests ran in 1435.88 seconds.

1 passed, 0 skipped, 0 failed, 0 errors, 0 expected failures, 0 unexpected passes

Results

Result Test Duration Links
Passed test_integration/test_backup_and_restore.py::TestReplicaInstallAfterRestore::()::test_replica_install_after_restore 1161.46
------------------------------ Captured log setup ------------------------------
__init__.py 410 INFO {'ad_admin_name': 'Administrator', 'ad_admin_password': 'Secret123', 'admin_name': 'admin', 'admin_password': 'Secret.123', 'dirman_dn': 'cn=Directory Manager', 'dirman_password': 'Secret.123', 'dns_forwarder': '10.11.5.19', 'domain_level': 1, 'domains': [{'hosts': [{'external_hostname': 'ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com', 'ip': '10.0.107.99', 'name': 'master.testrelm.test', 'role': 'master'}, {'external_hostname': 'ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com', 'ip': '10.0.107.125', 'name': 'replica1.testrelm.test', 'role': 'replica'}, {'external_hostname': 'ci-vm-10-0-107-178.hosted.upshift.rdu2.redhat.com', 'ip': '10.0.107.178', 'name': 'replica2.testrelm.test', 'role': 'replica'}], 'name': 'testrelm.test', 'type': 'IPA'}], 'fips_mode': False, 'ipv6': False, 'log_journal_since': '-1h', 'nis_domain': 'ipatest', 'ntp_server': '3.pool.ntp.org', 'ssh_key_filename': '~/.ssh/id_rsa', 'ssh_password': None, 'ssh_username': 'root', 'test_dir': '/root/ipatests'} __init__.py 416 INFO Preparing host master.testrelm.test transport.py 46 DEBUG SSH invocation: ['ssh', '-l', 'root', '-o', 'ControlPath=/tmp/multihost_tests.p9o4q_2q/control', '-o', 'StrictHostKeyChecking=no', '-o', 'UserKnownHostsFile=/tmp/multihost_tests.p9o4q_2q/known_hosts', '-i', '/root/.ssh/id_rsa', 'ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com'] transport.py 513 DEBUG RUN ['-o', 'ControlMaster=yes', '/usr/bin/cat'] transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG bash: line 1: cd: /root/ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 558 DEBUG ls: cannot access '/root/ipatests': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root transport.py 513 DEBUG RUN ['ls', '/root'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 __init__.py 416 INFO Preparing host replica1.testrelm.test transport.py 46 DEBUG SSH invocation: ['ssh', '-l', 'root', '-o', 'ControlPath=/tmp/multihost_tests.n88sle9s/control', '-o', 'StrictHostKeyChecking=no', '-o', 'UserKnownHostsFile=/tmp/multihost_tests.n88sle9s/known_hosts', '-i', '/root/.ssh/id_rsa', 'ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com'] transport.py 513 DEBUG RUN ['-o', 'ControlMaster=yes', '/usr/bin/cat'] transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG Warning: Permanently added 'ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com,10.0.107.125' (ECDSA) to the list of known hosts. transport.py 558 DEBUG bash: line 1: cd: /root/ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 558 DEBUG ls: cannot access '/root/ipatests': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root transport.py 513 DEBUG RUN ['ls', '/root'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 __init__.py 416 INFO Preparing host replica2.testrelm.test transport.py 46 DEBUG SSH invocation: ['ssh', '-l', 'root', '-o', 'ControlPath=/tmp/multihost_tests.aj3v_m4l/control', '-o', 'StrictHostKeyChecking=no', '-o', 'UserKnownHostsFile=/tmp/multihost_tests.aj3v_m4l/known_hosts', '-i', '/root/.ssh/id_rsa', 'ci-vm-10-0-107-178.hosted.upshift.rdu2.redhat.com'] transport.py 513 DEBUG RUN ['-o', 'ControlMaster=yes', '/usr/bin/cat'] transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 558 DEBUG bash: line 1: cd: /root/ipatests: No such file or directory transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 558 DEBUG ls: cannot access '/root/ipatests': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root transport.py 513 DEBUG RUN ['ls', '/root'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0
----------------------------- Captured stderr call -----------------------------
ipa: WARNING: ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['infoblox-trust01.intranet.prod.int.phx2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns02.intranet.prod.int.phx2.redhat.com.'] ipa: WARNING: ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['ns02.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.phx2.redhat.com.']
------------------------------ Captured log call -------------------------------
transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /etc/hostname transport.py 513 DEBUG RUN ['ls', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup/etc'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup/etc': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests/file_backup transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup/etc'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /etc/hostname transport.py 513 DEBUG RUN ['tee', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['hostname', 'master.testrelm.test'] transport.py 513 DEBUG RUN ['hostname', 'master.testrelm.test'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN hostname > '/root/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/root/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp ESTAB 0 0 10.0.107.99%eth0:68 10.0.104.13:67 users:(("NetworkManager",pid=835,fd=24)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=5),("systemd",pid=1,fd=55)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=747,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=7),("systemd",pid=1,fd=57)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=747,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=4),("systemd",pid=1,fd=52)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=1723,fd=4)) transport.py 558 DEBUG tcp LISTEN 0 100 127.0.0.1:25 0.0.0.0:* users:(("master",pid=26953,fd=16)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.99:22 10.0.19.62:35710 users:(("sshd",pid=21643,fd=5),("sshd",pid=21628,fd=5)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.99:22 10.0.106.66:50396 users:(("sshd",pid=27135,fd=5),("sshd",pid=27118,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=6),("systemd",pid=1,fd=56)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=1723,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 100 [::1]:25 [::]:* users:(("master",pid=26953,fd=17)) transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 513 DEBUG RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 558 DEBUG rhel transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'unmask', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'unmask', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'enable', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'enable', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-server-install', '-n', 'testrelm.test', '-r', 'TESTRELM.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '10.11.5.19', '--auto-reverse'] transport.py 513 DEBUG RUN ['ipa-server-install', '-n', 'testrelm.test', '-r', 'TESTRELM.TEST', '-p', 'Secret.123', '-a', 'Secret.123', '--domain-level=1', '-U', '--setup-dns', '--forwarder', '10.11.5.19', '--auto-reverse'] transport.py 558 DEBUG Checking DNS domain testrelm.test., please wait ... transport.py 558 DEBUG Reverse record for IP address 10.0.107.99 already exists transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG transport.py 558 DEBUG The log file for this installation can be found in /var/log/ipaserver-install.log transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG This program will set up the IPA Server. transport.py 558 DEBUG Version 4.8.7 transport.py 558 DEBUG transport.py 558 DEBUG This includes: transport.py 558 DEBUG * Configure a stand-alone CA (dogtag) for certificate management transport.py 558 DEBUG * Configure the NTP client (chronyd) transport.py 558 DEBUG * Create and configure an instance of Directory Server transport.py 558 DEBUG * Create and configure a Kerberos Key Distribution Center (KDC) transport.py 558 DEBUG * Configure Apache (httpd) transport.py 558 DEBUG * Configure DNS (bind) transport.py 558 DEBUG * Configure the KDC to enable PKINIT transport.py 558 DEBUG transport.py 558 DEBUG Warning: skipping DNS resolution of host master.testrelm.test transport.py 558 DEBUG Checking DNS forwarders, please wait ... transport.py 558 DEBUG transport.py 558 DEBUG The IPA Master Server will be configured with: transport.py 558 DEBUG Hostname: master.testrelm.test transport.py 558 DEBUG IP address(es): 10.0.107.99 transport.py 558 DEBUG Domain name: testrelm.test transport.py 558 DEBUG Realm name: TESTRELM.TEST transport.py 558 DEBUG transport.py 558 DEBUG The CA will be configured with: transport.py 558 DEBUG Subject DN: CN=Certificate Authority,O=TESTRELM.TEST transport.py 558 DEBUG Subject base: O=TESTRELM.TEST transport.py 558 DEBUG Chaining: self-signed transport.py 558 DEBUG transport.py 558 DEBUG BIND DNS server will be configured to serve IPA domain with: transport.py 558 DEBUG Forwarders: 10.11.5.19 transport.py 558 DEBUG Forward policy: only transport.py 558 DEBUG Reverse zone(s): No reverse zone transport.py 558 DEBUG transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG Warning: IPA was unable to sync time with chrony! transport.py 558 DEBUG Time synchronization is required for IPA to work correctly transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/44]: creating directory server instance transport.py 558 DEBUG [2/44]: configure autobind for root transport.py 558 DEBUG [3/44]: stopping directory server transport.py 558 DEBUG [4/44]: updating configuration in dse.ldif transport.py 558 DEBUG [5/44]: starting directory server transport.py 558 DEBUG [6/44]: adding default schema transport.py 558 DEBUG [7/44]: enabling memberof plugin transport.py 558 DEBUG [8/44]: enabling winsync plugin transport.py 558 DEBUG [9/44]: configure password logging transport.py 558 DEBUG [10/44]: configuring replication version plugin transport.py 558 DEBUG [11/44]: enabling IPA enrollment plugin transport.py 558 DEBUG [12/44]: configuring uniqueness plugin transport.py 558 DEBUG [13/44]: configuring uuid plugin transport.py 558 DEBUG [14/44]: configuring modrdn plugin transport.py 558 DEBUG [15/44]: configuring DNS plugin transport.py 558 DEBUG [16/44]: enabling entryUSN plugin transport.py 558 DEBUG [17/44]: configuring lockout plugin transport.py 558 DEBUG [18/44]: configuring topology plugin transport.py 558 DEBUG [19/44]: creating indices transport.py 558 DEBUG [20/44]: enabling referential integrity plugin transport.py 558 DEBUG [21/44]: configuring certmap.conf transport.py 558 DEBUG [22/44]: configure new location for managed entries transport.py 558 DEBUG [23/44]: configure dirsrv ccache and keytab transport.py 558 DEBUG [24/44]: enabling SASL mapping fallback transport.py 558 DEBUG [25/44]: restarting directory server transport.py 558 DEBUG [26/44]: adding sasl mappings to the directory transport.py 558 DEBUG [27/44]: adding default layout transport.py 558 DEBUG [28/44]: adding delegation layout transport.py 558 DEBUG [29/44]: creating container for managed entries transport.py 558 DEBUG [30/44]: configuring user private groups transport.py 558 DEBUG [31/44]: configuring netgroups from hostgroups transport.py 558 DEBUG [32/44]: creating default Sudo bind user transport.py 558 DEBUG [33/44]: creating default Auto Member layout transport.py 558 DEBUG [34/44]: adding range check plugin transport.py 558 DEBUG [35/44]: creating default HBAC rule allow_all transport.py 558 DEBUG [36/44]: adding entries for topology management transport.py 558 DEBUG [37/44]: initializing group membership transport.py 558 DEBUG [38/44]: adding master entry transport.py 558 DEBUG [39/44]: initializing domain level transport.py 558 DEBUG [40/44]: configuring Posix uid/gid generation transport.py 558 DEBUG [41/44]: adding replication acis transport.py 558 DEBUG [42/44]: activating sidgen plugin transport.py 558 DEBUG [43/44]: activating extdom plugin transport.py 558 DEBUG [44/44]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/10]: adding kerberos container to the directory transport.py 558 DEBUG [2/10]: configuring KDC transport.py 558 DEBUG [3/10]: initialize kerberos container transport.py 558 DEBUG [4/10]: adding default ACIs transport.py 558 DEBUG [5/10]: creating a keytab for the directory transport.py 558 DEBUG [6/10]: creating a keytab for the machine transport.py 558 DEBUG [7/10]: adding the password extension to the directory transport.py 558 DEBUG [8/10]: creating anonymous principal transport.py 558 DEBUG [9/10]: starting the KDC transport.py 558 DEBUG [10/10]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/5]: Making sure custodia container exists transport.py 558 DEBUG [2/5]: Generating ipa-custodia config file transport.py 558 DEBUG [3/5]: Generating ipa-custodia keys transport.py 558 DEBUG [4/5]: starting ipa-custodia transport.py 558 DEBUG [5/5]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: configuring certificate server instance transport.py 558 DEBUG [2/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [3/30]: secure AJP connector transport.py 558 DEBUG [4/30]: reindex attributes transport.py 558 DEBUG [5/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [6/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [7/30]: backing up CS.cfg transport.py 558 DEBUG [8/30]: disabling nonces transport.py 558 DEBUG [9/30]: set up CRL publishing transport.py 558 DEBUG [10/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [11/30]: starting certificate server instance transport.py 558 DEBUG [12/30]: configure certmonger for renewals transport.py 558 DEBUG [13/30]: requesting RA certificate from CA transport.py 558 DEBUG [14/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [15/30]: restarting certificate server transport.py 558 DEBUG [16/30]: publishing the CA certificate transport.py 558 DEBUG [17/30]: adding RA agent as a trusted user transport.py 558 DEBUG [18/30]: authorizing RA to modify profiles transport.py 558 DEBUG [19/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [20/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [21/30]: configure certificate renewals transport.py 558 DEBUG [22/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [23/30]: restarting certificate server transport.py 558 DEBUG [24/30]: updating IPA configuration transport.py 558 DEBUG [25/30]: enabling CA instance transport.py 558 DEBUG [26/30]: migrating certificate profiles to LDAP transport.py 558 DEBUG [27/30]: importing IPA certificate profiles transport.py 558 DEBUG [28/30]: adding default CA ACL transport.py 558 DEBUG [29/30]: adding 'ipa' CA entry transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: adding CA certificate entry transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG Nothing to do for configure_httpd_wsgi_conf transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/10]: stopping directory server transport.py 558 DEBUG [2/10]: saving configuration transport.py 558 DEBUG [3/10]: disabling listeners transport.py 558 DEBUG [4/10]: enabling DS global lock transport.py 558 DEBUG [5/10]: disabling Schema Compat transport.py 558 DEBUG [6/10]: starting directory server transport.py 558 DEBUG [7/10]: upgrading server transport.py 558 DEBUG [8/10]: stopping directory server transport.py 558 DEBUG [9/10]: restoring configuration transport.py 558 DEBUG [10/10]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG dnssec-validation yes transport.py 558 DEBUG Configuring DNS (named) transport.py 558 DEBUG [1/11]: generating rndc key file transport.py 558 DEBUG [2/11]: adding DNS container transport.py 558 DEBUG [3/11]: setting up our zone transport.py 558 DEBUG [4/11]: setting up our own record transport.py 558 DEBUG [5/11]: setting up records for other masters transport.py 558 DEBUG [6/11]: adding NS record to the zones transport.py 558 DEBUG [7/11]: setting up kerberos principal transport.py 558 DEBUG [8/11]: setting up named.conf transport.py 558 DEBUG created new /etc/named.conf transport.py 558 DEBUG created named user config '/etc/named/ipa-ext.conf' transport.py 558 DEBUG created named user config '/etc/named/ipa-options-ext.conf' transport.py 558 DEBUG [9/11]: setting up server configuration transport.py 558 DEBUG [10/11]: configuring named to start on boot transport.py 558 DEBUG [11/11]: changing resolv.conf to point to ourselves transport.py 558 DEBUG Done configuring DNS (named). transport.py 558 DEBUG Restarting the web server to pick up resolv.conf changes transport.py 558 DEBUG Configuring DNS key synchronization service (ipa-dnskeysyncd) transport.py 558 DEBUG [1/7]: checking status transport.py 558 DEBUG [2/7]: setting up bind-dyndb-ldap working directory transport.py 558 DEBUG [3/7]: setting up kerberos principal transport.py 558 DEBUG [4/7]: setting up SoftHSM transport.py 558 DEBUG [5/7]: adding DNSSEC containers transport.py 558 DEBUG [6/7]: creating replica keys transport.py 558 DEBUG [7/7]: configuring ipa-dnskeysyncd to start on boot transport.py 558 DEBUG Done configuring DNS key synchronization service (ipa-dnskeysyncd). transport.py 558 DEBUG Restarting ipa-dnskeysyncd transport.py 558 DEBUG Restarting named transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG Configuring client side components transport.py 558 DEBUG Using existing certificate '/etc/ipa/ca.crt'. transport.py 558 DEBUG Client hostname: master.testrelm.test transport.py 558 DEBUG Realm: TESTRELM.TEST transport.py 558 DEBUG DNS Domain: testrelm.test transport.py 558 DEBUG IPA Server: master.testrelm.test transport.py 558 DEBUG BaseDN: dc=testrelm,dc=test transport.py 558 DEBUG Configured sudoers in /etc/authselect/user-nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring testrelm.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG This program will set up IPA client. transport.py 558 DEBUG Version 4.8.7 transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG The ipa-server-install command was successful transport.py 558 DEBUG transport.py 558 DEBUG ============================================================================== transport.py 558 DEBUG Setup complete transport.py 558 DEBUG transport.py 558 DEBUG Next steps: transport.py 558 DEBUG 1. You must make sure these network ports are open: transport.py 558 DEBUG TCP Ports: transport.py 558 DEBUG * 80, 443: HTTP/HTTPS transport.py 558 DEBUG * 389, 636: LDAP/LDAPS transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG UDP Ports: transport.py 558 DEBUG * 88, 464: kerberos transport.py 558 DEBUG * 53: bind transport.py 558 DEBUG * 123: ntp transport.py 558 DEBUG transport.py 558 DEBUG 2. You can now obtain a kerberos ticket using the command: 'kinit admin' transport.py 558 DEBUG This ticket will allow you to use the IPA tools (e.g., ipa user-add) transport.py 558 DEBUG and the web user interface. transport.py 558 DEBUG transport.py 558 DEBUG Be sure to back up the CA certificates stored in /root/cacert.p12 transport.py 558 DEBUG These files are required to create replicas. The password for these transport.py 558 DEBUG files is the Directory Manager password transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--add-service', 'dns'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--add-service', 'dns'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--add-service', 'dns', '--permanent'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--add-service', 'dns', '--permanent'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 tasks.py 246 INFO Set LDAP debug level transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 tasks.py 262 INFO Set LDAP audit log transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_testrelm.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_testrelm.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnszone-mod', 'testrelm.test', '--default-ttl', '1', '--ttl', '1'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-mod', 'testrelm.test', '--default-ttl', '1', '--ttl', '1'] transport.py 558 DEBUG ipa: WARNING: Service named-pkcs11.service requires restart on IPA server <all IPA DNS servers> to apply configuration changes. transport.py 558 DEBUG Zone name: testrelm.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.testrelm.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.testrelm.test. transport.py 558 DEBUG SOA serial: 1596228829 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG Time to live: 1 transport.py 558 DEBUG Default time to live: 1 transport.py 558 DEBUG BIND update policy: grant TESTRELM.TEST krb5-self * A; grant TESTRELM.TEST krb5-self * AAAA; grant TESTRELM.TEST krb5-self * SSHFP; transport.py 558 DEBUG Dynamic update: TRUE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /etc/hostname transport.py 513 DEBUG RUN ['ls', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup/etc'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup/etc': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests/file_backup transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup/etc'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /etc/hostname transport.py 513 DEBUG RUN ['tee', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['hostname', 'replica1.testrelm.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.testrelm.test'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN hostname > '/root/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/root/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp ESTAB 0 0 10.0.107.125%eth0:68 10.0.104.13:67 users:(("NetworkManager",pid=838,fd=24)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=683,fd=5),("systemd",pid=1,fd=68)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=736,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=683,fd=7),("systemd",pid=1,fd=72)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=736,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=1345,fd=4)) transport.py 558 DEBUG tcp LISTEN 0 100 127.0.0.1:25 0.0.0.0:* users:(("master",pid=26994,fd=16)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=683,fd=4),("systemd",pid=1,fd=65)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.125:22 10.0.106.66:53456 users:(("sshd",pid=27175,fd=5),("sshd",pid=27159,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=1345,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 100 [::1]:25 [::]:* users:(("master",pid=26994,fd=17)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=683,fd=6),("systemd",pid=1,fd=71)) transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG Allow PTR sync: TRUE transport.py 558 DEBUG IPA DNS servers: master.testrelm.test transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 513 DEBUG RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 558 DEBUG rhel transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'unmask', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'unmask', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'enable', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'enable', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /etc/hostname transport.py 513 DEBUG RUN ['ls', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup/etc'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /etc/hostname transport.py 513 DEBUG RUN ['tee', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['hostname', 'replica1.testrelm.test'] transport.py 513 DEBUG RUN ['hostname', 'replica1.testrelm.test'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN hostname > '/root/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/root/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp ESTAB 0 0 10.0.107.125%eth0:68 10.0.104.13:67 users:(("NetworkManager",pid=838,fd=24)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=683,fd=5),("systemd",pid=1,fd=68)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=736,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=683,fd=7),("systemd",pid=1,fd=72)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=736,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=1345,fd=4)) transport.py 558 DEBUG tcp LISTEN 0 100 127.0.0.1:25 0.0.0.0:* users:(("master",pid=26994,fd=16)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=683,fd=4),("systemd",pid=1,fd=65)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.125:22 10.0.106.66:53456 users:(("sshd",pid=27175,fd=5),("sshd",pid=27159,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=1345,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 100 [::1]:25 [::]:* users:(("master",pid=26994,fd=17)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=683,fd=6),("systemd",pid=1,fd=71)) transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 391 INFO RUN ['ipa', 'dnszone-add', '107.0.10.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '107.0.10.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['infoblox-trust01.intranet.prod.int.phx2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns02.intranet.prod.int.phx2.redhat.com.'] transport.py 217 DEBUG Exit code: 1 tasks.py 92 WARNING ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['infoblox-trust01.intranet.prod.int.phx2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns02.intranet.prod.int.phx2.redhat.com.'] transport.py 391 INFO RUN ['ipa-client-install', '--domain', 'testrelm.test', '--realm', 'TESTRELM.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.testrelm.test', '-U'] transport.py 513 DEBUG RUN ['ipa-client-install', '--domain', 'testrelm.test', '--realm', 'TESTRELM.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.testrelm.test', '-U'] transport.py 558 DEBUG Client hostname: replica1.testrelm.test transport.py 558 DEBUG Realm: TESTRELM.TEST transport.py 558 DEBUG DNS Domain: testrelm.test transport.py 558 DEBUG IPA Server: master.testrelm.test transport.py 558 DEBUG BaseDN: dc=testrelm,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=TESTRELM.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=TESTRELM.TEST transport.py 558 DEBUG Valid From: 2020-07-31 20:50:34 transport.py 558 DEBUG Valid Until: 2040-07-31 20:50:34 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm TESTRELM.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/authselect/user-nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm TESTRELM.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica1.testrelm.test) does not have A/AAAA record. transport.py 558 DEBUG Incorrect reverse record(s): transport.py 558 DEBUG 10.0.107.125 is pointing to ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com. instead of replica1.testrelm.test. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring testrelm.test as NIS domain. transport.py 558 DEBUG This program will set up IPA client. transport.py 558 DEBUG Version 4.8.7 transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_testrelm.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_testrelm.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnszone-show', 'testrelm.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'testrelm.test'] transport.py 558 DEBUG Zone name: testrelm.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.testrelm.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.testrelm.test. transport.py 558 DEBUG SOA serial: 1596228870 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG BIND update policy: grant TESTRELM.TEST krb5-self * A; grant TESTRELM.TEST krb5-self * AAAA; grant TESTRELM.TEST krb5-self * SSHFP; transport.py 558 DEBUG Dynamic update: TRUE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--permanent'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--permanent'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '10.0.107.125', '--realm', 'TESTRELM.TEST', '--domain', 'testrelm.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '10.0.107.125', '--realm', 'TESTRELM.TEST', '--domain', 'testrelm.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica1.testrelm.test does not provide DNS. transport.py 558 DEBUG The IP address 10.0.107.99 of host master.testrelm.test resolves to: ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com.. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/41]: creating directory server instance transport.py 558 DEBUG [2/41]: configure autobind for root transport.py 558 DEBUG [3/41]: stopping directory server transport.py 558 DEBUG [4/41]: updating configuration in dse.ldif transport.py 558 DEBUG [5/41]: starting directory server transport.py 558 DEBUG [6/41]: adding default schema transport.py 558 DEBUG [7/41]: enabling memberof plugin transport.py 558 DEBUG [8/41]: enabling winsync plugin transport.py 558 DEBUG [9/41]: configure password logging transport.py 558 DEBUG [10/41]: configuring replication version plugin transport.py 558 DEBUG [11/41]: enabling IPA enrollment plugin transport.py 558 DEBUG [12/41]: configuring uniqueness plugin transport.py 558 DEBUG [13/41]: configuring uuid plugin transport.py 558 DEBUG [14/41]: configuring modrdn plugin transport.py 558 DEBUG [15/41]: configuring DNS plugin transport.py 558 DEBUG [16/41]: enabling entryUSN plugin transport.py 558 DEBUG [17/41]: configuring lockout plugin transport.py 558 DEBUG [18/41]: configuring topology plugin transport.py 558 DEBUG [19/41]: creating indices transport.py 558 DEBUG [20/41]: enabling referential integrity plugin transport.py 558 DEBUG [21/41]: configuring certmap.conf transport.py 558 DEBUG [22/41]: configure new location for managed entries transport.py 558 DEBUG [23/41]: configure dirsrv ccache and keytab transport.py 558 DEBUG [24/41]: enabling SASL mapping fallback transport.py 558 DEBUG [25/41]: restarting directory server transport.py 558 DEBUG [26/41]: creating DS keytab transport.py 558 DEBUG [27/41]: ignore time skew for initial replication transport.py 558 DEBUG [28/41]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [29/41]: prevent time skew after initial replication transport.py 558 DEBUG [30/41]: adding sasl mappings to the directory transport.py 558 DEBUG [31/41]: updating schema transport.py 558 DEBUG [32/41]: setting Auto Member configuration transport.py 558 DEBUG [33/41]: enabling S4U2Proxy delegation transport.py 558 DEBUG [34/41]: initializing group membership transport.py 558 DEBUG [35/41]: adding master entry transport.py 558 DEBUG [36/41]: initializing domain level transport.py 558 DEBUG [37/41]: configuring Posix uid/gid generation transport.py 558 DEBUG [38/41]: adding replication acis transport.py 558 DEBUG [39/41]: activating sidgen plugin transport.py 558 DEBUG [40/41]: activating extdom plugin transport.py 558 DEBUG [41/41]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Replica DNS records could not be added on master: Insufficient access: Insufficient 'add' privilege to add the entry 'idnsname=replica1,idnsname=testrelm.test.,cn=dns,dc=testrelm,dc=test'. transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG Nothing to do for configure_httpd_wsgi_conf transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Custodia uses 'master.testrelm.test' as master peer. transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: secure AJP connector transport.py 558 DEBUG [8/30]: reindex attributes transport.py 558 DEBUG [9/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [10/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [11/30]: backing up CS.cfg transport.py 558 DEBUG [12/30]: disabling nonces transport.py 558 DEBUG [13/30]: set up CRL publishing transport.py 558 DEBUG [14/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [15/30]: destroying installation admin user transport.py 558 DEBUG [16/30]: starting certificate server instance transport.py 558 DEBUG [17/30]: Finalize replication settings transport.py 558 DEBUG [18/30]: configure certmonger for renewals transport.py 558 DEBUG [19/30]: Importing RA key transport.py 558 DEBUG [20/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [21/30]: restarting certificate server transport.py 558 DEBUG [22/30]: authorizing RA to modify profiles transport.py 558 DEBUG [23/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [24/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [25/30]: configure certificate renewals transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/10]: stopping directory server transport.py 558 DEBUG [2/10]: saving configuration transport.py 558 DEBUG [3/10]: disabling listeners transport.py 558 DEBUG [4/10]: enabling DS global lock transport.py 558 DEBUG [5/10]: disabling Schema Compat transport.py 558 DEBUG [6/10]: starting directory server transport.py 558 DEBUG [7/10]: upgrading server transport.py 558 DEBUG [8/10]: stopping directory server transport.py 558 DEBUG [9/10]: restoring configuration transport.py 558 DEBUG [10/10]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 246 INFO Set LDAP debug level transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 tasks.py 262 INFO Set LDAP audit log transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_testrelm.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_testrelm.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'user-add', 'testuser1', '--first', 'test', '--last', 'user'] transport.py 513 DEBUG RUN ['ipa', 'user-add', 'testuser1', '--first', 'test', '--last', 'user'] transport.py 558 DEBUG ---------------------- transport.py 558 DEBUG Added user "testuser1" transport.py 558 DEBUG ---------------------- transport.py 558 DEBUG User login: testuser1 transport.py 558 DEBUG First name: test transport.py 558 DEBUG Last name: user transport.py 558 DEBUG Full name: test user transport.py 558 DEBUG Display name: test user transport.py 558 DEBUG Initials: tu transport.py 558 DEBUG Home directory: /home/testuser1 transport.py 558 DEBUG GECOS: test user transport.py 558 DEBUG Login shell: /bin/sh transport.py 558 DEBUG Principal name: testuser1@TESTRELM.TEST transport.py 558 DEBUG Principal alias: testuser1@TESTRELM.TEST transport.py 558 DEBUG Email address: testuser1@testrelm.test transport.py 558 DEBUG UID: 488800001 transport.py 558 DEBUG GID: 488800001 transport.py 558 DEBUG Password: False transport.py 558 DEBUG Member of groups: ipausers transport.py 558 DEBUG Kerberos keys available: False transport.py 217 DEBUG Exit code: 0 host.py 148 INFO Connecting to LDAP at ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com transport.py 436 INFO GET /etc/ipa/ca.crt transport.py 513 DEBUG RUN ['cat', '/etc/ipa/ca.crt'] transport.py 217 DEBUG Exit code: 0 host.py 161 INFO LDAP bind as cn=Directory Manager tasks.py 1328 DEBUG Waiting for replication to finish ipaldap.py 202 DEBUG retrieving schema for SchemaCache url=ldap://ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com:389 conn=<ldap.ldapobject.SimpleLDAPObject object at 0x7f9a7c206588> tasks.py 1337 DEBUG Replication agreements: dn: cn=meToreplica1.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update started nsds5replicaupdateinprogress: TRUE dn: cn=caToreplica1.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE tasks.py 1343 DEBUG Replication not finished tasks.py 1337 DEBUG Replication agreements: dn: cn=meToreplica1.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caToreplica1.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE tasks.py 1348 DEBUG Replication finished host.py 148 INFO Connecting to LDAP at ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com transport.py 436 INFO GET /etc/ipa/ca.crt transport.py 513 DEBUG RUN ['cat', '/etc/ipa/ca.crt'] transport.py 217 DEBUG Exit code: 0 host.py 161 INFO LDAP bind as cn=Directory Manager tasks.py 1328 DEBUG Waiting for replication to finish ipaldap.py 202 DEBUG retrieving schema for SchemaCache url=ldap://ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com:389 conn=<ldap.ldapobject.SimpleLDAPObject object at 0x7f9a7a0c1438> tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (0) No replication sessions started sinc e server startup nsds5replicaupdateinprogress: FALSE tasks.py 1348 DEBUG Replication finished transport.py 391 INFO RUN ['ipa', 'user-show', 'testuser1'] transport.py 513 DEBUG RUN ['ipa', 'user-show', 'testuser1'] transport.py 558 DEBUG User login: testuser1 transport.py 558 DEBUG First name: test transport.py 558 DEBUG Last name: user transport.py 558 DEBUG Home directory: /home/testuser1 transport.py 558 DEBUG Login shell: /bin/sh transport.py 558 DEBUG Principal name: testuser1@TESTRELM.TEST transport.py 558 DEBUG Principal alias: testuser1@TESTRELM.TEST transport.py 558 DEBUG Email address: testuser1@testrelm.test transport.py 558 DEBUG UID: 488800001 transport.py 558 DEBUG GID: 488800001 transport.py 558 DEBUG Account disabled: False transport.py 558 DEBUG Password: False transport.py 558 DEBUG Member of groups: ipausers transport.py 558 DEBUG Kerberos keys available: False transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-backup', '-v', '--disable-role-check'] transport.py 513 DEBUG RUN ['ipa-backup', '-v', '--disable-role-check'] transport.py 558 DEBUG ipalib.install.sysrestore: DEBUG: Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' transport.py 558 DEBUG ipapython.admintool: DEBUG: Logging to /var/log/ipabackup.log transport.py 558 DEBUG ipapython.admintool: DEBUG: ipa-backup was invoked with arguments [] and options: {'verbose': True, 'quiet': False, 'log_file': None, 'gpg_keyring': None, 'gpg': False, 'data_only': False, 'logs': False, 'online': False, 'rolecheck': False} transport.py 558 DEBUG ipapython.admintool: DEBUG: IPA version 4.8.7-7.module+el8.3.0+7376+c83e4fcd transport.py 558 DEBUG ipalib.plugable: DEBUG: importing all plugin modules in ipaserver.plugins... transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.aci transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.automember transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.automount transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.baseldap transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.baseldap is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.baseuser transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.batch transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.ca transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.caacl transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.cert transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.certmap transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.certprofile transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.config transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.delegation transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.dns transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.dnsserver transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.dogtag transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.domainlevel transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.group transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hbac transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.hbac is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hbacrule transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hbacsvc transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hbacsvcgroup transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hbactest transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.host transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.hostgroup transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.idrange transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.idviews transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.internal transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.join transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.krbtpolicy transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.ldap2 transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.location transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.migration transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.misc transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.netgroup transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.otp transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.otp is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.otpconfig transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.otptoken transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.passwd transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.permission transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.ping transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.pkinit transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.privilege transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.pwpolicy transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.rabase transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.rabase is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.radiusproxy transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.realmdomains transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.role transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.schema transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.selfservice transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.selinuxusermap transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.server transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.serverrole transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.serverroles transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.service transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.servicedelegation transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.session transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.stageuser transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.sudo transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.sudo is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.sudocmd transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.sudocmdgroup transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.sudorule transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.topology transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.trust transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.user transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.vault transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.virtual transport.py 558 DEBUG ipalib.plugable: DEBUG: ipaserver.plugins.virtual is not a valid plugin module transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.whoami transport.py 558 DEBUG ipalib.plugable: DEBUG: importing plugin module ipaserver.plugins.xmlserver transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Preparing backup on master.testrelm.test transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/bin/systemctl', 'start', 'dirsrv@TESTRELM-TEST.service'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/bin/systemctl', 'is-active', 'dirsrv@TESTRELM-TEST.service'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=active transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr= transport.py 558 DEBUG ipapython.ipautil: DEBUG: wait_for_open_ports: localhost [389] timeout 120 transport.py 558 DEBUG ipapython.ipautil: DEBUG: waiting for port: 389 transport.py 558 DEBUG ipapython.ipautil: DEBUG: SUCCESS: port: 389 transport.py 558 DEBUG ipaplatform.base.services: DEBUG: Start of dirsrv@TESTRELM-TEST.service complete transport.py 558 DEBUG ipapython.ipaldap: DEBUG: retrieving schema for SchemaCache url=ldapi://%2Frun%2Fslapd-TESTRELM-TEST.socket conn=<ldap.ldapobject.SimpleLDAPObject object at 0x7fd89c027940> transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Local roles match globally used roles, proceeding. transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Stopping IPA services transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/sbin/ipactl', 'stop'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=Stopping ipa-dnskeysyncd Service transport.py 558 DEBUG Stopping ipa-otpd Service transport.py 558 DEBUG Stopping pki-tomcatd Service transport.py 558 DEBUG Stopping ipa-custodia Service transport.py 558 DEBUG Stopping httpd Service transport.py 558 DEBUG Stopping named Service transport.py 558 DEBUG Stopping kadmin Service transport.py 558 DEBUG Stopping krb5kdc Service transport.py 558 DEBUG Stopping Directory Service transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=ipa: INFO: The ipactl command was successful transport.py 558 DEBUG transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Backing up ipaca in TESTRELM-TEST to LDIF transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/sbin/dsctl', 'TESTRELM-TEST', 'db2ldif', '--replication', 'ipaca', '/var/lib/dirsrv/slapd-TESTRELM-TEST/ldif/TESTRELM-TEST-ipaca.ldif'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=db2ldif successful transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=ldiffile: /var/lib/dirsrv/slapd-TESTRELM-TEST/ldif/TESTRELM-TEST-ipaca.ldif transport.py 558 DEBUG transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Backing up userRoot in TESTRELM-TEST to LDIF transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/sbin/dsctl', 'TESTRELM-TEST', 'db2ldif', '--replication', 'userRoot', '/var/lib/dirsrv/slapd-TESTRELM-TEST/ldif/TESTRELM-TEST-userRoot.ldif'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=db2ldif successful transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=ldiffile: /var/lib/dirsrv/slapd-TESTRELM-TEST/ldif/TESTRELM-TEST-userRoot.ldif transport.py 558 DEBUG transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Backing up TESTRELM-TEST transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/sbin/dsctl', 'TESTRELM-TEST', 'db2bak', '/var/lib/dirsrv/slapd-TESTRELM-TEST/bak/TESTRELM-TEST'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=db2bak successful transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr= transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/bin/authselect', 'current', '--raw'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=sssd with-sudo transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr= transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Backing up files transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['tar', '--exclude=/var/lib/ipa/backup', '--xattrs', '--selinux', '-cf', '/tmp/tmps6s4yd0yipa/ipa/files.tar', '/usr/share/ipa/html', '/etc/pki/pki-tomcat', '/etc/sysconfig/pki', '/var/lib/pki', '/var/lib/ipa/sysrestore', '/var/lib/ipa-client/sysrestore', '/var/lib/ipa/dnssec', '/var/lib/sss/pubconf/krb5.include.d/', '/var/lib/certmonger', '/var/lib/ipa', '/run/dirsrv', '/run/lock/dirsrv', '/etc/dirsrv/slapd-TESTRELM-TEST', '/var/lib/dirsrv/slapd-TESTRELM-TEST', '/etc/named.conf', '/etc/named/ipa-ext.conf', '/etc/named/ipa-options-ext.conf', '/etc/named.keytab', '/etc/resolv.conf', '/etc/sysconfig/pki-tomcat', '/etc/sysconfig/krb5kdc', '/etc/sysconfig/ipa-dnskeysyncd', '/etc/sysconfig/ipa-ods-exporter', '/etc/sysconfig/named', '/etc/sysconfig/ods', '/etc/sysconfig/authconfig', '/etc/ipa/nssdb/pwdfile.txt', '/etc/pki/ca-trust/source/ipa.p11-kit', '/etc/authselect/user-nsswitch.conf', '/etc/krb5.keytab', '/etc/sssd/sssd.conf', '/etc/openldap/ldap.conf', '/etc/security/limits.conf', '/var/lib/ipa/gssproxy/http.keytab', '/etc/ipa/kdcproxy/ipa-kdc-proxy.conf', '/etc/httpd/conf.d/ipa-pki-proxy.conf', '/etc/httpd/conf.d/ipa-rewrite.conf', '/etc/httpd/conf.d/ssl.conf', '/etc/httpd/conf.d/ssl.conf', '/var/lib/ipa/certs/httpd.crt', '/var/lib/ipa/private/httpd.key', '/etc/httpd/conf.d/ipa.conf', '/etc/ssh/sshd_config', '/etc/ssh/ssh_config', '/etc/krb5.conf', '/var/lib/ipa-client/pki/kdc-ca-bundle.pem', '/var/lib/ipa-client/pki/ca-bundle.pem', '/etc/ipa/ca.crt', '/etc/ipa/default.conf', '/etc/dirsrv/ds.keytab', '/etc/chrony.conf', '/etc/samba/smb.conf', '/root/ca-agent.p12', '/var/lib/ipa/ra-agent.pem', '/var/lib/ipa/ra-agent.key', '/root/cacert.p12', '/var/kerberos/krb5kdc/kdc.conf', '/var/kerberos/krb5kdc/kdc.crt', '/var/kerberos/krb5kdc/kdc.key', '/var/kerberos/krb5kdc/cacert.pem', '/etc/systemd/system/multi-user.target.wants/ipa.service', '/etc/systemd/system/httpd.service.d/ipa.conf', '/etc/systemd/system/multi-user.target.wants/sssd.service', '/etc/systemd/system/multi-user.target.wants/certmonger.service', '/etc/systemd/system/pki-tomcatd.target.wants/pki-tomcatd@pki-tomcat.service', '/etc/opendnssec/conf.xml', '/etc/opendnssec/kasp.xml', '/etc/opendnssec/zonelist.xml', '/var/opendnssec/kasp.db', '/etc/ipa/dnssec/softhsm2.conf', '/etc/ipa/dnssec/softhsm_pin_so', '/etc/ipa/dnssec/ipa-dnskeysyncd.keytab', '/etc/ipa/custodia/server.keys', '/etc/ipa/custodia/custodia.conf', '/etc/gssproxy/10-ipa.conf', '/etc/hosts', '/etc/systemd/system/pki-tomcatd@pki-tomcat.service.d/ipa.conf', '/etc/ipa/nssdb/cert9.db', '/etc/ipa/nssdb/key4.db', '/etc/ipa/nssdb/pkcs11.txt', '/etc/pkcs11/modules/softhsm2.module', '/etc/tmpfiles.d/dirsrv-TESTRELM-TEST.conf', '/etc/systemd/system/dirsrv@TESTRELM-TEST.service.d/ipa-env.conf', '/var/lib/ipa/passwds/master.testrelm.test-443-RSA'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout= transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=tar: Removing leading `/' from member names transport.py 558 DEBUG tar: Removing leading `/' from hard link targets transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['tar', '--exclude=/var/lib/ipa/backup', '--xattrs', '--selinux', '--no-recursion', '-rf', '/tmp/tmps6s4yd0yipa/ipa/files.tar', '/var/log/pki/pki-tomcat', '/var/log/pki/pki-tomcat/ca', '/var/log/pki/pki-tomcat/ca/signedAudit', '/var/log/pki/pki-tomcat/ca/archive'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout= transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=tar: Removing leading `/' from member names transport.py 558 DEBUG transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Starting IPA service transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/usr/sbin/ipactl', 'start'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout=Starting Directory Service transport.py 558 DEBUG Starting krb5kdc Service transport.py 558 DEBUG Starting kadmin Service transport.py 558 DEBUG Starting named Service transport.py 558 DEBUG Starting httpd Service transport.py 558 DEBUG Starting ipa-custodia Service transport.py 558 DEBUG Starting pki-tomcatd Service transport.py 558 DEBUG Starting ipa-otpd Service transport.py 558 DEBUG Starting ipa-dnskeysyncd Service transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr=ipa: INFO: The ipactl command was successful transport.py 558 DEBUG transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['/bin/gzip', '/tmp/tmps6s4yd0yipa/ipa/files.tar'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout= transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr= transport.py 558 DEBUG ipapython.ipautil: DEBUG: Starting external process transport.py 558 DEBUG ipapython.ipautil: DEBUG: args=['tar', '--xattrs', '--selinux', '-czf', '/var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15/ipa-full.tar', '.'] transport.py 558 DEBUG ipapython.ipautil: DEBUG: Process finished, return code=0 transport.py 558 DEBUG ipapython.ipautil: DEBUG: stdout= transport.py 558 DEBUG ipapython.ipautil: DEBUG: stderr= transport.py 558 DEBUG ipaserver.install.ipa_backup: INFO: Backed up to /var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15 transport.py 558 DEBUG ipapython.admintool: INFO: The ipa-backup command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 1489 INFO Backup path for master.testrelm.test is /var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15 transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=meToreplica1.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapping tree,cn=config" transport.py 558 DEBUG transport.py 558 DEBUG modifying entry "cn=caToreplica1.testrelm.test,cn=replica,cn=o\3Dipaca,cn=mapping tree,cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-server-install', '--uninstall', '-U', '--ignore-topology-disconnect', '--ignore-last-of-role'] transport.py 513 DEBUG RUN ['ipa-server-install', '--uninstall', '-U', '--ignore-topology-disconnect', '--ignore-last-of-role'] transport.py 558 DEBUG Deleting this server will leave your installation without a CRL generation master. transport.py 558 DEBUG Updating DNS system records transport.py 558 DEBUG unable to resolve host name master.testrelm.test. to IP address, ipa-ca DNS record will be incomplete transport.py 558 DEBUG Forcing removal of master.testrelm.test transport.py 558 DEBUG Ignoring topology connectivity errors. transport.py 558 DEBUG Deleting this server will leave your installation without a DNS. transport.py 558 DEBUG Ignoring these warnings and proceeding with removal transport.py 558 DEBUG ----------------------------------------- transport.py 558 DEBUG Deleted IPA server "master.testrelm.test" transport.py 558 DEBUG ----------------------------------------- transport.py 558 DEBUG Shutting down all IPA services transport.py 558 DEBUG Unconfiguring CA transport.py 558 DEBUG Unconfiguring named transport.py 558 DEBUG Unconfiguring ipa-dnskeysyncd transport.py 558 DEBUG Unconfiguring web server transport.py 558 DEBUG Unconfiguring krb5kdc transport.py 558 DEBUG Unconfiguring kadmin transport.py 558 DEBUG Unconfiguring directory server transport.py 558 DEBUG Unconfiguring ipa-custodia transport.py 558 DEBUG Unconfiguring ipa-otpd transport.py 558 DEBUG Removing Kerberos service principals from /etc/krb5.keytab transport.py 558 DEBUG Disabling client Kerberos and LDAP configurations transport.py 558 DEBUG Restoring user-nsswitch.conf transport.py 558 DEBUG Redundant SSSD configuration file /etc/sssd/sssd.conf was moved to /etc/sssd/sssd.conf.deleted transport.py 558 DEBUG Restoring client configuration files transport.py 558 DEBUG Unconfiguring the NIS domain. transport.py 558 DEBUG nscd daemon is not installed, skip configuration transport.py 558 DEBUG nslcd daemon is not installed, skip configuration transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Client uninstall complete. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 558 DEBUG Removing IPA client configuration transport.py 558 DEBUG The ipa-server-install command was successful transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['pkidestroy', '-s', 'CA', '-i', 'pki-tomcat'] transport.py 513 DEBUG RUN ['pkidestroy', '-s', 'CA', '-i', 'pki-tomcat'] transport.py 558 DEBUG ERROR: PKI instance '/var/lib/pki/pki-tomcat' does NOT exist! transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 255 transport.py 391 INFO RUN ['rm', '-rf', '/var/log/pki/pki-tomcat', '/etc/sysconfig/pki-tomcat', '/etc/sysconfig/pki/tomcat/pki-tomcat', '/var/lib/pki/pki-tomcat', '/etc/pki/pki-tomcat', '/run/ipa/renewal.lock', '/var/lib/ipa/replica-info-master.testrelm.test.gpg'] transport.py 513 DEBUG RUN ['rm', '-rf', '/var/log/pki/pki-tomcat', '/etc/sysconfig/pki-tomcat', '/etc/sysconfig/pki/tomcat/pki-tomcat', '/var/lib/pki/pki-tomcat', '/etc/pki/pki-tomcat', '/run/ipa/renewal.lock', '/var/lib/ipa/replica-info-master.testrelm.test.gpg'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/keytabs -name '*.keytab' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/keytabs -name '*.keytab' | xargs rm -fv transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /run/ipa -name 'krb5*' | xargs rm -fv transport.py 513 DEBUG RUN find /run/ipa -name 'krb5*' | xargs rm -fv transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-restore', '/var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15'] transport.py 513 DEBUG RUN ['ipa-restore', '/var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15'] transport.py 558 DEBUG Preparing restore from /var/lib/ipa/backup/ipa-full-2020-07-31-17-00-15 on master.testrelm.test transport.py 558 DEBUG Performing FULL restore from FULL backup transport.py 558 DEBUG Temporary setting umask to 022 transport.py 558 DEBUG Each master will individually need to be re-initialized or transport.py 558 DEBUG re-created from this one. The replication agreements on transport.py 558 DEBUG masters running IPA 3.1 or earlier will need to be manually transport.py 558 DEBUG re-enabled. See the man page for details. transport.py 558 DEBUG Disabling all replication. transport.py 558 DEBUG Unable to get connection, skipping disabling agreements: directory server instance is not running/configured transport.py 558 DEBUG Stopping IPA services transport.py 558 DEBUG Restoring files transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Restoring from userRoot in TESTRELM-TEST transport.py 558 DEBUG Restoring from ipaca in TESTRELM-TEST transport.py 558 DEBUG Restarting GSS-proxy transport.py 558 DEBUG Starting IPA services transport.py 558 DEBUG Restarting SSSD transport.py 558 DEBUG Restarting oddjobd transport.py 558 DEBUG Enabling oddjobd transport.py 558 DEBUG Restarting IPA services transport.py 558 DEBUG Restoring umask to 18 transport.py 558 DEBUG The ipa-restore command was successful transport.py 558 DEBUG Restoring data will overwrite existing live data. Continue to restore? [no]: Restoring data will overwrite existing live data. Continue to restore? [no]: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'topologysegment-reinitialize', 'domain', 'master.testrelm.test-to-replica1.testrelm.test', '--left'] transport.py 513 DEBUG RUN ['ipa', 'topologysegment-reinitialize', 'domain', 'master.testrelm.test-to-replica1.testrelm.test', '--left'] transport.py 558 DEBUG -------------------------------------------------------------------------------------------- transport.py 558 DEBUG Replication refresh for segment: "master.testrelm.test-to-replica1.testrelm.test" requested. transport.py 558 DEBUG -------------------------------------------------------------------------------------------- transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'topologysegment-reinitialize', 'ca', 'master.testrelm.test-to-replica1.testrelm.test', '--left'] transport.py 513 DEBUG RUN ['ipa', 'topologysegment-reinitialize', 'ca', 'master.testrelm.test-to-replica1.testrelm.test', '--left'] transport.py 558 DEBUG -------------------------------------------------------------------------------------------- transport.py 558 DEBUG Replication refresh for segment: "master.testrelm.test-to-replica1.testrelm.test" requested. transport.py 558 DEBUG -------------------------------------------------------------------------------------------- transport.py 217 DEBUG Exit code: 0 host.py 148 INFO Connecting to LDAP at ci-vm-10-0-107-125.hosted.upshift.rdu2.redhat.com transport.py 436 INFO GET /etc/ipa/ca.crt transport.py 513 DEBUG RUN ['cat', '/etc/ipa/ca.crt'] transport.py 217 DEBUG Exit code: 0 host.py 161 INFO LDAP bind as cn=Directory Manager tasks.py 1328 DEBUG Waiting for replication to finish tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (49) Problem connecting to replica - LDA P error: Invalid credentials (connection error) nsds5replicaupdateinprogress: FALSE tasks.py 1346 DEBUG Unexpected replication status: Error (49) Problem connecting to replica - LDAP error: Invalid credentials (connection error) tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update started nsds5replicaupdateinprogress: TRUE tasks.py 1343 DEBUG Replication not finished tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE tasks.py 1348 DEBUG Replication finished transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'domainlevel-get'] transport.py 513 DEBUG RUN ['ipa', 'domainlevel-get'] transport.py 558 DEBUG ----------------------- transport.py 558 DEBUG Current domain level: 1 transport.py 558 DEBUG ----------------------- transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /etc/hostname transport.py 513 DEBUG RUN ['ls', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup/etc'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup/etc': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests/file_backup transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup'] transport.py 558 DEBUG ls: cannot access '/root/ipatests/file_backup': No such file or directory transport.py 217 DEBUG Exit code: 2 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup'] transport.py 217 DEBUG Exit code: 0 transport.py 422 INFO MKDIR /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['mkdir', '/root/ipatests/file_backup/etc'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /etc/hostname transport.py 513 DEBUG RUN ['tee', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['hostname', 'replica2.testrelm.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.testrelm.test'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN hostname > '/root/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/root/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp ESTAB 0 0 10.0.107.178%eth0:68 10.0.104.19:67 users:(("NetworkManager",pid=838,fd=24)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=5),("systemd",pid=1,fd=55)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=737,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=7),("systemd",pid=1,fd=57)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=737,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 100 127.0.0.1:25 0.0.0.0:* users:(("master",pid=26955,fd=16)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=4),("systemd",pid=1,fd=52)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=1981,fd=4)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.178:22 10.0.106.66:42002 users:(("sshd",pid=27136,fd=5),("sshd",pid=27120,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 100 [::1]:25 [::]:* users:(("master",pid=26955,fd=17)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=6),("systemd",pid=1,fd=56)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=1981,fd=6)) transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 391 INFO RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 513 DEBUG RUN ['python3', '-c', 'from ipaplatform.osinfo import OSInfo; print(OSInfo().platform)'] transport.py 558 DEBUG rhel transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'unmask', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'unmask', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'enable', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'enable', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'firewalld'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'firewalld'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['true'] transport.py 513 DEBUG RUN ['true'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests transport.py 513 DEBUG RUN ['ls', '/root/ipatests'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /root/ipatests/env.sh transport.py 513 DEBUG RUN ['tee', '/root/ipatests/env.sh'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /etc/hostname transport.py 513 DEBUG RUN ['ls', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /root/ipatests/file_backup/etc transport.py 513 DEBUG RUN ['ls', '/root/ipatests/file_backup/etc'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 513 DEBUG RUN ['cp', '-af', '/etc/hostname', '/root/ipatests/file_backup/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 427 INFO PUT /etc/hostname transport.py 513 DEBUG RUN ['tee', '/etc/hostname'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['hostname', 'replica2.testrelm.test'] transport.py 513 DEBUG RUN ['hostname', 'replica2.testrelm.test'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN hostname > '/root/ipatests/backup_hostname' transport.py 513 DEBUG RUN hostname > '/root/ipatests/backup_hostname' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 558 DEBUG udp ESTAB 0 0 10.0.107.178%eth0:68 10.0.104.19:67 users:(("NetworkManager",pid=838,fd=24)) transport.py 558 DEBUG udp UNCONN 0 0 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=5),("systemd",pid=1,fd=52)) transport.py 558 DEBUG udp UNCONN 0 0 127.0.0.1:323 0.0.0.0:* users:(("chronyd",pid=737,fd=5)) transport.py 558 DEBUG udp UNCONN 0 0 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=7),("systemd",pid=1,fd=56)) transport.py 558 DEBUG udp UNCONN 0 0 [::1]:323 [::]:* users:(("chronyd",pid=737,fd=6)) transport.py 558 DEBUG tcp LISTEN 0 100 127.0.0.1:25 0.0.0.0:* users:(("master",pid=26955,fd=16)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:111 0.0.0.0:* users:(("rpcbind",pid=681,fd=4),("systemd",pid=1,fd=50)) transport.py 558 DEBUG tcp LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:(("sshd",pid=1981,fd=4)) transport.py 558 DEBUG tcp ESTAB 0 0 10.0.107.178:22 10.0.106.66:42002 users:(("sshd",pid=27136,fd=5),("sshd",pid=27120,fd=5)) transport.py 558 DEBUG tcp LISTEN 0 100 [::1]:25 [::]:* users:(("master",pid=26955,fd=17)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:111 [::]:* users:(("rpcbind",pid=681,fd=6),("systemd",pid=1,fd=55)) transport.py 558 DEBUG tcp LISTEN 0 128 [::]:22 [::]:* users:(("sshd",pid=1981,fd=6)) transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 513 DEBUG RUN ['ss', '--all', '--tcp', '--udp', '--numeric', '--processes', '-o', 'state', 'all', '( sport = :749 or dport = :749 or sport = :464 or dport = :464 )'] transport.py 558 DEBUG Netid State Recv-Q Send-Q Local Address:Port Peer Address:Port transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 513 DEBUG RUN ['ipa', 'dnsconfig-mod', '--allow-sync-ptr=true'] transport.py 558 DEBUG ipa: ERROR: no modifications to be performed transport.py 217 DEBUG Exit code: 1 transport.py 391 INFO RUN ['ipa', 'dnszone-add', '107.0.10.in-addr.arpa.'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-add', '107.0.10.in-addr.arpa.'] transport.py 558 DEBUG ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['ns02.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.phx2.redhat.com.'] transport.py 217 DEBUG Exit code: 1 tasks.py 92 WARNING ipa: ERROR: DNS zone 107.0.10.in-addr.arpa. already exists in DNS and is handled by server(s): ['ns02.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.rdu2.redhat.com.', 'ns01.intranet.prod.int.phx2.redhat.com.', 'infoblox-trust01.intranet.prod.int.phx2.redhat.com.'] transport.py 391 INFO RUN ['ipa-client-install', '--domain', 'testrelm.test', '--realm', 'TESTRELM.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.testrelm.test', '-U'] transport.py 513 DEBUG RUN ['ipa-client-install', '--domain', 'testrelm.test', '--realm', 'TESTRELM.TEST', '-p', 'admin', '-w', 'Secret.123', '--server', 'master.testrelm.test', '-U'] transport.py 558 DEBUG Client hostname: replica2.testrelm.test transport.py 558 DEBUG Realm: TESTRELM.TEST transport.py 558 DEBUG DNS Domain: testrelm.test transport.py 558 DEBUG IPA Server: master.testrelm.test transport.py 558 DEBUG BaseDN: dc=testrelm,dc=test transport.py 558 DEBUG Synchronizing time transport.py 558 DEBUG No SRV records of NTP servers found and no NTP server or pool address was provided. transport.py 558 DEBUG Attempting to sync time with chronyc. transport.py 558 DEBUG Process chronyc waitsync failed to sync time! transport.py 558 DEBUG Unable to sync time with chrony server, assuming the time is in sync. Please check that 123 UDP port is opened, and any time server is on network. transport.py 558 DEBUG Successfully retrieved CA cert transport.py 558 DEBUG Subject: CN=Certificate Authority,O=TESTRELM.TEST transport.py 558 DEBUG Issuer: CN=Certificate Authority,O=TESTRELM.TEST transport.py 558 DEBUG Valid From: 2020-07-31 20:50:34 transport.py 558 DEBUG Valid Until: 2040-07-31 20:50:34 transport.py 558 DEBUG transport.py 558 DEBUG Enrolled in IPA realm TESTRELM.TEST transport.py 558 DEBUG Created /etc/ipa/default.conf transport.py 558 DEBUG Configured sudoers in /etc/authselect/user-nsswitch.conf transport.py 558 DEBUG Configured /etc/sssd/sssd.conf transport.py 558 DEBUG Configured /etc/krb5.conf for IPA realm TESTRELM.TEST transport.py 558 DEBUG Systemwide CA database updated. transport.py 558 DEBUG Hostname (replica2.testrelm.test) does not have A/AAAA record. transport.py 558 DEBUG Incorrect reverse record(s): transport.py 558 DEBUG 10.0.107.178 is pointing to ci-vm-10-0-107-178.hosted.upshift.rdu2.redhat.com. instead of replica2.testrelm.test. transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub transport.py 558 DEBUG Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub transport.py 558 DEBUG SSSD enabled transport.py 558 DEBUG Configured /etc/openldap/ldap.conf transport.py 558 DEBUG Configured /etc/ssh/ssh_config transport.py 558 DEBUG Configured /etc/ssh/sshd_config transport.py 558 DEBUG Configuring testrelm.test as NIS domain. transport.py 558 DEBUG Client configuration complete. transport.py 558 DEBUG This program will set up IPA client. transport.py 558 DEBUG Version 4.8.7 transport.py 558 DEBUG transport.py 558 DEBUG transport.py 558 DEBUG Using default chrony configuration. transport.py 558 DEBUG The ipa-client-install command was successful transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_testrelm.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_testrelm.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'dnszone-show', 'testrelm.test'] transport.py 513 DEBUG RUN ['ipa', 'dnszone-show', 'testrelm.test'] transport.py 558 DEBUG Zone name: testrelm.test. transport.py 558 DEBUG Active zone: TRUE transport.py 558 DEBUG Authoritative nameserver: master.testrelm.test. transport.py 558 DEBUG Administrator e-mail address: hostmaster.testrelm.test. transport.py 558 DEBUG SOA serial: 1596229396 transport.py 558 DEBUG SOA refresh: 3600 transport.py 558 DEBUG SOA retry: 900 transport.py 558 DEBUG SOA expire: 1209600 transport.py 558 DEBUG SOA minimum: 3600 transport.py 558 DEBUG BIND update policy: grant TESTRELM.TEST krb5-self * A; grant TESTRELM.TEST krb5-self * AAAA; grant TESTRELM.TEST krb5-self * SSHFP; transport.py 558 DEBUG Dynamic update: TRUE transport.py 558 DEBUG Allow query: any; transport.py 558 DEBUG Allow transfer: none; transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'httpd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'httpd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 513 DEBUG RUN for line in `ipcs -s | grep apache | cut -d " " -f 2`; do ipcrm -s $line; done transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--permanent'] transport.py 513 DEBUG RUN ['firewall-cmd', '--add-service', 'freeipa-ldap', '--add-service', 'freeipa-ldaps', '--permanent'] transport.py 558 DEBUG success transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '10.0.107.178', '--realm', 'TESTRELM.TEST', '--domain', 'testrelm.test'] transport.py 513 DEBUG RUN ['ipa-replica-install', '--admin-password', 'Secret.123', '--password', 'Secret.123', '-U', '--setup-ca', '--ip-address', '10.0.107.178', '--realm', 'TESTRELM.TEST', '--domain', 'testrelm.test'] transport.py 558 DEBUG Lookup failed: Preferred host replica2.testrelm.test does not provide DNS. transport.py 558 DEBUG The IP address 10.0.107.99 of host master.testrelm.test resolves to: ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com.. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.) transport.py 558 DEBUG IPA client is already configured on this system, ignoring the --domain, --server, --realm, --hostname, --password and --keytab options. transport.py 558 DEBUG Run connection check to master transport.py 558 DEBUG Connection check OK transport.py 558 DEBUG Disabled p11-kit-proxy transport.py 558 DEBUG Configuring directory server (dirsrv). Estimated time: 30 seconds transport.py 558 DEBUG [1/41]: creating directory server instance transport.py 558 DEBUG [2/41]: configure autobind for root transport.py 558 DEBUG [3/41]: stopping directory server transport.py 558 DEBUG [4/41]: updating configuration in dse.ldif transport.py 558 DEBUG [5/41]: starting directory server transport.py 558 DEBUG [6/41]: adding default schema transport.py 558 DEBUG [7/41]: enabling memberof plugin transport.py 558 DEBUG [8/41]: enabling winsync plugin transport.py 558 DEBUG [9/41]: configure password logging transport.py 558 DEBUG [10/41]: configuring replication version plugin transport.py 558 DEBUG [11/41]: enabling IPA enrollment plugin transport.py 558 DEBUG [12/41]: configuring uniqueness plugin transport.py 558 DEBUG [13/41]: configuring uuid plugin transport.py 558 DEBUG [14/41]: configuring modrdn plugin transport.py 558 DEBUG [15/41]: configuring DNS plugin transport.py 558 DEBUG [16/41]: enabling entryUSN plugin transport.py 558 DEBUG [17/41]: configuring lockout plugin transport.py 558 DEBUG [18/41]: configuring topology plugin transport.py 558 DEBUG [19/41]: creating indices transport.py 558 DEBUG [20/41]: enabling referential integrity plugin transport.py 558 DEBUG [21/41]: configuring certmap.conf transport.py 558 DEBUG [22/41]: configure new location for managed entries transport.py 558 DEBUG [23/41]: configure dirsrv ccache and keytab transport.py 558 DEBUG [24/41]: enabling SASL mapping fallback transport.py 558 DEBUG [25/41]: restarting directory server transport.py 558 DEBUG [26/41]: creating DS keytab transport.py 558 DEBUG [27/41]: ignore time skew for initial replication transport.py 558 DEBUG [28/41]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [29/41]: prevent time skew after initial replication transport.py 558 DEBUG [30/41]: adding sasl mappings to the directory transport.py 558 DEBUG [31/41]: updating schema transport.py 558 DEBUG [32/41]: setting Auto Member configuration transport.py 558 DEBUG [33/41]: enabling S4U2Proxy delegation transport.py 558 DEBUG [34/41]: initializing group membership transport.py 558 DEBUG [35/41]: adding master entry transport.py 558 DEBUG [36/41]: initializing domain level transport.py 558 DEBUG [37/41]: configuring Posix uid/gid generation transport.py 558 DEBUG [38/41]: adding replication acis transport.py 558 DEBUG [39/41]: activating sidgen plugin transport.py 558 DEBUG [40/41]: activating extdom plugin transport.py 558 DEBUG [41/41]: configuring directory to start on boot transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Replica DNS records could not be added on master: Insufficient access: Insufficient 'add' privilege to add the entry 'idnsname=replica2,idnsname=testrelm.test.,cn=dns,dc=testrelm,dc=test'. transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/5]: configuring KDC transport.py 558 DEBUG [2/5]: adding the password extension to the directory transport.py 558 DEBUG [3/5]: creating anonymous principal transport.py 558 DEBUG [4/5]: starting the KDC transport.py 558 DEBUG [5/5]: configuring KDC to start on boot transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Configuring kadmin transport.py 558 DEBUG [1/2]: starting kadmin transport.py 558 DEBUG [2/2]: configuring kadmin to start on boot transport.py 558 DEBUG Done configuring kadmin. transport.py 558 DEBUG Configuring directory server (dirsrv) transport.py 558 DEBUG [1/3]: configuring TLS for DS instance transport.py 558 DEBUG [2/3]: importing CA certificates from LDAP transport.py 558 DEBUG [3/3]: restarting directory server transport.py 558 DEBUG Done configuring directory server (dirsrv). transport.py 558 DEBUG Configuring the web interface (httpd) transport.py 558 DEBUG [1/21]: stopping httpd transport.py 558 DEBUG [2/21]: backing up ssl.conf transport.py 558 DEBUG [3/21]: disabling nss.conf transport.py 558 DEBUG [4/21]: configuring mod_ssl certificate paths transport.py 558 DEBUG [5/21]: setting mod_ssl protocol list transport.py 558 DEBUG [6/21]: configuring mod_ssl log directory transport.py 558 DEBUG [7/21]: disabling mod_ssl OCSP transport.py 558 DEBUG [8/21]: adding URL rewriting rules transport.py 558 DEBUG [9/21]: configuring httpd transport.py 558 DEBUG Nothing to do for configure_httpd_wsgi_conf transport.py 558 DEBUG [10/21]: setting up httpd keytab transport.py 558 DEBUG [11/21]: configuring Gssproxy transport.py 558 DEBUG [12/21]: setting up ssl transport.py 558 DEBUG [13/21]: configure certmonger for renewals transport.py 558 DEBUG [14/21]: publish CA cert transport.py 558 DEBUG [15/21]: clean up any existing httpd ccaches transport.py 558 DEBUG [16/21]: configuring SELinux for httpd transport.py 558 DEBUG [17/21]: create KDC proxy config transport.py 558 DEBUG [18/21]: enable KDC proxy transport.py 558 DEBUG [19/21]: starting httpd transport.py 558 DEBUG [20/21]: configuring httpd to start on boot transport.py 558 DEBUG [21/21]: enabling oddjobd transport.py 558 DEBUG Done configuring the web interface (httpd). transport.py 558 DEBUG Configuring ipa-otpd transport.py 558 DEBUG [1/2]: starting ipa-otpd transport.py 558 DEBUG [2/2]: configuring ipa-otpd to start on boot transport.py 558 DEBUG Custodia uses 'master.testrelm.test' as master peer. transport.py 558 DEBUG Done configuring ipa-otpd. transport.py 558 DEBUG Configuring ipa-custodia transport.py 558 DEBUG [1/4]: Generating ipa-custodia config file transport.py 558 DEBUG [2/4]: Generating ipa-custodia keys transport.py 558 DEBUG [3/4]: starting ipa-custodia transport.py 558 DEBUG [4/4]: configuring ipa-custodia to start on boot transport.py 558 DEBUG Done configuring ipa-custodia. transport.py 558 DEBUG Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes transport.py 558 DEBUG [1/30]: creating certificate server db transport.py 558 DEBUG [2/30]: setting up initial replication transport.py 558 DEBUG Starting replication, please wait until this has completed. transport.py 558 DEBUG Update in progress, 1 seconds elapsed Update in progress, 2 seconds elapsed Update in progress, 3 seconds elapsed transport.py 558 DEBUG Update succeeded transport.py 558 DEBUG transport.py 558 DEBUG [3/30]: creating ACIs for admin transport.py 558 DEBUG [4/30]: creating installation admin user transport.py 558 DEBUG [5/30]: configuring certificate server instance transport.py 558 DEBUG [6/30]: Add ipa-pki-wait-running transport.py 558 DEBUG [7/30]: secure AJP connector transport.py 558 DEBUG [8/30]: reindex attributes transport.py 558 DEBUG [9/30]: exporting Dogtag certificate store pin transport.py 558 DEBUG [10/30]: stopping certificate server instance to update CS.cfg transport.py 558 DEBUG [11/30]: backing up CS.cfg transport.py 558 DEBUG [12/30]: disabling nonces transport.py 558 DEBUG [13/30]: set up CRL publishing transport.py 558 DEBUG [14/30]: enable PKIX certificate path discovery and validation transport.py 558 DEBUG [15/30]: destroying installation admin user transport.py 558 DEBUG [16/30]: starting certificate server instance transport.py 558 DEBUG [17/30]: Finalize replication settings transport.py 558 DEBUG [18/30]: configure certmonger for renewals transport.py 558 DEBUG [19/30]: Importing RA key transport.py 558 DEBUG [20/30]: setting audit signing renewal to 2 years transport.py 558 DEBUG [21/30]: restarting certificate server transport.py 558 DEBUG [22/30]: authorizing RA to modify profiles transport.py 558 DEBUG [23/30]: authorizing RA to manage lightweight CAs transport.py 558 DEBUG [24/30]: Ensure lightweight CAs container exists transport.py 558 DEBUG [25/30]: configure certificate renewals transport.py 558 DEBUG [26/30]: Configure HTTP to proxy connections transport.py 558 DEBUG [27/30]: restarting certificate server transport.py 558 DEBUG [28/30]: updating IPA configuration transport.py 558 DEBUG [29/30]: enabling CA instance transport.py 558 DEBUG [30/30]: configuring certmonger renewal for lightweight CAs transport.py 558 DEBUG Done configuring certificate server (pki-tomcatd). transport.py 558 DEBUG Configuring Kerberos KDC (krb5kdc) transport.py 558 DEBUG [1/1]: installing X509 Certificate for PKINIT transport.py 558 DEBUG Done configuring Kerberos KDC (krb5kdc). transport.py 558 DEBUG Applying LDAP updates transport.py 558 DEBUG Upgrading IPA:. Estimated time: 1 minute 30 seconds transport.py 558 DEBUG [1/10]: stopping directory server transport.py 558 DEBUG [2/10]: saving configuration transport.py 558 DEBUG [3/10]: disabling listeners transport.py 558 DEBUG [4/10]: enabling DS global lock transport.py 558 DEBUG [5/10]: disabling Schema Compat transport.py 558 DEBUG [6/10]: starting directory server transport.py 558 DEBUG [7/10]: upgrading server transport.py 558 DEBUG [8/10]: stopping directory server transport.py 558 DEBUG [9/10]: restoring configuration transport.py 558 DEBUG [10/10]: starting directory server transport.py 558 DEBUG Done. transport.py 558 DEBUG Finalize replication settings transport.py 558 DEBUG Restarting the KDC transport.py 558 DEBUG The ipa-replica-install command was successful transport.py 217 DEBUG Exit code: 0 tasks.py 246 INFO Set LDAP debug level transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 tasks.py 262 INFO Set LDAP audit log transport.py 391 INFO RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 513 DEBUG RUN ['ldapmodify', '-x', '-D', 'cn=Directory Manager', '-w', 'Secret.123'] transport.py 558 DEBUG modifying entry "cn=config" transport.py 558 DEBUG transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/debug_level = 7/d', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 513 DEBUG RUN ['sed', '-i', '/\\[*\\]/ a\\debug_level = 7', '/etc/sssd/sssd.conf'] transport.py 217 DEBUG Exit code: 0 transport.py 415 INFO STAT /bin/systemctl transport.py 513 DEBUG RUN ['ls', '/bin/systemctl'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'stop', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'stop', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 513 DEBUG RUN find /var/lib/sss/db -name '*.ldb' | xargs rm -fv transport.py 558 DEBUG removed '/var/lib/sss/db/config.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/sssd.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_implicit_files.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/cache_testrelm.test.ldb' transport.py 558 DEBUG removed '/var/lib/sss/db/timestamps_testrelm.test.ldb' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/group'] transport.py 558 DEBUG removed '/var/lib/sss/mc/group' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 513 DEBUG RUN ['rm', '-fv', '/var/lib/sss/mc/passwd'] transport.py 558 DEBUG removed '/var/lib/sss/mc/passwd' transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['systemctl', 'start', 'sssd'] transport.py 513 DEBUG RUN ['systemctl', 'start', 'sssd'] transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['kinit', 'admin'] transport.py 513 DEBUG RUN ['kinit', 'admin'] transport.py 558 DEBUG Password for admin@TESTRELM.TEST: transport.py 217 DEBUG Exit code: 0 transport.py 391 INFO RUN ['ipa', 'user-add', 'testuser2', '--first', 'test', '--last', 'user'] transport.py 513 DEBUG RUN ['ipa', 'user-add', 'testuser2', '--first', 'test', '--last', 'user'] transport.py 558 DEBUG ---------------------- transport.py 558 DEBUG Added user "testuser2" transport.py 558 DEBUG ---------------------- transport.py 558 DEBUG User login: testuser2 transport.py 558 DEBUG First name: test transport.py 558 DEBUG Last name: user transport.py 558 DEBUG Full name: test user transport.py 558 DEBUG Display name: test user transport.py 558 DEBUG Initials: tu transport.py 558 DEBUG Home directory: /home/testuser2 transport.py 558 DEBUG GECOS: test user transport.py 558 DEBUG Login shell: /bin/sh transport.py 558 DEBUG Principal name: testuser2@TESTRELM.TEST transport.py 558 DEBUG Principal alias: testuser2@TESTRELM.TEST transport.py 558 DEBUG Email address: testuser2@testrelm.test transport.py 558 DEBUG UID: 488800003 transport.py 558 DEBUG GID: 488800003 transport.py 558 DEBUG Password: False transport.py 558 DEBUG Member of groups: ipausers transport.py 558 DEBUG Kerberos keys available: False transport.py 217 DEBUG Exit code: 0 host.py 148 INFO Connecting to LDAP at ci-vm-10-0-107-99.hosted.upshift.rdu2.redhat.com transport.py 436 INFO GET /etc/ipa/ca.crt transport.py 513 DEBUG RUN ['cat', '/etc/ipa/ca.crt'] transport.py 217 DEBUG Exit code: 0 host.py 161 INFO LDAP bind as cn=Directory Manager tasks.py 1328 DEBUG Waiting for replication to finish tasks.py 1337 DEBUG Replication agreements: dn: cn=meToreplica1.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update started nsds5replicaupdateinprogress: TRUE dn: cn=meToreplica2.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update started nsds5replicaupdateinprogress: TRUE dn: cn=caToreplica1.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caToreplica2.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE tasks.py 1343 DEBUG Replication not finished tasks.py 1337 DEBUG Replication agreements: dn: cn=meToreplica1.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=meToreplica2.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=ma pping tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caToreplica1.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caToreplica2.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn= config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE tasks.py 1348 DEBUG Replication finished host.py 148 INFO Connecting to LDAP at ci-vm-10-0-107-178.hosted.upshift.rdu2.redhat.com transport.py 436 INFO GET /etc/ipa/ca.crt transport.py 513 DEBUG RUN ['cat', '/etc/ipa/ca.crt'] transport.py 217 DEBUG Exit code: 0 host.py 161 INFO LDAP bind as cn=Directory Manager tasks.py 1328 DEBUG Waiting for replication to finish ipaldap.py 202 DEBUG retrieving schema for SchemaCache url=ldap://ci-vm-10-0-107-178.hosted.upshift.rdu2.redhat.com:389 conn=<ldap.ldapobject.SimpleLDAPObject object at 0x7f9a79e8d438> tasks.py 1337 DEBUG Replication agreements: dn: cn=meTomaster.testrelm.test,cn=replica,cn=dc\=testrelm\,dc\=test,cn=mapp ing tree,cn=config nsds5replicalastupdatestatus: Error (0) Replica acquired successfully: Incre mental update succeeded nsds5replicaupdateinprogress: FALSE dn: cn=caTomaster.testrelm.test,cn=replica,cn=o\=ipaca,cn=mapping tree,cn=co nfig nsds5replicalastupdatestatus: Error (0) No replication sessions started sinc e server startup nsds5replicaupdateinprogress: FALSE tasks.py 1348 DEBUG Replication finished transport.py 391 INFO RUN ['ipa', 'user-show', 'testuser2'] transport.py 513 DEBUG RUN ['ipa', 'user-show', 'testuser2'] transport.py 558 DEBUG User login: testuser2 transport.py 558 DEBUG First name: test transport.py 558 DEBUG Last name: user transport.py 558 DEBUG Home directory: /home/testuser2 transport.py 558 DEBUG Login shell: /bin/sh transport.py 558 DEBUG Principal name: testuser2@TESTRELM.TEST transport.py 558 DEBUG Principal alias: testuser2@TESTRELM.TEST transport.py 558 DEBUG Email address: testuser2@testrelm.test transport.py 558 DEBUG UID: 488800003 transport.py 558 DEBUG GID: 488800003 transport.py 558 DEBUG Account disabled: False transport.py 558 DEBUG Password: False transport.py 558 DEBUG Member of groups: ipausers transport.py 558 DEBUG Kerberos keys available: False transport.py 217 DEBUG Exit code: 0