Harald Dunkel via FreeIPA-users wrote:
> Hi folks,
> 
> Platform: Centos 7.4, ipa 4.5.0-21
> 
> The ipa service cannot be started anymore. Error message:
> 
> # systemctl status ipa
> * ipa.service - Identity, Policy, Audit
>    Loaded: loaded (/usr/lib/systemd/system/ipa.service; enabled; vendor
> preset: disabled)
>    Active: failed (Result: exit-code) since Wed 2017-12-06 14:45:53 CET;
> 12min ago
>   Process: 307 ExecStart=/usr/sbin/ipactl start (code=exited,
> status=1/FAILURE)
>  Main PID: 307 (code=exited, status=1/FAILURE)
> 
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting Directory Service
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting krb5kdc Service
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting kadmin Service
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting httpd Service
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting ipa-custodia Service
> Dec 06 14:45:52 ipa1.aixigo.de ipactl[307]: Starting pki-tomcatd Service
> Dec 06 14:45:53 ipa1.aixigo.de systemd[1]: ipa.service: main process
> exited, code=exited, status=1/FAILURE
> Dec 06 14:45:53 ipa1.aixigo.de systemd[1]: Failed to start Identity,
> Policy, Audit.
> Dec 06 14:45:53 ipa1.aixigo.de systemd[1]: Unit ipa.service entered
> failed state.
> Dec 06 14:45:53 ipa1.aixigo.de systemd[1]: ipa.service failed.
> 
> 
> Apparently pki-tomcatd is to blame. See the attached logfiles.

Need the (compressed) debug log.

You can get the rest of the IPA service started by passing
--ignore-service-failures to ipactl.

rob
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org

Reply via email to