GAURAV Pande via FreeIPA-users wrote:
> Hi Team ,
> 
> We had a strange issue where our FreeIPA GUI was down when checked from 
> backend server the httpd service is not starting and we are not able to 
> figure it out based on errors from var/log/httpd what can be the issue , 
> helpful if anyone can help here . Thanks 
> 
> $ sudo ipactl restart
> Starting Directory Service
> Restarting krb5kdc Service
> Restarting kadmin Service
> Starting httpd Service
> Failed to start httpd Service
> Shutting down
> Hint: You can use --ignore-service-failure option for forced start in case 
> that a non-critical service failed
> Aborting ipactl
> 
> 
> 
> LOGS : 
> $ sudo tail -f  /var/log/httpd/error_log
> [Fri Mar 04 06:59:21.220847 2022] [core:notice] [pid 16345] SELinux policy 
> enabled; httpd running as context system_u:system_r:httpd_t:s0
> [Fri Mar 04 06:59:21.221844 2022] [suexec:notice] [pid 16345] AH01232: suEXEC 
> mechanism enabled (wrapper: /usr/sbin/suexec)
> [Fri Mar 04 06:59:21.313573 2022] [:error] [pid 16345] Password for slot 
> internal is incorrect.
> [Fri Mar 04 06:59:21.316345 2022] [:error] [pid 16345] NSS initialization 
> failed. Certificate database: /etc/httpd/alias.
> [Fri Mar 04 06:59:21.316401 2022] [:error] [pid 16345] SSL Library Error: 
> -8177 The security password entered is incorrect
> [Fri Mar 04 07:21:47.374010 2022] [core:notice] [pid 16745] SELinux policy 
> enabled; httpd running as context system_u:system_r:httpd_t:s0
> [Fri Mar 04 07:21:47.374961 2022] [suexec:notice] [pid 16745] AH01232: suEXEC 
> mechanism enabled (wrapper: /usr/sbin/suexec)
> [Fri Mar 04 07:21:47.477234 2022] [:error] [pid 16745] Password for slot 
> internal is incorrect.
> [Fri Mar 04 07:21:47.480302 2022] [:error] [pid 16745] NSS initialization 
> failed. Certificate database: /etc/httpd/alias.
> [Fri Mar 04 07:21:47.480333 2022] [:error] [pid 16745] SSL Library Error: 
> -8177 The security password entered is incorrect

Were you making an system configuration changes prior to this? Replacing
the IPA-issued certificates?

rob
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to