Hi All,

I am creating master replica setup using following commands and getting error on replica server

2016-06-15T03:53:31Z DEBUG The ipa-replica-install command failed, exception: NetworkError: cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.

Can anyone explain me what does this error is trying to say ?

I am performing following steps

$ mkdir /tmp/nssdb
$ vim /tmp/nssdb/password.txt
$ vim /tmp/nssdb/noise.txt
$ certutil -d /tmp/nssdb/ -N -f /tmp/nssdb/password.txt
$ certutil -d /tmp/nssdb -S -n ca -s cn=Test_CA -x -t CTu,Cu,Cu -g 2048 -v 60 -z /tmp/nssdb/noise.txt -2 -f /tmp/nssdb/passwd.txt $ certutil -d /tmp/nssdb -S -n server -s cn=dhcp201-172.testrelm.test -t ,, -z /tmp/nssdb/noise.txt -c ca -f /tmp/nssdb/passwd.txt $ /usr/bin/pk12util -o /tmp/nssdb/server.p12 -n server -d /tmp/nssdb -k /tmp/nssdb/passwd.txt -W Secret123 $ ipa-server-install --http-cert-file /tmp/nssdb/server.p12 --dirsrv-cert-file /tmp/nssdb/server.p12 --ip-address 10.65.210.89 -r TESTRELM.TEST -p Secret123 -a Secret123 --setup-dns --forwarder 10.11.5.19 --http-pin Secret123 --dirsrv-pin Secret123 -U $ certutil -d /tmp/nssdb -S -n ca -s cn=Test_CA -x -t CTu,Cu,Cu -g 2048 -v 60 -z /tmp/nssdb/noise.txt -2 -f /tmp/nssdb/passwd.txt -m 3 $ certutil -d /tmp/nssdb -S -n replica -s cn=dhcp201-141.testrelm.test -t ,, -z /tmp/nssdb/noise.txt -c ca -f /tmp/nssdb/passwd.txt -m 4 $ /usr/bin/pk12util -o /tmp/nssdb/replica.p12 -n replica -d /tmp/nssdb -k /tmp/nssdb/passwd.txt -W Secret123ยท $ ipa-replica-prepare dhcp201-141.testrelm.test --http_pkcs12 /tmp/nssdb/replica.p12 --http_pin Secret123 --dirsrv_pkcs12 /tmp/nssdb/replica.p12 --dirsrv_pin Secret123 --ip-address 10.65.210.91 --reverse-zone=210.65.10.in-addr.arpa. $ scp /var/lib/ipa/replica-info-dhcp201-141.testrelm.test.gpg r...@dhcp201-141.testrelm.test:/root/

Attaching console.log and replicainstall.log

--
Thanks,
Abhijeet Kasurde

IRC: akasurde
http://akasurde.github.io

# ipa-replica-install --setup-dns --no-forwarders --password=Secret123 --admin-password=Secret123 --mkhomedir --unattended replica-info-dhcp201-141.testrelm.test.gpg 
Using reverse zone(s) 210.65.10.in-addr.arpa.
Run connection check to master
Check connection from replica to remote master 'dhcp201-172.testrelm.test':
   Directory Service: Unsecure port (389): OK
   Directory Service: Secure port (636): OK
   Kerberos KDC: TCP (88): OK
   Kerberos Kpasswd: TCP (464): OK
   HTTP Server: Unsecure port (80): OK
   HTTP Server: Secure port (443): OK

The following list of ports use UDP protocol and would need to be
checked manually:
   Kerberos KDC: UDP (88): SKIPPED
   Kerberos Kpasswd: UDP (464): SKIPPED

Connection from replica to master is OK.
Start listening on required ports for remote master check
Get credentials to log in to remote master
Check SSH connection to remote master
Execute check on remote master
Check connection from master to remote replica 'dhcp201-141.testrelm.test':
   Directory Service: Unsecure port (389): OK
   Directory Service: Secure port (636): OK
   Kerberos KDC: TCP (88): OK
   Kerberos KDC: UDP (88): OK
   Kerberos Kpasswd: TCP (464): OK
   Kerberos Kpasswd: UDP (464): OK
   HTTP Server: Unsecure port (80): OK
   HTTP Server: Secure port (443): OK

Connection from master to replica is OK.

Connection check OK
Configuring NTP daemon (ntpd)
  [1/4]: stopping ntpd
  [2/4]: writing configuration
  [3/4]: configuring ntpd to start on boot
  [4/4]: starting ntpd
Done configuring NTP daemon (ntpd).
Configuring directory server (dirsrv). Estimated time: 1 minute
  [1/38]: creating directory server user
  [2/38]: creating directory server instance
  [3/38]: adding default schema
  [4/38]: enabling memberof plugin
  [5/38]: enabling winsync plugin
  [6/38]: configuring replication version plugin
  [7/38]: enabling IPA enrollment plugin
  [8/38]: enabling ldapi
  [9/38]: configuring uniqueness plugin
  [10/38]: configuring uuid plugin
  [11/38]: configuring modrdn plugin
  [12/38]: configuring DNS plugin
  [13/38]: enabling entryUSN plugin
  [14/38]: configuring lockout plugin
  [15/38]: creating indices
  [16/38]: enabling referential integrity plugin
  [17/38]: configuring ssl for ds instance
  [18/38]: configuring certmap.conf
  [19/38]: configure autobind for root
  [20/38]: configure new location for managed entries
  [21/38]: configure dirsrv ccache
  [22/38]: enable SASL mapping fallback
  [23/38]: restarting directory server
  [24/38]: setting up initial replication
  [error] NetworkError: cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.
Your system may be partly configured.
Run /usr/sbin/ipa-server-install --uninstall to clean up.

ipa.ipapython.install.cli.install_tool(Replica): ERROR    cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.
2016-06-15T04:26:56Z DEBUG Logging to /var/log/ipareplica-install.log
2016-06-15T04:26:56Z DEBUG ipa-replica-install was invoked with arguments ['replica-info-dhcp201-141.testrelm.test.gpg'] and options: {'no_dns_sshfp': None, 'skip_schema_check': None, 'no_ntp': None, 'setup_kra': None, 'ip_addresses': None, 'mkhomedir': True, 'setup_ca': None, 'no_pkinit': None, 'verbose': False, 'no_forwarders': True, 'ssh_trust_dns': None, 'setup_dns': True, 'no_reverse': None, 'reverse_zones': None, 'unattended': True, 'no_host_dns': None, 'no_sshd': None, 'no_ui_redirect': None, 'forwarders': None, 'skip_conncheck': None, 'no_ssh': None, 'quiet': False, 'no_dnssec_validation': None, 'log_file': None}
2016-06-15T04:26:56Z DEBUG IPA version 4.2.0-15.el7_2.17
2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='/usr/sbin/selinuxenabled'
2016-06-15T04:26:56Z DEBUG Process finished, return code=0
2016-06-15T04:26:56Z DEBUG stdout=
2016-06-15T04:26:56Z DEBUG stderr=
2016-06-15T04:26:56Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index'
2016-06-15T04:26:56Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:26:56Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='/usr/sbin/httpd' '-t' '-D' 'DUMP_VHOSTS'
2016-06-15T04:26:56Z DEBUG Process finished, return code=0
2016-06-15T04:26:56Z DEBUG stdout=VirtualHost configuration:
*:8443                 dhcp201-141.testrelm.test (/etc/httpd/conf.d/nss.conf:83)

2016-06-15T04:26:56Z DEBUG stderr=
2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='/bin/systemctl' 'is-enabled' 'chronyd.service'
2016-06-15T04:26:56Z DEBUG Process finished, return code=1
2016-06-15T04:26:56Z DEBUG stdout=
2016-06-15T04:26:56Z DEBUG stderr=Failed to get unit file state for chronyd.service: No such file or directory

2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='/bin/systemctl' 'is-active' 'chronyd.service'
2016-06-15T04:26:56Z DEBUG Process finished, return code=3
2016-06-15T04:26:56Z DEBUG stdout=unknown

2016-06-15T04:26:56Z DEBUG stderr=
2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='/usr/bin/gpg-agent' '--batch' '--homedir' '/tmp/tmpRn512bipa/ipa-S08fxq/.gnupg' '--daemon' '/usr/bin/gpg' '--batch' '--homedir' '/tmp/tmpRn512bipa/ipa-S08fxq/.gnupg' '--passphrase-fd' '0' '--yes' '--no-tty' '-o' '/tmp/tmpRn512bipa/files.tar' '-d' 'replica-info-dhcp201-141.testrelm.test.gpg'
2016-06-15T04:26:56Z DEBUG Process finished, return code=0
2016-06-15T04:26:56Z DEBUG Starting external process
2016-06-15T04:26:56Z DEBUG args='tar' 'xf' '/tmp/tmpRn512bipa/files.tar' '-C' '/tmp/tmpRn512bipa'
2016-06-15T04:26:56Z DEBUG Process finished, return code=0
2016-06-15T04:26:56Z DEBUG stdout=
2016-06-15T04:26:56Z DEBUG stderr=
2016-06-15T04:26:56Z DEBUG Installing replica file with version 40200 (0 means no version in prepared file).
2016-06-15T04:26:56Z DEBUG Check if dhcp201-141.testrelm.test is a primary hostname for localhost
2016-06-15T04:26:56Z DEBUG Primary hostname for localhost: dhcp201-141.testrelm.test
2016-06-15T04:26:56Z DEBUG Search DNS for dhcp201-141.testrelm.test
2016-06-15T04:26:56Z DEBUG Check if dhcp201-141.testrelm.test is not a CNAME
2016-06-15T04:26:58Z DEBUG Check reverse address of 10.65.210.91
2016-06-15T04:26:58Z DEBUG Found reverse name: dhcp201-141.testrelm.test
2016-06-15T04:26:58Z DEBUG importing all plugin modules in ipalib.plugins...
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.aci
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.automember
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.automount
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.baseldap
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.baseuser
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.batch
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.caacl
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.cert
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.certprofile
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.config
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.delegation
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.dns
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.domainlevel
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.group
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.hbacrule
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.hbacsvc
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.hbacsvcgroup
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.hbactest
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.host
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.hostgroup
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.idrange
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.idviews
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.internal
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.kerberos
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.krbtpolicy
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.migration
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.misc
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.netgroup
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.otpconfig
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.otptoken
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.otptoken_yubikey
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.passwd
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.permission
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.ping
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.pkinit
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.privilege
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.pwpolicy
2016-06-15T04:26:58Z DEBUG Starting external process
2016-06-15T04:26:58Z DEBUG args='klist' '-V'
2016-06-15T04:26:58Z DEBUG Process finished, return code=0
2016-06-15T04:26:58Z DEBUG stdout=Kerberos 5 version 1.13.2

2016-06-15T04:26:58Z DEBUG stderr=
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.radiusproxy
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.realmdomains
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.role
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.rpcclient
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.selfservice
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.selinuxusermap
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.server
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.service
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.servicedelegation
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.session
2016-06-15T04:26:58Z WARNING session memcached servers not running
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.stageuser
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.sudocmd
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.sudocmdgroup
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.sudorule
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.topology
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.trust
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.user
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.vault
2016-06-15T04:26:58Z DEBUG importing plugin module ipalib.plugins.virtual
2016-06-15T04:26:58Z DEBUG importing all plugin modules in ipaserver.plugins...
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.plugins.dogtag
2016-06-15T04:26:58Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.plugins.join
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.plugins.ldap2
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.plugins.rabase
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.plugins.xmlserver
2016-06-15T04:26:58Z DEBUG importing all plugin modules in ipaserver.install.plugins...
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.adtrust
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.dns
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_nis
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_referint
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_services
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness
2016-06-15T04:26:58Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt
2016-06-15T04:26:58Z DEBUG SessionAuthManager.register: name=jsonserver_session_64789904
2016-06-15T04:26:58Z DEBUG SessionAuthManager.register: name=xmlserver_session_64816464
2016-06-15T04:26:58Z DEBUG Mounting ipaserver.rpcserver.login_kerberos() at '/session/login_kerberos'
2016-06-15T04:26:58Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.login_password() at '/session/login_password'
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.xmlserver() at '/xml'
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.change_password() at '/session/change_password'
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.jsonserver_session() at '/session/json'
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.sync_token() at '/session/sync_token'
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.jsonserver_kerb() at '/json'
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Mounting ipaserver.rpcserver.xmlserver_session() at '/session/xml'
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:26:59Z DEBUG Check if dhcp201-172.testrelm.test is a primary hostname for localhost
2016-06-15T04:26:59Z DEBUG Primary hostname for localhost: dhcp201-172.testrelm.test
2016-06-15T04:26:59Z DEBUG Search DNS for dhcp201-172.testrelm.test
2016-06-15T04:26:59Z DEBUG Check if dhcp201-172.testrelm.test is not a CNAME
2016-06-15T04:27:01Z DEBUG Check reverse address of 10.65.210.89
2016-06-15T04:27:01Z DEBUG Found reverse name: dhcp201-172.testrelm.test
2016-06-15T04:27:01Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-N' '-f' '/tmp/tmpy_sQvEipa/pwdfile.txt'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/pk12util' '-d' '/tmp/tmpy_sQvEipa' '-i' '/tmp/tmpRn512bipa/realm_info/dscert.p12' '-k' '/tmp/tmpy_sQvEipa/pwdfile.txt' '-v' '-w' '/dev/stdin'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=pk12util: PKCS12 IMPORT SUCCESSFUL

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-L'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           ,,   
replica                                                      u,u,u

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-A' '-n' 'CA 1' '-t' ',,' '-a'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-O' '-n' 'replica'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-M' '-n' 'ca' '-t' 'C,,'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-O' '-n' 'replica'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-L' '-n' 'ca' '-a'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=-----BEGIN CERTIFICATE-----
MIICtTCCAZ2gAwIBAgIBAzANBgkqhkiG9w0BAQsFADASMRAwDgYDVQQDDAdUZXN0
X0NBMB4XDTE2MDYxNTA0MTg1NloXDTIxMDYxNTA0MTg1NlowEjEQMA4GA1UEAwwH
VGVzdF9DQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKeRSCKU9zHk
5orqVF8q2MNv2inlWtjSdOQhO1X0SB49Qbf35gNZa6TyHlV/rrzEycdarxwM6YZD
XkLWxTH0h63Jp0J9w8vUGJkwKDOH8+/jLMXorqQDRyJZtvlYGBjBhZUL7na4b7eM
NKr9PEkGPmPLdI4bNnhMgcdiRdSHh8be0sIxS3jVxuAcm6T72EdPJBaJe09WBvZa
qwUuPQcviFFv1vbUI8Qzgy6bzVkBJY7fOkGHdaDKG3K00ZIijqWRj5h9zzXYChHh
Xjp8kjASh16grEACVyN9i737Mm8i9WPv8h5rO/ehxEToCplhVyZcirpKmGGkqXYP
zKxDbq07xOsCAwEAAaMWMBQwEgYDVR0TAQH/BAgwBgEB/wIBADANBgkqhkiG9w0B
AQsFAAOCAQEAFMoYTMgvmnGQMlFaSY6N4/V9JTBdtkVVvrIf0WMOUteGpMjQXPX9
FjKLnXH/o9FHmXzXxwNQj8uMxGT5ZivH2SrDW/iPT5lOhH2TgkZlpb+LRtu+cyg4
mwNSvSqyYnEU66SMXLn3f+RU15K19ojP2dsmUpq8u6dqBjkqLze1KOtcRzHuVZFD
tQ4jkV5oyytiQKU1ObGbb9f1k7I/cARJod/mG0eufCR4KfvaBRhEt5ImNUGG86hP
meI55ag7cCDbeZuTsA++ZwZN35AXI3eOgIlGh1Hcy8zeiBC+160jA620hY86jymB
ntqAV4PAgkQ74BVM0xcKTqQLEXtIu83MWQ==
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIICuTCCAaGgAwIBAgIFAKapJN8wDQYJKoZIhvcNAQELBQAwEjEQMA4GA1UEAwwH
VGVzdF9DQTAeFw0xNjA2MTUwMzU5NDZaFw0yMTA2MTUwMzU5NDZaMBIxEDAOBgNV
BAMMB1Rlc3RfQ0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDTPFGQ
ubirWh4lunZOcqAGQXrHf3vmRCR97fUFeMZg7/ufNWH5GiZDBON1n5smE39c4A/f
9RoF7FhEY3nudalgwU+HQWLmHSoaSN7xTh8CmPpT3/ZRyZzTru5VDgzjJXQv9n7Z
9VC2bZjwTYXZQTc7WuW9HnDn7G8mcNYp77+9yN9dc/NNKPWnxtGo9eJg/V8h7Ztg
7tu0CLFsCCiVIwsBJuvN1wiJD4jEvP+2j58/1H0nP9gRsM4MrQAP/9Xnh46OlP25
+vUhC80Dqlz6y/4KF/+Gb7dS0S/8kAYprzTAHNtnuaokuwoLNJMTcjd+NQpyPXnH
PmBuuq4cKKvTYCdhAgMBAAGjFjAUMBIGA1UdEwEB/wQIMAYBAf8CAQAwDQYJKoZI
hvcNAQELBQADggEBAFv0YXGb/qkc2PW3/Pcn4he6WsXqunXE1XDJJhWek8Y/PoLI
KuZU+/EpEbxCdvLz4/1CJ09DZV1ZN821XUPUkomrK2+MZd71T+LbU2Reb6JbkoJL
viwv0NaHQ3ofTIdHoPl5u9WnnvjJIlMHK6HIuFIl+p3N71iWS9TE+orFISXeGpGE
YJhRLRPmTnJHC3GVAs6eaV/2FsVBvOGqQBLKgh9L0QRmLIi+FyTA+kSqcD7El8XB
SEqXNCPHQAeRUf1/aMTfCLRxTUv5dIjWCZKclKsmogcWeOgLjoEeySZP7QoRzd/N
khdkyEdUL2mVXk9ZkRZma87y5NWsqmxRZYE7xsc=
-----END CERTIFICATE-----

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpy_sQvEipa' '-L'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           C,,  
replica                                                      u,u,u
ca                                                           ,,   

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-N' '-f' '/tmp/tmpADv_Eeipa/pwdfile.txt'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/pk12util' '-d' '/tmp/tmpADv_Eeipa' '-i' '/tmp/tmpRn512bipa/realm_info/httpcert.p12' '-k' '/tmp/tmpADv_Eeipa/pwdfile.txt' '-v' '-w' '/dev/stdin'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=pk12util: PKCS12 IMPORT SUCCESSFUL

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-L'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           ,,   
replica                                                      u,u,u

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-A' '-n' 'CA 1' '-t' ',,' '-a'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-O' '-n' 'replica'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-M' '-n' 'ca' '-t' 'C,,'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-O' '-n' 'replica'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-L' '-n' 'ca' '-a'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG Starting external process
2016-06-15T04:27:01Z DEBUG args='/usr/bin/certutil' '-d' '/tmp/tmpADv_Eeipa' '-L'
2016-06-15T04:27:01Z DEBUG Process finished, return code=0
2016-06-15T04:27:01Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           C,,  
replica                                                      u,u,u
ca                                                           ,,   

2016-06-15T04:27:01Z DEBUG stderr=
2016-06-15T04:27:01Z DEBUG importing all plugin modules in ipalib.plugins...
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.aci
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.automember
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.automount
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.baseldap
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.baseuser
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.batch
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.caacl
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.cert
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.certprofile
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.config
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.delegation
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.dns
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.domainlevel
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.group
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.hbacrule
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.hbacsvc
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.hbacsvcgroup
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.hbactest
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.host
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.hostgroup
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.idrange
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.idviews
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.internal
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.kerberos
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.krbtpolicy
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.migration
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.misc
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.netgroup
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.otpconfig
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.otptoken
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.otptoken_yubikey
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.passwd
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.permission
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.ping
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.pkinit
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.privilege
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.pwpolicy
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.radiusproxy
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.realmdomains
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.role
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.rpcclient
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.selfservice
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.selinuxusermap
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.server
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.service
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.servicedelegation
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.session
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.stageuser
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.sudocmd
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.sudocmdgroup
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.sudorule
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.topology
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.trust
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.user
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.vault
2016-06-15T04:27:01Z DEBUG importing plugin module ipalib.plugins.virtual
2016-06-15T04:27:01Z DEBUG importing all plugin modules in ipaserver.plugins...
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.plugins.dogtag
2016-06-15T04:27:01Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.plugins.join
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.plugins.ldap2
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.plugins.rabase
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.plugins.xmlserver
2016-06-15T04:27:01Z DEBUG importing all plugin modules in ipaserver.install.plugins...
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.adtrust
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.dns
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_nis
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_referint
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_services
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness
2016-06-15T04:27:01Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt
2016-06-15T04:27:01Z DEBUG SessionAuthManager.register: name=jsonserver_session_95361936
2016-06-15T04:27:01Z DEBUG SessionAuthManager.register: name=xmlserver_session_95379856
2016-06-15T04:27:01Z DEBUG Mounting ipaserver.rpcserver.login_kerberos() at '/session/login_kerberos'
2016-06-15T04:27:01Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:01Z DEBUG Mounting ipaserver.rpcserver.login_password() at '/session/login_password'
2016-06-15T04:27:01Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:01Z DEBUG Mounting ipaserver.rpcserver.xmlserver() at '/xml'
2016-06-15T04:27:01Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:01Z DEBUG Mounting ipaserver.rpcserver.change_password() at '/session/change_password'
2016-06-15T04:27:01Z DEBUG Mounting ipaserver.rpcserver.jsonserver_session() at '/session/json'
2016-06-15T04:27:01Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:02Z DEBUG Mounting ipaserver.rpcserver.sync_token() at '/session/sync_token'
2016-06-15T04:27:02Z DEBUG Mounting ipaserver.rpcserver.jsonserver_kerb() at '/json'
2016-06-15T04:27:02Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:02Z DEBUG Mounting ipaserver.rpcserver.xmlserver_session() at '/session/xml'
2016-06-15T04:27:02Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:02Z DEBUG session_auth_duration: 0:20:00
2016-06-15T04:27:02Z DEBUG Created connection context.ldap2_95361808
2016-06-15T04:27:02Z DEBUG raw: domainlevel_get(version=u'2.156')
2016-06-15T04:27:02Z DEBUG domainlevel_get(version=u'2.156')
2016-06-15T04:27:02Z DEBUG flushing ldaps://dhcp201-172.testrelm.test from SchemaCache
2016-06-15T04:27:02Z DEBUG retrieving schema for SchemaCache url=ldaps://dhcp201-172.testrelm.test conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x3b603b0>
2016-06-15T04:27:02Z DEBUG Check forward/reverse DNS resolution
2016-06-15T04:27:02Z DEBUG Search DNS server dhcp201-172.testrelm.test (['10.65.210.89', '10.65.210.89', '10.65.210.89']) for dhcp201-172.testrelm.test
2016-06-15T04:27:02Z DEBUG Check reverse address 10.65.210.89 (dhcp201-172.testrelm.test)
2016-06-15T04:27:02Z DEBUG Address 10.65.210.89 resolves to: dhcp201-172.testrelm.test.. 
2016-06-15T04:27:02Z DEBUG Search DNS server dhcp201-172.testrelm.test (['10.65.210.89', '10.65.210.89', '10.65.210.89']) for dhcp201-141.testrelm.test
2016-06-15T04:27:02Z DEBUG Check reverse address 10.65.210.91 (dhcp201-141.testrelm.test)
2016-06-15T04:27:02Z DEBUG Address 10.65.210.91 resolves to: dhcp201-141.testrelm.test.. 
2016-06-15T04:27:02Z DEBUG Destroyed connection context.ldap2_95361808
2016-06-15T04:27:02Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:02Z DEBUG Starting external process
2016-06-15T04:27:02Z DEBUG args='/sbin/ip' '-family' 'inet' '-oneline' 'address' 'show'
2016-06-15T04:27:02Z DEBUG Process finished, return code=0
2016-06-15T04:27:02Z DEBUG stdout=1: lo    inet 127.0.0.1/8 scope host lo\       valid_lft forever preferred_lft forever
2: eth0    inet 10.65.210.91/22 brd 10.65.211.255 scope global dynamic eth0\       valid_lft 183944sec preferred_lft 183944sec

2016-06-15T04:27:02Z DEBUG stderr=
2016-06-15T04:27:02Z DEBUG will use dns_forwarders: ()

2016-06-15T04:27:02Z DEBUG Starting external process
2016-06-15T04:27:02Z DEBUG args='/usr/sbin/ipa-replica-conncheck' '--master' 'dhcp201-172.testrelm.test' '--auto-master-check' '--realm' 'TESTRELM.TEST' '--principal' 'admin' '--hostname' 'dhcp201-141.testrelm.test' '--password' XXXXXXXX
2016-06-15T04:27:06Z DEBUG Process finished, return code=0
2016-06-15T04:27:06Z DEBUG Backing up system configuration file '/etc/hosts'
2016-06-15T04:27:06Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:06Z DEBUG group dirsrv exists
2016-06-15T04:27:06Z DEBUG user dirsrv exists
2016-06-15T04:27:06Z DEBUG Created connection context.ldap2_95361808
2016-06-15T04:27:06Z DEBUG flushing ldaps://dhcp201-172.testrelm.test from SchemaCache
2016-06-15T04:27:06Z DEBUG retrieving schema for SchemaCache url=ldaps://dhcp201-172.testrelm.test conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x752fa70>
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'is-enabled' 'chronyd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=1
2016-06-15T04:27:07Z DEBUG stdout=
2016-06-15T04:27:07Z DEBUG stderr=Failed to get unit file state for chronyd.service: No such file or directory

2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'is-active' 'chronyd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=3
2016-06-15T04:27:07Z DEBUG stdout=unknown

2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:07Z DEBUG Configuring NTP daemon (ntpd)
2016-06-15T04:27:07Z DEBUG   [1/4]: stopping ntpd
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'is-active' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=3
2016-06-15T04:27:07Z DEBUG stdout=unknown

2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'stop' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=0
2016-06-15T04:27:07Z DEBUG stdout=
2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG   duration: 0 seconds
2016-06-15T04:27:07Z DEBUG   [2/4]: writing configuration
2016-06-15T04:27:07Z DEBUG Backing up system configuration file '/etc/ntp.conf'
2016-06-15T04:27:07Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:07Z DEBUG Backing up system configuration file '/etc/sysconfig/ntpd'
2016-06-15T04:27:07Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:07Z DEBUG   duration: 0 seconds
2016-06-15T04:27:07Z DEBUG   [3/4]: configuring ntpd to start on boot
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'is-enabled' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=1
2016-06-15T04:27:07Z DEBUG stdout=disabled

2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'enable' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=0
2016-06-15T04:27:07Z DEBUG stdout=
2016-06-15T04:27:07Z DEBUG stderr=Created symlink from /etc/systemd/system/multi-user.target.wants/ntpd.service to /usr/lib/systemd/system/ntpd.service.

2016-06-15T04:27:07Z DEBUG   duration: 0 seconds
2016-06-15T04:27:07Z DEBUG   [4/4]: starting ntpd
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'start' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=0
2016-06-15T04:27:07Z DEBUG stdout=
2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/bin/systemctl' 'is-active' 'ntpd.service'
2016-06-15T04:27:07Z DEBUG Process finished, return code=0
2016-06-15T04:27:07Z DEBUG stdout=active

2016-06-15T04:27:07Z DEBUG stderr=
2016-06-15T04:27:07Z DEBUG   duration: 0 seconds
2016-06-15T04:27:07Z DEBUG Done configuring NTP daemon (ntpd).
2016-06-15T04:27:07Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:07Z DEBUG Configuring directory server (dirsrv). Estimated time: 1 minute
2016-06-15T04:27:07Z DEBUG   [1/38]: creating directory server user
2016-06-15T04:27:07Z DEBUG group dirsrv exists
2016-06-15T04:27:07Z DEBUG user dirsrv exists
2016-06-15T04:27:07Z DEBUG   duration: 0 seconds
2016-06-15T04:27:07Z DEBUG   [2/38]: creating directory server instance
2016-06-15T04:27:07Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'
2016-06-15T04:27:07Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
2016-06-15T04:27:07Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:07Z DEBUG 
dn: dc=testrelm,dc=test
objectClass: top
objectClass: domain
objectClass: pilotObject
dc: testrelm
info: IPA V2.0

2016-06-15T04:27:07Z DEBUG writing inf template
2016-06-15T04:27:07Z DEBUG 
[General]
FullMachineName=   dhcp201-141.testrelm.test
SuiteSpotUserID=   dirsrv
SuiteSpotGroup=    dirsrv
ServerRoot=    /usr/lib64/dirsrv
[slapd]
ServerPort=   389
ServerIdentifier=   TESTRELM-TEST
Suffix=   dc=testrelm,dc=test
RootDN=   cn=Directory Manager
InstallLdifFile= /var/lib/dirsrv/boot.ldif
inst_dir=   /var/lib/dirsrv/scripts-TESTRELM-TEST

2016-06-15T04:27:07Z DEBUG calling setup-ds.pl
2016-06-15T04:27:07Z DEBUG Starting external process
2016-06-15T04:27:07Z DEBUG args='/usr/sbin/setup-ds.pl' '--silent' '--logfile' '-' '-f' '/tmp/tmpgc5UlI'
2016-06-15T04:27:11Z DEBUG Process finished, return code=0
2016-06-15T04:27:11Z DEBUG stdout=[16/06/15:09:57:11] - [Setup] Info Your new DS instance 'TESTRELM-TEST' was successfully created.
Your new DS instance 'TESTRELM-TEST' was successfully created.
[16/06/15:09:57:11] - [Setup] Success Exiting . . .
Log file is '-'

Exiting . . .
Log file is '-'


2016-06-15T04:27:11Z DEBUG stderr=
2016-06-15T04:27:11Z DEBUG completed creating ds instance
2016-06-15T04:27:11Z DEBUG restarting ds instance
2016-06-15T04:27:11Z DEBUG Starting external process
2016-06-15T04:27:11Z DEBUG args='/bin/systemctl' '--system' 'daemon-reload'
2016-06-15T04:27:11Z DEBUG Process finished, return code=0
2016-06-15T04:27:11Z DEBUG stdout=
2016-06-15T04:27:11Z DEBUG stderr=
2016-06-15T04:27:11Z DEBUG Starting external process
2016-06-15T04:27:11Z DEBUG args='/bin/systemctl' 'restart' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:13Z DEBUG Process finished, return code=0
2016-06-15T04:27:13Z DEBUG stdout=
2016-06-15T04:27:13Z DEBUG stderr=
2016-06-15T04:27:13Z DEBUG Starting external process
2016-06-15T04:27:13Z DEBUG args='/bin/systemctl' 'is-active' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:13Z DEBUG Process finished, return code=0
2016-06-15T04:27:13Z DEBUG stdout=active

2016-06-15T04:27:13Z DEBUG stderr=
2016-06-15T04:27:13Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/bin/systemctl' 'is-active' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=active

2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG done restarting ds instance
2016-06-15T04:27:14Z DEBUG   duration: 7 seconds
2016-06-15T04:27:14Z DEBUG   [3/38]: adding default schema
2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [4/38]: enabling memberof plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/memberof-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpl4IE9u'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=replace nsslapd-pluginenabled:
	on
add memberofgroupattr:
	memberUser
add memberofgroupattr:
	memberHost
modifying entry "cn=MemberOf Plugin,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [5/38]: enabling winsync plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/ipa-winsync-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpeoav5W'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	ipa-winsync
add nsslapd-pluginpath:
	libipa_winsync
add nsslapd-plugininitfunc:
	ipa_winsync_plugin_init
add nsslapd-pluginDescription:
	Allows IPA to work with the DS windows sync feature
add nsslapd-pluginid:
	ipa-winsync
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	Red Hat
add nsslapd-plugintype:
	preoperation
add nsslapd-pluginenabled:
	on
add nsslapd-plugin-depends-on-type:
	database
add ipaWinSyncRealmFilter:
	(objectclass=krbRealmContainer)
add ipaWinSyncRealmAttr:
	cn
add ipaWinSyncNewEntryFilter:
	(cn=ipaConfig)
add ipaWinSyncNewUserOCAttr:
	ipauserobjectclasses
add ipaWinSyncUserFlatten:
	true
add ipaWinsyncHomeDirAttr:
	ipaHomesRootDir
add ipaWinsyncLoginShellAttr:
	ipaDefaultLoginShell
add ipaWinSyncDefaultGroupAttr:
	ipaDefaultPrimaryGroup
add ipaWinSyncDefaultGroupFilter:
	(gidNumber=*)(objectclass=posixGroup)(objectclass=groupOfNames)
add ipaWinSyncAcctDisable:
	both
add ipaWinSyncForceSync:
	true
add ipaWinSyncUserAttr:
	uidNumber -1
	gidNumber -1
adding new entry "cn=ipa-winsync,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [6/38]: configuring replication version plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/version-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpG8zJRA'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	IPA Version Replication
add nsslapd-pluginpath:
	libipa_repl_version
add nsslapd-plugininitfunc:
	repl_version_plugin_init
add nsslapd-plugintype:
	preoperation
add nsslapd-pluginenabled:
	off
add nsslapd-pluginid:
	ipa_repl_version
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	Red Hat, Inc.
add nsslapd-plugindescription:
	IPA Replication version plugin
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-plugin-depends-on-named:
	Multimaster Replication Plugin
adding new entry "cn=IPA Version Replication,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [7/38]: enabling IPA enrollment plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpK8jRHr' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmp2d3pve'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	ipa_enrollment_extop
add nsslapd-pluginpath:
	libipa_enrollment_extop
add nsslapd-plugininitfunc:
	ipaenrollment_init
add nsslapd-plugintype:
	extendedop
add nsslapd-pluginenabled:
	on
add nsslapd-pluginid:
	ipa_enrollment_extop
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	RedHat
add nsslapd-plugindescription:
	Enroll hosts into the IPA domain
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-realmTree:
	dc=testrelm,dc=test
adding new entry "cn=ipa_enrollment_extop,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [8/38]: enabling ldapi
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpm6OITL' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpw53n4a'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=replace nsslapd-ldapilisten:
	on
modifying entry "cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [9/38]: configuring uniqueness plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpZT_6wo' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpmh9xt2'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectClass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	krbPrincipalName uniqueness
add nsslapd-pluginPath:
	libattr-unique-plugin
add nsslapd-pluginInitfunc:
	NSUniqueAttr_Init
add nsslapd-pluginType:
	preoperation
add nsslapd-pluginEnabled:
	on
add uniqueness-attribute-name:
	krbPrincipalName
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginId:
	NSUniqueAttr
add nsslapd-pluginVersion:
	1.1.0
add nsslapd-pluginVendor:
	Fedora Project
add nsslapd-pluginDescription:
	Enforce unique attribute values
add uniqueness-subtrees:
	dc=testrelm,dc=test
add uniqueness-exclude-subtrees:
	cn=staged users,cn=accounts,cn=provisioning,dc=testrelm,dc=test
add uniqueness-across-all-subtrees:
	on
adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	krbCanonicalName uniqueness
add nsslapd-pluginPath:
	libattr-unique-plugin
add nsslapd-pluginInitfunc:
	NSUniqueAttr_Init
add nsslapd-pluginType:
	preoperation
add nsslapd-pluginEnabled:
	on
add uniqueness-attribute-name:
	krbCanonicalName
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginId:
	NSUniqueAttr
add nsslapd-pluginVersion:
	1.1.0
add nsslapd-pluginVendor:
	Fedora Project
add nsslapd-pluginDescription:
	Enforce unique attribute values
add uniqueness-subtrees:
	dc=testrelm,dc=test
add uniqueness-exclude-subtrees:
	cn=staged users,cn=accounts,cn=provisioning,dc=testrelm,dc=test
add uniqueness-across-all-subtrees:
	on
adding new entry "cn=krbCanonicalName uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	netgroup uniqueness
add nsslapd-pluginPath:
	libattr-unique-plugin
add nsslapd-pluginInitfunc:
	NSUniqueAttr_Init
add nsslapd-pluginType:
	preoperation
add nsslapd-pluginEnabled:
	on
add uniqueness-attribute-name:
	cn
add uniqueness-subtrees:
	cn=ng,cn=alt,dc=testrelm,dc=test
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginId:
	NSUniqueAttr
add nsslapd-pluginVersion:
	1.1.0
add nsslapd-pluginVendor:
	Fedora Project
add nsslapd-pluginDescription:
	Enforce unique attribute values
adding new entry "cn=netgroup uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	ipaUniqueID uniqueness
add nsslapd-pluginPath:
	libattr-unique-plugin
add nsslapd-pluginInitfunc:
	NSUniqueAttr_Init
add nsslapd-pluginType:
	preoperation
add nsslapd-pluginEnabled:
	on
add uniqueness-attribute-name:
	ipaUniqueID
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginId:
	NSUniqueAttr
add nsslapd-pluginVersion:
	1.1.0
add nsslapd-pluginVendor:
	Fedora Project
add nsslapd-pluginDescription:
	Enforce unique attribute values
add uniqueness-subtrees:
	dc=testrelm,dc=test
add uniqueness-exclude-subtrees:
	cn=staged users,cn=accounts,cn=provisioning,dc=testrelm,dc=test
add uniqueness-across-all-subtrees:
	on
adding new entry "cn=ipaUniqueID uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	sudorule name uniqueness
add nsslapd-pluginDescription:
	Enforce unique attribute values
add nsslapd-pluginPath:
	libattr-unique-plugin
add nsslapd-pluginInitfunc:
	NSUniqueAttr_Init
add nsslapd-pluginType:
	preoperation
add nsslapd-pluginEnabled:
	on
add uniqueness-attribute-name:
	cn
add uniqueness-subtrees:
	cn=sudorules,cn=sudo,dc=testrelm,dc=test
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginId:
	NSUniqueAttr
add nsslapd-pluginVersion:
	1.1.0
add nsslapd-pluginVendor:
	Fedora Project
adding new entry "cn=sudorule name uniqueness,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [10/38]: configuring uuid plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/uuid-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpYgVr9y'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	IPA UUID
add nsslapd-pluginpath:
	libipa_uuid
add nsslapd-plugininitfunc:
	ipauuid_init
add nsslapd-plugintype:
	preoperation
add nsslapd-pluginenabled:
	on
add nsslapd-pluginid:
	ipauuid_version
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	Red Hat, Inc.
add nsslapd-plugindescription:
	IPA UUID plugin
add nsslapd-plugin-depends-on-type:
	database
adding new entry "cn=IPA UUID,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpl7hYnc' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpWCI4fH'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	extensibleObject
add cn:
	IPA Unique IDs
add ipaUuidAttr:
	ipaUniqueID
add ipaUuidMagicRegen:
	autogenerate
add ipaUuidFilter:
	(|(objectclass=ipaObject)(objectclass=ipaAssociation))
add ipaUuidScope:
	dc=testrelm,dc=test
add ipaUuidEnforce:
	TRUE
adding new entry "cn=IPA Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete

add objectclass:
	top
	extensibleObject
add cn:
	IPK11 Unique IDs
add ipaUuidAttr:
	ipk11UniqueID
add ipaUuidMagicRegen:
	autogenerate
add ipaUuidFilter:
	(objectclass=ipk11Object)
add ipaUuidScope:
	dc=testrelm,dc=test
add ipaUuidEnforce:
	FALSE
adding new entry "cn=IPK11 Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [11/38]: configuring modrdn plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/modrdn-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpM8ifPE'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	IPA MODRDN
add nsslapd-pluginpath:
	libipa_modrdn
add nsslapd-plugininitfunc:
	ipamodrdn_init
add nsslapd-plugintype:
	betxnpostoperation
add nsslapd-pluginenabled:
	on
add nsslapd-pluginid:
	ipamodrdn_version
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	Red Hat, Inc.
add nsslapd-plugindescription:
	IPA MODRDN plugin
add nsslapd-plugin-depends-on-type:
	database
add nsslapd-pluginPrecedence:
	60
adding new entry "cn=IPA MODRDN,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpk2ulc_' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmp0cHFdy'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	extensibleObject
add cn:
	Kerberos Principal Name
add ipaModRDNsourceAttr:
	uid
add ipaModRDNtargetAttr:
	krbPrincipalName
add ipaModRDNsuffix:
	@TESTRELM.TEST
add ipaModRDNfilter:
	(&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
	dc=testrelm,dc=test
adding new entry "cn=Kerberos Principal Name,cn=IPA MODRDN,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [12/38]: configuring DNS plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/ipa-dns-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpjwzomK'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsslapdPlugin
	extensibleObject
add cn:
	IPA DNS
add nsslapd-plugindescription:
	IPA DNS support plugin
add nsslapd-pluginenabled:
	on
add nsslapd-pluginid:
	ipa_dns
add nsslapd-plugininitfunc:
	ipadns_init
add nsslapd-pluginpath:
	libipa_dns.so
add nsslapd-plugintype:
	preoperation
add nsslapd-pluginvendor:
	Red Hat, Inc.
add nsslapd-pluginversion:
	1.0
add nsslapd-plugin-depends-on-type:
	database
adding new entry "cn=IPA DNS,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [13/38]: enabling entryUSN plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/entryusn.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmp8uCAtV'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=replace nsslapd-entryusn-global:
	on
modifying entry "cn=config"
modify complete

replace nsslapd-entryusn-import-initval:
	next
modifying entry "cn=config"
modify complete

replace nsslapd-pluginenabled:
	on
modifying entry "cn=USN,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [14/38]: configuring lockout plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/lockout-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpI2oG9i'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectclass:
	top
	nsSlapdPlugin
	extensibleObject
add cn:
	IPA Lockout
add nsslapd-pluginpath:
	libipa_lockout
add nsslapd-plugininitfunc:
	ipalockout_init
add nsslapd-plugintype:
	object
add nsslapd-pluginenabled:
	on
add nsslapd-pluginid:
	ipalockout_version
add nsslapd-pluginversion:
	1.0
add nsslapd-pluginvendor:
	Red Hat, Inc.
add nsslapd-plugindescription:
	IPA Lockout plugin
add nsslapd-plugin-depends-on-type:
	database
adding new entry "cn=IPA Lockout,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [15/38]: creating indices
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/indices.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpnPDNkY'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=add objectClass:
	top
	nsIndex
add cn:
	krbPrincipalName
add nsSystemIndex:
	false
add nsIndexType:
	eq
	sub
adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	ou
add nsSystemIndex:
	false
add nsIndexType:
	eq
	sub
adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	carLicense
add nsSystemIndex:
	false
add nsIndexType:
	eq
	sub
adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	title
add nsSystemIndex:
	false
add nsIndexType:
	eq
	sub
adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	manager
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	secretary
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	displayname
add nsSystemIndex:
	false
add nsIndexType:
	eq
	sub
adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add nsIndexType:
	sub
modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	uidnumber
add nsSystemIndex:
	false
add nsIndexType:
	eq
add nsMatchingRule:
	integerOrderingMatch
adding new entry "cn=uidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add objectClass:
	top
	nsIndex
add cn:
	gidnumber
add nsSystemIndex:
	false
add nsIndexType:
	eq
add nsMatchingRule:
	integerOrderingMatch
adding new entry "cn=gidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

replace nsIndexType:
	eq
	pres
modifying entry "cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

replace nsIndexType:
	eq
	pres
modifying entry "cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add ObjectClass:
	top
	nsIndex
add cn:
	fqdn
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
adding new entry "cn=fqdn,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add ObjectClass:
	top
	nsIndex
add cn:
	macAddress
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
adding new entry "cn=macAddress,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	memberHost
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=memberHost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	memberUser
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=memberUser,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	sourcehost
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=sourcehost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	memberservice
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=memberservice,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	managedby
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=managedby,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	memberallowcmd
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	memberdenycmd
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipasudorunas
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipasudorunasgroup
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	automountkey
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
adding new entry "cn=automountkey,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipakrbprincipalalias
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
adding new entry "cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipauniqueid
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
adding new entry "cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipaMemberCa
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=ipaMemberCa,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	ipaMemberCertProfile
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
	sub
adding new entry "cn=ipaMemberCertProfile,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete

add cn:
	userCertificate
add ObjectClass:
	top
	nsIndex
add nsSystemIndex:
	false
add nsIndexType:
	eq
	pres
adding new entry "cn=userCertificate,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [16/38]: enabling referential integrity plugin
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/referint-conf.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpVyt_3L'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=replace nsslapd-pluginenabled:
	on
modifying entry "cn=referential integrity postoperation,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:14Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:14Z DEBUG   duration: 0 seconds
2016-06-15T04:27:14Z DEBUG   [17/38]: configuring ssl for ds instance
2016-06-15T04:27:14Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-N' '-f' '/etc/dirsrv/slapd-TESTRELM-TEST//pwdfile.txt'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=
2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/pk12util' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-i' '/tmp/tmpRn512bipa/realm_info/dscert.p12' '-k' '/etc/dirsrv/slapd-TESTRELM-TEST//pwdfile.txt' '-v' '-w' '/dev/stdin'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=pk12util: PKCS12 IMPORT SUCCESSFUL

2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-L'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           ,,   
replica                                                      u,u,u

2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-A' '-n' 'CA 1' '-t' ',,' '-a'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=
2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-O' '-n' 'replica'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-M' '-n' 'ca' '-t' 'C,,'
2016-06-15T04:27:14Z DEBUG Process finished, return code=0
2016-06-15T04:27:14Z DEBUG stdout=
2016-06-15T04:27:14Z DEBUG stderr=
2016-06-15T04:27:14Z DEBUG Starting external process
2016-06-15T04:27:14Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-O' '-n' 'replica'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout="ca" [CN=Test_CA]

  "replica" [CN=dhcp201-141.testrelm.test]


2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-L' '-n' 'ca' '-a'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-L'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=
Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

ca                                                           C,,  
replica                                                      u,u,u
ca                                                           ,,   

2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/certutil' '-d' '/etc/dirsrv/slapd-TESTRELM-TEST/' '-L' '-n' 'replica' '-a'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG flushing ldap://dhcp201-141.testrelm.test:389 from SchemaCache
2016-06-15T04:27:15Z DEBUG retrieving schema for SchemaCache url=ldap://dhcp201-141.testrelm.test:389 conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x7fcdea8>
2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [18/38]: configuring certmap.conf
2016-06-15T04:27:15Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
2016-06-15T04:27:15Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'
2016-06-15T04:27:15Z DEBUG Saving StateFile to '/var/lib/ipa/sysupgrade/sysupgrade.state'
2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [19/38]: configure autobind for root
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/usr/share/ipa/root-autobind.ldif' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpqTXw88'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=add objectClass:
	extensibleObject
	top
add cn:
	root-autobind
add uidNumber:
	0
add gidNumber:
	0
adding new entry "cn=root-autobind,cn=config"
modify complete

replace nsslapd-ldapiautobind:
	on
modifying entry "cn=config"
modify complete

replace nsslapd-ldapimaptoentries:
	on
modifying entry "cn=config"
modify complete


2016-06-15T04:27:15Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [20/38]: configure new location for managed entries
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpBU2YNx' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmpsYQX5l'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=add nsslapd-pluginConfigArea:
	cn=Definitions,cn=Managed Entries,cn=etc,dc=testrelm,dc=test
modifying entry "cn=Managed Entries,cn=plugins,cn=config"
modify complete


2016-06-15T04:27:15Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [21/38]: configure dirsrv ccache
2016-06-15T04:27:15Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'
2016-06-15T04:27:15Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/sbin/selinuxenabled'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=
2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/sbin/restorecon' '/etc/sysconfig/dirsrv'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=
2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [22/38]: enable SASL mapping fallback
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/usr/bin/ldapmodify' '-v' '-f' '/tmp/tmpezw0c6' '-H' 'ldap://dhcp201-141.testrelm.test:389' '-x' '-D' 'cn=Directory Manager' '-y' '/tmp/tmp_hF4VF'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=replace nsslapd-sasl-mapping-fallback:
	on
modifying entry "cn=config"
modify complete


2016-06-15T04:27:15Z DEBUG stderr=ldap_initialize( ldap://dhcp201-141.testrelm.test:389/??base )

2016-06-15T04:27:15Z DEBUG   duration: 0 seconds
2016-06-15T04:27:15Z DEBUG   [23/38]: restarting directory server
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/bin/systemctl' '--system' 'daemon-reload'
2016-06-15T04:27:15Z DEBUG Process finished, return code=0
2016-06-15T04:27:15Z DEBUG stdout=
2016-06-15T04:27:15Z DEBUG stderr=
2016-06-15T04:27:15Z DEBUG Starting external process
2016-06-15T04:27:15Z DEBUG args='/bin/systemctl' 'restart' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:16Z DEBUG Process finished, return code=0
2016-06-15T04:27:16Z DEBUG stdout=
2016-06-15T04:27:16Z DEBUG stderr=
2016-06-15T04:27:16Z DEBUG Starting external process
2016-06-15T04:27:16Z DEBUG args='/bin/systemctl' 'is-active' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:16Z DEBUG Process finished, return code=0
2016-06-15T04:27:16Z DEBUG stdout=active

2016-06-15T04:27:16Z DEBUG stderr=
2016-06-15T04:27:16Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2016-06-15T04:27:18Z DEBUG Starting external process
2016-06-15T04:27:18Z DEBUG args='/bin/systemctl' 'is-active' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:18Z DEBUG Process finished, return code=0
2016-06-15T04:27:18Z DEBUG stdout=active

2016-06-15T04:27:18Z DEBUG stderr=
2016-06-15T04:27:18Z DEBUG   duration: 3 seconds
2016-06-15T04:27:18Z DEBUG   [24/38]: setting up initial replication
2016-06-15T04:27:18Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-TESTRELM-TEST.socket from SchemaCache
2016-06-15T04:27:18Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-TESTRELM-TEST.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x7fcd050>
2016-06-15T04:27:19Z DEBUG Starting external process
2016-06-15T04:27:19Z DEBUG args='/bin/systemctl' '--system' 'daemon-reload'
2016-06-15T04:27:19Z DEBUG Process finished, return code=0
2016-06-15T04:27:19Z DEBUG stdout=
2016-06-15T04:27:19Z DEBUG stderr=
2016-06-15T04:27:19Z DEBUG Starting external process
2016-06-15T04:27:19Z DEBUG args='/bin/systemctl' 'restart' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:20Z DEBUG Process finished, return code=0
2016-06-15T04:27:20Z DEBUG stdout=
2016-06-15T04:27:20Z DEBUG stderr=
2016-06-15T04:27:20Z DEBUG Starting external process
2016-06-15T04:27:20Z DEBUG args='/bin/systemctl' 'is-active' 'dirsrv@TESTRELM-TEST.service'
2016-06-15T04:27:20Z DEBUG Process finished, return code=0
2016-06-15T04:27:20Z DEBUG stdout=active

2016-06-15T04:27:20Z DEBUG stderr=
2016-06-15T04:27:20Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2016-06-15T04:27:21Z DEBUG wait_for_open_ports: dhcp201-141.testrelm.test [636] timeout 10
2016-06-15T04:27:21Z DEBUG Traceback (most recent call last):
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 418, in start_creation
    run_step(full_msg, method)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 408, in run_step
    method()
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 374, in __setup_replica
    self.dm_password)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py", line 201, in __init__
    self.conn.do_simple_bind(bindpw=dirman_passwd)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1601, in do_simple_bind
    self.__bind_with_wait(self.simple_bind, timeout, binddn, bindpw)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1597, in __bind_with_wait
    bind_func(*args, **kwargs)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1049, in simple_bind
    bind_dn, bind_password, server_controls, client_controls)
  File "/usr/lib64/python2.7/contextlib.py", line 35, in __exit__
    self.gen.throw(type, value, traceback)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 975, in error_handler
    error=info)
NetworkError: cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.

2016-06-15T04:27:21Z DEBUG   [error] NetworkError: cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.
2016-06-15T04:27:21Z DEBUG Destroyed connection context.ldap2_95361808
2016-06-15T04:27:21Z DEBUG   File "/usr/lib/python2.7/site-packages/ipapython/admintool.py", line 171, in execute
    return_value = self.run()
  File "/usr/lib/python2.7/site-packages/ipapython/install/cli.py", line 311, in run
    cfgr.run()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 281, in run
    self.execute()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 303, in execute
    for nothing in self._executor():
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 343, in __runner
    self._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 365, in _handle_exception
    util.raise_exc_info(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 333, in __runner
    step()
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 87, in run_generator_with_yield_from
    raise_exc_info(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 65, in run_generator_with_yield_from
    value = gen.send(prev_value)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 539, in _configure
    executor.next()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 343, in __runner
    self._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 421, in _handle_exception
    self.__parent._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 365, in _handle_exception
    util.raise_exc_info(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 418, in _handle_exception
    super(ComponentBase, self)._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 365, in _handle_exception
    util.raise_exc_info(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 333, in __runner
    step()
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 87, in run_generator_with_yield_from
    raise_exc_info(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 65, in run_generator_with_yield_from
    value = gen.send(prev_value)
  File "/usr/lib/python2.7/site-packages/ipapython/install/common.py", line 63, in _install
    for nothing in self._installer(self.parent):
  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 901, in main
    install(self)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 295, in decorated
    func(installer)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 598, in install
    ds = install_replica_ds(config)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 77, in install_replica_ds
    ca_file=config.dir + "/ca.crt",
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 364, in create_replica
    self.start_creation(runtime=60)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 418, in start_creation
    run_step(full_msg, method)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 408, in run_step
    method()
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 374, in __setup_replica
    self.dm_password)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py", line 201, in __init__
    self.conn.do_simple_bind(bindpw=dirman_passwd)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1601, in do_simple_bind
    self.__bind_with_wait(self.simple_bind, timeout, binddn, bindpw)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1597, in __bind_with_wait
    bind_func(*args, **kwargs)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1049, in simple_bind
    bind_dn, bind_password, server_controls, client_controls)
  File "/usr/lib64/python2.7/contextlib.py", line 35, in __exit__
    self.gen.throw(type, value, traceback)
  File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 975, in error_handler
    error=info)

2016-06-15T04:27:21Z DEBUG The ipa-replica-install command failed, exception: NetworkError: cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.
2016-06-15T04:27:21Z ERROR cannot connect to 'ldaps://dhcp201-141.testrelm.test:636': TLS error -8157:Certificate extension not found.
-- 
Manage your subscription for the Freeipa-users mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-users
Go to http://freeipa.org for more info on the project

Reply via email to