[Freeipa-users] IPA Replica Issues (Total update abortedLDAP error: Can't contact LDAP server)

Rich Megginson rmeggins at redhat.com
Wed Apr 2 15:41:47 UTC 2014


On 04/02/2014 09:20 AM, Nevada Sanchez wrote:
> Okay, we might be on to something:
>
> ipa -> ipa2
> ================================
> $ LDAPTLS_CACERTDIR=/etc/dirsrv/slapd-EXAMPLE-COM ldapsearch -xLLLZZ 
> -h ipa2.example.com <http://ipa2.example.com> -s base -b "" 
> 'objectclass=*' vendorVersion
> dn:
> vendorVersion: 389-Directory/1.3.1.22.a1 B2014.073.1751
> ================================
>
> ipa2 -> ipa
> ================================
> $ LDAPTLS_CACERTDIR=/etc/dirsrv/slapd-EXAMPLE-COM ldapsearch -xLLLZZ 
> -h ipa.example.com <http://ipa.example.com> -s base -b "" 
> 'objectclass=*' vendorVersion
> ldap_start_tls: Connect error (-11)
> additional info: TLS error -8172:Peer's certificate issuer has been 
> marked as not trusted by the user.
> ================================
>
> The original IPA trusts the replica (since it signed the cert, I 
> assume), but the replica doesn't trust the main IPA server. I guess 
> the ZZ option would have shown me the failure that I missed in my 
> initial ldapsearch tests.
        -Z[Z]  Issue StartTLS (Transport Layer Security) extended 
operation. If
               you  use  -ZZ, the command will require the operation to 
be suc-
               cessful.

i.e. use SSL, and force a successful handshake

>
> Anyway, what's the best way to remedy this in a way that makes IPA 
> happy? (I've found that LDAP can have different requirements on which 
> certs go where).

I'm not sure. ipa-server-install/ipa-replica-prepare/ipa-replica-install 
is supposed to take care of installing the CA cert properly for you. If 
you try to hack it and install the CA cert manually, you will probably 
miss something else that ipa install did not do.

I think the only way to ensure that you have a properly configured ipa 
server + replicas is to get all of the ipa commands completing successfully.

Which means going back to the drawing board and starting over from scratch.

>
>
> On Wed, Apr 2, 2014 at 11:03 AM, Rich Megginson <rmeggins at redhat.com 
> <mailto:rmeggins at redhat.com>> wrote:
>
>     On 04/02/2014 08:59 AM, Nevada Sanchez wrote:
>>     That's what it looks like. However, because the installer says it
>>     failed at that step, it doesn't do the rest, so I end up with a
>>     partially configured server (doesn't do any of the IPA things
>>     that it should). Maybe I could get by with a patch that would
>>     force it to continue beyond that step even when it thinks it
>>     fails, so I could end up with a usable server.
>>
>>     Also, how would I go about checking if there were an SSL problem?
>>     I know, for example, that ldapsearch on using ldaps from each
>>     direction works.
>
>     From hostA:
>
>     # LDAPTLS_CACERTDIR=/etc/dirsrv/slapd-DOMAIN-COM ldapsearch
>     -xLLLZZ -h fqdn.of.hostb -s base -b "" 'objectclass=*' vendorVersion
>
>
>
>
>>
>>     Thanks!
>>
>>
>>     On Wed, Apr 2, 2014 at 9:46 AM, Rich Megginson
>>     <rmeggins at redhat.com <mailto:rmeggins at redhat.com>> wrote:
>>
>>         On 04/01/2014 07:52 PM, Nevada Sanchez wrote:
>>>         The access log is summed up below. I looked into the
>>>         ipa_lockout errors. They had to do with Kerberos not being
>>>         set up yet. It shouldn't be, I imagine, but I set up the
>>>         Kerberos conf anyway and got that error to go away--it
>>>         didn't fix anything, unfortunately.
>>>
>>>         ==============================================
>>>         [01/Apr/2014:21:23:29 +0000] conn=1 fd=64 slot=64 connection
>>>         from ::1 to ::1
>>>         [01/Apr/2014:21:23:29 +0000] conn=1 op=-1 fd=64 closed - B1
>>>         [01/Apr/2014:21:23:29 +0000] conn=2 fd=64 slot=64 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:29 +0000] conn=2 op=0 BIND
>>>         dn="cn=directory manager" method=128 version=3
>>>         [01/Apr/2014:21:23:29 +0000] conn=2 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 fd=65 slot=65 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=1 MOD dn="cn=MemberOf
>>>         Plugin,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=2 UNBIND
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:29 +0000] conn=3 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 fd=66 slot=66 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=1 ADD
>>>         dn="cn=ipa-winsync,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=2 UNBIND
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=2 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:29 +0000] conn=4 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 fd=65 slot=65 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=1 ADD dn="cn=IPA
>>>         Version Replication,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=5 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 fd=66 slot=66 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=1 ADD
>>>         dn="cn=ipa_enrollment_extop,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=2 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=6 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 fd=65 slot=65 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=1 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=7 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 fd=66 slot=66 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=1 ADD
>>>         dn="cn=krbPrincipalName uniqueness,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=2 ADD
>>>         dn="cn=krbCanonicalName uniqueness,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=3 ADD dn="cn=netgroup
>>>         uniqueness,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=2 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=4 ADD
>>>         dn="cn=ipaUniqueID uniqueness,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=3 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=5 ADD dn="cn=sudorule
>>>         name uniqueness,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=4 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=5 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=6 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=8 op=6 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 fd=65 slot=65 connection
>>>         from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=1 ADD dn="cn=IPA
>>>         UUID,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=9 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=1 ADD dn="cn=IPA
>>>         Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=2 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=10 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=1 ADD dn="cn=IPA
>>>         MODRDN,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=2 UNBIND
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:30 +0000] conn=11 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:30 +0000] conn=12 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:30 +0000] conn=12 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:30 +0000] conn=12 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:30 +0000] conn=12 op=1 ADD
>>>         dn="cn=Kerberos Principal Name,cn=IPA
>>>         MODRDN,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=12 op=2 UNBIND
>>>         [01/Apr/2014:21:23:31 +0000] conn=12 op=2 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:31 +0000] conn=12 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=1
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=1 ADD dn="cn=IPA
>>>         DNS,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=2 UNBIND
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:31 +0000] conn=13 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=1 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=2 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=3 MOD
>>>         dn="cn=USN,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=2 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=4 UNBIND
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=4 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:31 +0000] conn=14 op=3 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=1 ADD dn="cn=IPA
>>>         Lockout,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=2 UNBIND
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:31 +0000] conn=15 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=1 ADD
>>>         dn="cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=2 ADD
>>>         dn="cn=ou,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=3 ADD
>>>         dn="cn=carLicense,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=2 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=4 ADD
>>>         dn="cn=title,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=3 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=5 ADD
>>>         dn="cn=manager,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=4 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=6 ADD
>>>         dn="cn=secretary,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=7 ADD
>>>         dn="cn=displayname,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=6 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=5 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=8 MOD
>>>         dn="cn=uid,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=9 ADD
>>>         dn="cn=uidnumber,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=8 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=7 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=10 ADD
>>>         dn="cn=gidnumber,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=9 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=11 MOD
>>>         dn="cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=10 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=12 MOD
>>>         dn="cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=11 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=13 ADD
>>>         dn="cn=fqdn,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=12 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=14 ADD
>>>         dn="cn=macAddress,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=15 ADD
>>>         dn="cn=memberHost,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=14 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=13 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=16 ADD
>>>         dn="cn=memberUser,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=15 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=16 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=17 ADD
>>>         dn="cn=sourcehost,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=17 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=18 ADD
>>>         dn="cn=memberservice,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=19 ADD
>>>         dn="cn=managedby,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=18 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=20 ADD
>>>         dn="cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=19 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=21 ADD
>>>         dn="cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=21 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=20 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=22 ADD
>>>         dn="cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=23 ADD
>>>         dn="cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=22 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=24 ADD
>>>         dn="cn=automountkey,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=24 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=23 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=25 ADD
>>>         dn="cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=25 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=26 ADD
>>>         dn="cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm
>>>         database,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=26 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=27 UNBIND
>>>         [01/Apr/2014:21:23:31 +0000] conn=16 op=27 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:31 +0000] conn=17 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:31 +0000] conn=17 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:31 +0000] conn=17 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:31 +0000] conn=17 op=1 MOD
>>>         dn="cn=referential integrity postoperation,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:32 +0000] conn=17 op=2 UNBIND
>>>         [01/Apr/2014:21:23:32 +0000] conn=17 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:32 +0000] conn=17 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=1
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=0 BIND
>>>         dn="cn=directory manager" method=128 version=3
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=1 MOD
>>>         dn="cn=encryption,cn=config"
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=2 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=3 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="attributeTypes objectClasses"
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=2 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:42 +0000] conn=18 op=3 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=18 op=4 ADD
>>>         dn="cn=RSA,cn=encryption,cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=18 op=5 UNBIND
>>>         [01/Apr/2014:21:23:43 +0000] conn=18 op=5 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:43 +0000] conn=18 op=4 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=1 ADD
>>>         dn="cn=root-autobind,cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=2 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=1 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=3 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=2 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=4 UNBIND
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=4 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:43 +0000] conn=19 op=3 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 fd=65 slot=65
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=1 MOD dn="cn=Managed
>>>         Entries,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=2 UNBIND
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=2 fd=65 closed - U1
>>>         [01/Apr/2014:21:23:43 +0000] conn=20 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 fd=66 slot=66
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=0 BIND
>>>         dn="cn=Directory Manager" method=128 version=3
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=0 RESULT err=0
>>>         tag=97 nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=1 MOD dn="cn=config"
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=2 UNBIND
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=2 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:43 +0000] conn=21 op=1 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:46 +0000] conn=1 fd=64 slot=64 connection
>>>         from ::1 to ::1
>>>         [01/Apr/2014:21:23:46 +0000] conn=1 op=-1 fd=64 closed - B1
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 fd=64 slot=64 connection
>>>         from local to /var/run/slapd-EXAMPLE-COM.socket
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=0 BIND
>>>         dn="cn=directory manager" method=128 version=3
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=1 SRCH base="cn=IPA
>>>         Version Replication,cn=plugins,cn=config" scope=0
>>>         filter="(objectClass=*)" attrs=ALL
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=1 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=2 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="attributeTypes objectClasses"
>>>         [01/Apr/2014:21:23:46 +0000] conn=2 op=2 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:47 +0000] conn=2 op=3 MOD dn="cn=IPA
>>>         Version Replication,cn=plugins,cn=config"
>>>         [01/Apr/2014:21:23:47 +0000] conn=2 op=4 UNBIND
>>>         [01/Apr/2014:21:23:47 +0000] conn=2 op=4 fd=64 closed - U1
>>>         [01/Apr/2014:21:23:47 +0000] conn=2 op=3 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:51 +0000] conn=1 fd=64 slot=64 connection
>>>         from ::1 to ::1
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 fd=65 slot=65 SSL
>>>         connection from 10.0.3.15 to 10.0.3.15
>>>         [01/Apr/2014:21:23:51 +0000] conn=1 op=-1 fd=64 closed - B1
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 SSL 256-bit AES
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 op=0 BIND
>>>         dn="cn=directory manager" method=128 version=3
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 op=0 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=directory manager"
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 op=1 SRCH
>>>         base="cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config" scope=0 filter="(objectClass=*)" attrs=ALL
>>>         [01/Apr/2014:21:23:51 +0000] conn=2 op=1 RESULT err=32
>>>         tag=101 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=2 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="attributeTypes objectClasses"
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=2 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=3 ADD
>>>         dn="cn=replication manager,cn=config"
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=4 SRCH
>>>         base="cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config" scope=0 filter="(objectClass=*)" attrs=ALL
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=3 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=4 RESULT err=32
>>>         tag=101 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=5 ADD
>>>         dn="cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config"
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=6 SRCH
>>>         base="cn=config,cn=ldbm database,cn=plugins,cn=config"
>>>         scope=0 filter="(objectClass=*)" attrs="nsslapd-directory"
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=6 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=7 ADD
>>>         dn="cn=changelog5,cn=config"
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=5 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=2 op=7 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:52 +0000] conn=3 fd=64 slot=64 connection
>>>         from 10.0.3.4 to 10.0.3.15
>>>         [01/Apr/2014:21:23:52 +0000] conn=3 op=0 EXT
>>>         oid="1.3.6.1.4.1.1466.20037" name="startTLS"
>>>         [01/Apr/2014:21:23:52 +0000] conn=3 op=0 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 SSL 256-bit AES
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=1 BIND
>>>         dn="cn=replication manager,cn=config" method=128 version=3
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=1 RESULT err=0 tag=97
>>>         nentries=0 etime=1 dn="cn=replication manager,cn=config"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=2 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=2 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=3 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=3 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=4 EXT
>>>         oid="2.16.840.1.113730.3.5.12"
>>>         name="replication-multimaster-extop"
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=8 SRCH
>>>         base="cn=meToipa.example.com
>>>         <http://meToipa.example.com>,cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config" scope=0 filter="(objectClass=*)" attrs=ALL
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=8 RESULT err=32
>>>         tag=101 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=9 ADD
>>>         dn="cn=meToipa.example.com
>>>         <http://meToipa.example.com>,cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=4 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=10 MOD
>>>         dn="cn=meToipa.example.com
>>>         <http://meToipa.example.com>,cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config"
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=9 RESULT err=0
>>>         tag=105 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=5 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="nsSchemaCSN"
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=11 SRCH
>>>         base="cn=meToipa.example.com
>>>         <http://meToipa.example.com>,cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config" scope=0 filter="(objectClass=*)" attrs=ALL
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=11 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=2 op=10 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=5 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=6 MOD dn="cn=schema"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=6 RESULT err=0
>>>         tag=103 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=7 EXT
>>>         oid="2.16.840.1.113730.3.5.5" name="Netscape Replication End
>>>         Session"
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=7 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=8 UNBIND
>>>         [01/Apr/2014:21:23:53 +0000] conn=3 op=8 fd=64 closed - U1
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 fd=66 slot=66 connection
>>>         from 10.0.3.4 to 10.0.3.15
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=0 EXT
>>>         oid="1.3.6.1.4.1.1466.20037" name="startTLS"
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=0 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 SSL 256-bit AES
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=1 BIND
>>>         dn="cn=replication manager,cn=config" method=128 version=3
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=1 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=replication manager,cn=config"
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=2 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=2 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=3 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=3 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:53 +0000] conn=4 op=4 EXT
>>>         oid="2.16.840.1.113730.3.5.12"
>>>         name="replication-multimaster-extop"
>>>         [01/Apr/2014:21:23:54 +0000] conn=4 op=4 RESULT err=0
>>>         tag=120 nentries=0 etime=1
>>>         [01/Apr/2014:21:23:54 +0000] conn=4 op=5 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="nsSchemaCSN"
>>>         [01/Apr/2014:21:23:54 +0000] conn=4 op=5 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:54 +0000] conn=4 op=6 EXT
>>>         oid="2.16.840.1.113730.3.5.6" name="Netscape Replication
>>>         Total Update Entry"
>>>         .
>>>         .
>>>         .
>>>         [01/Apr/2014:21:23:55 +0000] conn=4 op=458 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:57 +0000] conn=4 op=459 EXT
>>>         oid="2.16.840.1.113730.3.5.5" name="Netscape Replication End
>>>         Session"
>>>         [01/Apr/2014:21:23:57 +0000] conn=4 op=459 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=4 op=460 UNBIND
>>>         [01/Apr/2014:21:23:58 +0000] conn=4 op=460 fd=66 closed - U1
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 fd=64 slot=64 connection
>>>         from 10.0.3.4 to 10.0.3.15
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=0 EXT
>>>         oid="1.3.6.1.4.1.1466.20037" name="startTLS"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=0 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 SSL 256-bit AES
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=1 BIND
>>>         dn="cn=replication manager,cn=config" method=128 version=3
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=1 RESULT err=0 tag=97
>>>         nentries=0 etime=0 dn="cn=replication manager,cn=config"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=2 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=2 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=3 SRCH base=""
>>>         scope=0 filter="(objectClass=*)" attrs="supportedControl
>>>         supportedExtension"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=3 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=4 EXT
>>>         oid="2.16.840.1.113730.3.5.12"
>>>         name="replication-multimaster-extop"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=4 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=5 SRCH
>>>         base="cn=schema" scope=0 filter="(objectClass=*)"
>>>         attrs="nsSchemaCSN"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=5 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=6 SRCH
>>>         base="cn=replica,cn=dc\3Dexample\2Cdc\3Dcom,cn=mapping
>>>         tree,cn=config" scope=0 filter="(objectClass=*)"
>>>         attrs="nsDS5ReplicaId"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=6 RESULT err=0
>>>         tag=101 nentries=1 etime=0
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=7 EXT
>>>         oid="2.16.840.1.113730.3.5.5" name="Netscape Replication End
>>>         Session"
>>>         [01/Apr/2014:21:23:58 +0000] conn=5 op=7 RESULT err=0
>>>         tag=120 nentries=0 etime=0
>>>         [01/Apr/2014:21:23:59 +0000] conn=2 op=12 UNBIND
>>>         [01/Apr/2014:21:23:59 +0000] conn=2 op=12 fd=65 closed - U1
>>
>>         This shows replication is working - that is, this server is
>>         able to act as a consumer for replication from 10.0.3.4
>>
>>
>>>
>>>
>>>
>>>         On Tue, Apr 1, 2014 at 5:41 PM, Rob Crittenden
>>>         <rcritten at redhat.com <mailto:rcritten at redhat.com>> wrote:
>>>
>>>             Rich Megginson wrote:
>>>
>>>                 On 04/01/2014 03:28 PM, Nevada Sanchez wrote:
>>>
>>>                     Okay, I just tried doing this on a FRESH fedora
>>>                     19 image (applied all
>>>                     updates, installed freeipa, made a new replica
>>>                     file for the new test
>>>                     server, and went state to ipa-replica-insntall).
>>>                     Exact same errors.
>>>                     Anything else I should try?
>>>
>>>
>>>                 I don't know.
>>>
>>>                 Does anyone on the IPA team know what the
>>>                 ipa_lockout errors are about,
>>>                 and if they would cause replication not to work?
>>>
>>>
>>>             I suspect it is a red herring. The error is not found,
>>>             so it is probably that the entry doesn't exist yet. This
>>>             is replication for the CA anyway.
>>>
>>>             I'd be curious what the access and error logs on the
>>>             existing side looks like. It may be an SSL trust
>>>             problem, for example.
>>>
>>>             rob
>>>
>>>
>>>
>>>
>>
>>
>
>

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20140402/cdabbecf/attachment.htm>


More information about the Freeipa-users mailing list