[Freeipa-users] join error

mohammad sereshki mohammadsereshki at yahoo.com
Mon Feb 16 10:02:27 UTC 2015




hi
when I want to add a host to IPA I get below error, My server is centOS, is there anyone to help me?
HTTP response code is 401, not 200


================
stderr=
trying to retrieve CA cert via LDAP from ldap://linux126.example.com
Existing CA cert and Retrieved CA cert are identical
args=/usr/sbin/ipa-join -s linux126.example.com -b dc=mtnirancell,dc=ir -d -h temsdp-smsc1.example.com
stdout=
stderr=XML-RPC CALL:

<?xml version="1.0" encoding="UTF-8"?>\r\n
<methodCall>\r\n
<methodName>join</methodName>\r\n
<params>\r\n
<param><value><array><data>\r\n
<value><string>temsdp-smsc1.example.com</string></value>\r\n
</data></array></value></param>\r\n
<param><value><struct>\r\n
<member><name>nsosversion</name>\r\n
<value><string>2.6.32-358.el6.x86_64</string></value></member>\r\n
<member><name>nshardwareplatform</name>\r\n
<value><string>x86_64</string></value></member>\r\n
</struct></value></param>\r\n
</params>\r\n
</methodCall>\r\n

* About to connect() to linux126.example.com port 443 (#0)
*   Trying 192.168.65.187...
* Connected to linux126.example.com (192.168.65.187) port 443 (#0)
* Connected to linux126.example.com (192.168.65.187) port 443 (#0)
* successfully set certificate verify locations:
*   CAfile: /etc/ipa/ca.crt
  CApath: none
* SSL connection using AES256-SHA
* Server certificate:
*  subject: O=example.com; CN=linux126.example.com
*  start date: 2014-12-10 12:38:10 GMT
*  expire date: 2016-12-10 12:38:10 GMT
*  common name: linux126.example.com (matched)
*  issuer: O=example.com; CN=Certificate Authority
*  SSL certificate verify ok.
* Server auth using Basic with user ''
> POST /ipa/xml HTTP/1.1 Authorization: Basic Ojo= Host: linux126.example.com Accept: */* Content-Type: text/xml User-Agent: ipa-join/3.0.0 Referer: https://linux126.example.com/ipa/xml X-Original-User-Agent: Xmlrpc-c/1.16.24 Curl/1.1.1 Content-Length: 483  * upload completely sent off: 483 out of 483 bytes
< HTTP/1.1 401 Authorization Required < Date: Sun, 15 Feb 2015 12:54:54 GMT < Server: Apache/2.2.15< Last-Modified: Wed, 30 Jan 2013 15:34:41 GMT < ETag: "e24d7-55a-4d4833fadc640" < Accept-Ranges: bytes < Content-Length: 1370 < Connection: close < Content-Type: text/html; charset=UTF-8 <  * Closing connection #0
HTTP response code is 401, not 200

Joining realm failed: XML-RPC CALL:

<?xml version="1.0" encoding="UTF-8"?>\r\n
<methodCall>\r\n
<methodName>join</methodName>\r\n
<params>\r\n
<param><value><array><data>\r\n
<value><string>temsdp-smsc1.example.com</string></value>\r\n
</data></array></value></param>\r\n
<param><value><struct>\r\n
<member><name>nsosversion</name>\r\n
<value><string>2.6.32-358.el6.x86_64</string></value></member>\r\n
<member><name>nshardwareplatform</name>\r\n
<value><string>x86_64</string></value></member>\r\n
</struct></value></param>\r\n
</params>\r\n
</methodCall>\r\n

* About to connect() to linux126.example.com port 443 (#0)
*   Trying 192.168.65.187...
* Connected to linux126.example.com (192.168.65.187) port 443 (#0)
* Connected to linux126.example.com (192.168.65.187) port 443 (#0)
* successfully set certificate verify locations:
*   CAfile: /etc/ipa/ca.crt
  CApath: none
* SSL connection using AES256-SHA
* Server certificate:
*  subject: O=example.com; CN=linux126.example.com
*  start date: 2014-12-10 12:38:10 GMT
*  expire date: 2016-12-10 12:38:10 GMT
*  common name: linux126.example.com (matched)
*  issuer: O=example.com; CN=Certificate Authority
*  SSL certificate verify ok.
* Server auth using Basic with user ''
> POST /ipa/xml HTTP/1.1 Authorization: Basic Ojo= Host: linux126.example.com Accept: */* Content-Type: text/xml User-Agent: ipa-join/3.0.0 Referer: https://linux126.example.com/ipa/xml X-Original-User-Agent: Xmlrpc-c/1.16.24 Curl/1.1.1 Content-Length: 483  * upload completely sent off: 483 out of 483 bytes
< HTTP/1.1 401 Authorization Required < Date: Sun, 15 Feb 2015 12:54:54 GMT < Server: Apache/2.2.15  < Last-Modified: Wed, 30 Jan 2013 15:34:41 GMT < ETag: "e24d7-55a-4d4833fadc640" < Accept-Ranges: bytes < Content-Length: 1370 < Connection: close < Content-Type: text/html; charset=UTF-8 <  * Closing connection #0
HTTP response code is 401, not 200

Installation failed. Rolling back changes.
Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'
args=ipa-client-automount --uninstall --debug
stdout=Restoring configuration




More information about the Freeipa-users mailing list