[Freeipa-users] Cannot create replica

Jeff Goddard jgoddard at emerlyn.com
Mon Jan 30 18:30:31 UTC 2017


My previous install of freeipa became corrupted so I'm starting fresh. I've
got a new Centos 7.2 server set up and installed ipa version s 4.4. Now I'm
trying to set up a replica on another newly created and patched centos
server. The ipa-client-install command completes without issue but when I
try ipa-replica-install --no-host-dns I get up to step 29 setting up the
initial replication and it fails. Can someone point me to the documentation
I'm missing or explain what I can do to have success? Below is the install
error log:

2017-01-30T18:13:59Z DEBUG Logging to /var/log/ipareplica-install.log
2017-01-30T18:13:59Z DEBUG ipa-replica-install was invoked with arguments
[] and options: {'no_dns_sshfp': None, 'skip_schema_check': None,
'setup_kra': None, 'ip_addresses': None, 'mkhomedir': None,
'http_cert_files': None, 'ssh_trust_dns': None, 'reverse_zones': None,
'no_forwarders': None, 'keytab': None, 'no_ntp': None, 'domain_name': None,
'http_cert_name': None, 'dirsrv_cert_files': None, 'no_dnssec_validation':
None, 'no_reverse': None, 'unattended': False, 'auto_reverse': None,
'auto_forwarders': None, 'no_host_dns': None, 'no_sshd': None,
'no_ui_redirect': None, 'dirsrv_config_file': None, 'forwarders': None,
'verbose': False, 'setup_ca': None, 'realm_name': None, 'skip_conncheck':
None, 'no_ssh': None, 'forward_policy': None, 'dirsrv_cert_name': None,
'quiet': False, 'server': None, 'setup_dns': None, 'host_name': None,
'log_file': None, 'allow_zone_overlap': None}
2017-01-30T18:13:59Z DEBUG IPA version 4.4.0-14.el7.centos.4
2017-01-30T18:13:59Z DEBUG Starting external process
2017-01-30T18:13:59Z DEBUG args=/usr/sbin/selinuxenabled
2017-01-30T18:13:59Z DEBUG Process finished, return code=0
2017-01-30T18:13:59Z DEBUG stdout=
2017-01-30T18:13:59Z DEBUG stderr=
2017-01-30T18:13:59Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:13:59Z DEBUG Loading Index file from
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:13:59Z DEBUG httpd is not configured
2017-01-30T18:13:59Z DEBUG kadmin is not configured
2017-01-30T18:13:59Z DEBUG dirsrv is not configured
2017-01-30T18:13:59Z DEBUG pki-tomcatd is not configured
2017-01-30T18:13:59Z DEBUG install is not configured
2017-01-30T18:13:59Z DEBUG krb5kdc is not configured
2017-01-30T18:13:59Z DEBUG ntpd is not configured
2017-01-30T18:13:59Z DEBUG named is not configured
2017-01-30T18:13:59Z DEBUG ipa_memcached is not configured
2017-01-30T18:13:59Z DEBUG filestore is tracking no files
2017-01-30T18:13:59Z DEBUG Loading Index file from
'/var/lib/ipa-client/sysrestore/sysrestore.index'
2017-01-30T18:13:59Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:13:59Z DEBUG Loading Index file from
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:13:59Z DEBUG Starting external process
2017-01-30T18:13:59Z DEBUG args=/usr/sbin/httpd -t -D DUMP_VHOSTS
2017-01-30T18:13:59Z DEBUG Process finished, return code=0
2017-01-30T18:13:59Z DEBUG stdout=VirtualHost configuration:
*:8443                 idmfs-01.internal.emerlyn.com
(/etc/httpd/conf.d/nss.conf:83)

2017-01-30T18:13:59Z DEBUG stderr=
2017-01-30T18:13:59Z DEBUG Starting external process
2017-01-30T18:13:59Z DEBUG args=/bin/systemctl is-enabled chronyd.service
2017-01-30T18:13:59Z DEBUG Process finished, return code=1
2017-01-30T18:13:59Z DEBUG stdout=
2017-01-30T18:13:59Z DEBUG stderr=Failed to get unit file state for
chronyd.service: No such file or directory

2017-01-30T18:13:59Z DEBUG Starting external process
2017-01-30T18:13:59Z DEBUG args=/bin/systemctl is-active chronyd.service
2017-01-30T18:13:59Z DEBUG Process finished, return code=3
2017-01-30T18:13:59Z DEBUG stdout=unknown

2017-01-30T18:13:59Z DEBUG stderr=
2017-01-30T18:13:59Z DEBUG importing all plugin modules in
ipaserver.plugins...
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.aci
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.automember
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.automount
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.baseldap
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.baseldap is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.baseuser
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.batch
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.ca
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.caacl
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.cert
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.certprofile
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.config
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.delegation
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.dns
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.dnsserver
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.dogtag
2017-01-30T18:13:59Z DEBUG skipping plugin module ipaserver.plugins.dogtag:
dogtag not selected as RA plugin
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.domainlevel
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.group
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbac
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.hbac is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.hbacrule
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbacsvc
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.hbacsvcgroup
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.hbactest
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.host
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.hostgroup
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.idrange
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.idviews
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.internal
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.join
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.krbtpolicy
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.ldap2
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.location
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.migration
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.misc
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.netgroup
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.otp
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.otp is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.otpconfig
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.otptoken
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.passwd
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.permission
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.ping
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.pkinit
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.pkinit is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.privilege
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.pwpolicy
2017-01-30T18:13:59Z DEBUG Starting external process
2017-01-30T18:13:59Z DEBUG args=klist -V
2017-01-30T18:13:59Z DEBUG Process finished, return code=0
2017-01-30T18:13:59Z DEBUG stdout=Kerberos 5 version 1.14.1

2017-01-30T18:13:59Z DEBUG stderr=
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.rabase
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.rabase is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.radiusproxy
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.realmdomains
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.role
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.schema
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.selfservice
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.selinuxusermap
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.server
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.serverrole
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.serverroles
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.service
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.servicedelegation
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.session
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.stageuser
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudo
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.sudo is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudocmd
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.sudocmdgroup
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.sudorule
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.topology
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.trust
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.user
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.vault
2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.virtual
2017-01-30T18:13:59Z DEBUG ipaserver.plugins.virtual is not a valid plugin
module
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.plugins.xmlserver
2017-01-30T18:13:59Z DEBUG importing all plugin modules in
ipaserver.install.plugins...
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.adtrust
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.ca_renewal_master
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.dns
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.fix_replica_agreements
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.rename_managed
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_ca_topology
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_idranges
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_managed_permissions
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_nis
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_pacs
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_passsync
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_referint
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_services
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.update_uniqueness
2017-01-30T18:13:59Z DEBUG importing plugin module
ipaserver.install.plugins.upload_cacrt
2017-01-30T18:14:00Z DEBUG Check if idmfs-01.internal.emerlyn.com is a
primary hostname for localhost
2017-01-30T18:14:00Z DEBUG Primary hostname for localhost:
idmfs-01.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Search DNS for idmfs-01.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Check if idmfs-01.internal.emerlyn.com is not a
CNAME
2017-01-30T18:14:00Z DEBUG Check reverse address of 10.72.100.56
2017-01-30T18:14:00Z DEBUG Found reverse name: idmfs-01.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Check if id-management-2.internal.emerlyn.com is
a primary hostname for localhost
2017-01-30T18:14:00Z DEBUG Primary hostname for localhost:
id-management-2.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Search DNS for
id-management-2.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Check if id-management-2.internal.emerlyn.com is
not a CNAME
2017-01-30T18:14:00Z DEBUG Check reverse address of 10.73.100.31
2017-01-30T18:14:00Z DEBUG Found reverse name:
id-management-2.internal.emerlyn.com
2017-01-30T18:14:00Z DEBUG Initializing principal host/
idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM using keytab
/etc/krb5.keytab
2017-01-30T18:14:00Z DEBUG using ccache /tmp/krbccfjuIS1/ccache
2017-01-30T18:14:01Z DEBUG Attempt 1/1: success
2017-01-30T18:14:01Z DEBUG importing all plugin modules in
ipaserver.plugins...
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.aci
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.automember
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.automount
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.baseldap
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.baseldap is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.baseuser
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.batch
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.ca
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.caacl
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.cert
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.certprofile
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.config
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.delegation
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.dns
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.dnsserver
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.dogtag
2017-01-30T18:14:01Z DEBUG skipping plugin module ipaserver.plugins.dogtag:
dogtag not selected as RA plugin
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.domainlevel
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.group
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbac
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.hbac is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.hbacrule
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbacsvc
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.hbacsvcgroup
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.hbactest
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.host
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.hostgroup
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.idrange
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.idviews
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.internal
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.join
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.krbtpolicy
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.ldap2
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.location
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.migration
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.misc
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.netgroup
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.otp
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.otp is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.otpconfig
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.otptoken
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.passwd
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.permission
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.ping
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.pkinit
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.pkinit is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.privilege
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.pwpolicy
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.rabase
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.rabase is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.radiusproxy
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.realmdomains
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.role
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.schema
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.selfservice
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.selinuxusermap
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.server
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.serverrole
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.serverroles
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.service
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.servicedelegation
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.session
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.stageuser
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudo
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.sudo is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudocmd
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.sudocmdgroup
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.sudorule
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.topology
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.trust
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.user
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.vault
2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.virtual
2017-01-30T18:14:01Z DEBUG ipaserver.plugins.virtual is not a valid plugin
module
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.plugins.xmlserver
2017-01-30T18:14:01Z DEBUG importing all plugin modules in
ipaserver.install.plugins...
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.adtrust
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.ca_renewal_master
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.dns
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.fix_replica_agreements
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.rename_managed
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_ca_topology
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_idranges
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_managed_permissions
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_nis
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_pacs
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_passsync
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_referint
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_services
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.update_uniqueness
2017-01-30T18:14:01Z DEBUG importing plugin module
ipaserver.install.plugins.upload_cacrt
2017-01-30T18:14:02Z DEBUG Starting external process
2017-01-30T18:14:02Z DEBUG args=keyctl search @s user
ipa_session_cookie:host/idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM
2017-01-30T18:14:02Z DEBUG Process finished, return code=0
2017-01-30T18:14:02Z DEBUG stdout=822249440

2017-01-30T18:14:02Z DEBUG stderr=
2017-01-30T18:14:02Z DEBUG Starting external process
2017-01-30T18:14:02Z DEBUG args=keyctl pipe 822249440
2017-01-30T18:14:02Z DEBUG Process finished, return code=0
2017-01-30T18:14:02Z DEBUG
stdout=ipa_session=95e075167249489e9656f53177826615; Domain=
id-management-2.internal.emerlyn.com; Path=/ipa; Expires=Mon, 30 Jan 2017
18:33:49 GMT; Secure; HttpOnly
2017-01-30T18:14:02Z DEBUG stderr=
2017-01-30T18:14:02Z DEBUG found session_cookie in persistent storage for
principal 'host/idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM',
cookie: 'ipa_session=95e075167249489e9656f53177826615; Domain=
id-management-2.internal.emerlyn.com; Path=/ipa; Expires=Mon, 30 Jan 2017
18:33:49 GMT; Secure; HttpOnly'
2017-01-30T18:14:02Z DEBUG setting session_cookie into context
'ipa_session=95e075167249489e9656f53177826615;'
2017-01-30T18:14:02Z INFO trying
https://id-management-2.internal.emerlyn.com/ipa/session/json
2017-01-30T18:14:02Z DEBUG Created connection context.jsonclient_131648144
2017-01-30T18:14:02Z INFO Forwarding 'env' to json server '
https://id-management-2.internal.emerlyn.com/ipa/session/json'
2017-01-30T18:14:02Z DEBUG NSSConnection init
id-management-2.internal.emerlyn.com
2017-01-30T18:14:02Z DEBUG Connecting: 10.73.100.31:0
2017-01-30T18:14:02Z DEBUG approved_usage = SSL Server intended_usage = SSL
Server
2017-01-30T18:14:02Z DEBUG cert valid True for "CN=
id-management-2.internal.emerlyn.com,O=INTERNAL.EMERLYN.COM"
2017-01-30T18:14:02Z DEBUG handshake complete, peer = 10.73.100.31:443
2017-01-30T18:14:02Z DEBUG Protocol: TLS1.2
2017-01-30T18:14:02Z DEBUG Cipher: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
2017-01-30T18:14:02Z DEBUG received Set-Cookie
'ipa_session=95e075167249489e9656f53177826615; Domain=
id-management-2.internal.emerlyn.com; Path=/ipa; Expires=Mon, 30 Jan 2017
18:34:02 GMT; Secure; HttpOnly'
2017-01-30T18:14:02Z DEBUG storing cookie
'ipa_session=95e075167249489e9656f53177826615; Domain=
id-management-2.internal.emerlyn.com; Path=/ipa; Expires=Mon, 30 Jan 2017
18:34:02 GMT; Secure; HttpOnly' for principal host/
idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM
2017-01-30T18:14:02Z DEBUG Starting external process
2017-01-30T18:14:02Z DEBUG args=keyctl search @s user
ipa_session_cookie:host/idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM
2017-01-30T18:14:02Z DEBUG Process finished, return code=0
2017-01-30T18:14:02Z DEBUG stdout=822249440

2017-01-30T18:14:02Z DEBUG stderr=
2017-01-30T18:14:02Z DEBUG Starting external process
2017-01-30T18:14:02Z DEBUG args=keyctl search @s user
ipa_session_cookie:host/idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM
2017-01-30T18:14:02Z DEBUG Process finished, return code=0
2017-01-30T18:14:02Z DEBUG stdout=822249440

2017-01-30T18:14:02Z DEBUG stderr=
2017-01-30T18:14:02Z DEBUG Starting external process
2017-01-30T18:14:02Z DEBUG args=keyctl pupdate 822249440
2017-01-30T18:14:02Z DEBUG Process finished, return code=0
2017-01-30T18:14:02Z DEBUG stdout=
2017-01-30T18:14:02Z DEBUG stderr=
2017-01-30T18:14:02Z DEBUG Destroyed connection context.jsonclient_131648144
2017-01-30T18:14:02Z DEBUG Created connection context.ldap2_100830544
2017-01-30T18:14:02Z DEBUG raw: domainlevel_get(version=u'2.213')
2017-01-30T18:14:02Z DEBUG domainlevel_get(version=u'2.213')
2017-01-30T18:14:02Z DEBUG flushing ldaps://
id-management-2.internal.emerlyn.com from SchemaCache
2017-01-30T18:14:02Z DEBUG retrieving schema for SchemaCache url=ldaps://
id-management-2.internal.emerlyn.com conn=<ldap.ldapobject.SimpleLDAPObject
instance at 0x7d94710>
2017-01-30T18:14:02Z DEBUG raw: hostgroup_find(None, cn=u'ipaservers',
version=u'2.213', host=[u'idmfs-01.internal.emerlyn.com'])
2017-01-30T18:14:02Z DEBUG hostgroup_find(None, cn=u'ipaservers',
all=False, raw=False, version=u'2.213', no_members=True, pkey_only=False,
host=(u'idmfs-01.internal.emerlyn.com',))
2017-01-30T18:14:02Z DEBUG KRB5CCNAME set to None
2017-01-30T18:14:02Z DEBUG Failed to find default ccache: Major (851968):
Unspecified GSS failure.  Minor code may provide more information, Minor
(2529639053): No Kerberos credentials available (default cache:
KEYRING:persistent:0)
2017-01-30T18:14:08Z DEBUG Initializing principal admin at INTERNAL.EMERLYN.COM
using password
2017-01-30T18:14:08Z DEBUG Starting external process
2017-01-30T18:14:08Z DEBUG args=/usr/bin/kinit admin at INTERNAL.EMERLYN.COM
-c /tmp/tmptMlYQM
2017-01-30T18:14:08Z DEBUG Process finished, return code=0
2017-01-30T18:14:08Z DEBUG stdout=Password for admin at INTERNAL.EMERLYN.COM:

2017-01-30T18:14:08Z DEBUG stderr=
2017-01-30T18:14:08Z DEBUG Destroyed connection context.ldap2_100830544
2017-01-30T18:14:08Z DEBUG Created connection context.ldap2_100830544
2017-01-30T18:14:08Z DEBUG raw: hostgroup_show(u'ipaservers', rights=True,
all=True, version=u'2.213')
2017-01-30T18:14:08Z DEBUG hostgroup_show(u'ipaservers', rights=True,
all=True, raw=False, version=u'2.213', no_members=False)
2017-01-30T18:14:08Z DEBUG flushing ldaps://
id-management-2.internal.emerlyn.com from SchemaCache
2017-01-30T18:14:08Z DEBUG retrieving schema for SchemaCache url=ldaps://
id-management-2.internal.emerlyn.com conn=<ldap.ldapobject.SimpleLDAPObject
instance at 0x7d94c68>
2017-01-30T18:14:08Z DEBUG Destroyed connection context.ldap2_100830544
2017-01-30T18:14:09Z DEBUG Created connection context.ldap2_100830544
2017-01-30T18:14:09Z DEBUG flushing ldaps://
id-management-2.internal.emerlyn.com from SchemaCache
2017-01-30T18:14:09Z DEBUG retrieving schema for SchemaCache url=ldaps://
id-management-2.internal.emerlyn.com conn=<ldap.ldapobject.SimpleLDAPObject
instance at 0x7d94908>
2017-01-30T18:14:09Z DEBUG Check forward/reverse DNS resolution
2017-01-30T18:14:09Z DEBUG Search DNS server
id-management-2.internal.emerlyn.com (['10.73.100.31', '10.73.100.31',
'10.73.100.31']) for id-management-2.internal.emerlyn.com
2017-01-30T18:14:09Z DEBUG Check reverse address 10.73.100.31 (
id-management-2.internal.emerlyn.com)
2017-01-30T18:14:09Z DEBUG Check failed: NXDOMAIN The DNS query name does
not exist: 31.100.73.10.in-addr.arpa.
2017-01-30T18:14:09Z ERROR Reverse DNS resolution of address 10.73.100.31 (
id-management-2.internal.emerlyn.com) failed. Clients may not function
properly. Please check your DNS setup. (Note that this check queries IPA
DNS directly and ignores /etc/hosts.)
2017-01-30T18:14:18Z DEBUG Name idmfs-01.internal.emerlyn.com. resolved to
set([UnsafeIPAddress('10.72.100.56')])
2017-01-30T18:14:18Z DEBUG Destroyed connection context.ldap2_100830544
2017-01-30T18:14:18Z DEBUG Starting external process
2017-01-30T18:14:18Z DEBUG args=/usr/sbin/ipa-replica-conncheck --master
id-management-2.internal.emerlyn.com --auto-master-check --realm
INTERNAL.EMERLYN.COM --hostname idmfs-01.internal.emerlyn.com --password
XXXXXXXX --ca-cert-file /etc/ipa/ca.crt
2017-01-30T18:14:24Z DEBUG Process finished, return code=0
2017-01-30T18:14:24Z DEBUG stdout=Check connection from replica to remote
master 'id-management-2.internal.emerlyn.com':
   Directory Service: Unsecure port (389): OK
   Directory Service: Secure port (636): OK
   Kerberos KDC: TCP (88): OK
   Kerberos Kpasswd: TCP (464): OK
   HTTP Server: Unsecure port (80): OK
   HTTP Server: Secure port (443): OK

The following list of ports use UDP protocol and would need to be
checked manually:
   Kerberos KDC: UDP (88): SKIPPED
   Kerberos Kpasswd: UDP (464): SKIPPED

Connection from replica to master is OK.
Start listening on required ports for remote master check
Get credentials to log in to remote master
Check RPC connection to remote master
Execute check on remote master
Check connection from master to remote replica '
idmfs-01.internal.emerlyn.com':
   Directory Service: Unsecure port (389): OK
   Directory Service: Secure port (636): OK
   Kerberos KDC: TCP (88): OK
   Kerberos KDC: UDP (88): OK
   Kerberos Kpasswd: TCP (464): OK
   Kerberos Kpasswd: UDP (464): OK
   HTTP Server: Unsecure port (80): OK
   HTTP Server: Secure port (443): OK

Connection from master to replica is OK.

2017-01-30T18:14:24Z DEBUG stderr=
2017-01-30T18:14:24Z DEBUG Created connection context.ldap2_100830544
2017-01-30T18:14:24Z DEBUG raw: hostgroup_add_member(u'ipaservers',
version=u'2.213', host=[u'idmfs-01.internal.emerlyn.com'])
2017-01-30T18:14:24Z DEBUG hostgroup_add_member(u'ipaservers', all=False,
raw=False, version=u'2.213', no_members=False, host=(u'
idmfs-01.internal.emerlyn.com',))
2017-01-30T18:14:24Z DEBUG add_entry_to_group: dn=fqdn=
idmfs-01.internal.emerlyn.com,cn=computers,cn=accounts,dc=internal,dc=emerlyn,dc=com
group_dn=cn=ipaservers,cn=hostgroups,cn=accounts,dc=internal,dc=emerlyn,dc=com
member_attr=member
2017-01-30T18:14:24Z DEBUG flushing ldaps://
id-management-2.internal.emerlyn.com from SchemaCache
2017-01-30T18:14:24Z DEBUG retrieving schema for SchemaCache url=ldaps://
id-management-2.internal.emerlyn.com conn=<ldap.ldapobject.SimpleLDAPObject
instance at 0x876bdd0>
2017-01-30T18:14:24Z DEBUG Destroyed connection context.ldap2_100830544
2017-01-30T18:14:24Z DEBUG Backing up system configuration file
'/etc/ipa/default.conf'
2017-01-30T18:14:24Z DEBUG Saving Index File to
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:24Z DEBUG Starting external process
2017-01-30T18:14:24Z DEBUG args=/bin/systemctl start messagebus.service
2017-01-30T18:14:24Z DEBUG Process finished, return code=0
2017-01-30T18:14:24Z DEBUG stdout=
2017-01-30T18:14:24Z DEBUG stderr=
2017-01-30T18:14:24Z DEBUG Starting external process
2017-01-30T18:14:24Z DEBUG args=/bin/systemctl is-active messagebus.service
2017-01-30T18:14:24Z DEBUG Process finished, return code=0
2017-01-30T18:14:24Z DEBUG stdout=active

2017-01-30T18:14:24Z DEBUG stderr=
2017-01-30T18:14:24Z DEBUG Starting external process
2017-01-30T18:14:24Z DEBUG args=/bin/systemctl restart certmonger.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active certmonger.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=active

2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl enable certmonger.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=Created symlink from
/etc/systemd/system/multi-user.target.wants/certmonger.service to
/usr/lib/systemd/system/certmonger.service.

2017-01-30T18:14:25Z DEBUG group dirsrv exists
2017-01-30T18:14:25Z DEBUG user dirsrv exists
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-enabled chronyd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=1
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=Failed to get unit file state for
chronyd.service: No such file or directory

2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active chronyd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=3
2017-01-30T18:14:25Z DEBUG stdout=unknown

2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Loading Index file from
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:25Z DEBUG Configuring NTP daemon (ntpd)
2017-01-30T18:14:25Z DEBUG   [1/4]: stopping ntpd
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=active

2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Saving StateFile to
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl stop ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG   duration: 0 seconds
2017-01-30T18:14:25Z DEBUG   [2/4]: writing configuration
2017-01-30T18:14:25Z DEBUG Backing up system configuration file
'/etc/ntp.conf'
2017-01-30T18:14:25Z DEBUG Saving Index File to
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:25Z DEBUG Backing up system configuration file
'/etc/sysconfig/ntpd'
2017-01-30T18:14:25Z DEBUG Saving Index File to
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:25Z DEBUG   duration: 0 seconds
2017-01-30T18:14:25Z DEBUG   [3/4]: configuring ntpd to start on boot
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-enabled ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=enabled

2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Saving StateFile to
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl enable ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG   duration: 0 seconds
2017-01-30T18:14:25Z DEBUG   [4/4]: starting ntpd
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl start ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=
2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active ntpd.service
2017-01-30T18:14:25Z DEBUG Process finished, return code=0
2017-01-30T18:14:25Z DEBUG stdout=active

2017-01-30T18:14:25Z DEBUG stderr=
2017-01-30T18:14:25Z DEBUG   duration: 0 seconds
2017-01-30T18:14:25Z DEBUG Done configuring NTP daemon (ntpd).
2017-01-30T18:14:25Z DEBUG Created connection context.ldap2_100830544
2017-01-30T18:14:25Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Loading Index file from
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:25Z DEBUG Configuring directory server (dirsrv). Estimated
time: 1 minute
2017-01-30T18:14:25Z DEBUG   [1/44]: creating directory server user
2017-01-30T18:14:25Z DEBUG group dirsrv exists
2017-01-30T18:14:25Z DEBUG user dirsrv exists
2017-01-30T18:14:25Z DEBUG   duration: 0 seconds
2017-01-30T18:14:25Z DEBUG   [2/44]: creating directory server instance
2017-01-30T18:14:25Z DEBUG Loading StateFile from
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Saving StateFile to
'/var/lib/ipa/sysrestore/sysrestore.state'
2017-01-30T18:14:25Z DEBUG Backing up system configuration file
'/etc/sysconfig/dirsrv'
2017-01-30T18:14:25Z DEBUG Saving Index File to
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:25Z DEBUG
dn: dc=internal,dc=emerlyn,dc=com
objectClass: top
objectClass: domain
objectClass: pilotObject
dc: internal
info: IPA V2.0

2017-01-30T18:14:25Z DEBUG writing inf template
2017-01-30T18:14:25Z DEBUG
[General]
FullMachineName=   idmfs-01.internal.emerlyn.com
SuiteSpotUserID=   dirsrv
SuiteSpotGroup=    dirsrv
ServerRoot=    /usr/lib64/dirsrv
[slapd]
ServerPort=   389
ServerIdentifier=   INTERNAL-EMERLYN-COM
Suffix=   dc=internal,dc=emerlyn,dc=com
RootDN=   cn=Directory Manager
InstallLdifFile= /var/lib/dirsrv/boot.ldif
inst_dir=   /var/lib/dirsrv/scripts-INTERNAL-EMERLYN-COM

2017-01-30T18:14:25Z DEBUG calling setup-ds.pl
2017-01-30T18:14:25Z DEBUG Starting external process
2017-01-30T18:14:25Z DEBUG args=/usr/sbin/setup-ds.pl --silent --logfile -
-f /tmp/tmpvGOU1R
2017-01-30T18:14:27Z DEBUG Process finished, return code=0
2017-01-30T18:14:27Z DEBUG stdout=[17/01/30:13:14:27] - [Setup] Info Your
new DS instance 'INTERNAL-EMERLYN-COM' was successfully created.
Your new DS instance 'INTERNAL-EMERLYN-COM' was successfully created.
[17/01/30:13:14:27] - [Setup] Success Exiting . . .
Log file is '-'

Exiting . . .
Log file is '-'


2017-01-30T18:14:27Z DEBUG stderr=
2017-01-30T18:14:27Z DEBUG completed creating ds instance
2017-01-30T18:14:27Z DEBUG   duration: 1 seconds
2017-01-30T18:14:27Z DEBUG   [3/44]: updating configuration in dse.ldif
2017-01-30T18:14:27Z DEBUG Starting external process
2017-01-30T18:14:27Z DEBUG args=/bin/systemctl stop
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=
2017-01-30T18:14:28Z DEBUG stderr=
2017-01-30T18:14:28Z DEBUG   duration: 1 seconds
2017-01-30T18:14:28Z DEBUG   [4/44]: restarting directory server
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/bin/systemctl --system daemon-reload
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=
2017-01-30T18:14:28Z DEBUG stderr=
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/bin/systemctl restart
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=
2017-01-30T18:14:28Z DEBUG stderr=
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=active

2017-01-30T18:14:28Z DEBUG stderr=
2017-01-30T18:14:28Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=active

2017-01-30T18:14:28Z DEBUG stderr=
2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [5/44]: adding default schema
2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [6/44]: enabling memberof plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/memberof-conf.ldif -H ldap://
idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpENUDnG
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-pluginenabled:
    on
add memberofgroupattr:
    memberUser
add memberofgroupattr:
    memberHost
modifying entry "cn=MemberOf Plugin,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [7/44]: enabling winsync plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/ipa-winsync-conf.ldif -H ldap://
idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmp2haA4d
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    ipa-winsync
add nsslapd-pluginpath:
    libipa_winsync
add nsslapd-plugininitfunc:
    ipa_winsync_plugin_init
add nsslapd-pluginDescription:
    Allows IPA to work with the DS windows sync feature
add nsslapd-pluginid:
    ipa-winsync
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    Red Hat
add nsslapd-plugintype:
    preoperation
add nsslapd-pluginenabled:
    on
add nsslapd-plugin-depends-on-type:
    database
add ipaWinSyncRealmFilter:
    (objectclass=krbRealmContainer)
add ipaWinSyncRealmAttr:
    cn
add ipaWinSyncNewEntryFilter:
    (cn=ipaConfig)
add ipaWinSyncNewUserOCAttr:
    ipauserobjectclasses
add ipaWinSyncUserFlatten:
    true
add ipaWinsyncHomeDirAttr:
    ipaHomesRootDir
add ipaWinsyncLoginShellAttr:
    ipaDefaultLoginShell
add ipaWinSyncDefaultGroupAttr:
    ipaDefaultPrimaryGroup
add ipaWinSyncDefaultGroupFilter:
    (gidNumber=*)(objectclass=posixGroup)(objectclass=groupOfNames)
add ipaWinSyncAcctDisable:
    both
add ipaWinSyncForceSync:
    true
add ipaWinSyncUserAttr:
    uidNumber -1
    gidNumber -1
adding new entry "cn=ipa-winsync,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [8/44]: configuring replication version plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/version-conf.ldif -H ldap://idmfs-01.internal.emerlyn.com:389
-x -D cn=Directory Manager -y /tmp/tmpsXVkbb
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    IPA Version Replication
add nsslapd-pluginpath:
    libipa_repl_version
add nsslapd-plugininitfunc:
    repl_version_plugin_init
add nsslapd-plugintype:
    preoperation
add nsslapd-pluginenabled:
    off
add nsslapd-pluginid:
    ipa_repl_version
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    Red Hat, Inc.
add nsslapd-plugindescription:
    IPA Replication version plugin
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-plugin-depends-on-named:
    Multimaster Replication Plugin
adding new entry "cn=IPA Version Replication,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [9/44]: enabling IPA enrollment plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmp2Y_1cF -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpqVpKUo
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    ipa_enrollment_extop
add nsslapd-pluginpath:
    libipa_enrollment_extop
add nsslapd-plugininitfunc:
    ipaenrollment_init
add nsslapd-plugintype:
    extendedop
add nsslapd-pluginenabled:
    on
add nsslapd-pluginid:
    ipa_enrollment_extop
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    RedHat
add nsslapd-plugindescription:
    Enroll hosts into the IPA domain
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-realmTree:
    dc=internal,dc=emerlyn,dc=com
adding new entry "cn=ipa_enrollment_extop,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [10/44]: enabling ldapi
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpHlgcdV -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpVJTxf7
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-ldapilisten:
    on
modifying entry "cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [11/44]: configuring uniqueness plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpP_NH4d -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpVPbyTw
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    krbPrincipalName uniqueness
add nsslapd-pluginPath:
    libattr-unique-plugin
add nsslapd-pluginInitfunc:
    NSUniqueAttr_Init
add nsslapd-pluginType:
    preoperation
add nsslapd-pluginEnabled:
    on
add uniqueness-attribute-name:
    krbPrincipalName
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginId:
    NSUniqueAttr
add nsslapd-pluginVersion:
    1.1.0
add nsslapd-pluginVendor:
    Fedora Project
add nsslapd-pluginDescription:
    Enforce unique attribute values
add uniqueness-subtrees:
    dc=internal,dc=emerlyn,dc=com
add uniqueness-exclude-subtrees:
    cn=staged
users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com
add uniqueness-across-all-subtrees:
    on
adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    krbCanonicalName uniqueness
add nsslapd-pluginPath:
    libattr-unique-plugin
add nsslapd-pluginInitfunc:
    NSUniqueAttr_Init
add nsslapd-pluginType:
    preoperation
add nsslapd-pluginEnabled:
    on
add uniqueness-attribute-name:
    krbCanonicalName
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginId:
    NSUniqueAttr
add nsslapd-pluginVersion:
    1.1.0
add nsslapd-pluginVendor:
    Fedora Project
add nsslapd-pluginDescription:
    Enforce unique attribute values
add uniqueness-subtrees:
    dc=internal,dc=emerlyn,dc=com
add uniqueness-exclude-subtrees:
    cn=staged
users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com
add uniqueness-across-all-subtrees:
    on
adding new entry "cn=krbCanonicalName uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    netgroup uniqueness
add nsslapd-pluginPath:
    libattr-unique-plugin
add nsslapd-pluginInitfunc:
    NSUniqueAttr_Init
add nsslapd-pluginType:
    preoperation
add nsslapd-pluginEnabled:
    on
add uniqueness-attribute-name:
    cn
add uniqueness-subtrees:
    cn=ng,cn=alt,dc=internal,dc=emerlyn,dc=com
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginId:
    NSUniqueAttr
add nsslapd-pluginVersion:
    1.1.0
add nsslapd-pluginVendor:
    Fedora Project
add nsslapd-pluginDescription:
    Enforce unique attribute values
adding new entry "cn=netgroup uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    ipaUniqueID uniqueness
add nsslapd-pluginPath:
    libattr-unique-plugin
add nsslapd-pluginInitfunc:
    NSUniqueAttr_Init
add nsslapd-pluginType:
    preoperation
add nsslapd-pluginEnabled:
    on
add uniqueness-attribute-name:
    ipaUniqueID
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginId:
    NSUniqueAttr
add nsslapd-pluginVersion:
    1.1.0
add nsslapd-pluginVendor:
    Fedora Project
add nsslapd-pluginDescription:
    Enforce unique attribute values
add uniqueness-subtrees:
    dc=internal,dc=emerlyn,dc=com
add uniqueness-exclude-subtrees:
    cn=staged
users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com
add uniqueness-across-all-subtrees:
    on
adding new entry "cn=ipaUniqueID uniqueness,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    sudorule name uniqueness
add nsslapd-pluginDescription:
    Enforce unique attribute values
add nsslapd-pluginPath:
    libattr-unique-plugin
add nsslapd-pluginInitfunc:
    NSUniqueAttr_Init
add nsslapd-pluginType:
    preoperation
add nsslapd-pluginEnabled:
    on
add uniqueness-attribute-name:
    cn
add uniqueness-subtrees:
    cn=sudorules,cn=sudo,dc=internal,dc=emerlyn,dc=com
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginId:
    NSUniqueAttr
add nsslapd-pluginVersion:
    1.1.0
add nsslapd-pluginVendor:
    Fedora Project
adding new entry "cn=sudorule name uniqueness,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [12/44]: configuring uuid plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/uuid-conf.ldif -H ldap://idmfs-01.internal.emerlyn.com:389
-x -D cn=Directory Manager -y /tmp/tmpYQ7MBu
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    IPA UUID
add nsslapd-pluginpath:
    libipa_uuid
add nsslapd-plugininitfunc:
    ipauuid_init
add nsslapd-plugintype:
    preoperation
add nsslapd-pluginenabled:
    on
add nsslapd-pluginid:
    ipauuid_version
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    Red Hat, Inc.
add nsslapd-plugindescription:
    IPA UUID plugin
add nsslapd-plugin-depends-on-type:
    database
adding new entry "cn=IPA UUID,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpdy0lbi -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpkqyIvk
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    extensibleObject
add cn:
    IPA Unique IDs
add ipaUuidAttr:
    ipaUniqueID
add ipaUuidMagicRegen:
    autogenerate
add ipaUuidFilter:
    (|(objectclass=ipaObject)(objectclass=ipaAssociation))
add ipaUuidScope:
    dc=internal,dc=emerlyn,dc=com
add ipaUuidEnforce:
    TRUE
adding new entry "cn=IPA Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete

add objectclass:
    top
    extensibleObject
add cn:
    IPK11 Unique IDs
add ipaUuidAttr:
    ipk11UniqueID
add ipaUuidMagicRegen:
    autogenerate
add ipaUuidFilter:
    (objectclass=ipk11Object)
add ipaUuidScope:
    dc=internal,dc=emerlyn,dc=com
add ipaUuidEnforce:
    FALSE
adding new entry "cn=IPK11 Unique IDs,cn=IPA UUID,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [13/44]: configuring modrdn plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/modrdn-conf.ldif -H ldap://idmfs-01.internal.emerlyn.com:389
-x -D cn=Directory Manager -y /tmp/tmpOqfjAO
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    IPA MODRDN
add nsslapd-pluginpath:
    libipa_modrdn
add nsslapd-plugininitfunc:
    ipamodrdn_init
add nsslapd-plugintype:
    betxnpostoperation
add nsslapd-pluginenabled:
    on
add nsslapd-pluginid:
    ipamodrdn_version
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    Red Hat, Inc.
add nsslapd-plugindescription:
    IPA MODRDN plugin
add nsslapd-plugin-depends-on-type:
    database
add nsslapd-pluginPrecedence:
    60
adding new entry "cn=IPA MODRDN,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpyghKlx -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpgloKvC
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    extensibleObject
add cn:
    Kerberos Principal Name
add ipaModRDNsourceAttr:
    uid
add ipaModRDNtargetAttr:
    krbPrincipalName
add ipaModRDNsuffix:
    @INTERNAL.EMERLYN.COM
add ipaModRDNfilter:
    (&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
    dc=internal,dc=emerlyn,dc=com
adding new entry "cn=Kerberos Principal Name,cn=IPA
MODRDN,cn=plugins,cn=config"
modify complete

add objectclass:
    top
    extensibleObject
add cn:
    Kerberos Canonical Name
add ipaModRDNsourceAttr:
    uid
add ipaModRDNtargetAttr:
    krbCanonicalName
add ipaModRDNsuffix:
    @INTERNAL.EMERLYN.COM
add ipaModRDNfilter:
    (&(objectclass=posixaccount)(objectclass=krbPrincipalAux))
add ipaModRDNscope:
    dc=internal,dc=emerlyn,dc=com
adding new entry "cn=Kerberos Canonical Name,cn=IPA
MODRDN,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [14/44]: configuring DNS plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/ipa-dns-conf.ldif -H ldap://idmfs-01.internal.emerlyn.com:389
-x -D cn=Directory Manager -y /tmp/tmpzLP4sT
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsslapdPlugin
    extensibleObject
add cn:
    IPA DNS
add nsslapd-plugindescription:
    IPA DNS support plugin
add nsslapd-pluginenabled:
    on
add nsslapd-pluginid:
    ipa_dns
add nsslapd-plugininitfunc:
    ipadns_init
add nsslapd-pluginpath:
    libipa_dns.so
add nsslapd-plugintype:
    preoperation
add nsslapd-pluginvendor:
    Red Hat, Inc.
add nsslapd-pluginversion:
    1.0
add nsslapd-plugin-depends-on-type:
    database
adding new entry "cn=IPA DNS,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [15/44]: enabling entryUSN plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/entryusn.ldif -H ldap://idmfs-01.internal.emerlyn.com:389 -x
-D cn=Directory Manager -y /tmp/tmpGAIOs8
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-entryusn-global:
    on
modifying entry "cn=config"
modify complete

replace nsslapd-entryusn-import-initval:
    next
modifying entry "cn=config"
modify complete

replace nsslapd-pluginenabled:
    on
modifying entry "cn=USN,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [16/44]: configuring lockout plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/lockout-conf.ldif -H ldap://idmfs-01.internal.emerlyn.com:389
-x -D cn=Directory Manager -y /tmp/tmpVKsOBc
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectclass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    IPA Lockout
add nsslapd-pluginpath:
    libipa_lockout
add nsslapd-plugininitfunc:
    ipalockout_init
add nsslapd-plugintype:
    object
add nsslapd-pluginenabled:
    on
add nsslapd-pluginid:
    ipalockout_version
add nsslapd-pluginversion:
    1.0
add nsslapd-pluginvendor:
    Red Hat, Inc.
add nsslapd-plugindescription:
    IPA Lockout plugin
add nsslapd-plugin-depends-on-type:
    database
adding new entry "cn=IPA Lockout,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [17/44]: configuring topology plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpMsDuZ7 -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpol4G8y
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectClass:
    top
    nsSlapdPlugin
    extensibleObject
add cn:
    IPA Topology Configuration
add nsslapd-pluginPath:
    libtopology
add nsslapd-pluginInitfunc:
    ipa_topo_init
add nsslapd-pluginType:
    object
add nsslapd-pluginEnabled:
    on
add nsslapd-topo-plugin-shared-config-base:
    cn=ipa,cn=etc,dc=internal,dc=emerlyn,dc=com
add nsslapd-topo-plugin-shared-replica-root:
    dc=internal,dc=emerlyn,dc=com
    o=ipaca
add nsslapd-topo-plugin-shared-binddngroup:
    cn=replication
managers,cn=sysaccounts,cn=etc,dc=internal,dc=emerlyn,dc=com
add nsslapd-topo-plugin-startup-delay:
    20
add nsslapd-pluginId:
    none
add nsslapd-plugin-depends-on-named:
    ldbm database
    Multimaster Replication Plugin
add nsslapd-pluginVersion:
    1.0
add nsslapd-pluginVendor:
    none
add nsslapd-pluginDescription:
    none
adding new entry "cn=IPA Topology Configuration,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [18/44]: creating indices
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/indices.ldif -H ldap://idmfs-01.internal.emerlyn.com:389 -x
-D cn=Directory Manager -y /tmp/tmppcBR8s
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=add objectClass:
    top
    nsIndex
add cn:
    krbPrincipalName
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
add nsMatchingRule:
    caseIgnoreIA5Match
    caseExactIA5Match
adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    ou
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    carLicense
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    title
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    manager
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    secretary
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    displayname
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add nsIndexType:
    sub
modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    uidnumber
add nsSystemIndex:
    false
add nsIndexType:
    eq
add nsMatchingRule:
    integerOrderingMatch
adding new entry "cn=uidnumber,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add objectClass:
    top
    nsIndex
add cn:
    gidnumber
add nsSystemIndex:
    false
add nsIndexType:
    eq
add nsMatchingRule:
    integerOrderingMatch
adding new entry "cn=gidnumber,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

replace nsIndexType:
    eq
    pres
modifying entry "cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

replace nsIndexType:
    eq
    pres
modifying entry "cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add ObjectClass:
    top
    nsIndex
add cn:
    fqdn
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
adding new entry "cn=fqdn,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add ObjectClass:
    top
    nsIndex
add cn:
    macAddress
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
adding new entry "cn=macAddress,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    memberHost
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=memberHost,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    memberUser
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=memberUser,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    sourcehost
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=sourcehost,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    memberservice
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=memberservice,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    managedby
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=managedby,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    memberallowcmd
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    memberdenycmd
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipasudorunas
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipasudorunasgroup
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    automountkey
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
adding new entry "cn=automountkey,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipakrbprincipalalias
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
adding new entry "cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipauniqueid
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
adding new entry "cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipaMemberCa
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=ipaMemberCa,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipaMemberCertProfile
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
    sub
adding new entry "cn=ipaMemberCertProfile,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    userCertificate
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
adding new entry "cn=userCertificate,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    ipalocation
add ObjectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    pres
adding new entry "cn=ipalocation,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete

add cn:
    krbCanonicalName
add objectClass:
    top
    nsIndex
add nsSystemIndex:
    false
add nsIndexType:
    eq
    sub
adding new entry "cn=krbCanonicalName,cn=index,cn=userRoot,cn=ldbm
database,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [19/44]: enabling referential integrity plugin
2017-01-30T18:14:28Z DEBUG Starting external process
2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/referint-conf.ldif -H ldap://
idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmppyqc4A
2017-01-30T18:14:28Z DEBUG Process finished, return code=0
2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-pluginenabled:
    on
modifying entry "cn=referential integrity
postoperation,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [20/44]: configuring certmap.conf
2017-01-30T18:14:28Z DEBUG Loading StateFile from
'/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-01-30T18:14:28Z DEBUG Loading StateFile from
'/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-01-30T18:14:28Z DEBUG Saving StateFile to
'/var/lib/ipa/sysupgrade/sysupgrade.state'
2017-01-30T18:14:28Z DEBUG   duration: 0 seconds
2017-01-30T18:14:28Z DEBUG   [21/44]: configure autobind for root
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f
/usr/share/ipa/root-autobind.ldif -H ldap://
idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmprZhf9H
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=add objectClass:
    extensibleObject
    top
add cn:
    root-autobind
add uidNumber:
    0
add gidNumber:
    0
adding new entry "cn=root-autobind,cn=config"
modify complete

replace nsslapd-ldapiautobind:
    on
modifying entry "cn=config"
modify complete

replace nsslapd-ldapimaptoentries:
    on
modifying entry "cn=config"
modify complete


2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:29Z DEBUG   duration: 0 seconds
2017-01-30T18:14:29Z DEBUG   [22/44]: configure new location for managed
entries
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpx5ELww -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpUP3JRo
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=add nsslapd-pluginConfigArea:
    cn=Definitions,cn=Managed Entries,cn=etc,dc=internal,dc=emerlyn,dc=com
modifying entry "cn=Managed Entries,cn=plugins,cn=config"
modify complete


2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:29Z DEBUG   duration: 0 seconds
2017-01-30T18:14:29Z DEBUG   [23/44]: configure dirsrv ccache
2017-01-30T18:14:29Z DEBUG Backing up system configuration file
'/etc/sysconfig/dirsrv'
2017-01-30T18:14:29Z DEBUG Saving Index File to
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/usr/sbin/selinuxenabled
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=
2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/sbin/restorecon /etc/sysconfig/dirsrv
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=
2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG   duration: 0 seconds
2017-01-30T18:14:29Z DEBUG   [24/44]: enabling SASL mapping fallback
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmp3KBRRM -H
ldap://idmfs-01.internal.emerlyn.com:389 -x -D cn=Directory Manager -y
/tmp/tmpIkrrhu
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=replace nsslapd-sasl-mapping-fallback:
    on
modifying entry "cn=config"
modify complete


2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://
idmfs-01.internal.emerlyn.com:389/??base )

2017-01-30T18:14:29Z DEBUG   duration: 0 seconds
2017-01-30T18:14:29Z DEBUG   [25/44]: restarting directory server
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/bin/systemctl --system daemon-reload
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=
2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/bin/systemctl restart
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=
2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=active

2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-01-30T18:14:29Z DEBUG Starting external process
2017-01-30T18:14:29Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:29Z DEBUG Process finished, return code=0
2017-01-30T18:14:29Z DEBUG stdout=active

2017-01-30T18:14:29Z DEBUG stderr=
2017-01-30T18:14:29Z DEBUG   duration: 0 seconds
2017-01-30T18:14:29Z DEBUG   [26/44]: creating DS keytab
2017-01-30T18:14:29Z DEBUG Backing up system configuration file
'/etc/dirsrv/ds.keytab'
2017-01-30T18:14:29Z DEBUG   -> Not backing up - '/etc/dirsrv/ds.keytab'
doesn't exist
2017-01-30T18:14:29Z DEBUG raw: service_add(u'ldap/
idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM', force=True,
version=u'2.213')
2017-01-30T18:14:29Z DEBUG service_add(<ipapython.kerberos.Principal object
at 0x891cfd0>, force=True, all=False, raw=False, version=u'2.213',
no_members=False)
2017-01-30T18:14:29Z DEBUG flushing ldaps://
id-management-2.internal.emerlyn.com from SchemaCache
2017-01-30T18:14:29Z DEBUG retrieving schema for SchemaCache url=ldaps://
id-management-2.internal.emerlyn.com conn=<ldap.ldapobject.SimpleLDAPObject
instance at 0x741a9e0>
2017-01-30T18:14:30Z DEBUG raw: host_show(u'idmfs-01.internal.emerlyn.com',
version=u'2.213')
2017-01-30T18:14:30Z DEBUG host_show(u'idmfs-01.internal.emerlyn.com',
rights=False, all=False, raw=False, version=u'2.213', no_members=False)
2017-01-30T18:14:30Z DEBUG Starting external process
2017-01-30T18:14:30Z DEBUG args=/usr/sbin/ipa-getkeytab -k
/etc/dirsrv/ds.keytab -p ldap/
idmfs-01.internal.emerlyn.com at INTERNAL.EMERLYN.COM -s
id-management-2.internal.emerlyn.com
2017-01-30T18:14:30Z DEBUG Process finished, return code=0
2017-01-30T18:14:30Z DEBUG stdout=
2017-01-30T18:14:30Z DEBUG stderr=Keytab successfully retrieved and stored
in: /etc/dirsrv/ds.keytab

2017-01-30T18:14:30Z DEBUG   duration: 0 seconds
2017-01-30T18:14:30Z DEBUG   [27/44]: retrieving DS Certificate
2017-01-30T18:14:30Z DEBUG Loading Index file from
'/var/lib/ipa/sysrestore/sysrestore.index'
2017-01-30T18:14:30Z DEBUG Starting external process
2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d
/etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -L -n INTERNAL.EMERLYN.COM IPA CA -a
2017-01-30T18:14:30Z DEBUG Process finished, return code=255
2017-01-30T18:14:30Z DEBUG stdout=
2017-01-30T18:14:30Z DEBUG stderr=certutil: Could not find cert:
INTERNAL.EMERLYN.COM IPA CA
: PR_FILE_NOT_FOUND_ERROR: File not found

2017-01-30T18:14:30Z DEBUG Starting external process
2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d
/etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -N -f
/etc/dirsrv/slapd-INTERNAL-EMERLYN-COM//pwdfile.txt
2017-01-30T18:14:30Z DEBUG Process finished, return code=0
2017-01-30T18:14:30Z DEBUG stdout=
2017-01-30T18:14:30Z DEBUG stderr=
2017-01-30T18:14:30Z DEBUG Starting external process
2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d
/etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -A -n INTERNAL.EMERLYN.COM IPA CA
-t CT,C,C -a
2017-01-30T18:14:30Z DEBUG Process finished, return code=0
2017-01-30T18:14:30Z DEBUG stdout=
2017-01-30T18:14:30Z DEBUG stderr=
2017-01-30T18:14:30Z DEBUG certmonger request is in state
dbus.String(u'NEWLY_ADDED_READING_KEYINFO', variant_level=1)
2017-01-30T18:14:35Z DEBUG certmonger request is in state
dbus.String(u'MONITORING', variant_level=1)
2017-01-30T18:14:35Z DEBUG flushing
ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache
2017-01-30T18:14:35Z DEBUG retrieving schema for SchemaCache
url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket
conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x85b2998>
2017-01-30T18:14:35Z DEBUG   duration: 5 seconds
2017-01-30T18:14:35Z DEBUG   [28/44]: restarting directory server
2017-01-30T18:14:35Z DEBUG Starting external process
2017-01-30T18:14:35Z DEBUG args=/bin/systemctl --system daemon-reload
2017-01-30T18:14:35Z DEBUG Process finished, return code=0
2017-01-30T18:14:35Z DEBUG stdout=
2017-01-30T18:14:35Z DEBUG stderr=
2017-01-30T18:14:35Z DEBUG Starting external process
2017-01-30T18:14:35Z DEBUG args=/bin/systemctl restart
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:37Z DEBUG Process finished, return code=0
2017-01-30T18:14:37Z DEBUG stdout=
2017-01-30T18:14:37Z DEBUG stderr=
2017-01-30T18:14:37Z DEBUG Starting external process
2017-01-30T18:14:37Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:37Z DEBUG Process finished, return code=0
2017-01-30T18:14:37Z DEBUG stdout=active

2017-01-30T18:14:37Z DEBUG stderr=
2017-01-30T18:14:37Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-01-30T18:14:37Z DEBUG Starting external process
2017-01-30T18:14:37Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:37Z DEBUG Process finished, return code=0
2017-01-30T18:14:37Z DEBUG stdout=active

2017-01-30T18:14:37Z DEBUG stderr=
2017-01-30T18:14:37Z DEBUG   duration: 1 seconds
2017-01-30T18:14:37Z DEBUG   [29/44]: setting up initial replication
2017-01-30T18:14:37Z DEBUG flushing
ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache
2017-01-30T18:14:37Z DEBUG retrieving schema for SchemaCache
url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket
conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x241bea8>
2017-01-30T18:14:37Z DEBUG Starting external process
2017-01-30T18:14:37Z DEBUG args=/bin/systemctl --system daemon-reload
2017-01-30T18:14:37Z DEBUG Process finished, return code=0
2017-01-30T18:14:37Z DEBUG stdout=
2017-01-30T18:14:37Z DEBUG stderr=
2017-01-30T18:14:37Z DEBUG Starting external process
2017-01-30T18:14:37Z DEBUG args=/bin/systemctl restart
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:38Z DEBUG Process finished, return code=0
2017-01-30T18:14:38Z DEBUG stdout=
2017-01-30T18:14:38Z DEBUG stderr=
2017-01-30T18:14:38Z DEBUG Starting external process
2017-01-30T18:14:38Z DEBUG args=/bin/systemctl is-active
dirsrv at INTERNAL-EMERLYN-COM.service
2017-01-30T18:14:38Z DEBUG Process finished, return code=0
2017-01-30T18:14:38Z DEBUG stdout=active

2017-01-30T18:14:38Z DEBUG stderr=
2017-01-30T18:14:38Z DEBUG wait_for_open_ports: localhost [389] timeout 300
2017-01-30T18:14:38Z DEBUG Fetching nsDS5ReplicaId from master [attempt 1/5]
2017-01-30T18:14:38Z DEBUG flushing ldap://
id-management-2.internal.emerlyn.com:389 from SchemaCache
2017-01-30T18:14:38Z DEBUG retrieving schema for SchemaCache url=ldap://
id-management-2.internal.emerlyn.com:389
conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x89a2a70>
2017-01-30T18:14:39Z DEBUG Successfully updated nsDS5ReplicaId.
2017-01-30T18:14:39Z DEBUG flushing
ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache
2017-01-30T18:14:39Z DEBUG retrieving schema for SchemaCache
url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket
conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x9cde560>
2017-01-30T18:14:54Z DEBUG Traceback (most recent call last):
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py",
line 449, in start_creation
    run_step(full_msg, method)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py",
line 439, in run_step
    method()
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py",
line 414, in __setup_replica
    repl.setup_promote_replication(self.master_fqdn)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py",
line 1643, in setup_promote_replication
    raise RuntimeError("Failed to start replication")
RuntimeError: Failed to start replication

2017-01-30T18:14:54Z DEBUG   [error] RuntimeError: Failed to start
replication
2017-01-30T18:14:54Z DEBUG Destroyed connection context.ldap2_100830544
2017-01-30T18:14:54Z DEBUG   File
"/usr/lib/python2.7/site-packages/ipapython/admintool.py", line 171, in
execute
    return_value = self.run()
  File "/usr/lib/python2.7/site-packages/ipapython/install/cli.py", line
318, in run
    cfgr.run()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
310, in run
    self.execute()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
332, in execute
    for nothing in self._executor():
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
372, in __runner
    self._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
394, in _handle_exception
    six.reraise(*exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
362, in __runner
    step()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
359, in <lambda>
    step = lambda: next(self.__gen)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line
81, in run_generator_with_yield_from
    six.reraise(*exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line
59, in run_generator_with_yield_from
    value = gen.send(prev_value)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
586, in _configure
    next(executor)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
372, in __runner
    self._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
449, in _handle_exception
    self.__parent._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
394, in _handle_exception
    six.reraise(*exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
446, in _handle_exception
    super(ComponentBase, self)._handle_exception(exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
394, in _handle_exception
    six.reraise(*exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
362, in __runner
    step()
  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line
359, in <lambda>
    step = lambda: next(self.__gen)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line
81, in run_generator_with_yield_from
    six.reraise(*exc_info)
  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line
59, in run_generator_with_yield_from
    value = gen.send(prev_value)
  File "/usr/lib/python2.7/site-packages/ipapython/install/common.py", line
63, in _install
    for nothing in self._installer(self.parent):
  File
"/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py",
line 1714, in main
    promote(self)
  File
"/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py",
line 364, in decorated
    func(installer)
  File
"/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py",
line 1415, in promote
    promote=True, pkcs12_info=dirsrv_pkcs12_info)
  File
"/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py",
line 127, in install_replica_ds
    api=remote_api,
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py",
line 399, in create_replica
    self.start_creation(runtime=60)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py",
line 449, in start_creation
    run_step(full_msg, method)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py",
line 439, in run_step
    method()
  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py",
line 414, in __setup_replica
    repl.setup_promote_replication(self.master_fqdn)
  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py",
line 1643, in setup_promote_replication
    raise RuntimeError("Failed to start replication")

2017-01-30T18:14:54Z DEBUG The ipa-replica-install command failed,
exception: RuntimeError: Failed to start replication
2017-01-30T18:14:54Z ERROR Failed to start replication
2017-01-30T18:14:54Z ERROR The ipa-replica-install command failed. See
/var/log/ipareplica-install.log for more information


Thanks,

Jeff
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20170130/1c8956a5/attachment.htm>


More information about the Freeipa-users mailing list