<div dir="ltr"><div><div>My previous install of freeipa became corrupted so I'm starting fresh. I've got a new Centos 7.2 server set up and installed ipa version s 4.4. Now I'm trying to set up a replica on another newly created and patched centos server. The ipa-client-install command completes without issue but when I try ipa-replica-install --no-host-dns I get up to step 29 setting up the initial replication and it fails. Can someone point me to the documentation I'm missing or explain what I can do to have success? Below is the install error log:<br><br>2017-01-30T18:13:59Z DEBUG Logging to /var/log/ipareplica-install.log<br>2017-01-30T18:13:59Z DEBUG ipa-replica-install was invoked with arguments [] and options: {'no_dns_sshfp': None, 'skip_schema_check': None, 'setup_kra': None, 'ip_addresses': None, 'mkhomedir': None, 'http_cert_files': None, 'ssh_trust_dns': None, 'reverse_zones': None, 'no_forwarders': None, 'keytab': None, 'no_ntp': None, 'domain_name': None, 'http_cert_name': None, 'dirsrv_cert_files': None, 'no_dnssec_validation': None, 'no_reverse': None, 'unattended': False, 'auto_reverse': None, 'auto_forwarders': None, 'no_host_dns': None, 'no_sshd': None, 'no_ui_redirect': None, 'dirsrv_config_file': None, 'forwarders': None, 'verbose': False, 'setup_ca': None, 'realm_name': None, 'skip_conncheck': None, 'no_ssh': None, 'forward_policy': None, 'dirsrv_cert_name': None, 'quiet': False, 'server': None, 'setup_dns': None, 'host_name': None, 'log_file': None, 'allow_zone_overlap': None}<br>2017-01-30T18:13:59Z DEBUG IPA version 4.4.0-14.el7.centos.4<br>2017-01-30T18:13:59Z DEBUG Starting external process<br>2017-01-30T18:13:59Z DEBUG args=/usr/sbin/selinuxenabled<br>2017-01-30T18:13:59Z DEBUG Process finished, return code=0<br>2017-01-30T18:13:59Z DEBUG stdout=<br>2017-01-30T18:13:59Z DEBUG stderr=<br>2017-01-30T18:13:59Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:13:59Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:13:59Z DEBUG httpd is not configured<br>2017-01-30T18:13:59Z DEBUG kadmin is not configured<br>2017-01-30T18:13:59Z DEBUG dirsrv is not configured<br>2017-01-30T18:13:59Z DEBUG pki-tomcatd is not configured<br>2017-01-30T18:13:59Z DEBUG install is not configured<br>2017-01-30T18:13:59Z DEBUG krb5kdc is not configured<br>2017-01-30T18:13:59Z DEBUG ntpd is not configured<br>2017-01-30T18:13:59Z DEBUG named is not configured<br>2017-01-30T18:13:59Z DEBUG ipa_memcached is not configured<br>2017-01-30T18:13:59Z DEBUG filestore is tracking no files<br>2017-01-30T18:13:59Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index'<br>2017-01-30T18:13:59Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:13:59Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:13:59Z DEBUG Starting external process<br>2017-01-30T18:13:59Z DEBUG args=/usr/sbin/httpd -t -D DUMP_VHOSTS<br>2017-01-30T18:13:59Z DEBUG Process finished, return code=0<br>2017-01-30T18:13:59Z DEBUG stdout=VirtualHost configuration:<br>*:8443                 <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a> (/etc/httpd/conf.d/nss.conf:83)<br><br>2017-01-30T18:13:59Z DEBUG stderr=<br>2017-01-30T18:13:59Z DEBUG Starting external process<br>2017-01-30T18:13:59Z DEBUG args=/bin/systemctl is-enabled chronyd.service<br>2017-01-30T18:13:59Z DEBUG Process finished, return code=1<br>2017-01-30T18:13:59Z DEBUG stdout=<br>2017-01-30T18:13:59Z DEBUG stderr=Failed to get unit file state for chronyd.service: No such file or directory<br><br>2017-01-30T18:13:59Z DEBUG Starting external process<br>2017-01-30T18:13:59Z DEBUG args=/bin/systemctl is-active chronyd.service<br>2017-01-30T18:13:59Z DEBUG Process finished, return code=3<br>2017-01-30T18:13:59Z DEBUG stdout=unknown<br><br>2017-01-30T18:13:59Z DEBUG stderr=<br>2017-01-30T18:13:59Z DEBUG importing all plugin modules in ipaserver.plugins...<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.aci<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.automember<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.automount<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.baseldap<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.baseldap is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.baseuser<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.batch<br>2017-01-30T18:13:59Z DEBUG importing plugin module <a href="http://ipaserver.plugins.ca">ipaserver.plugins.ca</a><br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.caacl<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.cert<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.certprofile<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.config<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.delegation<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.dns<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.dnsserver<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.dogtag<br>2017-01-30T18:13:59Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.domainlevel<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.group<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbac<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.hbac is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbacrule<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbacsvc<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbacsvcgroup<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hbactest<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.host<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.hostgroup<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.idrange<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.idviews<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.internal<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.join<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.krbtpolicy<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.ldap2<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.location<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.migration<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.misc<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.netgroup<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.otp<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.otp is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.otpconfig<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.otptoken<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.passwd<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.permission<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.ping<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.pkinit<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.pkinit is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.privilege<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.pwpolicy<br>2017-01-30T18:13:59Z DEBUG Starting external process<br>2017-01-30T18:13:59Z DEBUG args=klist -V<br>2017-01-30T18:13:59Z DEBUG Process finished, return code=0<br>2017-01-30T18:13:59Z DEBUG stdout=Kerberos 5 version 1.14.1<br><br>2017-01-30T18:13:59Z DEBUG stderr=<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.rabase<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.rabase is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.radiusproxy<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.realmdomains<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.role<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.schema<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.selfservice<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.selinuxusermap<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.server<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.serverrole<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.serverroles<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.service<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.servicedelegation<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.session<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.stageuser<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudo<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.sudo is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudocmd<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudocmdgroup<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.sudorule<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.topology<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.trust<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.user<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.vault<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.virtual<br>2017-01-30T18:13:59Z DEBUG ipaserver.plugins.virtual is not a valid plugin module<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.plugins.xmlserver<br>2017-01-30T18:13:59Z DEBUG importing all plugin modules in ipaserver.install.plugins...<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.adtrust<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.dns<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_ca_topology<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_nis<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_referint<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_services<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness<br>2017-01-30T18:13:59Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt<br>2017-01-30T18:14:00Z DEBUG Check if <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a> is a primary hostname for localhost<br>2017-01-30T18:14:00Z DEBUG Primary hostname for localhost: <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Search DNS for <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Check if <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a> is not a CNAME<br>2017-01-30T18:14:00Z DEBUG Check reverse address of 10.72.100.56<br>2017-01-30T18:14:00Z DEBUG Found reverse name: <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Check if <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> is a primary hostname for localhost<br>2017-01-30T18:14:00Z DEBUG Primary hostname for localhost: <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Search DNS for <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Check if <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> is not a CNAME<br>2017-01-30T18:14:00Z DEBUG Check reverse address of 10.73.100.31<br>2017-01-30T18:14:00Z DEBUG Found reverse name: <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:00Z DEBUG Initializing principal host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a> using keytab /etc/krb5.keytab<br>2017-01-30T18:14:00Z DEBUG using ccache /tmp/krbccfjuIS1/ccache<br>2017-01-30T18:14:01Z DEBUG Attempt 1/1: success<br>2017-01-30T18:14:01Z DEBUG importing all plugin modules in ipaserver.plugins...<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.aci<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.automember<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.automount<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.baseldap<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.baseldap is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.baseuser<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.batch<br>2017-01-30T18:14:01Z DEBUG importing plugin module <a href="http://ipaserver.plugins.ca">ipaserver.plugins.ca</a><br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.caacl<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.cert<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.certprofile<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.config<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.delegation<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.dns<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.dnsserver<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.dogtag<br>2017-01-30T18:14:01Z DEBUG skipping plugin module ipaserver.plugins.dogtag: dogtag not selected as RA plugin<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.domainlevel<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.group<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbac<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.hbac is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbacrule<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbacsvc<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbacsvcgroup<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hbactest<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.host<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.hostgroup<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.idrange<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.idviews<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.internal<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.join<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.krbtpolicy<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.ldap2<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.location<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.migration<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.misc<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.netgroup<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.otp<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.otp is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.otpconfig<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.otptoken<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.passwd<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.permission<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.ping<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.pkinit<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.pkinit is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.privilege<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.pwpolicy<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.rabase<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.rabase is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.radiusproxy<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.realmdomains<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.role<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.schema<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.selfservice<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.selinuxusermap<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.server<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.serverrole<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.serverroles<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.service<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.servicedelegation<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.session<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.stageuser<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudo<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.sudo is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudocmd<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudocmdgroup<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.sudorule<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.topology<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.trust<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.user<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.vault<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.virtual<br>2017-01-30T18:14:01Z DEBUG ipaserver.plugins.virtual is not a valid plugin module<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.plugins.xmlserver<br>2017-01-30T18:14:01Z DEBUG importing all plugin modules in ipaserver.install.plugins...<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.adtrust<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.ca_renewal_master<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.dns<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.fix_replica_agreements<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.rename_managed<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_ca_topology<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_idranges<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_managed_permissions<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_nis<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_pacs<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_passsync<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_referint<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_services<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.update_uniqueness<br>2017-01-30T18:14:01Z DEBUG importing plugin module ipaserver.install.plugins.upload_cacrt<br>2017-01-30T18:14:02Z DEBUG Starting external process<br>2017-01-30T18:14:02Z DEBUG args=keyctl search @s user ipa_session_cookie:host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a><br>2017-01-30T18:14:02Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:02Z DEBUG stdout=822249440<br><br>2017-01-30T18:14:02Z DEBUG stderr=<br>2017-01-30T18:14:02Z DEBUG Starting external process<br>2017-01-30T18:14:02Z DEBUG args=keyctl pipe 822249440<br>2017-01-30T18:14:02Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:02Z DEBUG stdout=ipa_session=95e075167249489e9656f53177826615; Domain=<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>; Path=/ipa; Expires=Mon, 30 Jan 2017 18:33:49 GMT; Secure; HttpOnly<br>2017-01-30T18:14:02Z DEBUG stderr=<br>2017-01-30T18:14:02Z DEBUG found session_cookie in persistent storage for principal 'host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a>', cookie: 'ipa_session=95e075167249489e9656f53177826615; Domain=<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>; Path=/ipa; Expires=Mon, 30 Jan 2017 18:33:49 GMT; Secure; HttpOnly'<br>2017-01-30T18:14:02Z DEBUG setting session_cookie into context 'ipa_session=95e075167249489e9656f53177826615;'<br>2017-01-30T18:14:02Z INFO trying <a href="https://id-management-2.internal.emerlyn.com/ipa/session/json">https://id-management-2.internal.emerlyn.com/ipa/session/json</a><br>2017-01-30T18:14:02Z DEBUG Created connection context.jsonclient_131648144<br>2017-01-30T18:14:02Z INFO Forwarding 'env' to json server '<a href="https://id-management-2.internal.emerlyn.com/ipa/session/json">https://id-management-2.internal.emerlyn.com/ipa/session/json</a>'<br>2017-01-30T18:14:02Z DEBUG NSSConnection init <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:02Z DEBUG Connecting: <a href="http://10.73.100.31:0">10.73.100.31:0</a><br>2017-01-30T18:14:02Z DEBUG approved_usage = SSL Server intended_usage = SSL Server<br>2017-01-30T18:14:02Z DEBUG cert valid True for "CN=<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>,O=<a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a>"<br>2017-01-30T18:14:02Z DEBUG handshake complete, peer = <a href="http://10.73.100.31:443">10.73.100.31:443</a><br>2017-01-30T18:14:02Z DEBUG Protocol: TLS1.2<br>2017-01-30T18:14:02Z DEBUG Cipher: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384<br>2017-01-30T18:14:02Z DEBUG received Set-Cookie 'ipa_session=95e075167249489e9656f53177826615; Domain=<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>; Path=/ipa; Expires=Mon, 30 Jan 2017 18:34:02 GMT; Secure; HttpOnly'<br>2017-01-30T18:14:02Z DEBUG storing cookie 'ipa_session=95e075167249489e9656f53177826615; Domain=<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>; Path=/ipa; Expires=Mon, 30 Jan 2017 18:34:02 GMT; Secure; HttpOnly' for principal host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a><br>2017-01-30T18:14:02Z DEBUG Starting external process<br>2017-01-30T18:14:02Z DEBUG args=keyctl search @s user ipa_session_cookie:host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a><br>2017-01-30T18:14:02Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:02Z DEBUG stdout=822249440<br><br>2017-01-30T18:14:02Z DEBUG stderr=<br>2017-01-30T18:14:02Z DEBUG Starting external process<br>2017-01-30T18:14:02Z DEBUG args=keyctl search @s user ipa_session_cookie:host/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a><br>2017-01-30T18:14:02Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:02Z DEBUG stdout=822249440<br><br>2017-01-30T18:14:02Z DEBUG stderr=<br>2017-01-30T18:14:02Z DEBUG Starting external process<br>2017-01-30T18:14:02Z DEBUG args=keyctl pupdate 822249440<br>2017-01-30T18:14:02Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:02Z DEBUG stdout=<br>2017-01-30T18:14:02Z DEBUG stderr=<br>2017-01-30T18:14:02Z DEBUG Destroyed connection context.jsonclient_131648144<br>2017-01-30T18:14:02Z DEBUG Created connection context.ldap2_100830544<br>2017-01-30T18:14:02Z DEBUG raw: domainlevel_get(version=u'2.213')<br>2017-01-30T18:14:02Z DEBUG domainlevel_get(version=u'2.213')<br>2017-01-30T18:14:02Z DEBUG flushing ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> from SchemaCache<br>2017-01-30T18:14:02Z DEBUG retrieving schema for SchemaCache url=ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x7d94710><br>2017-01-30T18:14:02Z DEBUG raw: hostgroup_find(None, cn=u'ipaservers', version=u'2.213', host=[u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>'])<br>2017-01-30T18:14:02Z DEBUG hostgroup_find(None, cn=u'ipaservers', all=False, raw=False, version=u'2.213', no_members=True, pkey_only=False, host=(u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>',))<br>2017-01-30T18:14:02Z DEBUG KRB5CCNAME set to None<br>2017-01-30T18:14:02Z DEBUG Failed to find default ccache: Major (851968): Unspecified GSS failure.  Minor code may provide more information, Minor (2529639053): No Kerberos credentials available (default cache: KEYRING:persistent:0)<br>2017-01-30T18:14:08Z DEBUG Initializing principal <a href="mailto:admin@INTERNAL.EMERLYN.COM">admin@INTERNAL.EMERLYN.COM</a> using password<br>2017-01-30T18:14:08Z DEBUG Starting external process<br>2017-01-30T18:14:08Z DEBUG args=/usr/bin/kinit <a href="mailto:admin@INTERNAL.EMERLYN.COM">admin@INTERNAL.EMERLYN.COM</a> -c /tmp/tmptMlYQM<br>2017-01-30T18:14:08Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:08Z DEBUG stdout=Password for <a href="mailto:admin@INTERNAL.EMERLYN.COM">admin@INTERNAL.EMERLYN.COM</a>: <br><br>2017-01-30T18:14:08Z DEBUG stderr=<br>2017-01-30T18:14:08Z DEBUG Destroyed connection context.ldap2_100830544<br>2017-01-30T18:14:08Z DEBUG Created connection context.ldap2_100830544<br>2017-01-30T18:14:08Z DEBUG raw: hostgroup_show(u'ipaservers', rights=True, all=True, version=u'2.213')<br>2017-01-30T18:14:08Z DEBUG hostgroup_show(u'ipaservers', rights=True, all=True, raw=False, version=u'2.213', no_members=False)<br>2017-01-30T18:14:08Z DEBUG flushing ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> from SchemaCache<br>2017-01-30T18:14:08Z DEBUG retrieving schema for SchemaCache url=ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x7d94c68><br>2017-01-30T18:14:08Z DEBUG Destroyed connection context.ldap2_100830544<br>2017-01-30T18:14:09Z DEBUG Created connection context.ldap2_100830544<br>2017-01-30T18:14:09Z DEBUG flushing ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> from SchemaCache<br>2017-01-30T18:14:09Z DEBUG retrieving schema for SchemaCache url=ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x7d94908><br>2017-01-30T18:14:09Z DEBUG Check forward/reverse DNS resolution<br>2017-01-30T18:14:09Z DEBUG Search DNS server <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> (['10.73.100.31', '10.73.100.31', '10.73.100.31']) for <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:09Z DEBUG Check reverse address 10.73.100.31 (<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>)<br>2017-01-30T18:14:09Z DEBUG Check failed: NXDOMAIN The DNS query name does not exist: 31.100.73.10.in-addr.arpa.<br>2017-01-30T18:14:09Z ERROR Reverse DNS resolution of address 10.73.100.31 (<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>) failed. Clients may not function properly. Please check your DNS setup. (Note that this check queries IPA DNS directly and ignores /etc/hosts.)<br>2017-01-30T18:14:18Z DEBUG Name <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>. resolved to set([UnsafeIPAddress('10.72.100.56')])<br>2017-01-30T18:14:18Z DEBUG Destroyed connection context.ldap2_100830544<br>2017-01-30T18:14:18Z DEBUG Starting external process<br>2017-01-30T18:14:18Z DEBUG args=/usr/sbin/ipa-replica-conncheck --master <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> --auto-master-check --realm <a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a> --hostname <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a> --password XXXXXXXX --ca-cert-file /etc/ipa/ca.crt<br>2017-01-30T18:14:24Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:24Z DEBUG stdout=Check connection from replica to remote master '<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a>':<br>   Directory Service: Unsecure port (389): OK<br>   Directory Service: Secure port (636): OK<br>   Kerberos KDC: TCP (88): OK<br>   Kerberos Kpasswd: TCP (464): OK<br>   HTTP Server: Unsecure port (80): OK<br>   HTTP Server: Secure port (443): OK<br><br>The following list of ports use UDP protocol and would need to be<br>checked manually:<br>   Kerberos KDC: UDP (88): SKIPPED<br>   Kerberos Kpasswd: UDP (464): SKIPPED<br><br>Connection from replica to master is OK.<br>Start listening on required ports for remote master check<br>Get credentials to log in to remote master<br>Check RPC connection to remote master<br>Execute check on remote master<br>Check connection from master to remote replica '<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>':<br>   Directory Service: Unsecure port (389): OK<br>   Directory Service: Secure port (636): OK<br>   Kerberos KDC: TCP (88): OK<br>   Kerberos KDC: UDP (88): OK<br>   Kerberos Kpasswd: TCP (464): OK<br>   Kerberos Kpasswd: UDP (464): OK<br>   HTTP Server: Unsecure port (80): OK<br>   HTTP Server: Secure port (443): OK<br><br>Connection from master to replica is OK.<br><br>2017-01-30T18:14:24Z DEBUG stderr=<br>2017-01-30T18:14:24Z DEBUG Created connection context.ldap2_100830544<br>2017-01-30T18:14:24Z DEBUG raw: hostgroup_add_member(u'ipaservers', version=u'2.213', host=[u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>'])<br>2017-01-30T18:14:24Z DEBUG hostgroup_add_member(u'ipaservers', all=False, raw=False, version=u'2.213', no_members=False, host=(u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>',))<br>2017-01-30T18:14:24Z DEBUG add_entry_to_group: dn=fqdn=<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>,cn=computers,cn=accounts,dc=internal,dc=emerlyn,dc=com group_dn=cn=ipaservers,cn=hostgroups,cn=accounts,dc=internal,dc=emerlyn,dc=com member_attr=member<br>2017-01-30T18:14:24Z DEBUG flushing ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> from SchemaCache<br>2017-01-30T18:14:24Z DEBUG retrieving schema for SchemaCache url=ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x876bdd0><br>2017-01-30T18:14:24Z DEBUG Destroyed connection context.ldap2_100830544<br>2017-01-30T18:14:24Z DEBUG Backing up system configuration file '/etc/ipa/default.conf'<br>2017-01-30T18:14:24Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:24Z DEBUG Starting external process<br>2017-01-30T18:14:24Z DEBUG args=/bin/systemctl start messagebus.service<br>2017-01-30T18:14:24Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:24Z DEBUG stdout=<br>2017-01-30T18:14:24Z DEBUG stderr=<br>2017-01-30T18:14:24Z DEBUG Starting external process<br>2017-01-30T18:14:24Z DEBUG args=/bin/systemctl is-active messagebus.service<br>2017-01-30T18:14:24Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:24Z DEBUG stdout=active<br><br>2017-01-30T18:14:24Z DEBUG stderr=<br>2017-01-30T18:14:24Z DEBUG Starting external process<br>2017-01-30T18:14:24Z DEBUG args=/bin/systemctl restart certmonger.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active certmonger.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=active<br><br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl enable certmonger.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=Created symlink from /etc/systemd/system/multi-user.target.wants/certmonger.service to /usr/lib/systemd/system/certmonger.service.<br><br>2017-01-30T18:14:25Z DEBUG group dirsrv exists<br>2017-01-30T18:14:25Z DEBUG user dirsrv exists<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-enabled chronyd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=1<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=Failed to get unit file state for chronyd.service: No such file or directory<br><br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active chronyd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=3<br>2017-01-30T18:14:25Z DEBUG stdout=unknown<br><br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:25Z DEBUG Configuring NTP daemon (ntpd)<br>2017-01-30T18:14:25Z DEBUG   [1/4]: stopping ntpd<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=active<br><br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl stop ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:25Z DEBUG   [2/4]: writing configuration<br>2017-01-30T18:14:25Z DEBUG Backing up system configuration file '/etc/ntp.conf'<br>2017-01-30T18:14:25Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:25Z DEBUG Backing up system configuration file '/etc/sysconfig/ntpd'<br>2017-01-30T18:14:25Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:25Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:25Z DEBUG   [3/4]: configuring ntpd to start on boot<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-enabled ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=enabled<br><br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl enable ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:25Z DEBUG   [4/4]: starting ntpd<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl start ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=<br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/bin/systemctl is-active ntpd.service<br>2017-01-30T18:14:25Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:25Z DEBUG stdout=active<br><br>2017-01-30T18:14:25Z DEBUG stderr=<br>2017-01-30T18:14:25Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:25Z DEBUG Done configuring NTP daemon (ntpd).<br>2017-01-30T18:14:25Z DEBUG Created connection context.ldap2_100830544<br>2017-01-30T18:14:25Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:25Z DEBUG Configuring directory server (dirsrv). Estimated time: 1 minute<br>2017-01-30T18:14:25Z DEBUG   [1/44]: creating directory server user<br>2017-01-30T18:14:25Z DEBUG group dirsrv exists<br>2017-01-30T18:14:25Z DEBUG user dirsrv exists<br>2017-01-30T18:14:25Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:25Z DEBUG   [2/44]: creating directory server instance<br>2017-01-30T18:14:25Z DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state'<br>2017-01-30T18:14:25Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'<br>2017-01-30T18:14:25Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:25Z DEBUG <br>dn: dc=internal,dc=emerlyn,dc=com<br>objectClass: top<br>objectClass: domain<br>objectClass: pilotObject<br>dc: internal<br>info: IPA V2.0<br><br>2017-01-30T18:14:25Z DEBUG writing inf template<br>2017-01-30T18:14:25Z DEBUG <br>[General]<br>FullMachineName=   <a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a><br>SuiteSpotUserID=   dirsrv<br>SuiteSpotGroup=    dirsrv<br>ServerRoot=    /usr/lib64/dirsrv<br>[slapd]<br>ServerPort=   389<br>ServerIdentifier=   INTERNAL-EMERLYN-COM<br>Suffix=   dc=internal,dc=emerlyn,dc=com<br>RootDN=   cn=Directory Manager<br>InstallLdifFile= /var/lib/dirsrv/boot.ldif<br>inst_dir=   /var/lib/dirsrv/scripts-INTERNAL-EMERLYN-COM<br><br>2017-01-30T18:14:25Z DEBUG calling <a href="http://setup-ds.pl">setup-ds.pl</a><br>2017-01-30T18:14:25Z DEBUG Starting external process<br>2017-01-30T18:14:25Z DEBUG args=/usr/sbin/<a href="http://setup-ds.pl">setup-ds.pl</a> --silent --logfile - -f /tmp/tmpvGOU1R<br>2017-01-30T18:14:27Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:27Z DEBUG stdout=[17/01/30:13:14:27] - [Setup] Info Your new DS instance 'INTERNAL-EMERLYN-COM' was successfully created.<br>Your new DS instance 'INTERNAL-EMERLYN-COM' was successfully created.<br>[17/01/30:13:14:27] - [Setup] Success Exiting . . .<br>Log file is '-'<br><br>Exiting . . .<br>Log file is '-'<br><br><br>2017-01-30T18:14:27Z DEBUG stderr=<br>2017-01-30T18:14:27Z DEBUG completed creating ds instance<br>2017-01-30T18:14:27Z DEBUG   duration: 1 seconds<br>2017-01-30T18:14:27Z DEBUG   [3/44]: updating configuration in dse.ldif<br>2017-01-30T18:14:27Z DEBUG Starting external process<br>2017-01-30T18:14:27Z DEBUG args=/bin/systemctl stop dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=<br>2017-01-30T18:14:28Z DEBUG stderr=<br>2017-01-30T18:14:28Z DEBUG   duration: 1 seconds<br>2017-01-30T18:14:28Z DEBUG   [4/44]: restarting directory server<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/bin/systemctl --system daemon-reload<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=<br>2017-01-30T18:14:28Z DEBUG stderr=<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/bin/systemctl restart dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=<br>2017-01-30T18:14:28Z DEBUG stderr=<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=active<br><br>2017-01-30T18:14:28Z DEBUG stderr=<br>2017-01-30T18:14:28Z DEBUG wait_for_open_ports: localhost [389] timeout 300<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=active<br><br>2017-01-30T18:14:28Z DEBUG stderr=<br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [5/44]: adding default schema<br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [6/44]: enabling memberof plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/memberof-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpENUDnG<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-pluginenabled:<br>    on<br>add memberofgroupattr:<br>    memberUser<br>add memberofgroupattr:<br>    memberHost<br>modifying entry "cn=MemberOf Plugin,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [7/44]: enabling winsync plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-winsync-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmp2haA4d<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    ipa-winsync<br>add nsslapd-pluginpath:<br>    libipa_winsync<br>add nsslapd-plugininitfunc:<br>    ipa_winsync_plugin_init<br>add nsslapd-pluginDescription:<br>    Allows IPA to work with the DS windows sync feature<br>add nsslapd-pluginid:<br>    ipa-winsync<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    Red Hat<br>add nsslapd-plugintype:<br>    preoperation<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add ipaWinSyncRealmFilter:<br>    (objectclass=krbRealmContainer)<br>add ipaWinSyncRealmAttr:<br>    cn<br>add ipaWinSyncNewEntryFilter:<br>    (cn=ipaConfig)<br>add ipaWinSyncNewUserOCAttr:<br>    ipauserobjectclasses<br>add ipaWinSyncUserFlatten:<br>    true<br>add ipaWinsyncHomeDirAttr:<br>    ipaHomesRootDir<br>add ipaWinsyncLoginShellAttr:<br>    ipaDefaultLoginShell<br>add ipaWinSyncDefaultGroupAttr:<br>    ipaDefaultPrimaryGroup<br>add ipaWinSyncDefaultGroupFilter:<br>    (gidNumber=*)(objectclass=posixGroup)(objectclass=groupOfNames)<br>add ipaWinSyncAcctDisable:<br>    both<br>add ipaWinSyncForceSync:<br>    true<br>add ipaWinSyncUserAttr:<br>    uidNumber -1<br>    gidNumber -1<br>adding new entry "cn=ipa-winsync,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [8/44]: configuring replication version plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/version-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpsXVkbb<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA Version Replication<br>add nsslapd-pluginpath:<br>    libipa_repl_version<br>add nsslapd-plugininitfunc:<br>    repl_version_plugin_init<br>add nsslapd-plugintype:<br>    preoperation<br>add nsslapd-pluginenabled:<br>    off<br>add nsslapd-pluginid:<br>    ipa_repl_version<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    Red Hat, Inc.<br>add nsslapd-plugindescription:<br>    IPA Replication version plugin<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-plugin-depends-on-named:<br>    Multimaster Replication Plugin<br>adding new entry "cn=IPA Version Replication,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [9/44]: enabling IPA enrollment plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmp2Y_1cF -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpqVpKUo<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    ipa_enrollment_extop<br>add nsslapd-pluginpath:<br>    libipa_enrollment_extop<br>add nsslapd-plugininitfunc:<br>    ipaenrollment_init<br>add nsslapd-plugintype:<br>    extendedop<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-pluginid:<br>    ipa_enrollment_extop<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    RedHat<br>add nsslapd-plugindescription:<br>    Enroll hosts into the IPA domain<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-realmTree:<br>    dc=internal,dc=emerlyn,dc=com<br>adding new entry "cn=ipa_enrollment_extop,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [10/44]: enabling ldapi<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpHlgcdV -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpVJTxf7<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-ldapilisten:<br>    on<br>modifying entry "cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [11/44]: configuring uniqueness plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpP_NH4d -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpVPbyTw<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    krbPrincipalName uniqueness<br>add nsslapd-pluginPath:<br>    libattr-unique-plugin<br>add nsslapd-pluginInitfunc:<br>    NSUniqueAttr_Init<br>add nsslapd-pluginType:<br>    preoperation<br>add nsslapd-pluginEnabled:<br>    on<br>add uniqueness-attribute-name:<br>    krbPrincipalName<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginId:<br>    NSUniqueAttr<br>add nsslapd-pluginVersion:<br>    1.1.0<br>add nsslapd-pluginVendor:<br>    Fedora Project<br>add nsslapd-pluginDescription:<br>    Enforce unique attribute values<br>add uniqueness-subtrees:<br>    dc=internal,dc=emerlyn,dc=com<br>add uniqueness-exclude-subtrees:<br>    cn=staged users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com<br>add uniqueness-across-all-subtrees:<br>    on<br>adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    krbCanonicalName uniqueness<br>add nsslapd-pluginPath:<br>    libattr-unique-plugin<br>add nsslapd-pluginInitfunc:<br>    NSUniqueAttr_Init<br>add nsslapd-pluginType:<br>    preoperation<br>add nsslapd-pluginEnabled:<br>    on<br>add uniqueness-attribute-name:<br>    krbCanonicalName<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginId:<br>    NSUniqueAttr<br>add nsslapd-pluginVersion:<br>    1.1.0<br>add nsslapd-pluginVendor:<br>    Fedora Project<br>add nsslapd-pluginDescription:<br>    Enforce unique attribute values<br>add uniqueness-subtrees:<br>    dc=internal,dc=emerlyn,dc=com<br>add uniqueness-exclude-subtrees:<br>    cn=staged users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com<br>add uniqueness-across-all-subtrees:<br>    on<br>adding new entry "cn=krbCanonicalName uniqueness,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    netgroup uniqueness<br>add nsslapd-pluginPath:<br>    libattr-unique-plugin<br>add nsslapd-pluginInitfunc:<br>    NSUniqueAttr_Init<br>add nsslapd-pluginType:<br>    preoperation<br>add nsslapd-pluginEnabled:<br>    on<br>add uniqueness-attribute-name:<br>    cn<br>add uniqueness-subtrees:<br>    cn=ng,cn=alt,dc=internal,dc=emerlyn,dc=com<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginId:<br>    NSUniqueAttr<br>add nsslapd-pluginVersion:<br>    1.1.0<br>add nsslapd-pluginVendor:<br>    Fedora Project<br>add nsslapd-pluginDescription:<br>    Enforce unique attribute values<br>adding new entry "cn=netgroup uniqueness,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    ipaUniqueID uniqueness<br>add nsslapd-pluginPath:<br>    libattr-unique-plugin<br>add nsslapd-pluginInitfunc:<br>    NSUniqueAttr_Init<br>add nsslapd-pluginType:<br>    preoperation<br>add nsslapd-pluginEnabled:<br>    on<br>add uniqueness-attribute-name:<br>    ipaUniqueID<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginId:<br>    NSUniqueAttr<br>add nsslapd-pluginVersion:<br>    1.1.0<br>add nsslapd-pluginVendor:<br>    Fedora Project<br>add nsslapd-pluginDescription:<br>    Enforce unique attribute values<br>add uniqueness-subtrees:<br>    dc=internal,dc=emerlyn,dc=com<br>add uniqueness-exclude-subtrees:<br>    cn=staged users,cn=accounts,cn=provisioning,dc=internal,dc=emerlyn,dc=com<br>add uniqueness-across-all-subtrees:<br>    on<br>adding new entry "cn=ipaUniqueID uniqueness,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    sudorule name uniqueness<br>add nsslapd-pluginDescription:<br>    Enforce unique attribute values<br>add nsslapd-pluginPath:<br>    libattr-unique-plugin<br>add nsslapd-pluginInitfunc:<br>    NSUniqueAttr_Init<br>add nsslapd-pluginType:<br>    preoperation<br>add nsslapd-pluginEnabled:<br>    on<br>add uniqueness-attribute-name:<br>    cn<br>add uniqueness-subtrees:<br>    cn=sudorules,cn=sudo,dc=internal,dc=emerlyn,dc=com<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginId:<br>    NSUniqueAttr<br>add nsslapd-pluginVersion:<br>    1.1.0<br>add nsslapd-pluginVendor:<br>    Fedora Project<br>adding new entry "cn=sudorule name uniqueness,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [12/44]: configuring uuid plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/uuid-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpYQ7MBu<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA UUID<br>add nsslapd-pluginpath:<br>    libipa_uuid<br>add nsslapd-plugininitfunc:<br>    ipauuid_init<br>add nsslapd-plugintype:<br>    preoperation<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-pluginid:<br>    ipauuid_version<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    Red Hat, Inc.<br>add nsslapd-plugindescription:<br>    IPA UUID plugin<br>add nsslapd-plugin-depends-on-type:<br>    database<br>adding new entry "cn=IPA UUID,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpdy0lbi -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpkqyIvk<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    extensibleObject<br>add cn:<br>    IPA Unique IDs<br>add ipaUuidAttr:<br>    ipaUniqueID<br>add ipaUuidMagicRegen:<br>    autogenerate<br>add ipaUuidFilter:<br>    (|(objectclass=ipaObject)(objectclass=ipaAssociation))<br>add ipaUuidScope:<br>    dc=internal,dc=emerlyn,dc=com<br>add ipaUuidEnforce:<br>    TRUE<br>adding new entry "cn=IPA Unique IDs,cn=IPA UUID,cn=plugins,cn=config"<br>modify complete<br><br>add objectclass:<br>    top<br>    extensibleObject<br>add cn:<br>    IPK11 Unique IDs<br>add ipaUuidAttr:<br>    ipk11UniqueID<br>add ipaUuidMagicRegen:<br>    autogenerate<br>add ipaUuidFilter:<br>    (objectclass=ipk11Object)<br>add ipaUuidScope:<br>    dc=internal,dc=emerlyn,dc=com<br>add ipaUuidEnforce:<br>    FALSE<br>adding new entry "cn=IPK11 Unique IDs,cn=IPA UUID,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [13/44]: configuring modrdn plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/modrdn-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpOqfjAO<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA MODRDN<br>add nsslapd-pluginpath:<br>    libipa_modrdn<br>add nsslapd-plugininitfunc:<br>    ipamodrdn_init<br>add nsslapd-plugintype:<br>    betxnpostoperation<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-pluginid:<br>    ipamodrdn_version<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    Red Hat, Inc.<br>add nsslapd-plugindescription:<br>    IPA MODRDN plugin<br>add nsslapd-plugin-depends-on-type:<br>    database<br>add nsslapd-pluginPrecedence:<br>    60<br>adding new entry "cn=IPA MODRDN,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpyghKlx -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpgloKvC<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    extensibleObject<br>add cn:<br>    Kerberos Principal Name<br>add ipaModRDNsourceAttr:<br>    uid<br>add ipaModRDNtargetAttr:<br>    krbPrincipalName<br>add ipaModRDNsuffix:<br>    @<a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a><br>add ipaModRDNfilter:<br>    (&(objectclass=posixaccount)(objectclass=krbPrincipalAux))<br>add ipaModRDNscope:<br>    dc=internal,dc=emerlyn,dc=com<br>adding new entry "cn=Kerberos Principal Name,cn=IPA MODRDN,cn=plugins,cn=config"<br>modify complete<br><br>add objectclass:<br>    top<br>    extensibleObject<br>add cn:<br>    Kerberos Canonical Name<br>add ipaModRDNsourceAttr:<br>    uid<br>add ipaModRDNtargetAttr:<br>    krbCanonicalName<br>add ipaModRDNsuffix:<br>    @<a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a><br>add ipaModRDNfilter:<br>    (&(objectclass=posixaccount)(objectclass=krbPrincipalAux))<br>add ipaModRDNscope:<br>    dc=internal,dc=emerlyn,dc=com<br>adding new entry "cn=Kerberos Canonical Name,cn=IPA MODRDN,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [14/44]: configuring DNS plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/ipa-dns-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpzLP4sT<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsslapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA DNS<br>add nsslapd-plugindescription:<br>    IPA DNS support plugin<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-pluginid:<br>    ipa_dns<br>add nsslapd-plugininitfunc:<br>    ipadns_init<br>add nsslapd-pluginpath:<br>    libipa_dns.so<br>add nsslapd-plugintype:<br>    preoperation<br>add nsslapd-pluginvendor:<br>    Red Hat, Inc.<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-plugin-depends-on-type:<br>    database<br>adding new entry "cn=IPA DNS,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [15/44]: enabling entryUSN plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/entryusn.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpGAIOs8<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-entryusn-global:<br>    on<br>modifying entry "cn=config"<br>modify complete<br><br>replace nsslapd-entryusn-import-initval:<br>    next<br>modifying entry "cn=config"<br>modify complete<br><br>replace nsslapd-pluginenabled:<br>    on<br>modifying entry "cn=USN,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [16/44]: configuring lockout plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/lockout-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpVKsOBc<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectclass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA Lockout<br>add nsslapd-pluginpath:<br>    libipa_lockout<br>add nsslapd-plugininitfunc:<br>    ipalockout_init<br>add nsslapd-plugintype:<br>    object<br>add nsslapd-pluginenabled:<br>    on<br>add nsslapd-pluginid:<br>    ipalockout_version<br>add nsslapd-pluginversion:<br>    1.0<br>add nsslapd-pluginvendor:<br>    Red Hat, Inc.<br>add nsslapd-plugindescription:<br>    IPA Lockout plugin<br>add nsslapd-plugin-depends-on-type:<br>    database<br>adding new entry "cn=IPA Lockout,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [17/44]: configuring topology plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpMsDuZ7 -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpol4G8y<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectClass:<br>    top<br>    nsSlapdPlugin<br>    extensibleObject<br>add cn:<br>    IPA Topology Configuration<br>add nsslapd-pluginPath:<br>    libtopology<br>add nsslapd-pluginInitfunc:<br>    ipa_topo_init<br>add nsslapd-pluginType:<br>    object<br>add nsslapd-pluginEnabled:<br>    on<br>add nsslapd-topo-plugin-shared-config-base:<br>    cn=ipa,cn=etc,dc=internal,dc=emerlyn,dc=com<br>add nsslapd-topo-plugin-shared-replica-root:<br>    dc=internal,dc=emerlyn,dc=com<br>    o=ipaca<br>add nsslapd-topo-plugin-shared-binddngroup:<br>    cn=replication managers,cn=sysaccounts,cn=etc,dc=internal,dc=emerlyn,dc=com<br>add nsslapd-topo-plugin-startup-delay:<br>    20<br>add nsslapd-pluginId:<br>    none<br>add nsslapd-plugin-depends-on-named:<br>    ldbm database<br>    Multimaster Replication Plugin<br>add nsslapd-pluginVersion:<br>    1.0<br>add nsslapd-pluginVendor:<br>    none<br>add nsslapd-pluginDescription:<br>    none<br>adding new entry "cn=IPA Topology Configuration,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [18/44]: creating indices<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/indices.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmppcBR8s<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    krbPrincipalName<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>add nsMatchingRule:<br>    caseIgnoreIA5Match<br>    caseExactIA5Match<br>adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    ou<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    carLicense<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    title<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    manager<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    secretary<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    displayname<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add nsIndexType:<br>    sub<br>modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    uidnumber<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>add nsMatchingRule:<br>    integerOrderingMatch<br>adding new entry "cn=uidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add objectClass:<br>    top<br>    nsIndex<br>add cn:<br>    gidnumber<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>add nsMatchingRule:<br>    integerOrderingMatch<br>adding new entry "cn=gidnumber,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>replace nsIndexType:<br>    eq<br>    pres<br>modifying entry "cn=ntUniqueId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>replace nsIndexType:<br>    eq<br>    pres<br>modifying entry "cn=ntUserDomainId,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add ObjectClass:<br>    top<br>    nsIndex<br>add cn:<br>    fqdn<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>adding new entry "cn=fqdn,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add ObjectClass:<br>    top<br>    nsIndex<br>add cn:<br>    macAddress<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>adding new entry "cn=macAddress,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    memberHost<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=memberHost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    memberUser<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=memberUser,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    sourcehost<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=sourcehost,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    memberservice<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=memberservice,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    managedby<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=managedby,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    memberallowcmd<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=memberallowcmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    memberdenycmd<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=memberdenycmd,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipasudorunas<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=ipasudorunas,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipasudorunasgroup<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=ipasudorunasgroup,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    automountkey<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>adding new entry "cn=automountkey,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipakrbprincipalalias<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>adding new entry "cn=ipakrbprincipalalias,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipauniqueid<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>adding new entry "cn=ipauniqueid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipaMemberCa<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=ipaMemberCa,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipaMemberCertProfile<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>    sub<br>adding new entry "cn=ipaMemberCertProfile,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    userCertificate<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>adding new entry "cn=userCertificate,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    ipalocation<br>add ObjectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    pres<br>adding new entry "cn=ipalocation,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br>add cn:<br>    krbCanonicalName<br>add objectClass:<br>    top<br>    nsIndex<br>add nsSystemIndex:<br>    false<br>add nsIndexType:<br>    eq<br>    sub<br>adding new entry "cn=krbCanonicalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [19/44]: enabling referential integrity plugin<br>2017-01-30T18:14:28Z DEBUG Starting external process<br>2017-01-30T18:14:28Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/referint-conf.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmppyqc4A<br>2017-01-30T18:14:28Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:28Z DEBUG stdout=replace nsslapd-pluginenabled:<br>    on<br>modifying entry "cn=referential integrity postoperation,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:28Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [20/44]: configuring certmap.conf<br>2017-01-30T18:14:28Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'<br>2017-01-30T18:14:28Z DEBUG Loading StateFile from '/var/lib/ipa/sysupgrade/sysupgrade.state'<br>2017-01-30T18:14:28Z DEBUG Saving StateFile to '/var/lib/ipa/sysupgrade/sysupgrade.state'<br>2017-01-30T18:14:28Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:28Z DEBUG   [21/44]: configure autobind for root<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f /usr/share/ipa/root-autobind.ldif -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmprZhf9H<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=add objectClass:<br>    extensibleObject<br>    top<br>add cn:<br>    root-autobind<br>add uidNumber:<br>    0<br>add gidNumber:<br>    0<br>adding new entry "cn=root-autobind,cn=config"<br>modify complete<br><br>replace nsslapd-ldapiautobind:<br>    on<br>modifying entry "cn=config"<br>modify complete<br><br>replace nsslapd-ldapimaptoentries:<br>    on<br>modifying entry "cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:29Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:29Z DEBUG   [22/44]: configure new location for managed entries<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmpx5ELww -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpUP3JRo<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=add nsslapd-pluginConfigArea:<br>    cn=Definitions,cn=Managed Entries,cn=etc,dc=internal,dc=emerlyn,dc=com<br>modifying entry "cn=Managed Entries,cn=plugins,cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:29Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:29Z DEBUG   [23/44]: configure dirsrv ccache<br>2017-01-30T18:14:29Z DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv'<br>2017-01-30T18:14:29Z DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/usr/sbin/selinuxenabled<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=<br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/sbin/restorecon /etc/sysconfig/dirsrv<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=<br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:29Z DEBUG   [24/44]: enabling SASL mapping fallback<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/usr/bin/ldapmodify -v -f /tmp/tmp3KBRRM -H ldap://<a href="http://idmfs-01.internal.emerlyn.com:389">idmfs-01.internal.emerlyn.com:389</a> -x -D cn=Directory Manager -y /tmp/tmpIkrrhu<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=replace nsslapd-sasl-mapping-fallback:<br>    on<br>modifying entry "cn=config"<br>modify complete<br><br><br>2017-01-30T18:14:29Z DEBUG stderr=ldap_initialize( ldap://<a href="http://idmfs-01.internal.emerlyn.com:389/??base">idmfs-01.internal.emerlyn.com:389/??base</a> )<br><br>2017-01-30T18:14:29Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:29Z DEBUG   [25/44]: restarting directory server<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/bin/systemctl --system daemon-reload<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=<br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/bin/systemctl restart dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=<br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=active<br><br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG wait_for_open_ports: localhost [389] timeout 300<br>2017-01-30T18:14:29Z DEBUG Starting external process<br>2017-01-30T18:14:29Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:29Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:29Z DEBUG stdout=active<br><br>2017-01-30T18:14:29Z DEBUG stderr=<br>2017-01-30T18:14:29Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:29Z DEBUG   [26/44]: creating DS keytab<br>2017-01-30T18:14:29Z DEBUG Backing up system configuration file '/etc/dirsrv/ds.keytab'<br>2017-01-30T18:14:29Z DEBUG   -> Not backing up - '/etc/dirsrv/ds.keytab' doesn't exist<br>2017-01-30T18:14:29Z DEBUG raw: service_add(u'ldap/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a>', force=True, version=u'2.213')<br>2017-01-30T18:14:29Z DEBUG service_add(<ipapython.kerberos.Principal object at 0x891cfd0>, force=True, all=False, raw=False, version=u'2.213', no_members=False)<br>2017-01-30T18:14:29Z DEBUG flushing ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> from SchemaCache<br>2017-01-30T18:14:29Z DEBUG retrieving schema for SchemaCache url=ldaps://<a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x741a9e0><br>2017-01-30T18:14:30Z DEBUG raw: host_show(u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>', version=u'2.213')<br>2017-01-30T18:14:30Z DEBUG host_show(u'<a href="http://idmfs-01.internal.emerlyn.com">idmfs-01.internal.emerlyn.com</a>', rights=False, all=False, raw=False, version=u'2.213', no_members=False)<br>2017-01-30T18:14:30Z DEBUG Starting external process<br>2017-01-30T18:14:30Z DEBUG args=/usr/sbin/ipa-getkeytab -k /etc/dirsrv/ds.keytab -p ldap/<a href="mailto:idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM">idmfs-01.internal.emerlyn.com@INTERNAL.EMERLYN.COM</a> -s <a href="http://id-management-2.internal.emerlyn.com">id-management-2.internal.emerlyn.com</a><br>2017-01-30T18:14:30Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:30Z DEBUG stdout=<br>2017-01-30T18:14:30Z DEBUG stderr=Keytab successfully retrieved and stored in: /etc/dirsrv/ds.keytab<br><br>2017-01-30T18:14:30Z DEBUG   duration: 0 seconds<br>2017-01-30T18:14:30Z DEBUG   [27/44]: retrieving DS Certificate<br>2017-01-30T18:14:30Z DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index'<br>2017-01-30T18:14:30Z DEBUG Starting external process<br>2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -L -n <a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a> IPA CA -a<br>2017-01-30T18:14:30Z DEBUG Process finished, return code=255<br>2017-01-30T18:14:30Z DEBUG stdout=<br>2017-01-30T18:14:30Z DEBUG stderr=certutil: Could not find cert: <a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a> IPA CA<br>: PR_FILE_NOT_FOUND_ERROR: File not found<br><br>2017-01-30T18:14:30Z DEBUG Starting external process<br>2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -N -f /etc/dirsrv/slapd-INTERNAL-EMERLYN-COM//pwdfile.txt<br>2017-01-30T18:14:30Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:30Z DEBUG stdout=<br>2017-01-30T18:14:30Z DEBUG stderr=<br>2017-01-30T18:14:30Z DEBUG Starting external process<br>2017-01-30T18:14:30Z DEBUG args=/usr/bin/certutil -d /etc/dirsrv/slapd-INTERNAL-EMERLYN-COM/ -A -n <a href="http://INTERNAL.EMERLYN.COM">INTERNAL.EMERLYN.COM</a> IPA CA -t CT,C,C -a<br>2017-01-30T18:14:30Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:30Z DEBUG stdout=<br>2017-01-30T18:14:30Z DEBUG stderr=<br>2017-01-30T18:14:30Z DEBUG certmonger request is in state dbus.String(u'NEWLY_ADDED_READING_KEYINFO', variant_level=1)<br>2017-01-30T18:14:35Z DEBUG certmonger request is in state dbus.String(u'MONITORING', variant_level=1)<br>2017-01-30T18:14:35Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache<br>2017-01-30T18:14:35Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x85b2998><br>2017-01-30T18:14:35Z DEBUG   duration: 5 seconds<br>2017-01-30T18:14:35Z DEBUG   [28/44]: restarting directory server<br>2017-01-30T18:14:35Z DEBUG Starting external process<br>2017-01-30T18:14:35Z DEBUG args=/bin/systemctl --system daemon-reload<br>2017-01-30T18:14:35Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:35Z DEBUG stdout=<br>2017-01-30T18:14:35Z DEBUG stderr=<br>2017-01-30T18:14:35Z DEBUG Starting external process<br>2017-01-30T18:14:35Z DEBUG args=/bin/systemctl restart dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:37Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:37Z DEBUG stdout=<br>2017-01-30T18:14:37Z DEBUG stderr=<br>2017-01-30T18:14:37Z DEBUG Starting external process<br>2017-01-30T18:14:37Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:37Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:37Z DEBUG stdout=active<br><br>2017-01-30T18:14:37Z DEBUG stderr=<br>2017-01-30T18:14:37Z DEBUG wait_for_open_ports: localhost [389] timeout 300<br>2017-01-30T18:14:37Z DEBUG Starting external process<br>2017-01-30T18:14:37Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:37Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:37Z DEBUG stdout=active<br><br>2017-01-30T18:14:37Z DEBUG stderr=<br>2017-01-30T18:14:37Z DEBUG   duration: 1 seconds<br>2017-01-30T18:14:37Z DEBUG   [29/44]: setting up initial replication<br>2017-01-30T18:14:37Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache<br>2017-01-30T18:14:37Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x241bea8><br>2017-01-30T18:14:37Z DEBUG Starting external process<br>2017-01-30T18:14:37Z DEBUG args=/bin/systemctl --system daemon-reload<br>2017-01-30T18:14:37Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:37Z DEBUG stdout=<br>2017-01-30T18:14:37Z DEBUG stderr=<br>2017-01-30T18:14:37Z DEBUG Starting external process<br>2017-01-30T18:14:37Z DEBUG args=/bin/systemctl restart dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:38Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:38Z DEBUG stdout=<br>2017-01-30T18:14:38Z DEBUG stderr=<br>2017-01-30T18:14:38Z DEBUG Starting external process<br>2017-01-30T18:14:38Z DEBUG args=/bin/systemctl is-active dirsrv@INTERNAL-EMERLYN-COM.service<br>2017-01-30T18:14:38Z DEBUG Process finished, return code=0<br>2017-01-30T18:14:38Z DEBUG stdout=active<br><br>2017-01-30T18:14:38Z DEBUG stderr=<br>2017-01-30T18:14:38Z DEBUG wait_for_open_ports: localhost [389] timeout 300<br>2017-01-30T18:14:38Z DEBUG Fetching nsDS5ReplicaId from master [attempt 1/5]<br>2017-01-30T18:14:38Z DEBUG flushing ldap://<a href="http://id-management-2.internal.emerlyn.com:389">id-management-2.internal.emerlyn.com:389</a> from SchemaCache<br>2017-01-30T18:14:38Z DEBUG retrieving schema for SchemaCache url=ldap://<a href="http://id-management-2.internal.emerlyn.com:389">id-management-2.internal.emerlyn.com:389</a> conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x89a2a70><br>2017-01-30T18:14:39Z DEBUG Successfully updated nsDS5ReplicaId.<br>2017-01-30T18:14:39Z DEBUG flushing ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket from SchemaCache<br>2017-01-30T18:14:39Z DEBUG retrieving schema for SchemaCache url=ldapi://%2fvar%2frun%2fslapd-INTERNAL-EMERLYN-COM.socket conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x9cde560><br>2017-01-30T18:14:54Z DEBUG Traceback (most recent call last):<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 449, in start_creation<br>    run_step(full_msg, method)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 439, in run_step<br>    method()<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 414, in __setup_replica<br>    repl.setup_promote_replication(self.master_fqdn)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py", line 1643, in setup_promote_replication<br>    raise RuntimeError("Failed to start replication")<br>RuntimeError: Failed to start replication<br><br>2017-01-30T18:14:54Z DEBUG   [error] RuntimeError: Failed to start replication<br>2017-01-30T18:14:54Z DEBUG Destroyed connection context.ldap2_100830544<br>2017-01-30T18:14:54Z DEBUG   File "/usr/lib/python2.7/site-packages/ipapython/admintool.py", line 171, in execute<br>    return_value = self.run()<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/cli.py", line 318, in run<br>    cfgr.run()<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 310, in run<br>    self.execute()<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 332, in execute<br>    for nothing in self._executor():<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 372, in __runner<br>    self._handle_exception(exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 394, in _handle_exception<br>    six.reraise(*exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 362, in __runner<br>    step()<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 359, in <lambda><br>    step = lambda: next(self.__gen)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 81, in run_generator_with_yield_from<br>    six.reraise(*exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 59, in run_generator_with_yield_from<br>    value = gen.send(prev_value)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 586, in _configure<br>    next(executor)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 372, in __runner<br>    self._handle_exception(exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 449, in _handle_exception<br>    self.__parent._handle_exception(exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 394, in _handle_exception<br>    six.reraise(*exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 446, in _handle_exception<br>    super(ComponentBase, self)._handle_exception(exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 394, in _handle_exception<br>    six.reraise(*exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 362, in __runner<br>    step()<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/core.py", line 359, in <lambda><br>    step = lambda: next(self.__gen)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 81, in run_generator_with_yield_from<br>    six.reraise(*exc_info)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/util.py", line 59, in run_generator_with_yield_from<br>    value = gen.send(prev_value)<br>  File "/usr/lib/python2.7/site-packages/ipapython/install/common.py", line 63, in _install<br>    for nothing in self._installer(self.parent):<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 1714, in main<br>    promote(self)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 364, in decorated<br>    func(installer)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 1415, in promote<br>    promote=True, pkcs12_info=dirsrv_pkcs12_info)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 127, in install_replica_ds<br>    api=remote_api,<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 399, in create_replica<br>    self.start_creation(runtime=60)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 449, in start_creation<br>    run_step(full_msg, method)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 439, in run_step<br>    method()<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/dsinstance.py", line 414, in __setup_replica<br>    repl.setup_promote_replication(self.master_fqdn)<br>  File "/usr/lib/python2.7/site-packages/ipaserver/install/replication.py", line 1643, in setup_promote_replication<br>    raise RuntimeError("Failed to start replication")<br><br>2017-01-30T18:14:54Z DEBUG The ipa-replica-install command failed, exception: RuntimeError: Failed to start replication<br>2017-01-30T18:14:54Z ERROR Failed to start replication<br>2017-01-30T18:14:54Z ERROR The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information<br><br><br></div>Thanks,<br><br></div>Jeff<br clear="all"></div>