Login
[x]
Log in using an account from:
Fedora Account System
Red Hat Associate
Red Hat Customer
Or login using a Red Hat Bugzilla account
Forgot Password
Login:
Hide Forgot
Create an Account
Red Hat Bugzilla – Attachment 308491 Details for
Bug 450214
Kerberos not starting.
[?]
New
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
|
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh83 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
This site requires JavaScript to be enabled to function correctly, please enable it.
ipaserver-install.log
ipaserver-install.log (text/plain), 38.51 KB, created by
Eric Desgranges
on 2008-06-05 21:38:24 UTC
(
hide
)
Description:
ipaserver-install.log
Filename:
MIME Type:
Creator:
Eric Desgranges
Created:
2008-06-05 21:38:24 UTC
Size:
38.51 KB
patch
obsolete
>2008-06-05 13:53:35,177 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:53:35,182 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:53:35,182 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:01,641 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:01,642 DEBUG Configuring directory server: >2008-06-05 13:54:01,642 DEBUG [1/16]: creating directory server user >2008-06-05 13:54:01,643 DEBUG adding ds user dirsrv >2008-06-05 13:54:01,692 INFO >2008-06-05 13:54:01,692 INFO >2008-06-05 13:54:01,693 DEBUG done adding user >2008-06-05 13:54:01,693 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:01,694 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:01,694 DEBUG [2/16]: creating directory server instance >2008-06-05 13:54:01,809 INFO >2008-06-05 13:54:01,810 INFO >2008-06-05 13:54:01,810 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:01,811 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:01,811 DEBUG >dn: dc=fronteranet,dc=com >objectClass: top >objectClass: domain >objectClass: pilotObject >dc: fronteranet >info: IPA V1.0 > >2008-06-05 13:54:01,812 DEBUG writing inf template >2008-06-05 13:54:01,815 DEBUG >[General] >FullMachineName= directory.fronteranet.com >SuiteSpotUserID= dirsrv >ServerRoot= /usr/lib/dirsrv >[slapd] >ServerPort= 389 >ServerIdentifier= FRONTERANET-COM >Suffix= dc=fronteranet,dc=com >RootDN= cn=Directory Manager >InstallLdifFile= /var/lib/dirsrv/boot.ldif > >2008-06-05 13:54:01,815 DEBUG calling setup-ds.pl >2008-06-05 13:54:05,754 INFO [08/06/05:13:54:05] - [Setup] Info Your new DS instance 'FRONTERANET-COM' was successfully created. >Your new DS instance 'FRONTERANET-COM' was successfully created. >[08/06/05:13:54:05] - [Setup] Success Exiting . . . >Log file is '-' > >Exiting . . . >Log file is '-' > > >2008-06-05 13:54:05,755 INFO >2008-06-05 13:54:05,756 DEBUG completed creating ds instance >2008-06-05 13:54:05,756 DEBUG restarting ds instance >2008-06-05 13:54:09,144 INFO Shutting down dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] >Starting dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] > >2008-06-05 13:54:09,145 INFO >2008-06-05 13:54:09,145 DEBUG done restarting ds instance >2008-06-05 13:54:09,146 DEBUG [3/16]: adding default schema >2008-06-05 13:54:09,147 DEBUG [4/16]: enabling memberof plugin >2008-06-05 13:54:09,214 INFO add objectclass: > top > nsSlapdPlugin > extensibleObject >add cn: > ipa-memberof >add nsslapd-pluginpath: > libipa-memberof-plugin >add nsslapd-plugininitfunc: > ipamo_postop_init >add nsslapd-plugintype: > postoperation >add nsslapd-pluginenabled: > on >add nsslapd-pluginid: > memberof >add nsslapd-pluginversion: > 1.0 >add nsslapd-pluginvendor: > Red Hat >add nsslapd-plugindescription: > Memberof plugin >adding new entry "cn=ipa-memberof,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:09,214 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:09,215 DEBUG [5/16]: enabling referential integrity plugin >2008-06-05 13:54:09,253 INFO replace nsslapd-pluginenabled: > on >add nsslapd-pluginArg7: > manager >add nsslapd-pluginArg8: > secretary >modifying entry "cn=referential integrity postoperation,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:09,254 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:09,254 DEBUG [6/16]: enabling distributed numeric assignment plugin >2008-06-05 13:54:09,292 INFO add objectclass: > top > nsSlapdPlugin > extensibleObject >add cn: > ipa-dna >add nsslapd-pluginpath: > libipa-dna-plugin >add nsslapd-plugininitfunc: > ipa_dna_init >add nsslapd-plugintype: > preoperation >add nsslapd-pluginenabled: > on >add nsslapd-pluginid: > ipa-dna >add nsslapd-pluginversion: > 1.0 >add nsslapd-pluginvendor: > Red Hat >add nsslapd-plugindescription: > IPA Distributed numeric assignment plugin >adding new entry "cn=ipa-dna,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:09,293 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:09,294 DEBUG [7/16]: configuring uniqueness plugin >2008-06-05 13:54:09,331 INFO add objectClass: > top > nsSlapdPlugin > extensibleObject >add cn: > krbPrincipalName uniqueness >add nsslapd-pluginPath: > libattr-unique-plugin >add nsslapd-pluginInitfunc: > NSUniqueAttr_Init >add nsslapd-pluginType: > preoperation >add nsslapd-pluginEnabled: > on >add nsslapd-pluginarg0: > krbPrincipalName >add nsslapd-pluginarg1: > dc=fronteranet,dc=com >add nsslapd-plugin-depends-on-type: > database >add nsslapd-pluginId: > NSUniqueAttr >add nsslapd-pluginVersion: > 1.1.0 >add nsslapd-pluginVendor: > Fedora Project >add nsslapd-pluginDescription: > Enforce unique attribute values >adding new entry "cn=krbPrincipalName uniqueness,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:09,332 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:09,332 DEBUG [8/16]: creating indices >2008-06-05 13:54:09,447 INFO add objectClass: > top > nsIndex >add cn: > krbPrincipalName >add nsSystemIndex: > false >add nsIndexType: > eq > sub >adding new entry "cn=krbPrincipalName,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > ou >add nsSystemIndex: > false >add nsIndexType: > eq > sub >adding new entry "cn=ou,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > carLicense >add nsSystemIndex: > false >add nsIndexType: > eq > sub >adding new entry "cn=carLicense,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > title >add nsSystemIndex: > false >add nsIndexType: > eq > sub >adding new entry "cn=title,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > manager >add nsSystemIndex: > false >add nsIndexType: > eq >adding new entry "cn=manager,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > secretary >add nsSystemIndex: > false >add nsIndexType: > eq >adding new entry "cn=secretary,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add objectClass: > top > nsIndex >add cn: > displayname >add nsSystemIndex: > false >add nsIndexType: > eq > sub >adding new entry "cn=displayname,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > >add nsIndexType: > sub >modifying entry "cn=uid,cn=index,cn=userRoot,cn=ldbm database,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:09,447 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:09,448 DEBUG [9/16]: configuring ssl for ds instance >2008-06-05 13:54:09,449 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:09,481 INFO >2008-06-05 13:54:09,481 INFO >2008-06-05 13:54:09,965 INFO >2008-06-05 13:54:09,966 INFO > >Generating key. This may take a few moments... > > >2008-06-05 13:54:10,402 INFO >2008-06-05 13:54:10,403 INFO > >Generating key. This may take a few moments... > > >2008-06-05 13:54:10,433 INFO >2008-06-05 13:54:10,433 INFO >2008-06-05 13:54:10,472 INFO pk12util: PKCS12 EXPORT SUCCESSFUL > >2008-06-05 13:54:10,472 INFO >2008-06-05 13:54:10,753 INFO >2008-06-05 13:54:10,754 INFO > >Generating key. This may take a few moments... > > >2008-06-05 13:54:10,810 INFO >2008-06-05 13:54:10,811 INFO >2008-06-05 13:54:10,878 DEBUG [10/16]: configuring certmap.conf >2008-06-05 13:54:10,879 DEBUG [11/16]: restarting directory server >2008-06-05 13:54:14,372 INFO Shutting down dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] >Starting dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] > >2008-06-05 13:54:14,373 INFO >2008-06-05 13:54:14,451 INFO dirsrv FRONTERANET-COM (pid 1939) is running... > >2008-06-05 13:54:14,452 INFO >2008-06-05 13:54:14,453 DEBUG [12/16]: adding default layout >2008-06-05 13:54:14,620 INFO add objectClass: > top > nsContainer > krbPwdPolicy >add cn: > accounts >add krbMinPwdLife: > 3600 >add krbPwdMinDiffChars: > 0 >add krbPwdMinLength: > 8 >add krbPwdHistoryLength: > 0 >add krbMaxPwdLife: > 7776000 >adding new entry "cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > nsContainer >add cn: > users >adding new entry "cn=users,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > nsContainer >add cn: > groups >adding new entry "cn=groups,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > nsContainer >add cn: > services >adding new entry "cn=services,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > nsContainer >add cn: > computers >adding new entry "cn=computers,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > etc >adding new entry "cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > sysaccounts >adding new entry "cn=sysaccounts,cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > ipa >adding new entry "cn=ipa,cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > masters >adding new entry "cn=masters,cn=ipa,cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > person > posixAccount > KrbPrincipalAux > inetUser >add uid: > admin >add krbPrincipalName: > admin@FRONTERANET.COM >add cn: > Administrator >add sn: > Administrator >add uidNumber: > 999 >add gidNumber: > 1001 >add homeDirectory: > /home/admin >add loginShell: > /bin/bash >add gecos: > Administrator >add nsAccountLock: > False >adding new entry "uid=admin,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > radius >adding new entry "cn=radius,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > clients >adding new entry "cn=clients,cn=radius,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top >add cn: > profiles >adding new entry "cn=profiles,cn=radius,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > radiusprofile >add uid: > ipa_default >adding new entry "uid=ipa_default, cn=profiles,cn=radius,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > groupofnames > posixGroup >add cn: > admins >add description: > Account administrators group >add gidNumber: > 1001 >add member: > uid=admin,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com >add nsAccountLock: > False >adding new entry "cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > groupofnames > posixGroup >add gidNumber: > 1002 >add description: > Default group for all users >add cn: > ipausers >adding new entry "cn=ipausers,cn=groups,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > groupofnames > posixGroup >add gidNumber: > 1003 >add description: > Limited admins who can edit other users >add cn: > editors >adding new entry "cn=editors,cn=groups,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > nsContainer > top > ipaGuiConfig >add ipaUserSearchFields: > uid,givenName,sn,telephoneNumber,ou,title >add ipaGroupSearchFields: > cn,description >add ipaSearchTimeLimit: > 2 >add ipaSearchRecordsLimit: > 0 >add ipaHomesRootDir: > /home >add ipaDefaultLoginShell: > /bin/sh >add ipaDefaultPrimaryGroup: > ipausers >add ipaMaxUsernameLength: > 8 >add ipaPwdExpAdvNotify: > 4 >add ipaGroupObjectClasses: > top > groupofnames > posixGroup > inetUser >add ipaUserObjectClasses: > top > person > organizationalPerson > inetOrgPerson > inetUser > posixAccount > krbPrincipalAux > radiusprofile >add ipaDefaultEmailDomain: > fronteranet.com >adding new entry "cn=ipaConfig,cn=etc,dc=fronteranet,dc=com" >modify complete > >add description: > Lock accounts based on group membership >add objectClass: > top > ldapsubentry > cosSuperDefinition > cosClassicDefinition >add cosTemplateDn: > cn=cosTemplates,cn=accounts,dc=fronteranet,dc=com >add cosAttribute: > nsAccountLock operational >add cosSpecifier: > memberOf >add cn: > Account Inactivation >adding new entry "cn=account inactivation,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectclass: > top > nsContainer >add cn: > cosTemplates >adding new entry "cn=cosTemplates,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > cosTemplate > extensibleobject >add nsAccountLock: > true >add cosPriority: > 1 >adding new entry "cn="cn=inactivated,cn=account inactivation,cn=accounts,dc=fronteranet,dc=com", cn=cosTemplates,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectclass: > top > groupofnames >adding new entry "cn=inactivated,cn=account inactivation,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectClass: > top > cosTemplate > extensibleobject >add nsAccountLock: > false >add cosPriority: > 0 >adding new entry "cn="cn=activated,cn=account inactivation,cn=accounts,dc=fronteranet,dc=com", cn=cosTemplates,cn=accounts,dc=fronteranet,dc=com" >modify complete > >add objectclass: > top > groupofnames >adding new entry "cn=Activated,cn=Account Inactivation,cn=accounts,dc=fronteranet,dc=com" >modify complete > > >2008-06-05 13:54:14,620 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:14,621 DEBUG [13/16]: configuring Posix uid/gid generation as first master >2008-06-05 13:54:14,689 INFO add objectclass: > top > nsContainer > extensibleObject >add cn: > Posix >adding new entry "cn=Posix,cn=ipa-dna,cn=plugins,cn=config" >modify complete > >add objectclass: > top > extensibleObject >add cn: > Accounts >add dnaType: > uidNumber >add dnaNextValue: > 1100 >add dnaInterval: > 4 >add dnaMagicRegen: > 999 >add dnaFilter: > (objectclass=posixAccount) >add dnaScope: > dc=fronteranet,dc=com >adding new entry "cn=Accounts,cn=Posix,cn=ipa-dna,cn=plugins,cn=config" >modify complete > >add objectclass: > top > extensibleObject >add cn: > Groups >add dnaType: > gidNumber >add dnaNextValue: > 1100 >add dnaInterval: > 4 >add dnaMagicRegen: > 999 >add dnaFilter: > (objectclass=posixGroup) >add dnaScope: > dc=fronteranet,dc=com >adding new entry "cn=Groups,cn=Posix,cn=ipa-dna,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:14,690 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:14,690 DEBUG [14/16]: adding master entry as first master >2008-06-05 13:54:14,723 INFO add objectclass: > top > extensibleObject >add cn: > directory.fronteranet.com >add dnabase: > 1100 >add dnainterval: > 4 >adding new entry "cn=directory.fronteranet.com,cn=masters,cn=ipa,cn=etc,dc=fronteranet,dc=com" >modify complete > > >2008-06-05 13:54:14,724 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:14,725 DEBUG [15/16]: initializing group membership >2008-06-05 13:54:14,763 INFO add objectClass: > top > extensibleObject >add cn: > IPA install >add basedn: > dc=fronteranet,dc=com >add filter: > (objectclass=*) >add ttl: > 10 >adding new entry "cn=IPA install 1212699241, cn=memberof task, cn=tasks, cn=config" >modify complete > > >2008-06-05 13:54:14,764 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:14,765 DEBUG [16/16]: configuring directory to start on boot >2008-06-05 13:54:14,785 INFO dirsrv 0:off 1:off 2:off 3:off 4:off 5:off 6:off > >2008-06-05 13:54:14,786 INFO >2008-06-05 13:54:14,787 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:14,807 INFO >2008-06-05 13:54:14,808 INFO >2008-06-05 13:54:14,808 DEBUG done configuring dirsrv. >2008-06-05 13:54:14,809 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:14,810 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:14,902 INFO krb5kdc is stopped > >2008-06-05 13:54:14,903 INFO >2008-06-05 13:54:14,903 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:14,986 INFO Stopping Kerberos 5 KDC: [60G[[0;31mFAILED[0;39m] > >2008-06-05 13:54:14,987 INFO >2008-06-05 13:54:14,988 DEBUG Configuring Kerberos KDC >2008-06-05 13:54:14,988 DEBUG [1/13]: setting KDC account password >2008-06-05 13:54:14,989 DEBUG Backing up system configuration file '/var/kerberos/krb5kdc/ldappwd' >2008-06-05 13:54:14,989 DEBUG -> Not backing up - '/var/kerberos/krb5kdc/ldappwd' doesn't exist >2008-06-05 13:54:14,990 DEBUG [2/13]: adding sasl mappings to the directory >2008-06-05 13:54:15,074 DEBUG [3/13]: adding kerberos entries to the DS >2008-06-05 13:54:15,115 INFO add objectclass: > account > simplesecurityobject >add uid: > kdc >add userPassword: > QECICAAYISAI >adding new entry "uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com" >modify complete > >add objectClass: > krbContainer > top >add cn: > kerberos >add aci: > (targetattr="*")(version 3.0; acl "KDC System Account"; allow (all) userdn= "ldap:///uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) >adding new entry "cn=kerberos,dc=fronteranet,dc=com" >modify complete > > >2008-06-05 13:54:15,115 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:15,116 DEBUG [4/13]: adding default ACIs >2008-06-05 13:54:15,171 INFO add aci: > (targetattr != "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Enable Anonymous access"; allow (read, search, compare) userdn = "ldap:///anyone";) > (targetattr != "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Admin can manage any entry"; allow (all) userdn = "ldap:///uid=admin,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) > (targetattr = "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword")(version 3.0; acl "Self can write own password"; allow (write) userdn="ldap:///self";) > (targetattr = "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Admins can write passwords"; allow (write) groupdn="ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) > (targetattr = "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Password change service can read/write passwords"; allow (read, write) userdn="ldap:///krbprincipalname=kadmin/changepw@FRONTERANET.COM,cn=FRONTERANET.COM,cn=kerberos,dc=fronteranet,dc=com";) > (targetattr = "userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "KDC System Account can access passwords"; allow (all) userdn="ldap:///uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) > (targetattr = "krbLastSuccessfulAuth || krbLastFailedAuth || krbLoginFailedCount")(version 3.0; acl "KDC System Account can update some fields"; allow (write) userdn="ldap:///uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) > (targetattr = "krbPrincipalName || krbUPEnabled || krbMKey || krbTicketPolicyReference || krbPrincipalExpiration || krbPasswordExpiration || krbPwdPolicyReference || krbPrincipalType || krbPwdHistory || krbLastPwdChange || krbPrincipalAliases || krbExtraData || krbLastSuccessfulAuth || krbLastFailedAuth || krbLoginFailedCount")(version 3.0; acl "Only the KDC System Account has access to kerberos material"; allow (read, search, compare) userdn="ldap:///uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) > (targetfilter = "(|(objectClass=person)(objectClass=krbPrincipalAux)(objectClass=posixAccount)(objectClass=groupOfNames)(objectClass=posixGroup))")(targetattr != "aci || userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Account Admins can manage Users and Groups"; allow (add, delete, read, write) groupdn = "ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) > (targetfilter = "(objectClass=krbPwdPolicy)")(targetattr = "krbMaxPwdLife || krbMinPwdLife || krbPwdMinDiffChars || krbPwdMinLength || krbPwdHistoryLength")(version 3.0;acl "Admins can write password policies"; allow (read, search, compare, write) groupdn = "ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) > (targetattr = "givenName || sn || cn || displayName || title || initials || loginShell || gecos || homePhone || mobile || pager || facsimileTelephoneNumber || telephoneNumber || street || roomNumber || l || st || postalCode || manager || secretary || description || carLicense || labeledURI || inetUserHTTPURL || seeAlso || employeeType || businessCategory || ou")(version 3.0;acl "Self service";allow (write) userdn = "ldap:///self";) >modifying entry "dc=fronteranet,dc=com" >modify complete > >add aci: > (targetfilter = "(objectClass=ipaGuiConfig)")(targetattr != "aci")(version 3.0;acl "Admins can change GUI config"; allow (read, search, compare, write) groupdn = "ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) >modifying entry "cn=ipaConfig,cn=etc,dc=fronteranet,dc=com" >modify complete > >add aci: > (targetattr = "krbMaxPwdLife || krbMinPwdLife || krbPwdMinDiffChars || krbPwdMinLength || krbPwdHistoryLength")(version 3.0;acl "Admins can write password policy"; allow (write) groupdn="ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) > (targetattr = "aci")(version 3.0;acl "Admins can manage delegations"; allow (write, delete) groupdn="ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) >modifying entry "cn=accounts,dc=fronteranet,dc=com" >modify complete > >add aci: > (targetattr = "*")(version 3.0; acl "Only radius and admin can access radius service data"; deny (all) userdn!="ldap:///uid=admin,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com || ldap:///krbprincipalname=radius/directory.fronteranet.com@FRONTERANET.COM,cn=FRONTERANET.COM,cn=kerberos,dc=fronteranet,dc=com";) > (targetfilter = "(objectClass=radiusprofile)")(targetattr != "aci || userPassword || krbPrincipalKey || sambaLMPassword || sambaNTPassword || passwordHistory")(version 3.0; acl "Account Admins can manage Users and Groups"; allow (add, delete, read, write) groupdn = "ldap:///cn=admins,cn=groups,cn=accounts,dc=fronteranet,dc=com";) >modifying entry "cn=radius,dc=fronteranet,dc=com" >modify complete > >add aci: > (targetattr="krbPrincipalName || krbUPEnabled || krbPrincipalKey || krbTicketPolicyReference || krbPrincipalExpiration || krbPasswordExpiration || krbPwdPolicyReference || krbPrincipalType || krbPwdHistory || krbLastPwdChange || krbPrincipalAliases || krbExtraData")(version 3.0; acl "KDC System Account"; allow (read, search, compare, write) userdn="ldap:///uid=kdc,cn=sysaccounts,cn=etc,dc=fronteranet,dc=com";) >modifying entry "cn=services,cn=accounts,dc=fronteranet,dc=com" >modify complete > > >2008-06-05 13:54:15,172 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:15,172 DEBUG [5/13]: configuring KDC >2008-06-05 13:54:15,173 DEBUG Backing up system configuration file '/var/kerberos/krb5kdc/kdc.conf' >2008-06-05 13:54:15,174 DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:15,175 DEBUG Backing up system configuration file '/etc/krb5.conf' >2008-06-05 13:54:15,187 DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:15,188 DEBUG Backing up system configuration file '/usr/share/ipa/html/krb5.ini' >2008-06-05 13:54:15,188 DEBUG -> Not backing up - '/usr/share/ipa/html/krb5.ini' doesn't exist >2008-06-05 13:54:15,188 DEBUG Backing up system configuration file '/usr/share/ipa/html/krb.con' >2008-06-05 13:54:15,189 DEBUG -> Not backing up - '/usr/share/ipa/html/krb.con' doesn't exist >2008-06-05 13:54:15,189 DEBUG Backing up system configuration file '/usr/share/ipa/html/krbrealm.con' >2008-06-05 13:54:15,190 DEBUG -> Not backing up - '/usr/share/ipa/html/krbrealm.con' doesn't exist >2008-06-05 13:54:15,396 INFO Initializing database for realm 'FRONTERANET.COM' > >2008-06-05 13:54:15,397 INFO >2008-06-05 13:54:15,398 DEBUG [6/13]: adding default keytypes >2008-06-05 13:54:15,426 INFO add krbSupportedEncSaltTypes: > aes256-cts:normal > aes128-cts:normal > des3-hmac-sha1:normal > arcfour-hmac:normal > des-hmac-sha1:normal > des-cbc-md5:normal > des-cbc-crc:normal > des-cbc-crc:v4 > des-cbc-crc:afs3 >modifying entry "cn=FRONTERANET.COM,cn=kerberos,dc=fronteranet,dc=com" >modify complete > >add krbDefaultEncSaltTypes: > aes256-cts:normal > aes128-cts:normal > des3-hmac-sha1:normal > arcfour-hmac:normal > des-hmac-sha1:normal > des-cbc-md5:normal >modifying entry "cn=FRONTERANET.COM,cn=kerberos,dc=fronteranet,dc=com" >modify complete > > >2008-06-05 13:54:15,427 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:15,428 DEBUG [7/13]: creating a keytab for the directory >2008-06-05 13:54:15,964 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Principal "ldap/directory.fronteranet.com@FRONTERANET.COM" created. > >2008-06-05 13:54:15,965 INFO WARNING: no policy specified for ldap/directory.fronteranet.com@FRONTERANET.COM; defaulting to no policy > >2008-06-05 13:54:15,965 DEBUG Backing up system configuration file '/etc/dirsrv/ds.keytab' >2008-06-05 13:54:15,966 DEBUG -> Not backing up - '/etc/dirsrv/ds.keytab' doesn't exist >2008-06-05 13:54:16,428 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-256 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/dirsrv/ds.keytab. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-128 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/dirsrv/ds.keytab. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/etc/dirsrv/ds.keytab. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type ArcFour with HMAC/md5 added to keytab WRFILE:/etc/dirsrv/ds.keytab. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES with HMAC/sha1 added to keytab WRFILE:/etc/dirsrv/ds.keytab. >Entry for principal ldap/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES cbc mode with RSA-MD5 added to keytab WRFILE:/etc/dirsrv/ds.keytab. > >2008-06-05 13:54:16,429 INFO >2008-06-05 13:54:16,429 DEBUG Backing up system configuration file '/etc/sysconfig/dirsrv' >2008-06-05 13:54:16,430 DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:16,435 DEBUG [8/13]: creating a keytab for the machine >2008-06-05 13:54:16,961 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Principal "host/directory.fronteranet.com@FRONTERANET.COM" created. > >2008-06-05 13:54:16,962 INFO WARNING: no policy specified for host/directory.fronteranet.com@FRONTERANET.COM; defaulting to no policy > >2008-06-05 13:54:16,962 DEBUG Backing up system configuration file '/etc/krb5.keytab' >2008-06-05 13:54:16,963 DEBUG -> Not backing up - '/etc/krb5.keytab' doesn't exist >2008-06-05 13:54:17,425 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-256 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/krb5.keytab. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-128 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/krb5.keytab. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/etc/krb5.keytab. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type ArcFour with HMAC/md5 added to keytab WRFILE:/etc/krb5.keytab. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES with HMAC/sha1 added to keytab WRFILE:/etc/krb5.keytab. >Entry for principal host/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES cbc mode with RSA-MD5 added to keytab WRFILE:/etc/krb5.keytab. > >2008-06-05 13:54:17,426 INFO >2008-06-05 13:54:17,426 DEBUG [9/13]: exporting the kadmin keytab >2008-06-05 13:54:17,859 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Principal "kadmin/changepw@FRONTERANET.COM" modified. > >2008-06-05 13:54:17,860 INFO >2008-06-05 13:54:17,860 DEBUG Backing up system configuration file '/var/kerberos/krb5kdc/kpasswd.keytab' >2008-06-05 13:54:17,861 DEBUG -> Not backing up - '/var/kerberos/krb5kdc/kpasswd.keytab' doesn't exist >2008-06-05 13:54:18,308 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Entry for principal kadmin/changepw with kvno 2, encryption type AES-256 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. >Entry for principal kadmin/changepw with kvno 2, encryption type AES-128 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. >Entry for principal kadmin/changepw with kvno 2, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. >Entry for principal kadmin/changepw with kvno 2, encryption type ArcFour with HMAC/md5 added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. >Entry for principal kadmin/changepw with kvno 2, encryption type DES with HMAC/sha1 added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. >Entry for principal kadmin/changepw with kvno 2, encryption type DES cbc mode with RSA-MD5 added to keytab WRFILE:/var/kerberos/krb5kdc/kpasswd.keytab. > >2008-06-05 13:54:18,308 INFO >2008-06-05 13:54:18,309 DEBUG Backing up system configuration file '/etc/sysconfig/ipa_kpasswd' >2008-06-05 13:54:18,309 DEBUG -> Not backing up - '/etc/sysconfig/ipa_kpasswd' doesn't exist >2008-06-05 13:54:18,310 DEBUG [10/13]: adding the password extension to the directory >2008-06-05 13:54:18,347 INFO add objectclass: > top > nsSlapdPlugin > extensibleObject >add cn: > ipa_pwd_extop >add nsslapd-pluginpath: > libipa_pwd_extop >add nsslapd-plugininitfunc: > ipapwd_init >add nsslapd-plugintype: > extendedop >add nsslapd-pluginenabled: > on >add nsslapd-pluginid: > ipa_pwd_extop >add nsslapd-pluginversion: > 1.0 >add nsslapd-pluginvendor: > RedHat >add nsslapd-plugindescription: > Support saving passwords in multiple formats for different consumers (krb5, samba, freeradius, etc.) >add nsslapd-plugin-depends-on-type: > database >add nsslapd-realmTree: > dc=fronteranet,dc=com >adding new entry "cn=ipa_pwd_extop,cn=plugins,cn=config" >modify complete > > >2008-06-05 13:54:18,348 INFO ldap_initialize( ldap://127.0.0.1 ) > >2008-06-05 13:54:18,348 DEBUG [11/13]: adding the kerberos master key to the directory >2008-06-05 13:54:18,356 DEBUG [12/13]: starting the KDC >2008-06-05 13:54:18,586 INFO Starting Kerberos 5 KDC: [60G[[0;32m OK [0;39m] > >2008-06-05 13:54:18,587 INFO >2008-06-05 13:54:18,587 DEBUG [13/13]: configuring KDC to start on boot >2008-06-05 13:54:18,609 INFO krb5kdc 0:off 1:off 2:off 3:off 4:off 5:off 6:off > >2008-06-05 13:54:18,609 INFO >2008-06-05 13:54:18,610 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:18,630 INFO >2008-06-05 13:54:18,631 INFO >2008-06-05 13:54:18,631 DEBUG done configuring krb5kdc. >2008-06-05 13:54:18,632 DEBUG Configuring ipa_kpasswd >2008-06-05 13:54:18,632 DEBUG [1/2]: starting ipa_kpasswd >2008-06-05 13:54:18,710 INFO ipa_kpasswd is stopped > >2008-06-05 13:54:18,711 INFO >2008-06-05 13:54:18,711 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:18,816 INFO Shutting down ipa_kpasswd: [60G[[0;31mFAILED[0;39m] >Starting ipa_kpasswd: [60G[[0;32m OK [0;39m] > >2008-06-05 13:54:18,817 INFO >2008-06-05 13:54:18,817 DEBUG [2/2]: configuring ipa_kpasswd to start on boot >2008-06-05 13:54:18,837 INFO >2008-06-05 13:54:18,838 INFO >2008-06-05 13:54:18,859 INFO ipa_kpasswd 0:off 1:off 2:off 3:off 4:off 5:off 6:off > >2008-06-05 13:54:18,860 INFO >2008-06-05 13:54:18,860 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:18,880 INFO >2008-06-05 13:54:18,881 INFO >2008-06-05 13:54:18,881 DEBUG done configuring ipa_kpasswd. >2008-06-05 13:54:18,882 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:18,883 DEBUG Configuring the web interface >2008-06-05 13:54:18,883 DEBUG [1/10]: disabling mod_ssl in httpd >2008-06-05 13:54:18,884 DEBUG [2/10]: Setting mod_nss port to 443 >2008-06-05 13:54:18,884 DEBUG Backing up system configuration file '/etc/httpd/conf.d/nss.conf' >2008-06-05 13:54:18,886 DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:18,889 DEBUG [3/10]: Adding URL rewriting rules >2008-06-05 13:54:18,891 DEBUG [4/10]: configuring httpd >2008-06-05 13:54:18,892 DEBUG Backing up system configuration file '/etc/httpd/conf.d/ipa.conf' >2008-06-05 13:54:18,892 DEBUG -> Not backing up - '/etc/httpd/conf.d/ipa.conf' doesn't exist >2008-06-05 13:54:18,893 DEBUG Backing up system configuration file '/etc/httpd/conf.d/ipa-rewrite.conf' >2008-06-05 13:54:18,893 DEBUG -> Not backing up - '/etc/httpd/conf.d/ipa-rewrite.conf' doesn't exist >2008-06-05 13:54:18,894 DEBUG [5/10]: creating a keytab for httpd >2008-06-05 13:54:19,424 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Principal "HTTP/directory.fronteranet.com@FRONTERANET.COM" created. > >2008-06-05 13:54:19,425 INFO WARNING: no policy specified for HTTP/directory.fronteranet.com@FRONTERANET.COM; defaulting to no policy > >2008-06-05 13:54:19,882 INFO Authenticating as principal root/admin@FRONTERANET.COM with password. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-256 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type AES-128 CTS mode with 96-bit SHA-1 HMAC added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type ArcFour with HMAC/md5 added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES with HMAC/sha1 added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. >Entry for principal HTTP/directory.fronteranet.com@FRONTERANET.COM with kvno 3, encryption type DES cbc mode with RSA-MD5 added to keytab WRFILE:/etc/httpd/conf/ipa.keytab. > >2008-06-05 13:54:19,883 INFO >2008-06-05 13:54:19,883 DEBUG [6/10]: Setting up ssl >2008-06-05 13:54:19,884 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:19,885 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:19,917 INFO >2008-06-05 13:54:19,918 INFO >2008-06-05 13:54:19,950 INFO >2008-06-05 13:54:19,951 INFO >2008-06-05 13:54:20,135 INFO >2008-06-05 13:54:20,136 INFO > >Generating key. This may take a few moments... > > >2008-06-05 13:54:20,192 INFO >2008-06-05 13:54:20,193 INFO >2008-06-05 13:54:20,444 INFO >2008-06-05 13:54:20,445 INFO > >Generating key. This may take a few moments... > > >2008-06-05 13:54:20,501 INFO >2008-06-05 13:54:20,502 INFO >2008-06-05 13:54:20,503 DEBUG [7/10]: Setting up browser autoconfig >2008-06-05 13:54:20,504 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:20,505 DEBUG Loading Index file from '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:20,545 INFO Generating /tmp/tmp-8jTBys/META-INF/manifest.mf file.. >--> preferences.html >adding /tmp/tmp-8jTBys/preferences.html to /usr/share/ipa/html/configure.jar...(deflated 52%) >Generating zigbert.sf file.. >adding /tmp/tmp-8jTBys/META-INF/manifest.mf to /usr/share/ipa/html/configure.jar...(deflated 15%) >adding /tmp/tmp-8jTBys/META-INF/zigbert.sf to /usr/share/ipa/html/configure.jar...(deflated 27%) >adding /tmp/tmp-8jTBys/META-INF/zigbert.rsa to /usr/share/ipa/html/configure.jar...(deflated 16%) >tree "/tmp/tmp-8jTBys" signed successfully > >2008-06-05 13:54:20,546 INFO >2008-06-05 13:54:20,547 DEBUG [8/10]: configuring SELinux for httpd >2008-06-05 13:54:20,566 INFO >2008-06-05 13:54:20,567 INFO >2008-06-05 13:54:34,544 INFO >2008-06-05 13:54:34,545 INFO >2008-06-05 13:54:34,546 DEBUG [9/10]: restarting httpd >2008-06-05 13:54:34,645 INFO httpd is stopped > >2008-06-05 13:54:34,646 INFO >2008-06-05 13:54:34,646 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:35,085 INFO Stopping httpd: [60G[[0;31mFAILED[0;39m] >Starting httpd: [60G[[0;32m OK [0;39m] > >2008-06-05 13:54:35,087 INFO >2008-06-05 13:54:35,087 DEBUG [10/10]: configuring httpd to start on boot >2008-06-05 13:54:35,469 INFO httpd (pid 2169 2167 2166 2165 2162 2161 2159 2157 2150) is running... > >2008-06-05 13:54:35,470 INFO >2008-06-05 13:54:35,470 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:35,633 INFO >2008-06-05 13:54:35,634 INFO >2008-06-05 13:54:35,634 DEBUG done configuring httpd. >2008-06-05 13:54:35,635 DEBUG Backing up system configuration file '/etc/ipa/ipa.conf' >2008-06-05 13:54:35,636 DEBUG Saving Index File to '/var/lib/ipa/sysrestore/sysrestore.index' >2008-06-05 13:54:35,637 DEBUG Loading StateFile from '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:35,638 DEBUG Configuring ipa_webgui >2008-06-05 13:54:35,638 DEBUG [1/2]: starting ipa_webgui >2008-06-05 13:54:36,245 INFO ipa_webgui is stopped > >2008-06-05 13:54:36,245 INFO >2008-06-05 13:54:36,246 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:36,925 INFO Shutting down ipa_webgui: [60G[[0;31mFAILED[0;39m] >Starting ipa_webgui: [60G[[0;32m OK [0;39m] > >2008-06-05 13:54:36,926 INFO >2008-06-05 13:54:36,926 DEBUG [2/2]: configuring ipa_webgui to start on boot >2008-06-05 13:54:36,960 INFO >2008-06-05 13:54:36,961 INFO >2008-06-05 13:54:37,000 INFO ipa_webgui 0:off 1:off 2:off 3:off 4:off 5:off 6:off > >2008-06-05 13:54:37,000 INFO >2008-06-05 13:54:37,001 DEBUG Saving StateFile to '/var/lib/ipa/sysrestore/sysrestore.state' >2008-06-05 13:54:37,029 INFO >2008-06-05 13:54:37,030 INFO >2008-06-05 13:54:37,030 DEBUG done configuring ipa_webgui. >2008-06-05 13:54:37,033 DEBUG restarting the directory server >2008-06-05 13:54:40,597 INFO Shutting down dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] >Starting dirsrv: > FRONTERANET-COM...[60G[[0;32m OK [0;39m] > >2008-06-05 13:54:40,598 INFO >2008-06-05 13:54:40,599 DEBUG restarting the KDC >2008-06-05 13:54:40,953 INFO Stopping Kerberos 5 KDC: [60G[[0;32m OK [0;39m] >Starting Kerberos 5 KDC: [60G[[0;32m OK [0;39m] > >2008-06-05 13:54:40,954 INFO >2008-06-05 13:54:40,954 DEBUG Changing admin password >2008-06-05 13:54:41,060 INFO >2008-06-05 13:54:41,061 INFO ldappasswd: password successfully changed > >2008-06-05 13:54:41,061 DEBUG ldappasswd done >2008-06-05 13:54:41,915 INFO Discovery was successful! >Realm: FRONTERANET.COM >DNS Domain: fronteranet.com >IPA Server: directory.fronteranet.com >BaseDN: dc=fronteranet,dc=com > > >Created /etc/ipa/ipa.conf >Configured /etc/ldap.conf >LDAP enabled >Kerberos 5 enabled >Client configuration complete. > >2008-06-05 13:54:41,916 INFO >2008-06-05 13:54:41,999 INFO ntpd is stopped > >2008-06-05 13:54:42,000 INFO
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 450214
: 308491