Login
[x]
Log in using an account from:
Fedora Account System
Red Hat Associate
Red Hat Customer
Or login using a Red Hat Bugzilla account
Forgot Password
Login:
Hide Forgot
Create an Account
Red Hat Bugzilla – Attachment 928738 Details for
Bug 1131907
[ipa-client-install] cannot write certificate file '/etc/ipa/ca.crt.new': must be string or buffer, not None
[?]
New
Simple Search
Advanced Search
My Links
Browse
Requests
Reports
Current State
Search
Tabular reports
Graphical reports
Duplicates
Other Reports
User Changes
Plotly Reports
Bug Status
Bug Severity
Non-Defaults
|
Product Dashboard
Help
Page Help!
Bug Writing Guidelines
What's new
Browser Support Policy
5.0.4.rh83 Release notes
FAQ
Guides index
User guide
Web Services
Contact
Legal
This site requires JavaScript to be enabled to function correctly, please enable it.
ipaclient-install.log
ipaclient-install.log (text/x-log), 7.88 KB, created by
Jiri Belka
on 2014-08-20 09:20:25 UTC
(
hide
)
Description:
ipaclient-install.log
Filename:
MIME Type:
Creator:
Jiri Belka
Created:
2014-08-20 09:20:25 UTC
Size:
7.88 KB
patch
obsolete
>2014-08-20T09:17:15Z DEBUG /usr/sbin/ipa-client-install was invoked with options: {'domain': 'brq-ipa.rhev.lab.eng.brq.redhat.com', 'force': False, 'krb5_offline_passwords': True, 'primary': False, 'realm_name': None, 'force_ntpd': False, 'create_sshfp': True, 'conf_sshd': True, 'conf_ntp': True, 'on_master': False, 'ntp_server': None, 'ca_cert_file': None, 'principal': None, 'keytab': None, 'hostname': None, 'no_ac': False, 'unattended': None, 'sssd': True, 'trust_sshfp': False, 'dns_updates': False, 'mkhomedir': True, 'conf_ssh': True, 'force_join': False, 'server': ['brq-ipa.rhev.lab.eng.brq.redhat.com'], 'prompt_password': False, 'permit': False, 'debug': False, 'preserve_sssd': False, 'uninstall': False} >2014-08-20T09:17:15Z DEBUG missing options might be asked for interactively later >2014-08-20T09:17:15Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' >2014-08-20T09:17:15Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' >2014-08-20T09:17:15Z DEBUG Starting external process >2014-08-20T09:17:15Z DEBUG args=/bin/systemctl is-enabled chronyd.service >2014-08-20T09:17:15Z DEBUG Process finished, return code=1 >2014-08-20T09:17:15Z DEBUG stdout= >2014-08-20T09:17:15Z DEBUG stderr=Failed to issue method call: No such file or directory > >2014-08-20T09:17:15Z DEBUG Starting external process >2014-08-20T09:17:15Z DEBUG args=/bin/systemctl is-active chronyd.service >2014-08-20T09:17:15Z DEBUG Process finished, return code=3 >2014-08-20T09:17:15Z DEBUG stdout=unknown > >2014-08-20T09:17:15Z DEBUG stderr= >2014-08-20T09:17:15Z DEBUG [IPA Discovery] >2014-08-20T09:17:15Z DEBUG Starting IPA discovery with domain=brq-ipa.rhev.lab.eng.brq.redhat.com, servers=['brq-ipa.rhev.lab.eng.brq.redhat.com'], hostname=jb-rhel7.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z DEBUG Server and domain forced >2014-08-20T09:17:15Z DEBUG [Kerberos realm search] >2014-08-20T09:17:15Z DEBUG Search DNS for TXT record of _kerberos.brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z DEBUG DNS record not found: NXDOMAIN >2014-08-20T09:17:15Z DEBUG [LDAP server check] >2014-08-20T09:17:15Z DEBUG Verifying that brq-ipa.rhev.lab.eng.brq.redhat.com (realm None) is an IPA server >2014-08-20T09:17:15Z DEBUG Init LDAP connection to: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z DEBUG Search LDAP server for IPA base DN >2014-08-20T09:17:15Z DEBUG Check if naming context 'dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com' is for IPA >2014-08-20T09:17:15Z DEBUG Naming context 'dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com' is a valid IPA context >2014-08-20T09:17:15Z DEBUG Search for (objectClass=krbRealmContainer) in dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com (sub) >2014-08-20T09:17:15Z DEBUG Found: cn=BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM,cn=kerberos,dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com >2014-08-20T09:17:15Z DEBUG Discovery result: Success; server=brq-ipa.rhev.lab.eng.brq.redhat.com, domain=brq-ipa.rhev.lab.eng.brq.redhat.com, kdc=None, basedn=dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com >2014-08-20T09:17:15Z DEBUG Validated servers: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z DEBUG will use discovered domain: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z DEBUG Using servers from command line, disabling DNS discovery >2014-08-20T09:17:15Z DEBUG will use provided server: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:15Z INFO Autodiscovery of servers for failover cannot work with this configuration. >2014-08-20T09:17:15Z INFO If you proceed with the installation, services will be configured to always access the discovered server for all operations and will not fail over to other servers in case of failure. >2014-08-20T09:17:17Z DEBUG will use discovered realm: BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM >2014-08-20T09:17:17Z DEBUG will use discovered basedn: dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com >2014-08-20T09:17:17Z INFO Hostname: jb-rhel7.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:17Z DEBUG Hostname source: Machine's FQDN >2014-08-20T09:17:17Z INFO Realm: BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM >2014-08-20T09:17:17Z DEBUG Realm source: Discovered from LDAP DNS records in brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:17Z INFO DNS Domain: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:17Z DEBUG DNS Domain source: Forced >2014-08-20T09:17:17Z INFO IPA Server: brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:17Z DEBUG IPA Server source: Provided as option >2014-08-20T09:17:17Z INFO BaseDN: dc=brq-ipa,dc=rhev,dc=lab,dc=eng,dc=brq,dc=redhat,dc=com >2014-08-20T09:17:17Z DEBUG BaseDN source: From IPA server ldap://brq-ipa.rhev.lab.eng.brq.redhat.com:389 >2014-08-20T09:17:18Z DEBUG Starting external process >2014-08-20T09:17:18Z DEBUG args=/usr/sbin/ipa-rmkeytab -k /etc/krb5.keytab -r BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM >2014-08-20T09:17:18Z DEBUG Process finished, return code=5 >2014-08-20T09:17:18Z DEBUG stdout= >2014-08-20T09:17:18Z DEBUG stderr=realm not found > >2014-08-20T09:17:20Z DEBUG will use principal provided as option: admin >2014-08-20T09:17:20Z INFO Synchronizing time with KDC... >2014-08-20T09:17:20Z DEBUG Search DNS for SRV record of _ntp._udp.brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:20Z DEBUG DNS record not found: NXDOMAIN >2014-08-20T09:17:20Z DEBUG Starting external process >2014-08-20T09:17:20Z DEBUG args=/usr/sbin/ntpdate -U ntp -s -b -v brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:26Z DEBUG Process finished, return code=0 >2014-08-20T09:17:26Z DEBUG stdout= >2014-08-20T09:17:26Z DEBUG stderr= >2014-08-20T09:17:26Z DEBUG Starting external process >2014-08-20T09:17:26Z DEBUG args=keyctl get_persistent @s 0 >2014-08-20T09:17:26Z DEBUG Process finished, return code=0 >2014-08-20T09:17:26Z DEBUG stdout=734576785 > >2014-08-20T09:17:26Z DEBUG stderr= >2014-08-20T09:17:26Z DEBUG Enabling persistent keyring CCACHE >2014-08-20T09:17:26Z DEBUG Writing Kerberos configuration to /tmp/tmpvfL34N: >2014-08-20T09:17:26Z DEBUG #File modified by ipa-client-install > >includedir /var/lib/sss/pubconf/krb5.include.d/ > >[libdefaults] > default_realm = BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM > dns_lookup_realm = false > dns_lookup_kdc = false > rdns = false > ticket_lifetime = 24h > forwardable = yes > default_ccache_name = KEYRING:persistent:%{uid} > >[realms] > BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM = { > kdc = brq-ipa.rhev.lab.eng.brq.redhat.com:88 > master_kdc = brq-ipa.rhev.lab.eng.brq.redhat.com:88 > admin_server = brq-ipa.rhev.lab.eng.brq.redhat.com:749 > default_domain = brq-ipa.rhev.lab.eng.brq.redhat.com > pkinit_anchors = FILE:/etc/ipa/ca.crt > } > >[domain_realm] > .brq-ipa.rhev.lab.eng.brq.redhat.com = BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM > brq-ipa.rhev.lab.eng.brq.redhat.com = BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM > .rhev.lab.eng.brq.redhat.com = BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM > rhev.lab.eng.brq.redhat.com = BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM > >2014-08-20T09:17:28Z DEBUG Starting external process >2014-08-20T09:17:28Z DEBUG args=kinit admin@BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM >2014-08-20T09:17:28Z DEBUG Process finished, return code=0 >2014-08-20T09:17:28Z DEBUG stdout=Password for admin@BRQ-IPA.RHEV.LAB.ENG.BRQ.REDHAT.COM: > >2014-08-20T09:17:28Z DEBUG stderr= >2014-08-20T09:17:28Z DEBUG trying to retrieve CA cert via LDAP from brq-ipa.rhev.lab.eng.brq.redhat.com >2014-08-20T09:17:28Z DEBUG flushing ldap://brq-ipa.rhev.lab.eng.brq.redhat.com:389 from SchemaCache >2014-08-20T09:17:28Z DEBUG retrieving schema for SchemaCache url=ldap://brq-ipa.rhev.lab.eng.brq.redhat.com:389 conn=<ldap.ldapobject.SimpleLDAPObject instance at 0x18a59e0> >2014-08-20T09:17:28Z DEBUG cannot write certificate file '/etc/ipa/ca.crt.new': must be string or buffer, not None >2014-08-20T09:17:28Z ERROR cannot write certificate file '/etc/ipa/ca.crt.new': must be string or buffer, not None >2014-08-20T09:17:28Z ERROR Installation failed. Rolling back changes. >2014-08-20T09:17:28Z ERROR IPA client is not configured on this system.
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 1131907
: 928738 |
933279