Bug 2132967
| Summary: | Creating a POSIX trust agreement using 'range_type: ipa-ad-trust-posix' in ansible playbook is not honoring 'range_type' [rhel-8.6.0.z] | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 8 | Reporter: | RHEL Program Management Team <pgm-rhel-tools> |
| Component: | ansible-freeipa | Assignee: | Thomas Woerner <twoerner> |
| Status: | CLOSED ERRATA | QA Contact: | ipa-qe <ipa-qe> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 8.6 | CC: | ftrivino, mjurasek, mvarun, rjeffman, tejones |
| Target Milestone: | rc | Keywords: | Triaged, ZStream |
| Target Release: | --- | Flags: | pm-rhel:
mirror+
|
| Hardware: | Unspecified | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | ansible-freeipa-1.6.3-2.el8_6 | Doc Type: | If docs needed, set a value |
| Doc Text: | Story Points: | --- | |
| Clone Of: | 2121161 | Environment: | |
| Last Closed: | 2022-10-25 09:34:57 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2121161 | ||
| Bug Blocks: | |||
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (ansible-freeipa bug fix and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:7130 |
Verified ansible-2.9.27-1.el8ae.noarch ansible-freeipa-1.6.3-2.el8_6.noarch Passed ansible_freeipa_tests/trust/test_trust.py::TestTrust::test_trust_present_id_range_type_ad_trust_posix ------------------------------ Captured log call ------------------------------- INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:293 WRITE inventory/trust.hosts DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'inventory/trust.hosts', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'inventory/trust.hosts', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:329 PUT trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] stat(b'trust_present.yml') DEBUG pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:284 READ trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'rb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'rb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:293 WRITE trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) DEBUG paramiko.transport:channel.py:1212 [chan 11] Max packet in: 32768 bytes DEBUG paramiko.transport:channel.py:1212 [chan 11] Max packet out: 32768 bytes DEBUG paramiko.transport:transport.py:1819 Secsh channel 11 opened. INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:318 RUN ['ansible-playbook', '--ssh-extra-args="-o StrictHostKeyChecking=no"', '-vv', '-i', 'inventory/trust.hosts', 'trust_present.yml'] DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:519 RUN ['ansible-playbook', '--ssh-extra-args="-o StrictHostKeyChecking=no"', '-vv', '-i', 'inventory/trust.hosts', 'trust_present.yml'] DEBUG paramiko.transport:channel.py:1212 [chan 11] Sesch channel 11 request ok DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 -bash: line 1: cd: /root/multihost_tests: No such file or directory DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 -bash: line 2: /root/multihost_tests/env.sh: No such file or directory DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 ansible-playbook 2.9.27 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 config file = /etc/ansible/ansible.cfg DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 ansible python module location = /usr/lib/python3.6/site-packages/ansible DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 executable location = /usr/bin/ansible-playbook DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 python version = 3.6.8 (default, Jun 14 2022, 12:54:58) [GCC 8.5.0 20210514 (Red Hat 8.5.0-10)] DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Using /etc/ansible/ansible.cfg as config file DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'actionable', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'counter_enabled', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'debug', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'dense', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'dense', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'full_skip', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'json', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'minimal', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'null', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'oneline', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'selective', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'skippy', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'stderr', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'unixy', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 Skipping callback 'yaml', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 PLAYBOOK: trust_present.yml **************************************************** DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 1 plays in trust_present.yml DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 PLAY [Playbook to ensure trust is present with range type ipa-ad-trust-posix.] *** DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 TASK [Gathering Facts] ********************************************************* DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 task path: /root/trust_present.yml:2 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 ok: [master.ipadomain.test] DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 TASK [ipatrust] **************************************************************** DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 task path: /root/trust_present.yml:7 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 changed: [master.ipadomain.test] => {"changed": true} DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 PLAY RECAP ********************************************************************* DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 master.ipadomain.test : ok=2 changed=1 unreachable=0 failed=0 skipped=0 rescued=0 ignored=0 DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:563 DEBUG paramiko.transport:channel.py:1212 [chan 11] EOF received (11) DEBUG paramiko.transport:channel.py:1212 [chan 11] EOF sent (11) DEBUG pytest_multihost.host.Host.ansible.cmd11:transport.py:217 Exit code: 0 DEBUG paramiko.transport:channel.py:1212 [chan 15] Max packet in: 32768 bytes DEBUG paramiko.transport:channel.py:1212 [chan 15] Max packet out: 32768 bytes DEBUG paramiko.transport:transport.py:1819 Secsh channel 15 opened. INFO pytest_multihost.host.Host.master.ParamikoTransport:transport.py:318 RUN ['kinit', 'admin'] DEBUG pytest_multihost.host.Host.master.cmd15:transport.py:519 RUN ['kinit', 'admin'] DEBUG paramiko.transport:channel.py:1212 [chan 15] Sesch channel 15 request ok DEBUG pytest_multihost.host.Host.master.cmd15:transport.py:563 -bash: line 1: cd: /root/multihost_tests: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd15:transport.py:563 -bash: line 2: /root/multihost_tests/env.sh: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd15:transport.py:563 Password for admin: DEBUG paramiko.transport:channel.py:1212 [chan 15] EOF received (15) DEBUG paramiko.transport:channel.py:1212 [chan 15] EOF sent (15) DEBUG pytest_multihost.host.Host.master.cmd15:transport.py:217 Exit code: 0 DEBUG paramiko.transport:channel.py:1212 [chan 16] Max packet in: 32768 bytes DEBUG paramiko.transport:channel.py:1212 [chan 16] Max packet out: 32768 bytes DEBUG paramiko.transport:transport.py:1819 Secsh channel 16 opened. INFO pytest_multihost.host.Host.master.ParamikoTransport:transport.py:318 RUN ['ipa', 'idrange-show', 'WIN2019.TEST_id_range', '--all'] DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:519 RUN ['ipa', 'idrange-show', 'WIN2019.TEST_id_range', '--all'] DEBUG paramiko.transport:channel.py:1212 [chan 16] Sesch channel 16 request ok DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 -bash: line 1: cd: /root/multihost_tests: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 -bash: line 2: /root/multihost_tests/env.sh: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 dn: cn=WIN2019.TEST_id_range,cn=ranges,cn=etc,dc=ipadomain,dc=test DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 Range name: WIN2019.TEST_id_range DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 First Posix ID of the range: 103200000 DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 Number of IDs in the range: 200000 DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 Domain SID of the trusted domain: S-1-5-21-1929533626-2573031429-53076769 DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 Range type: Active Directory trust range with POSIX attributes DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 iparangetyperaw: ipa-ad-trust-posix DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:563 objectclass: ipaIDrange, ipatrustedaddomainrange DEBUG paramiko.transport:channel.py:1212 [chan 16] EOF received (16) DEBUG paramiko.transport:channel.py:1212 [chan 16] EOF sent (16) DEBUG pytest_multihost.host.Host.master.cmd16:transport.py:217 Exit code: 0 INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:293 WRITE inventory/trust.hosts DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'inventory/trust.hosts', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'inventory/trust.hosts', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:329 PUT trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] stat(b'trust_present.yml') DEBUG pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:284 READ trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'rb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'rb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:293 WRITE trust_present.yml DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] open(b'trust_present.yml', 'wb') -> 00000000 DEBUG paramiko.transport.sftp:sftp.py:158 [chan 0] close(00000000) DEBUG paramiko.transport:channel.py:1212 [chan 12] Max packet in: 32768 bytes DEBUG paramiko.transport:channel.py:1212 [chan 12] Max packet out: 32768 bytes DEBUG paramiko.transport:transport.py:1819 Secsh channel 12 opened. INFO pytest_multihost.host.Host.ansible.ParamikoTransport:transport.py:318 RUN ['ansible-playbook', '--ssh-extra-args="-o StrictHostKeyChecking=no"', '-vv', '-i', 'inventory/trust.hosts', 'trust_present.yml'] DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:519 RUN ['ansible-playbook', '--ssh-extra-args="-o StrictHostKeyChecking=no"', '-vv', '-i', 'inventory/trust.hosts', 'trust_present.yml'] DEBUG paramiko.transport:channel.py:1212 [chan 12] Sesch channel 12 request ok DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 -bash: line 1: cd: /root/multihost_tests: No such file or directory DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 -bash: line 2: /root/multihost_tests/env.sh: No such file or directory DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 ansible-playbook 2.9.27 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 config file = /etc/ansible/ansible.cfg DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 ansible python module location = /usr/lib/python3.6/site-packages/ansible DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 executable location = /usr/bin/ansible-playbook DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 python version = 3.6.8 (default, Jun 14 2022, 12:54:58) [GCC 8.5.0 20210514 (Red Hat 8.5.0-10)] DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Using /etc/ansible/ansible.cfg as config file DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'actionable', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'counter_enabled', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'debug', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'dense', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'dense', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'full_skip', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'json', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'minimal', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'null', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'oneline', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'selective', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'skippy', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'stderr', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'unixy', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 Skipping callback 'yaml', as we already have a stdout callback. DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 PLAYBOOK: trust_present.yml **************************************************** DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 1 plays in trust_present.yml DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 PLAY [Playbook to ensure trust is absent.] ************************************* DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 TASK [Gathering Facts] ********************************************************* DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 task path: /root/trust_present.yml:2 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 ok: [master.ipadomain.test] DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 TASK [ipatrust] **************************************************************** DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 task path: /root/trust_present.yml:7 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 changed: [master.ipadomain.test] => {"changed": true} DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 META: ran handlers DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 PLAY RECAP ********************************************************************* DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 master.ipadomain.test : ok=2 changed=1 unreachable=0 failed=0 skipped=0 rescued=0 ignored=0 DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:563 DEBUG paramiko.transport:channel.py:1212 [chan 12] EOF received (12) DEBUG paramiko.transport:channel.py:1212 [chan 12] EOF sent (12) DEBUG pytest_multihost.host.Host.ansible.cmd12:transport.py:217 Exit code: 0 DEBUG paramiko.transport:channel.py:1212 [chan 17] Max packet in: 32768 bytes DEBUG paramiko.transport:channel.py:1212 [chan 17] Max packet out: 32768 bytes DEBUG paramiko.transport:transport.py:1819 Secsh channel 17 opened. INFO pytest_multihost.host.Host.master.ParamikoTransport:transport.py:318 RUN ['ipa', 'idrange-del', 'WIN2019.TEST_id_range'] DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:519 RUN ['ipa', 'idrange-del', 'WIN2019.TEST_id_range'] DEBUG paramiko.transport:channel.py:1212 [chan 17] Sesch channel 17 request ok DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:563 -bash: line 1: cd: /root/multihost_tests: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:563 -bash: line 2: /root/multihost_tests/env.sh: No such file or directory DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:563 ---------------------------------------- DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:563 Deleted ID range "WIN2019.TEST_id_range" DEBUG pytest_multihost.host.Host.master.cmd17:transport.py:563 ---------------------------------------- Based on the test result, marking the bug Verified