2025-10-01T08:13:02Z INFO This program will set up FreeIPA client. 2025-10-01T08:13:02Z INFO Version 4.10.1 2025-10-01T08:13:02Z INFO 2025-10-01T08:13:02Z DEBUG Starting external process 2025-10-01T08:13:02Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:02Z DEBUG Process finished, return code=0 2025-10-01T08:13:02Z DEBUG stdout= 2025-10-01T08:13:02Z DEBUG stderr= 2025-10-01T08:13:02Z DEBUG Starting external process 2025-10-01T08:13:02Z DEBUG args=['/bin/systemctl', 'is-enabled', 'ntpd.service'] 2025-10-01T08:13:02Z DEBUG Process finished, return code=1 2025-10-01T08:13:02Z DEBUG stdout= 2025-10-01T08:13:02Z DEBUG stderr=Failed to get unit file state for ntpd.service: No such file or directory 2025-10-01T08:13:02Z DEBUG Starting external process 2025-10-01T08:13:02Z DEBUG args=['/bin/systemctl', 'is-active', 'ntpd.service'] 2025-10-01T08:13:02Z DEBUG Process finished, return code=3 2025-10-01T08:13:02Z DEBUG stdout=inactive 2025-10-01T08:13:02Z DEBUG stderr= 2025-10-01T08:13:02Z DEBUG Starting external process 2025-10-01T08:13:02Z DEBUG args=['/bin/systemctl', 'is-enabled', 'systemd-timesyncd.service'] 2025-10-01T08:13:02Z DEBUG Process finished, return code=1 2025-10-01T08:13:02Z DEBUG stdout= 2025-10-01T08:13:02Z DEBUG stderr=Failed to get unit file state for systemd-timesyncd.service: No such file or directory 2025-10-01T08:13:02Z DEBUG Starting external process 2025-10-01T08:13:02Z DEBUG args=['/bin/systemctl', 'is-active', 'systemd-timesyncd.service'] 2025-10-01T08:13:02Z DEBUG Process finished, return code=3 2025-10-01T08:13:02Z DEBUG stdout=inactive 2025-10-01T08:13:02Z DEBUG stderr= 2025-10-01T08:13:02Z DEBUG Deleting invalid keytab: '/etc/krb5.keytab'. 2025-10-01T08:13:02Z DEBUG [IPA Discovery] 2025-10-01T08:13:02Z DEBUG Starting IPA discovery with domain=ooo.test, servers=['ipa.ooo.test'], hostname=np0005463866.ooo.test 2025-10-01T08:13:02Z DEBUG Server and domain forced 2025-10-01T08:13:02Z DEBUG [Kerberos realm search] 2025-10-01T08:13:02Z DEBUG Search DNS for TXT record of _kerberos.ooo.test 2025-10-01T08:13:02Z DEBUG DNS record found: "OOO.TEST" 2025-10-01T08:13:02Z DEBUG [LDAP server check] 2025-10-01T08:13:02Z DEBUG Verifying that ipa.ooo.test (realm OOO.TEST) is an IPA server 2025-10-01T08:13:02Z DEBUG Init LDAP connection to: ldap://ipa.ooo.test:389 2025-10-01T08:13:02Z DEBUG Search LDAP server for IPA base DN 2025-10-01T08:13:02Z DEBUG Check if naming context 'dc=ooo,dc=test' is for IPA 2025-10-01T08:13:02Z DEBUG Naming context 'dc=ooo,dc=test' is a valid IPA context 2025-10-01T08:13:02Z DEBUG Search for (objectClass=krbRealmContainer) in dc=ooo,dc=test (sub) 2025-10-01T08:13:02Z DEBUG Found: cn=OOO.TEST,cn=kerberos,dc=ooo,dc=test 2025-10-01T08:13:02Z DEBUG Discovery result: Success; server=ipa.ooo.test, domain=ooo.test, kdc=ipa.ooo.test, basedn=dc=ooo,dc=test 2025-10-01T08:13:02Z DEBUG Validated servers: ipa.ooo.test 2025-10-01T08:13:02Z DEBUG will use discovered domain: ooo.test 2025-10-01T08:13:02Z DEBUG Using servers from command line, disabling DNS discovery 2025-10-01T08:13:02Z DEBUG will use provided server: ipa.ooo.test 2025-10-01T08:13:02Z DEBUG will use discovered realm: OOO.TEST 2025-10-01T08:13:02Z DEBUG will use discovered basedn: dc=ooo,dc=test 2025-10-01T08:13:02Z INFO Client hostname: np0005463866.ooo.test 2025-10-01T08:13:02Z DEBUG Hostname source: Provided as option 2025-10-01T08:13:02Z INFO Realm: OOO.TEST 2025-10-01T08:13:02Z DEBUG Realm source: Discovered from LDAP DNS records in ipa.ooo.test 2025-10-01T08:13:02Z INFO DNS Domain: ooo.test 2025-10-01T08:13:02Z DEBUG DNS Domain source: Forced 2025-10-01T08:13:02Z INFO IPA Server: ipa.ooo.test 2025-10-01T08:13:02Z DEBUG IPA Server source: Provided as option 2025-10-01T08:13:02Z INFO BaseDN: dc=ooo,dc=test 2025-10-01T08:13:02Z DEBUG BaseDN source: From IPA server ldap://ipa.ooo.test:389 2025-10-01T08:13:04Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:04Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-enabled', 'ntpd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=1 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr=Failed to get unit file state for ntpd.service: No such file or directory 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-active', 'ntpd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=3 2025-10-01T08:13:04Z DEBUG stdout=inactive 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-enabled', 'systemd-timesyncd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=1 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr=Failed to get unit file state for systemd-timesyncd.service: No such file or directory 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-active', 'systemd-timesyncd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=3 2025-10-01T08:13:04Z DEBUG stdout=inactive 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z INFO Synchronizing time 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-enabled', 'chronyd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout=enabled 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:04Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:04Z DEBUG Configuring chrony 2025-10-01T08:13:04Z DEBUG Setting time servers: 2025-10-01T08:13:04Z DEBUG '' 2025-10-01T08:13:04Z DEBUG Backing up '/etc/chrony.conf' 2025-10-01T08:13:04Z DEBUG Backing up system configuration file '/etc/chrony.conf' 2025-10-01T08:13:04Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:04Z DEBUG Writing configuration to '/etc/chrony.conf' 2025-10-01T08:13:04Z ERROR Augeas failed to configure file /etc/chrony.conf 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/sbin/restorecon', '/etc/chrony.conf'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'enable', 'chronyd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'restart', 'chronyd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout= 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/bin/systemctl', 'is-active', 'chronyd.service'] 2025-10-01T08:13:04Z DEBUG Process finished, return code=0 2025-10-01T08:13:04Z DEBUG stdout=active 2025-10-01T08:13:04Z DEBUG stderr= 2025-10-01T08:13:04Z DEBUG Restart of chronyd.service complete 2025-10-01T08:13:04Z INFO Attempting to sync time with chronyc. 2025-10-01T08:13:04Z DEBUG Starting external process 2025-10-01T08:13:04Z DEBUG args=['/usr/bin/chronyc', '-d', 'waitsync', '4', '0', '0', '3'] 2025-10-01T08:13:13Z DEBUG Process finished, return code=0 2025-10-01T08:13:13Z DEBUG stdout=try: 1, refid: 00000000, correction: 0.000000000, skew: 0.000 try: 2, refid: 00000000, correction: 0.000000000, skew: 0.000 try: 3, refid: 00000000, correction: 0.000000000, skew: 0.000 try: 4, refid: 1785A8F4, correction: 0.000015877, skew: 0.174 2025-10-01T08:13:13Z DEBUG stderr=Resolved 127.0.0.1 to 127.0.0.1 Resolved ::1 to ::1 Could not remove /run/chrony/chronyc.38772.sock : No such file or directory Opened Unix socket fd=3 remote=/run/chrony/chronyd.sock local=/run/chrony/chronyc.38772.sock Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 2025-10-01T08:13:13Z INFO Time synchronization was successful. 2025-10-01T08:13:14Z DEBUG Initializing principal host/np0005463866.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-01T08:13:14Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-01T08:13:14Z DEBUG Starting external process 2025-10-01T08:13:14Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:14Z DEBUG Process finished, return code=0 2025-10-01T08:13:14Z DEBUG stdout= 2025-10-01T08:13:14Z DEBUG stderr= 2025-10-01T08:13:14Z DEBUG Starting external process 2025-10-01T08:13:14Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-01T08:13:14Z DEBUG Process finished, return code=0 2025-10-01T08:13:14Z DEBUG stdout= 2025-10-01T08:13:14Z DEBUG stderr= 2025-10-01T08:13:14Z DEBUG Starting external process 2025-10-01T08:13:14Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-01T08:13:14Z DEBUG Process finished, return code=0 2025-10-01T08:13:14Z DEBUG stdout=342931890 2025-10-01T08:13:14Z DEBUG stderr= 2025-10-01T08:13:14Z DEBUG Enabling persistent keyring CCACHE 2025-10-01T08:13:14Z DEBUG Writing Kerberos configuration to /tmp/tmpbf9nkz0d: 2025-10-01T08:13:14Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:14Z DEBUG Writing configuration file /tmp/tmpbf9nkz0d 2025-10-01T08:13:14Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:14Z DEBUG Initializing principal host/np0005463866.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-01T08:13:14Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-01T08:13:16Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:16Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:16Z DEBUG Backing up system configuration file '/etc/hostname' 2025-10-01T08:13:16Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:16Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:16Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:16Z DEBUG Starting external process 2025-10-01T08:13:16Z DEBUG args=['/bin/hostnamectl', 'set-hostname', 'np0005463866.ooo.test'] 2025-10-01T08:13:16Z DEBUG Process finished, return code=0 2025-10-01T08:13:16Z DEBUG stdout= 2025-10-01T08:13:16Z DEBUG stderr= 2025-10-01T08:13:17Z DEBUG Starting external process 2025-10-01T08:13:17Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:17Z DEBUG Process finished, return code=0 2025-10-01T08:13:17Z DEBUG stdout= 2025-10-01T08:13:17Z DEBUG stderr= 2025-10-01T08:13:17Z DEBUG Starting external process 2025-10-01T08:13:17Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-01T08:13:17Z DEBUG Process finished, return code=0 2025-10-01T08:13:17Z DEBUG stdout= 2025-10-01T08:13:17Z DEBUG stderr= 2025-10-01T08:13:17Z DEBUG Starting external process 2025-10-01T08:13:17Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-01T08:13:17Z DEBUG Process finished, return code=0 2025-10-01T08:13:17Z DEBUG stdout=342931890 2025-10-01T08:13:17Z DEBUG stderr= 2025-10-01T08:13:17Z DEBUG Enabling persistent keyring CCACHE 2025-10-01T08:13:17Z DEBUG Writing Kerberos configuration to /tmp/tmpo89ehhzb: 2025-10-01T08:13:17Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:17Z DEBUG Writing configuration file /tmp/tmpo89ehhzb 2025-10-01T08:13:17Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:18Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:18Z WARNING Downloading the CA certificate via HTTP, this is INSECURE 2025-10-01T08:13:18Z DEBUG trying to retrieve CA cert via HTTP from http://ipa.ooo.test/ipa/config/ca.crt 2025-10-01T08:13:18Z DEBUG Starting external process 2025-10-01T08:13:18Z DEBUG args=['/usr/bin/curl', '-o', '-', 'http://ipa.ooo.test/ipa/config/ca.crt'] 2025-10-01T08:13:18Z DEBUG Process finished, return code=0 2025-10-01T08:13:18Z DEBUG stdout=-----BEGIN CERTIFICATE----- MIIERDCCAqygAwIBAgIBATANBgkqhkiG9w0BAQsFADAzMREwDwYDVQQKDAhPT08u VEVTVDEeMBwGA1UEAwwVQ2VydGlmaWNhdGUgQXV0aG9yaXR5MB4XDTI1MTAwMTA3 NTY1M1oXDTQ1MTAwMTA3NTY1M1owMzERMA8GA1UECgwIT09PLlRFU1QxHjAcBgNV BAMMFUNlcnRpZmljYXRlIEF1dGhvcml0eTCCAaIwDQYJKoZIhvcNAQEBBQADggGP ADCCAYoCggGBAKUIaANS9ijETMXk1zUSZhUsbnrastx/JBz+GlEyUUfTLTpQ1QEA +x/0ljIvyxEHpFndwZ0mTfqjhdj/jVDQL+Qng8Ovuv/6ZeailHqhB5RJICOmgPqw E3LyDNHOIZqoo7X4nWeqHcGFKWoR1Xp0w6g7JTaGBliU8phfYMpKTCWqKIOt5n/Z 2TAzMab5MfcajwQdIh74dpip84WMwgT9u/dwPhn3BroK4Noqe5gNanj2LdGguE37 1XHusoB/xEMvvG+Okx62SeZyPdAYUg099vKyZMCIkhiwZCjVesgKUCFRa2dZEkv7 4tL9wZRV9YzgDuI3JXGeze4JWU5mA6+ueZjkE+G5LbF5RWZr7+PikWkJP+VCGugd 02foUh7eDYGkQukdckYktM+CazmXRK0K+vtv/irrHI8X8YCUIsfInl3IpRhDLtzX HVKi8F6f/E6gklVmxLSVR/0z119S/svGErW2UY7rF+M7Uk/Zet1MIVWw/wPdXjxs IssTlTkud8kJBQIDAQABo2MwYTAdBgNVHQ4EFgQUlWOxzcZWZK1QgTXupxHylCqi hLAwHwYDVR0jBBgwFoAUlWOxzcZWZK1QgTXupxHylCqihLAwDwYDVR0TAQH/BAUw AwEB/zAOBgNVHQ8BAf8EBAMCAcYwDQYJKoZIhvcNAQELBQADggGBAEgfzMVfZfRl 9QxpxnqRNRL0j7VH4f1kwx0Iz32pjdl/cK232vfGGkJ0bf8cJlnjDVueWoevdaOk BVNorFhqBhpMmxDgtSE2UV58K/uqB0N9YhXGJYXvjlmkXGdPjV1+7xC0O4AAw28R OI+E5uDuPa40pn+O24ltzVT4hJg7DNYScEQQRV9/ZnBwr4AL41GP2v6dDhzSEZ7b mdAqZ49g9Kc++Udm13Sv/O3gMoYN2Xa8yD7xQWhOKSJNZhg4r6v5vLNKiMieuYE6 6DjT+7HlGcLcjAMoizpodQk+vDXeoFMPZbt0KqTdzpS1T9duqt7RkdLrVyZOvigW 0woPspT1+IwbrOgbYTfqzbyA0ovZ21509Vwa28MJNSzRfFsR4lhdjscI536P9BF2 MV6kdPlg4eOQ9KMtDd1Nn+9osd8LCioLvOCf1Pjr1o9aMhop9kypkmEAgDsXV+/0 AcprdiohQHvxmFCe6RXMBKk9CqWahPByPDeMSs/nnuW+FeQCiMPTgg== -----END CERTIFICATE----- 2025-10-01T08:13:18Z DEBUG stderr= % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 100 1541 100 1541 0 0 752k 0 --:--:-- --:--:-- --:--:-- 752k 2025-10-01T08:13:18Z INFO Successfully retrieved CA cert Subject: CN=Certificate Authority,O=OOO.TEST Issuer: CN=Certificate Authority,O=OOO.TEST Valid From: 2025-10-01 07:56:53 Valid Until: 2045-10-01 07:56:53 2025-10-01T08:13:18Z DEBUG Starting external process 2025-10-01T08:13:18Z DEBUG args=['/usr/sbin/ipa-join', '-s', 'ipa.ooo.test', '-b', 'dc=ooo,dc=test', '-h', 'np0005463866.ooo.test', '-w', XXXXXXXX] 2025-10-01T08:13:18Z DEBUG Process finished, return code=0 2025-10-01T08:13:18Z DEBUG stdout= 2025-10-01T08:13:18Z DEBUG stderr=Keytab successfully retrieved and stored in: /etc/krb5.keytab 2025-10-01T08:13:18Z DEBUG Initializing principal host/np0005463866.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-01T08:13:18Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-01T08:13:18Z DEBUG Attempt 1/5: success 2025-10-01T08:13:19Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:19Z DEBUG Backing up system configuration file '/etc/ipa/default.conf' 2025-10-01T08:13:19Z DEBUG -> Not backing up - '/etc/ipa/default.conf' doesn't exist 2025-10-01T08:13:19Z DEBUG Writing configuration file /etc/ipa/default.conf 2025-10-01T08:13:19Z DEBUG #File modified by ipa-client-install [global] basedn = dc=ooo,dc=test realm = OOO.TEST domain = ooo.test server = ipa.ooo.test host = np0005463866.ooo.test xmlrpc_uri = https://ipa.ooo.test/ipa/xml enable_ra = True 2025-10-01T08:13:20Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:20Z DEBUG New SSSD config will be created 2025-10-01T08:13:20Z INFO Configured /etc/sssd/sssd.conf 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/bin/certutil', '-d', '/tmp/tmp43o2lcpf', '-N', '-f', '/tmp/tmp43o2lcpf/pwdfile.txt', '-@', '/tmp/tmp43o2lcpf/pwdfile.txt'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmp43o2lcpf'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout=Warning no default label for /tmp/tmp43o2lcpf 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmp43o2lcpf/cert9.db'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout=Warning no default label for /tmp/tmp43o2lcpf/cert9.db 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmp43o2lcpf/key4.db'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout=Warning no default label for /tmp/tmp43o2lcpf/key4.db 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmp43o2lcpf/pkcs11.txt'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout=Warning no default label for /tmp/tmp43o2lcpf/pkcs11.txt 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmp43o2lcpf/pwdfile.txt'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout=Warning no default label for /tmp/tmp43o2lcpf/pwdfile.txt 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG Starting external process 2025-10-01T08:13:21Z DEBUG args=['/usr/bin/certutil', '-d', 'sql:/tmp/tmp43o2lcpf', '-A', '-n', 'CA certificate 1', '-t', 'C,,', '-a', '-f', '/tmp/tmp43o2lcpf/pwdfile.txt'] 2025-10-01T08:13:21Z DEBUG Process finished, return code=0 2025-10-01T08:13:21Z DEBUG stdout= 2025-10-01T08:13:21Z DEBUG stderr= 2025-10-01T08:13:21Z DEBUG failed to find session_cookie in persistent storage for principal 'host/np0005463866.ooo.test@OOO.TEST' 2025-10-01T08:13:21Z DEBUG trying https://ipa.ooo.test/ipa/json 2025-10-01T08:13:21Z DEBUG Created connection context.rpcclient_139913024491376 2025-10-01T08:13:21Z DEBUG [try 1]: Forwarding 'schema' to json server 'https://ipa.ooo.test/ipa/json' 2025-10-01T08:13:21Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-01T08:13:21Z DEBUG received Set-Cookie ()'['ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d;path=/ipa;httponly;secure;']' 2025-10-01T08:13:21Z DEBUG storing cookie 'ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d;' for principal host/np0005463866.ooo.test@OOO.TEST 2025-10-01T08:13:21Z DEBUG Destroyed connection context.rpcclient_139913024491376 2025-10-01T08:13:21Z DEBUG importing all plugin modules in ipaclient.remote_plugins.schema$0380a493... 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.remote_plugins.schema$0380a493.plugins 2025-10-01T08:13:21Z DEBUG importing all plugin modules in ipaclient.plugins... 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.automember 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.automount 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.ca 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.cert 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.certmap 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.certprofile 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.dns 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.hbacrule 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.hbactest 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.host 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.idrange 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.internal 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.location 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.migration 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.misc 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.otptoken 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.otptoken_yubikey 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.passwd 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.permission 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.rpcclient 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.server 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.service 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.sudorule 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.topology 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.trust 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.user 2025-10-01T08:13:21Z DEBUG importing plugin module ipaclient.plugins.vault 2025-10-01T08:13:22Z DEBUG found session_cookie in persistent storage for principal 'host/np0005463866.ooo.test@OOO.TEST', cookie: 'ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d' 2025-10-01T08:13:22Z DEBUG setting session_cookie into context 'ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d;' 2025-10-01T08:13:22Z DEBUG trying https://ipa.ooo.test/ipa/session/json 2025-10-01T08:13:22Z DEBUG Created connection context.rpcclient_139913008508736 2025-10-01T08:13:22Z DEBUG [try 1]: Forwarding 'ping' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-01T08:13:22Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-01T08:13:22Z DEBUG [try 1]: Forwarding 'ca_is_enabled' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-01T08:13:22Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-01T08:13:22Z DEBUG raw: config_show(version='2.251') 2025-10-01T08:13:22Z DEBUG config_show(version='2.251') 2025-10-01T08:13:22Z DEBUG [try 1]: Forwarding 'config_show/1' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-01T08:13:22Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-01T08:13:23Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:23Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:23Z DEBUG importing all plugin modules in ipaclient.remote_plugins.schema$0380a493... 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.remote_plugins.schema$0380a493.plugins 2025-10-01T08:13:23Z DEBUG importing all plugin modules in ipaclient.plugins... 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.automember 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.automount 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.ca 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.cert 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.certmap 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.certprofile 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.dns 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.hbacrule 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.hbactest 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.host 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.idrange 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.internal 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.location 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.migration 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.misc 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.otptoken 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.otptoken_yubikey 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.passwd 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.permission 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.rpcclient 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.server 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.service 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.sudorule 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.topology 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.trust 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.user 2025-10-01T08:13:23Z DEBUG importing plugin module ipaclient.plugins.vault 2025-10-01T08:13:24Z DEBUG found session_cookie in persistent storage for principal 'host/np0005463866.ooo.test@OOO.TEST', cookie: 'ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d' 2025-10-01T08:13:24Z DEBUG setting session_cookie into context 'ipa_session=MagBearerToken=3Xb2f1C1ly5gcMPGtlZPhp8OB%2bgpeRATF%2fwp3QqGbQT%2f3z1w%2bRazi3X69YGAX3jbFsZylx9%2fSd4cPw0S3z2Elygth5pU0C08Z0BJdgunArKgkm4RBpN7kcs9OEzottYdTQwUMfDUO9xAwX7Bil%2fd8v1Wmgmu3codV5jpCSh8c1IpPd7efkqMayVqeGg4HXtCoC3EtcDm48P%2fYEMPh%2bCUvWdEsNaeerXq%2fSjmTfo%2frX6AO9PuL4r4wRDarcCCgNJLi5HpsFwRSpGVtso7%2bLhApQ%3d%3d;' 2025-10-01T08:13:24Z DEBUG trying https://ipa.ooo.test/ipa/session/json 2025-10-01T08:13:24Z DEBUG Created connection context.rpcclient_140253363774128 2025-10-01T08:13:24Z DEBUG [try 1]: Forwarding 'ping' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-01T08:13:24Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/bin/certutil', '-d', '/etc/ipa/nssdb', '-N', '-f', '/etc/ipa/nssdb/pwdfile.txt', '-@', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/cert9.db'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/key4.db'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/pkcs11.txt'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-01T08:13:24Z DEBUG Process finished, return code=0 2025-10-01T08:13:24Z DEBUG stdout= 2025-10-01T08:13:24Z DEBUG stderr= 2025-10-01T08:13:24Z DEBUG retrieving schema for SchemaCache url=ldap://ipa.ooo.test:389 conn= 2025-10-01T08:13:24Z DEBUG Adding CA certificates to the IPA NSS database. 2025-10-01T08:13:24Z DEBUG Starting external process 2025-10-01T08:13:24Z DEBUG args=['/usr/bin/certutil', '-d', 'sql:/etc/ipa/nssdb', '-A', '-n', 'OOO.TEST IPA CA', '-t', 'CT,C,C', '-a', '-f', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-01T08:13:25Z DEBUG Process finished, return code=0 2025-10-01T08:13:25Z DEBUG stdout= 2025-10-01T08:13:25Z DEBUG stderr= 2025-10-01T08:13:25Z DEBUG Starting external process 2025-10-01T08:13:25Z DEBUG args=['/usr/bin/update-ca-trust'] 2025-10-01T08:13:25Z DEBUG Process finished, return code=0 2025-10-01T08:13:25Z DEBUG stdout= 2025-10-01T08:13:25Z DEBUG stderr= 2025-10-01T08:13:25Z INFO Systemwide CA database updated. 2025-10-01T08:13:25Z DEBUG The DNS query name does not exist: np0005463866.ooo.test. 2025-10-01T08:13:25Z WARNING Hostname (np0005463866.ooo.test) does not have A/AAAA record. 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use loopback IP address 127.0.0.1 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use loopback IP address ::1 2025-10-01T08:13:25Z DEBUG IP check successful: 38.102.83.176 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fe66:4953%eth0 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fed8:f304%eth1 2025-10-01T08:13:25Z DEBUG IP check successful: 192.168.122.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fed8:f304%br-ex 2025-10-01T08:13:25Z DEBUG IP check successful: 172.17.0.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::74f4:4aff:fe31:62fe%vlan20 2025-10-01T08:13:25Z DEBUG IP check successful: 172.21.0.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::fc13:9bff:feef:81b4%vlan44 2025-10-01T08:13:25Z DEBUG IP check successful: 172.19.0.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::802c:c2ff:fedf:4fee%vlan22 2025-10-01T08:13:25Z DEBUG IP check successful: 172.18.0.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::8c9b:93ff:fe42:dcc3%vlan21 2025-10-01T08:13:25Z DEBUG IP check successful: 172.20.0.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::3ccb:24ff:feec:525f%vlan23 2025-10-01T08:13:25Z DEBUG IP check successful: 192.168.122.104 2025-10-01T08:13:25Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fed8:f304%br-ex 2025-10-01T08:13:25Z DEBUG Searching for an interface of IP address: 192.168.122.104 2025-10-01T08:13:25Z DEBUG Testing local IP address: 127.0.0.1/255.0.0.0 (interface: lo) 2025-10-01T08:13:25Z DEBUG Testing local IP address: 38.102.83.176/255.255.255.0 (interface: eth0) 2025-10-01T08:13:25Z DEBUG Testing local IP address: 192.168.122.104/255.255.255.0 (interface: br-ex) 2025-10-01T08:13:25Z DEBUG Writing nsupdate commands to /etc/ipa/.dns_update.txt: 2025-10-01T08:13:25Z DEBUG debug update delete np0005463866.ooo.test. IN A show send update delete np0005463866.ooo.test. IN AAAA show send update add np0005463866.ooo.test. 1200 IN A 192.168.122.104 show send 2025-10-01T08:13:25Z DEBUG Starting external process 2025-10-01T08:13:25Z DEBUG args=['/usr/bin/nsupdate', '-g', '/etc/ipa/.dns_update.txt'] 2025-10-01T08:13:26Z DEBUG Process finished, return code=0 2025-10-01T08:13:26Z DEBUG stdout=Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY A Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 786 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3851122836.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 3851122836.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759306405 3 NOERROR 1791 YIIG+wYGKwYBBQUCoIIG7zCCBuugDTALBgkqhkiG9xIBAgKiggbYBIIG 1GCCBtAGCSqGSIb3EgECAgEAboIGvzCCBrugAwIBBaEDAgEOogcDBQAg AAAAo4IFwGGCBbwwggW4oAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBYMwggV/oAMCARKhAwIBAqKC BXEEggVteu0zo2Ya1IvHHl1MWKrv6jZSaD6RpCulH99JlOfWDJ2w5HK7 cZJ8YwfvGwDK4xWJhwitdttjINu+yP7oW/wjeFM5U/XIjMOejxGzC/p7 4JrhEznNBDEbgGMAe8p/w/i4YrU5gwswIWtKVcfhHBXNcxa4CFwek7w2 curHTyAzysrmlJvuQhGzAuKiKEZLc6XnvbupeaOdOdIgpBsznSXA7ID+ 8ixu3fG+ldTF19apncbqQFK16xI3yYTY2mu5S33mSXgl2Xe5vHy7YfJ1 l8Iqpn1PJjKPA1ekhsMJrPB0TgHlazDdOSTWXtqe1FlAx9dUlcEzbSoA oTCKPySWgF+QhqgmD2QtyByLiNzBhxI8StJvEk4SubDb8Er4UPozYfmY PVfz1Yz7EJBskYDfIq3IRiY6DPB2F15kP0CgIXuAloAYu6V4IULcTDBR G2NtjL3g86DozYoVGsQLENZa0NP6ZfNJ+kDQ4vMi6OeUgDpx55VzyqJ/ MZR8JGr10UKfgKkB49k9t2SZ4J0gl4oFjbliwnyY2gqQ/fgl4ZkbsZRO 0/VCKZ6z8VxSGnhDiVe6N3YrNxCBDlL+SFqlULVwDpwoUvMd339Zw1Ys 7t1CQfYI5GDZDOMbyuVBQ8LK0u6FPQxXV08nj2F9KYxvZ+r6YrpDW3tP 1XkiXgSdkdgByPA4Bqa8+B67vRslKblKhoaVlvPOj3y8YWNbPBWntmpt U99RELCAIPLvdAkTIkyuyj6FDQLBF62XfjrFotiSlz4re19YIdGG2trV iS/7QMjZGG8fSB4sHvJUfY+iQLNHAUQGMGEdJVyNf/CgwL5dH/mnXZR8 q3E/nUVWXIxuMmanoWO4XrCvuBKB4Zm4LmlVv+rPLvRr6b32q70oHelg vvJhJHCkyXrDzHP0nkXzs1KWCJZHxHdX5MxbgXEoSMCG8ltvJaatB3LT 9Xobjk/r3vC4adkDeMYQM9e6PMh5nOseow1aHHg4oMHh/xp/Ftw2Iq0I bNXBgOO7lmjRvzM+0CGn0gK0j07Ycy+8L8N0TaITuSorZQGX8VT2T753 t+bw+aV/OL99Fssoph1vbUqjgRS2gzMnIriSHyCOOIiRo38nqxMd/tMj ygcPMmhtQnRhEG3qFhsZLKi9UhkTbax0gnG5eIBIZVoD5E5l0MF//ytI BuskqPWQdfuvJpp5ULq3e9/aFPKy+B4iGMk5E81WwSsUIIbxEsSczIJQ /WHC9oGVyA02Fx7JcWugMphCxVm1StLJo/1fKprS7RMc8C40QL0hvFkm 4N2k5FtN8Kxk/c5aI/nNI9Tg1s/5Dg/J+cHWDpzzIYvDuKf6exOzAkYe Qs8Mf1QiBkiw4hrn0MzamyW/zqHdd18/Q81kjsYF8uNmmllwXn6dKYXw Oy3eA7QpvykYt2ilG7nsnCIE/1SArUdl/LKKBMF+h+ujOcuar476h385 kF97eMHkXs3LLqelio0pRJOAs4Jwi0SgqwXv6/rU+xmN/lrD3RK2kL+G W4AZl50u/FcdlYkBlVHgEMc7+9dqzY4Eu6UPtSQd1ubZ4S7SyYfZAA8Z eOvvo50jMfJwKp8d3JfA4D+niXWUP5S4b6Tw30UnRHE4q+3flx47evmE WcBzmgm40J+zqgoNNKAUNwtTPCN44m83OeL7gYF9ZmebABdPq4PGSKKo QlCQcU3FJb2tGkOcx4dWrOPTjgt74TY85NGKk+IPwv0n7Tt4VN4BIzXC ShUzjZk/uGQYn5dPUNMYz6beO/gJi1lhbMSZ4nhQKMzt4/9L7uQWk/06 TyjG6a6uvCdisvUOCCl8abQRjLNfP/12LiTGXFeMwzViIvzm5km1qcYW 5uLu+55PKV8ppIHhMIHeoAMCARKigdYEgdM9ahTP5DYywR74nJHl36kN YKGr/YKzbnfqX1piIkWg4eoipIyUgYhOTJ1u5EmYFTz49dhRG6YGVaZz HXnPhmDBeiSutdfhjtAbcoNr1INTMlMizHRmBzBakOBVOojH9Wlb5Lub rUSjSu7jzleIYEzDTULTatjHIeb9vkf9ZhdPwhobmESWIrOdklrHE6lo Gy7f++/8MbrVP/dNNj+IItNqFDxu2DK1B2574DETTSBaYogU8OquOP7w YXkSDTk2gh6yoUGo2/4cEor+EmxvhMeR0cyQ 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 46985 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY A ;; TSIG PSEUDOSECTION: 3851122836.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQE//////8AAAAAKid6/J5Uf1N2gt7RVB3TYw== 46985 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY AAAA Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 35564 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3421197480.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 3421197480.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759306405 3 NOERROR 1791 YIIG+wYGKwYBBQUCoIIG7zCCBuugDTALBgkqhkiG9xIBAgKiggbYBIIG 1GCCBtAGCSqGSIb3EgECAgEAboIGvzCCBrugAwIBBaEDAgEOogcDBQAg AAAAo4IFwGGCBbwwggW4oAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBYMwggV/oAMCARKhAwIBAqKC BXEEggVteu0zo2Ya1IvHHl1MWKrv6jZSaD6RpCulH99JlOfWDJ2w5HK7 cZJ8YwfvGwDK4xWJhwitdttjINu+yP7oW/wjeFM5U/XIjMOejxGzC/p7 4JrhEznNBDEbgGMAe8p/w/i4YrU5gwswIWtKVcfhHBXNcxa4CFwek7w2 curHTyAzysrmlJvuQhGzAuKiKEZLc6XnvbupeaOdOdIgpBsznSXA7ID+ 8ixu3fG+ldTF19apncbqQFK16xI3yYTY2mu5S33mSXgl2Xe5vHy7YfJ1 l8Iqpn1PJjKPA1ekhsMJrPB0TgHlazDdOSTWXtqe1FlAx9dUlcEzbSoA oTCKPySWgF+QhqgmD2QtyByLiNzBhxI8StJvEk4SubDb8Er4UPozYfmY PVfz1Yz7EJBskYDfIq3IRiY6DPB2F15kP0CgIXuAloAYu6V4IULcTDBR G2NtjL3g86DozYoVGsQLENZa0NP6ZfNJ+kDQ4vMi6OeUgDpx55VzyqJ/ MZR8JGr10UKfgKkB49k9t2SZ4J0gl4oFjbliwnyY2gqQ/fgl4ZkbsZRO 0/VCKZ6z8VxSGnhDiVe6N3YrNxCBDlL+SFqlULVwDpwoUvMd339Zw1Ys 7t1CQfYI5GDZDOMbyuVBQ8LK0u6FPQxXV08nj2F9KYxvZ+r6YrpDW3tP 1XkiXgSdkdgByPA4Bqa8+B67vRslKblKhoaVlvPOj3y8YWNbPBWntmpt U99RELCAIPLvdAkTIkyuyj6FDQLBF62XfjrFotiSlz4re19YIdGG2trV iS/7QMjZGG8fSB4sHvJUfY+iQLNHAUQGMGEdJVyNf/CgwL5dH/mnXZR8 q3E/nUVWXIxuMmanoWO4XrCvuBKB4Zm4LmlVv+rPLvRr6b32q70oHelg vvJhJHCkyXrDzHP0nkXzs1KWCJZHxHdX5MxbgXEoSMCG8ltvJaatB3LT 9Xobjk/r3vC4adkDeMYQM9e6PMh5nOseow1aHHg4oMHh/xp/Ftw2Iq0I bNXBgOO7lmjRvzM+0CGn0gK0j07Ycy+8L8N0TaITuSorZQGX8VT2T753 t+bw+aV/OL99Fssoph1vbUqjgRS2gzMnIriSHyCOOIiRo38nqxMd/tMj ygcPMmhtQnRhEG3qFhsZLKi9UhkTbax0gnG5eIBIZVoD5E5l0MF//ytI BuskqPWQdfuvJpp5ULq3e9/aFPKy+B4iGMk5E81WwSsUIIbxEsSczIJQ /WHC9oGVyA02Fx7JcWugMphCxVm1StLJo/1fKprS7RMc8C40QL0hvFkm 4N2k5FtN8Kxk/c5aI/nNI9Tg1s/5Dg/J+cHWDpzzIYvDuKf6exOzAkYe Qs8Mf1QiBkiw4hrn0MzamyW/zqHdd18/Q81kjsYF8uNmmllwXn6dKYXw Oy3eA7QpvykYt2ilG7nsnCIE/1SArUdl/LKKBMF+h+ujOcuar476h385 kF97eMHkXs3LLqelio0pRJOAs4Jwi0SgqwXv6/rU+xmN/lrD3RK2kL+G W4AZl50u/FcdlYkBlVHgEMc7+9dqzY4Eu6UPtSQd1ubZ4S7SyYfZAA8Z eOvvo50jMfJwKp8d3JfA4D+niXWUP5S4b6Tw30UnRHE4q+3flx47evmE WcBzmgm40J+zqgoNNKAUNwtTPCN44m83OeL7gYF9ZmebABdPq4PGSKKo QlCQcU3FJb2tGkOcx4dWrOPTjgt74TY85NGKk+IPwv0n7Tt4VN4BIzXC ShUzjZk/uGQYn5dPUNMYz6beO/gJi1lhbMSZ4nhQKMzt4/9L7uQWk/06 TyjG6a6uvCdisvUOCCl8abQRjLNfP/12LiTGXFeMwzViIvzm5km1qcYW 5uLu+55PKV8ppIHhMIHeoAMCARKigdYEgdMnhuW4dZdu4susxECMQq7L mOZR6HrF28vra/dcfn6m4SthHezZDxzCWbvfALVMh/8nokEGwag3+/5k 088tRL5v/k4zM2KFbdCw4fkeiM8oq8SYOhdzTutXh0RTrur5Al1YTDb9 ID4XRHLPb70BDstZlT2yOAdDw8lr3JR5QdDOah8QIH0F3XRl334C+EV+ 2RDp7lEwCekLro9i6VBAwbdTz9VKq7nhK/lNvS+5jLqanSwh/H21SBVa w0f3huyBRORJxJsZXV/37PCyhbSpP8Gv5Agc 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 59910 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY AAAA ;; TSIG PSEUDOSECTION: 3421197480.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQE//////8AAAAAHyrl53+3f5SrB1E6mNYWHQ== 59910 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005463866.ooo.test. 1200 IN A 192.168.122.104 Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 28385 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;738065288.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 738065288.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759306405 3 NOERROR 1791 YIIG+wYGKwYBBQUCoIIG7zCCBuugDTALBgkqhkiG9xIBAgKiggbYBIIG 1GCCBtAGCSqGSIb3EgECAgEAboIGvzCCBrugAwIBBaEDAgEOogcDBQAg AAAAo4IFwGGCBbwwggW4oAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBYMwggV/oAMCARKhAwIBAqKC BXEEggVteu0zo2Ya1IvHHl1MWKrv6jZSaD6RpCulH99JlOfWDJ2w5HK7 cZJ8YwfvGwDK4xWJhwitdttjINu+yP7oW/wjeFM5U/XIjMOejxGzC/p7 4JrhEznNBDEbgGMAe8p/w/i4YrU5gwswIWtKVcfhHBXNcxa4CFwek7w2 curHTyAzysrmlJvuQhGzAuKiKEZLc6XnvbupeaOdOdIgpBsznSXA7ID+ 8ixu3fG+ldTF19apncbqQFK16xI3yYTY2mu5S33mSXgl2Xe5vHy7YfJ1 l8Iqpn1PJjKPA1ekhsMJrPB0TgHlazDdOSTWXtqe1FlAx9dUlcEzbSoA oTCKPySWgF+QhqgmD2QtyByLiNzBhxI8StJvEk4SubDb8Er4UPozYfmY PVfz1Yz7EJBskYDfIq3IRiY6DPB2F15kP0CgIXuAloAYu6V4IULcTDBR G2NtjL3g86DozYoVGsQLENZa0NP6ZfNJ+kDQ4vMi6OeUgDpx55VzyqJ/ MZR8JGr10UKfgKkB49k9t2SZ4J0gl4oFjbliwnyY2gqQ/fgl4ZkbsZRO 0/VCKZ6z8VxSGnhDiVe6N3YrNxCBDlL+SFqlULVwDpwoUvMd339Zw1Ys 7t1CQfYI5GDZDOMbyuVBQ8LK0u6FPQxXV08nj2F9KYxvZ+r6YrpDW3tP 1XkiXgSdkdgByPA4Bqa8+B67vRslKblKhoaVlvPOj3y8YWNbPBWntmpt U99RELCAIPLvdAkTIkyuyj6FDQLBF62XfjrFotiSlz4re19YIdGG2trV iS/7QMjZGG8fSB4sHvJUfY+iQLNHAUQGMGEdJVyNf/CgwL5dH/mnXZR8 q3E/nUVWXIxuMmanoWO4XrCvuBKB4Zm4LmlVv+rPLvRr6b32q70oHelg vvJhJHCkyXrDzHP0nkXzs1KWCJZHxHdX5MxbgXEoSMCG8ltvJaatB3LT 9Xobjk/r3vC4adkDeMYQM9e6PMh5nOseow1aHHg4oMHh/xp/Ftw2Iq0I bNXBgOO7lmjRvzM+0CGn0gK0j07Ycy+8L8N0TaITuSorZQGX8VT2T753 t+bw+aV/OL99Fssoph1vbUqjgRS2gzMnIriSHyCOOIiRo38nqxMd/tMj ygcPMmhtQnRhEG3qFhsZLKi9UhkTbax0gnG5eIBIZVoD5E5l0MF//ytI BuskqPWQdfuvJpp5ULq3e9/aFPKy+B4iGMk5E81WwSsUIIbxEsSczIJQ /WHC9oGVyA02Fx7JcWugMphCxVm1StLJo/1fKprS7RMc8C40QL0hvFkm 4N2k5FtN8Kxk/c5aI/nNI9Tg1s/5Dg/J+cHWDpzzIYvDuKf6exOzAkYe Qs8Mf1QiBkiw4hrn0MzamyW/zqHdd18/Q81kjsYF8uNmmllwXn6dKYXw Oy3eA7QpvykYt2ilG7nsnCIE/1SArUdl/LKKBMF+h+ujOcuar476h385 kF97eMHkXs3LLqelio0pRJOAs4Jwi0SgqwXv6/rU+xmN/lrD3RK2kL+G W4AZl50u/FcdlYkBlVHgEMc7+9dqzY4Eu6UPtSQd1ubZ4S7SyYfZAA8Z eOvvo50jMfJwKp8d3JfA4D+niXWUP5S4b6Tw30UnRHE4q+3flx47evmE WcBzmgm40J+zqgoNNKAUNwtTPCN44m83OeL7gYF9ZmebABdPq4PGSKKo QlCQcU3FJb2tGkOcx4dWrOPTjgt74TY85NGKk+IPwv0n7Tt4VN4BIzXC ShUzjZk/uGQYn5dPUNMYz6beO/gJi1lhbMSZ4nhQKMzt4/9L7uQWk/06 TyjG6a6uvCdisvUOCCl8abQRjLNfP/12LiTGXFeMwzViIvzm5km1qcYW 5uLu+55PKV8ppIHhMIHeoAMCARKigdYEgdPGIwYW1hFvJwo/B+HJ1Gw0 AEelriR2Un2mJuBfFf1SgjfItX8EkBaHKpROCjPUtnApKR2yNKpKNEsg IgR34D34MqL4ORbvuYu2sUVO+PT3mT+XvYTKUbM/wGnmaOLgk9QJpWSF l0cVlJ9N1BJWnfYucC+Eud3XQLkaBTipXhb0FFZT7jLNq7LCxQs7v1uW 2LSQT2ZpQ7qdav/dq0RuGwOMgNYspX4WuNX8co3qj2+68Z08a5qDIJW+ aZyjAMF+nZ/tYHiLQrBnf6dTAr4rHMfLYB8v 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 56551 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005463866.ooo.test. 1200 IN A 192.168.122.104 ;; TSIG PSEUDOSECTION: 738065288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQE//////8AAAAABLd1S6gwJvY0mF4QTwLzJQ== 56551 NOERROR 0 2025-10-01T08:13:26Z DEBUG stderr=Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 48466 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005463866.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1759306431 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest Found realm from ticket: OOO.TEST send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 786 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3851122836.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 3851122836.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759310005 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvciZg1Sk3si1x XG7ZRGXmqNQqpXADLTwpxIUgd0psnCSS+miCVLTdTpqDqxG5pjlA82ty pjfwi90ird8z4lzhrjRbkj0OAczwuLgJRKJOl1vcAx0qeOU5a4pQmkh0 qmA07E1ui6vCEgPHeX/XU7XW 0 ;; TSIG PSEUDOSECTION: 3851122836.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQF//////8AAAAAPObzcJhcgCV2z0cT8h2W1w== 786 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 46985 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 3851122836.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQF//////8AAAAAPObzcTKqn/SvnHfHBF/+8Q== 46985 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 39061 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005463866.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1759306431 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 35564 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3421197480.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 3421197480.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759310005 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvEnNTcZj2DT5C XfOpY1eLbJLAx42d365Rbe8jyfqVe8HfGeOyWTGrpJ5GIpVVqC4cYYRW ygewk10SfqmThiSHq72v0c8KesaE4lv6moyCjoS+UXY/KzKYtmKqrDLl eXXuEpzo/UBD23KdWvwcXSVB 0 ;; TSIG PSEUDOSECTION: 3421197480.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQF//////8AAAAAIoJt/yANrUtwSM+mUMeAAA== 35564 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 59910 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 3421197480.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQF//////8AAAAAIoJuAD1xSLUFcxMdQtZt4w== 59910 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 51725 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005463866.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1759306431 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 28385 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;738065288.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 738065288.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306405 1759310005 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvLLIUiJcVie84 3nCvS3v4SDp2insWCs+c26HNnZcAy5GzsRYwwAbxxg349jGrp//XL+9z leSGvDaOBd7fpiVaOPvruLlLE8QQTSD9AJzskLLA6SR6Jk8YMepjZ+/c R2hOOR6fy2zjqGLGFc0bfjay 0 ;; TSIG PSEUDOSECTION: 738065288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306405 300 28 BAQF//////8AAAAAOV9JHuNTzJweqq1fQkD3mQ== 28385 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 56551 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 738065288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQF//////8AAAAAOV9JH5PfiEqKE9BPj27Uig== 56551 NOERROR 0 2025-10-01T08:13:26Z DEBUG DNS resolver: Query: np0005463866.ooo.test IN A 2025-10-01T08:13:26Z DEBUG DNS resolver: Query: np0005463866.ooo.test IN AAAA 2025-10-01T08:13:26Z DEBUG DNS resolver: No record. 2025-10-01T08:13:26Z DEBUG DNS resolver: Query: 192.168.122.104 IN PTR 2025-10-01T08:13:26Z DEBUG DNS resolver: No record. 2025-10-01T08:13:26Z WARNING Missing reverse record(s) for address(es): 192.168.122.104. 2025-10-01T08:13:26Z INFO Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub 2025-10-01T08:13:26Z INFO Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub 2025-10-01T08:13:26Z INFO Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub 2025-10-01T08:13:26Z DEBUG [try 1]: Forwarding 'host_mod' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-01T08:13:26Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-01T08:13:26Z DEBUG Writing nsupdate commands to /etc/ipa/.dns_update.txt: 2025-10-01T08:13:26Z DEBUG debug update delete np0005463866.ooo.test. IN SSHFP show send update add np0005463866.ooo.test. 1200 IN SSHFP 1 1 1D3369425EB162297DBCCBFCFB61AC9C113B3B66 update add np0005463866.ooo.test. 1200 IN SSHFP 1 2 5B2F857E1546C15CBFD8FED193F278574E83D73F4EF1F81C8B2E178C4D0649E1 update add np0005463866.ooo.test. 1200 IN SSHFP 3 1 568B57C0E552BE90DDFCD6B4C489369DDCD8AA44 update add np0005463866.ooo.test. 1200 IN SSHFP 3 2 69B2E63BFB3A7C84072B56468D6A61C186777F87407A08C8D7ABE35178E7869C update add np0005463866.ooo.test. 1200 IN SSHFP 4 1 28AB889B9BC6969E174958307F8E8A3576869047 update add np0005463866.ooo.test. 1200 IN SSHFP 4 2 879273FA5619FD1624163357E403B02748CA9B9B28A155FBE4E08985635BABEC show send 2025-10-01T08:13:26Z DEBUG Starting external process 2025-10-01T08:13:26Z DEBUG args=['/usr/bin/nsupdate', '-g', '/etc/ipa/.dns_update.txt'] 2025-10-01T08:13:26Z DEBUG Process finished, return code=0 2025-10-01T08:13:26Z DEBUG stdout=Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY SSHFP Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5968 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2320188997.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 2320188997.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306406 1759306406 3 NOERROR 1791 YIIG+wYGKwYBBQUCoIIG7zCCBuugDTALBgkqhkiG9xIBAgKiggbYBIIG 1GCCBtAGCSqGSIb3EgECAgEAboIGvzCCBrugAwIBBaEDAgEOogcDBQAg AAAAo4IFwGGCBbwwggW4oAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBYMwggV/oAMCARKhAwIBAqKC BXEEggVteu0zo2Ya1IvHHl1MWKrv6jZSaD6RpCulH99JlOfWDJ2w5HK7 cZJ8YwfvGwDK4xWJhwitdttjINu+yP7oW/wjeFM5U/XIjMOejxGzC/p7 4JrhEznNBDEbgGMAe8p/w/i4YrU5gwswIWtKVcfhHBXNcxa4CFwek7w2 curHTyAzysrmlJvuQhGzAuKiKEZLc6XnvbupeaOdOdIgpBsznSXA7ID+ 8ixu3fG+ldTF19apncbqQFK16xI3yYTY2mu5S33mSXgl2Xe5vHy7YfJ1 l8Iqpn1PJjKPA1ekhsMJrPB0TgHlazDdOSTWXtqe1FlAx9dUlcEzbSoA oTCKPySWgF+QhqgmD2QtyByLiNzBhxI8StJvEk4SubDb8Er4UPozYfmY PVfz1Yz7EJBskYDfIq3IRiY6DPB2F15kP0CgIXuAloAYu6V4IULcTDBR G2NtjL3g86DozYoVGsQLENZa0NP6ZfNJ+kDQ4vMi6OeUgDpx55VzyqJ/ MZR8JGr10UKfgKkB49k9t2SZ4J0gl4oFjbliwnyY2gqQ/fgl4ZkbsZRO 0/VCKZ6z8VxSGnhDiVe6N3YrNxCBDlL+SFqlULVwDpwoUvMd339Zw1Ys 7t1CQfYI5GDZDOMbyuVBQ8LK0u6FPQxXV08nj2F9KYxvZ+r6YrpDW3tP 1XkiXgSdkdgByPA4Bqa8+B67vRslKblKhoaVlvPOj3y8YWNbPBWntmpt U99RELCAIPLvdAkTIkyuyj6FDQLBF62XfjrFotiSlz4re19YIdGG2trV iS/7QMjZGG8fSB4sHvJUfY+iQLNHAUQGMGEdJVyNf/CgwL5dH/mnXZR8 q3E/nUVWXIxuMmanoWO4XrCvuBKB4Zm4LmlVv+rPLvRr6b32q70oHelg vvJhJHCkyXrDzHP0nkXzs1KWCJZHxHdX5MxbgXEoSMCG8ltvJaatB3LT 9Xobjk/r3vC4adkDeMYQM9e6PMh5nOseow1aHHg4oMHh/xp/Ftw2Iq0I bNXBgOO7lmjRvzM+0CGn0gK0j07Ycy+8L8N0TaITuSorZQGX8VT2T753 t+bw+aV/OL99Fssoph1vbUqjgRS2gzMnIriSHyCOOIiRo38nqxMd/tMj ygcPMmhtQnRhEG3qFhsZLKi9UhkTbax0gnG5eIBIZVoD5E5l0MF//ytI BuskqPWQdfuvJpp5ULq3e9/aFPKy+B4iGMk5E81WwSsUIIbxEsSczIJQ /WHC9oGVyA02Fx7JcWugMphCxVm1StLJo/1fKprS7RMc8C40QL0hvFkm 4N2k5FtN8Kxk/c5aI/nNI9Tg1s/5Dg/J+cHWDpzzIYvDuKf6exOzAkYe Qs8Mf1QiBkiw4hrn0MzamyW/zqHdd18/Q81kjsYF8uNmmllwXn6dKYXw Oy3eA7QpvykYt2ilG7nsnCIE/1SArUdl/LKKBMF+h+ujOcuar476h385 kF97eMHkXs3LLqelio0pRJOAs4Jwi0SgqwXv6/rU+xmN/lrD3RK2kL+G W4AZl50u/FcdlYkBlVHgEMc7+9dqzY4Eu6UPtSQd1ubZ4S7SyYfZAA8Z eOvvo50jMfJwKp8d3JfA4D+niXWUP5S4b6Tw30UnRHE4q+3flx47evmE WcBzmgm40J+zqgoNNKAUNwtTPCN44m83OeL7gYF9ZmebABdPq4PGSKKo QlCQcU3FJb2tGkOcx4dWrOPTjgt74TY85NGKk+IPwv0n7Tt4VN4BIzXC ShUzjZk/uGQYn5dPUNMYz6beO/gJi1lhbMSZ4nhQKMzt4/9L7uQWk/06 TyjG6a6uvCdisvUOCCl8abQRjLNfP/12LiTGXFeMwzViIvzm5km1qcYW 5uLu+55PKV8ppIHhMIHeoAMCARKigdYEgdPXRmXkgDOt8G+n7cxXI0w4 yV9CjkZrC0E2JokaiJBDFr8AMMtrxScohtf8hBiItg130f/ryYLw/mzC At7wWq3IMxZkbVoYvohBTHowOu625/Kw81kY1eYdDrH7+3vpXckNlgAJ WdbifAVA2FyU5/dr6kj5REnmnTGg71zmPiYHAtKSA6C47Gv2qGPA1kCd xL5Qjv580XTXG9KvZIZp7n3DxNIOPGzAfp03AJb9xE/wj+/U97YcEuAy 35xUHKxTSf13J44/7vUiIln9PwcmRabfzBqI 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 53449 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005463866.ooo.test. 0 ANY SSHFP ;; TSIG PSEUDOSECTION: 2320188997.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQE//////8AAAAAF5UhQO0Dw2CNQLRp2qexEQ== 53449 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005463866.ooo.test. 1200 IN SSHFP 1 1 1D3369425EB162297DBCCBFCFB61AC9C113B3B66 np0005463866.ooo.test. 1200 IN SSHFP 1 2 5B2F857E1546C15CBFD8FED193F278574E83D73F4EF1F81C8B2E178C 4D0649E1 np0005463866.ooo.test. 1200 IN SSHFP 3 1 568B57C0E552BE90DDFCD6B4C489369DDCD8AA44 np0005463866.ooo.test. 1200 IN SSHFP 3 2 69B2E63BFB3A7C84072B56468D6A61C186777F87407A08C8D7ABE351 78E7869C np0005463866.ooo.test. 1200 IN SSHFP 4 1 28AB889B9BC6969E174958307F8E8A3576869047 np0005463866.ooo.test. 1200 IN SSHFP 4 2 879273FA5619FD1624163357E403B02748CA9B9B28A155FBE4E08985 635BABEC Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 6171 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2612186279.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 2612186279.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306406 1759306406 3 NOERROR 1791 YIIG+wYGKwYBBQUCoIIG7zCCBuugDTALBgkqhkiG9xIBAgKiggbYBIIG 1GCCBtAGCSqGSIb3EgECAgEAboIGvzCCBrugAwIBBaEDAgEOogcDBQAg AAAAo4IFwGGCBbwwggW4oAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBYMwggV/oAMCARKhAwIBAqKC BXEEggVteu0zo2Ya1IvHHl1MWKrv6jZSaD6RpCulH99JlOfWDJ2w5HK7 cZJ8YwfvGwDK4xWJhwitdttjINu+yP7oW/wjeFM5U/XIjMOejxGzC/p7 4JrhEznNBDEbgGMAe8p/w/i4YrU5gwswIWtKVcfhHBXNcxa4CFwek7w2 curHTyAzysrmlJvuQhGzAuKiKEZLc6XnvbupeaOdOdIgpBsznSXA7ID+ 8ixu3fG+ldTF19apncbqQFK16xI3yYTY2mu5S33mSXgl2Xe5vHy7YfJ1 l8Iqpn1PJjKPA1ekhsMJrPB0TgHlazDdOSTWXtqe1FlAx9dUlcEzbSoA oTCKPySWgF+QhqgmD2QtyByLiNzBhxI8StJvEk4SubDb8Er4UPozYfmY PVfz1Yz7EJBskYDfIq3IRiY6DPB2F15kP0CgIXuAloAYu6V4IULcTDBR G2NtjL3g86DozYoVGsQLENZa0NP6ZfNJ+kDQ4vMi6OeUgDpx55VzyqJ/ MZR8JGr10UKfgKkB49k9t2SZ4J0gl4oFjbliwnyY2gqQ/fgl4ZkbsZRO 0/VCKZ6z8VxSGnhDiVe6N3YrNxCBDlL+SFqlULVwDpwoUvMd339Zw1Ys 7t1CQfYI5GDZDOMbyuVBQ8LK0u6FPQxXV08nj2F9KYxvZ+r6YrpDW3tP 1XkiXgSdkdgByPA4Bqa8+B67vRslKblKhoaVlvPOj3y8YWNbPBWntmpt U99RELCAIPLvdAkTIkyuyj6FDQLBF62XfjrFotiSlz4re19YIdGG2trV iS/7QMjZGG8fSB4sHvJUfY+iQLNHAUQGMGEdJVyNf/CgwL5dH/mnXZR8 q3E/nUVWXIxuMmanoWO4XrCvuBKB4Zm4LmlVv+rPLvRr6b32q70oHelg vvJhJHCkyXrDzHP0nkXzs1KWCJZHxHdX5MxbgXEoSMCG8ltvJaatB3LT 9Xobjk/r3vC4adkDeMYQM9e6PMh5nOseow1aHHg4oMHh/xp/Ftw2Iq0I bNXBgOO7lmjRvzM+0CGn0gK0j07Ycy+8L8N0TaITuSorZQGX8VT2T753 t+bw+aV/OL99Fssoph1vbUqjgRS2gzMnIriSHyCOOIiRo38nqxMd/tMj ygcPMmhtQnRhEG3qFhsZLKi9UhkTbax0gnG5eIBIZVoD5E5l0MF//ytI BuskqPWQdfuvJpp5ULq3e9/aFPKy+B4iGMk5E81WwSsUIIbxEsSczIJQ /WHC9oGVyA02Fx7JcWugMphCxVm1StLJo/1fKprS7RMc8C40QL0hvFkm 4N2k5FtN8Kxk/c5aI/nNI9Tg1s/5Dg/J+cHWDpzzIYvDuKf6exOzAkYe Qs8Mf1QiBkiw4hrn0MzamyW/zqHdd18/Q81kjsYF8uNmmllwXn6dKYXw Oy3eA7QpvykYt2ilG7nsnCIE/1SArUdl/LKKBMF+h+ujOcuar476h385 kF97eMHkXs3LLqelio0pRJOAs4Jwi0SgqwXv6/rU+xmN/lrD3RK2kL+G W4AZl50u/FcdlYkBlVHgEMc7+9dqzY4Eu6UPtSQd1ubZ4S7SyYfZAA8Z eOvvo50jMfJwKp8d3JfA4D+niXWUP5S4b6Tw30UnRHE4q+3flx47evmE WcBzmgm40J+zqgoNNKAUNwtTPCN44m83OeL7gYF9ZmebABdPq4PGSKKo QlCQcU3FJb2tGkOcx4dWrOPTjgt74TY85NGKk+IPwv0n7Tt4VN4BIzXC ShUzjZk/uGQYn5dPUNMYz6beO/gJi1lhbMSZ4nhQKMzt4/9L7uQWk/06 TyjG6a6uvCdisvUOCCl8abQRjLNfP/12LiTGXFeMwzViIvzm5km1qcYW 5uLu+55PKV8ppIHhMIHeoAMCARKigdYEgdNyNsWWR7tpVkrbv4BCLr7i zceJboULHco8fKcFIWxZvLx/yPT1VBhyGjYxjyLUC2eqAg9IgT+5Zyxp zYOvNYMreqzfGeqZGIrDMXK4RCOChsbv15bra+05hDfELa7oB69R9dU/ P2J5BZdheTQSVj99DsL6Avr6Ej33Cw3jlvlGDCmwCY2iLVOw+CAT8LJB y2G28Hys5r+e7uKLBIqDL2M87NYxnzIm+GfZGWgTtpA7XbJjmk/mD6F5 35EduWuWpBnXK1DghIHEyd4Lsrxq9JVdB3iU 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 57354 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 6, ADDITIONAL: 1 ;; UPDATE SECTION: np0005463866.ooo.test. 1200 IN SSHFP 1 1 1D3369425EB162297DBCCBFCFB61AC9C113B3B66 np0005463866.ooo.test. 1200 IN SSHFP 1 2 5B2F857E1546C15CBFD8FED193F278574E83D73F4EF1F81C8B2E178C 4D0649E1 np0005463866.ooo.test. 1200 IN SSHFP 3 1 568B57C0E552BE90DDFCD6B4C489369DDCD8AA44 np0005463866.ooo.test. 1200 IN SSHFP 3 2 69B2E63BFB3A7C84072B56468D6A61C186777F87407A08C8D7ABE351 78E7869C np0005463866.ooo.test. 1200 IN SSHFP 4 1 28AB889B9BC6969E174958307F8E8A3576869047 np0005463866.ooo.test. 1200 IN SSHFP 4 2 879273FA5619FD1624163357E403B02748CA9B9B28A155FBE4E08985 635BABEC ;; TSIG PSEUDOSECTION: 2612186279.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQE//////8AAAAADQEuUTPskLvM2StuvG7MSw== 57354 NOERROR 0 2025-10-01T08:13:26Z DEBUG stderr=Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8861 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005463866.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 3600 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1759306433 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest Found realm from ticket: OOO.TEST send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5968 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2320188997.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 2320188997.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306406 1759310006 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvHsTjyZwigZRf 0YPQxgPhNQBwjKpfpAkIUYjHM/DRW85qng4bBzCdPXjAbmBMmDYEpTIj w2R/rZWcm2B+Pv9WMpbYvGo/K07/3rQypvnvx8S2O1YGfGSFoaFqHFDA 9EaQX6dOOEL53uFL7bFuR0sZ 0 ;; TSIG PSEUDOSECTION: 2320188997.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQF//////8AAAAAPsmtpXeGC4Qr0dpH730kcw== 5968 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 53449 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 2320188997.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQF//////8AAAAAPsmtpoJ8NoMAsEabVMbwQQ== 53449 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 61080 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005463866.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 3600 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1759306433 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 6171 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2612186279.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 2612186279.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1759306406 1759310006 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvtzJwSoG1+K9K WIP7t4cFkjHM/Yohr5YVBT5iezarxOKJngE3418vafYj3Z2cKCvxE96l 4sowe+IExSCmhr/PrIDqgIwuUg4y0NsDQeFeTWC8bX/XyKioaY2yIxva bUbSTNuQjFHKQOp5x9q/rhLf 0 ;; TSIG PSEUDOSECTION: 2612186279.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQF//////8AAAAACrJjZGVE8Mxi47VhBujNZg== 6171 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 57354 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 2612186279.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1759306406 300 28 BAQF//////8AAAAACrJjZXGHDEnJETmu2f0akg== 57354 NOERROR 0 2025-10-01T08:13:26Z DEBUG Starting external process 2025-10-01T08:13:26Z DEBUG args=['/bin/systemctl', 'list-unit-files', '--full'] 2025-10-01T08:13:26Z DEBUG Process finished, return code=0 2025-10-01T08:13:26Z DEBUG stdout=UNIT FILE STATE PRESET efi.automount generated - proc-sys-fs-binfmt_misc.automount static - -.mount generated - boot-efi.mount generated - boot.mount generated - dev-hugepages.mount static - dev-mqueue.mount static - efi.mount generated - proc-fs-nfsd.mount static - proc-sys-fs-binfmt_misc.mount disabled disabled sys-fs-fuse-connections.mount static - sys-kernel-config.mount static - sys-kernel-debug.mount static - sys-kernel-tracing.mount static - tmp.mount disabled disabled var-lib-nfs-rpc_pipefs.mount static - insights-client-results.path disabled disabled systemd-ask-password-console.path static - systemd-ask-password-wall.path static - session-1.scope transient - session-14.scope transient - session-15.scope transient - arptables.service disabled disabled auditd.service enabled enabled auth-rpcgss-module.service static - autofs.service disabled disabled autovt@.service alias - blk-availability.service disabled disabled certmonger.service disabled disabled chrony-online.service enabled disabled chrony-wait.service disabled disabled chronyd.service enabled enabled cinder-lvm-losetup.service enabled disabled cloud-config.service enabled disabled cloud-final.service enabled disabled cloud-init-hotplugd.service static - cloud-init-local.service enabled disabled cloud-init.service enabled disabled cockpit-motd.service static - cockpit-wsinstance-http.service static - cockpit-wsinstance-https-factory@.service static - cockpit-wsinstance-https@.service static - cockpit.service static - console-getty.service disabled disabled container-getty@.service static - cpupower.service disabled disabled crond.service enabled enabled dbus-broker.service enabled enabled dbus-org.freedesktop.hostname1.service alias - dbus-org.freedesktop.locale1.service alias - dbus-org.freedesktop.login1.service alias - dbus-org.freedesktop.nm-dispatcher.service alias - dbus-org.freedesktop.timedate1.service alias - dbus.service alias - debug-shell.service disabled disabled dm-event.service static - dnf-makecache.service static - dnf-system-upgrade-cleanup.service static - dnf-system-upgrade.service disabled disabled dracut-cmdline.service static - dracut-initqueue.service static - dracut-mount.service static - dracut-pre-mount.service static - dracut-pre-pivot.service static - dracut-pre-trigger.service static - dracut-pre-udev.service static - dracut-shutdown-onfailure.service static - dracut-shutdown.service static - driverctl@.service static - ebtables.service disabled disabled emergency.service static - fstrim.service static - fwupd-offline-update.service static - fwupd-refresh.service static - fwupd.service static - getty@.service enabled enabled grub-boot-indeterminate.service static - grub2-systemd-integration.service static - gssproxy.service disabled disabled import-state.service enabled enabled initrd-cleanup.service static - initrd-parse-etc.service static - initrd-switch-root.service static - initrd-udevadm-cleanup-db.service static - insights-client-boot.service enabled enabled insights-client-results.service static - insights-client.service static - ip6tables.service disabled disabled iptables.service disabled disabled irqbalance.service enabled enabled kdump.service enabled enabled kmod-static-nodes.service static - kvm_stat.service disabled disabled ldconfig.service static - loadmodules.service enabled enabled logrotate.service static - lvm2-lvmpolld.service static - lvm2-monitor.service enabled enabled man-db-cache-update.service static - man-db-restart-cache-update.service disabled disabled microcode.service enabled enabled modprobe@.service static - network.service generated - NetworkManager-dispatcher.service enabled enabled NetworkManager-wait-online.service enabled disabled NetworkManager.service enabled enabled neutron-cleanup.service enabled disabled nfs-blkmap.service disabled disabled nfs-idmapd.service static - nfs-mountd.service static - nfs-server.service disabled disabled nfs-utils.service static - nfsdcld.service static - nftables.service enabled disabled nis-domainname.service enabled enabled nm-priv-helper.service static - nmstate.service disabled disabled oddjobd.service disabled disabled openvswitch.service enabled disabled os-collect-config.service disabled disabled ovs-delete-transient-ports.service static - ovs-vswitchd.service static - ovsdb-server.service static - packagekit-offline-update.service static - packagekit.service static - pam_namespace.service static - podman-auto-update.service disabled disabled podman-clean-transient.service disabled disabled podman-kube@.service disabled disabled podman-restart.service disabled disabled podman.service disabled disabled polkit.service static - puppet.service disabled disabled puppetagent.service alias - qemu-guest-agent.service enabled enabled quotaon.service static - rc-local.service static - rdisc.service disabled disabled rescue.service static - rhsm-facts.service disabled disabled rhsm.service disabled disabled rhsmcertd.service enabled enabled rpc-gssd.service static - rpc-statd-notify.service static - rpc-statd.service static - rpcbind.service enabled enabled rpmdb-rebuild.service disabled disabled rsyslog.service enabled enabled selinux-autorelabel-mark.service enabled enabled selinux-autorelabel.service static - selinux-check-proper-disable.service disabled disabled serial-getty@.service indirect disabled setroubleshootd.service static - sshd-keygen@.service disabled disabled sshd.service enabled enabled sshd@.service static - sssd-autofs.service indirect disabled sssd-ifp.service static - sssd-kcm.service indirect disabled sssd-nss.service indirect disabled sssd-pac.service indirect disabled sssd-pam.service indirect disabled sssd-ssh.service indirect disabled sssd-sudo.service indirect disabled sssd.service enabled enabled sysstat-collect.service static - sysstat-summary.service static - sysstat.service enabled enabled system-update-cleanup.service static - systemd-ask-password-console.service static - systemd-ask-password-wall.service static - systemd-backlight@.service static - systemd-binfmt.service static - systemd-bless-boot.service static - systemd-boot-check-no-failures.service disabled disabled systemd-boot-system-token.service static - systemd-boot-update.service enabled enabled systemd-coredump@.service static - systemd-exit.service static - systemd-firstboot.service static - systemd-fsck-root.service static - systemd-fsck@.service static - systemd-halt.service static - systemd-hibernate-resume@.service static - systemd-hibernate.service static - systemd-hostnamed.service static - systemd-hwdb-update.service static - systemd-hybrid-sleep.service static - systemd-initctl.service static - systemd-journal-catalog-update.service static - systemd-journal-flush.service static - systemd-journald.service static - systemd-journald@.service static - systemd-kexec.service static - systemd-localed.service static - systemd-logind.service static - systemd-machine-id-commit.service static - systemd-modules-load.service static - systemd-network-generator.service enabled enabled systemd-pcrphase-initrd.service static - systemd-pcrphase-sysinit.service static - systemd-pcrphase.service static - systemd-poweroff.service static - systemd-pstore.service disabled enabled systemd-quotacheck.service static - systemd-random-seed.service static - systemd-reboot.service static - systemd-remount-fs.service enabled-runtime disabled systemd-repart.service static - systemd-rfkill.service static - systemd-suspend-then-hibernate.service static - systemd-suspend.service static - systemd-sysctl.service static - systemd-sysext.service disabled disabled systemd-sysupdate-reboot.service indirect disabled systemd-sysupdate.service indirect disabled systemd-sysusers.service static - systemd-timedated.service static - systemd-tmpfiles-clean.service static - systemd-tmpfiles-setup-dev.service static - systemd-tmpfiles-setup.service static - systemd-udev-settle.service static - systemd-udev-trigger.service static - systemd-udevd.service static - systemd-update-done.service static - systemd-update-utmp-runlevel.service static - systemd-update-utmp.service static - systemd-user-sessions.service static - systemd-vconsole-setup.service static - systemd-volatile-root.service static - teamd@.service static - tuned.service enabled enabled unbound-anchor.service static - user-runtime-dir@.service static - user@.service static - system-cockpithttps.slice static - system-systemd\x2dcryptsetup.slice static - user.slice static - cloud-init-hotplugd.socket disabled disabled cockpit-wsinstance-http.socket static - cockpit-wsinstance-https-factory.socket static - cockpit-wsinstance-https@.socket static - cockpit.socket disabled disabled dbus.socket enabled enabled dm-event.socket enabled enabled lvm2-lvmpolld.socket enabled enabled podman.socket disabled disabled rpcbind.socket enabled enabled sshd.socket disabled disabled sssd-autofs.socket disabled disabled sssd-kcm.socket enabled enabled sssd-nss.socket disabled disabled sssd-pac.socket disabled disabled sssd-pam-priv.socket disabled disabled sssd-pam.socket disabled disabled sssd-ssh.socket disabled disabled sssd-sudo.socket disabled disabled syslog.socket static - systemd-coredump.socket static - systemd-initctl.socket static - systemd-journald-audit.socket static - systemd-journald-dev-log.socket static - systemd-journald-varlink@.socket static - systemd-journald.socket static - systemd-journald@.socket static - systemd-rfkill.socket static - systemd-udevd-control.socket static - systemd-udevd-kernel.socket static - basic.target static - blockdev@.target static - bluetooth.target static - boot-complete.target static - cloud-config.target static - cloud-init.target enabled-runtime disabled cryptsetup-pre.target static - cryptsetup.target static - ctrl-alt-del.target alias - default.target alias - emergency.target static - exit.target disabled disabled factory-reset.target static - final.target static - first-boot-complete.target static - getty-pre.target static - getty.target static - graphical.target static - halt.target disabled disabled hibernate.target static - hybrid-sleep.target static - initrd-fs.target static - initrd-root-device.target static - initrd-root-fs.target static - initrd-switch-root.target static - initrd-usr-fs.target static - initrd.target static - integritysetup-pre.target static - integritysetup.target static - kexec.target disabled disabled local-fs-pre.target static - local-fs.target static - multi-user.target indirect disabled network-online.target static - network-pre.target static - network.target static - nfs-client.target enabled disabled nss-lookup.target static - nss-user-lookup.target static - paths.target static - poweroff.target disabled disabled printer.target static - reboot.target enabled enabled remote-cryptsetup.target disabled enabled remote-fs-pre.target static - remote-fs.target enabled enabled remote-veritysetup.target disabled disabled rescue.target static - rpc_pipefs.target static - rpcbind.target static - runlevel0.target alias - runlevel1.target alias - runlevel2.target alias - runlevel3.target alias - runlevel4.target alias - runlevel5.target alias - runlevel6.target alias - selinux-autorelabel.target static - shutdown.target static - sigpwr.target static - sleep.target static - slices.target static - smartcard.target static - sockets.target static - sound.target static - sshd-keygen.target static - suspend-then-hibernate.target static - suspend.target static - swap.target static - sysinit.target static - system-update-pre.target static - system-update.target static - time-set.target static - time-sync.target static - timers.target static - umount.target static - usb-gadget.target static - veritysetup-pre.target static - veritysetup.target static - dnf-makecache.timer enabled enabled fstrim.timer disabled disabled fwupd-refresh.timer disabled disabled insights-client.timer disabled disabled logrotate.timer enabled enabled podman-auto-update.timer disabled disabled sysstat-collect.timer enabled disabled sysstat-summary.timer enabled disabled systemd-sysupdate-reboot.timer disabled disabled systemd-sysupdate.timer disabled disabled systemd-tmpfiles-clean.timer static - unbound-anchor.timer enabled enabled 359 unit files listed. 2025-10-01T08:13:26Z DEBUG stderr= 2025-10-01T08:13:26Z DEBUG Starting external process 2025-10-01T08:13:26Z DEBUG args=['/bin/systemctl', 'list-unit-files', '--full'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout=UNIT FILE STATE PRESET efi.automount generated - proc-sys-fs-binfmt_misc.automount static - -.mount generated - boot-efi.mount generated - boot.mount generated - dev-hugepages.mount static - dev-mqueue.mount static - efi.mount generated - proc-fs-nfsd.mount static - proc-sys-fs-binfmt_misc.mount disabled disabled sys-fs-fuse-connections.mount static - sys-kernel-config.mount static - sys-kernel-debug.mount static - sys-kernel-tracing.mount static - tmp.mount disabled disabled var-lib-nfs-rpc_pipefs.mount static - insights-client-results.path disabled disabled systemd-ask-password-console.path static - systemd-ask-password-wall.path static - session-1.scope transient - session-14.scope transient - session-15.scope transient - arptables.service disabled disabled auditd.service enabled enabled auth-rpcgss-module.service static - autofs.service disabled disabled autovt@.service alias - blk-availability.service disabled disabled certmonger.service disabled disabled chrony-online.service enabled disabled chrony-wait.service disabled disabled chronyd.service enabled enabled cinder-lvm-losetup.service enabled disabled cloud-config.service enabled disabled cloud-final.service enabled disabled cloud-init-hotplugd.service static - cloud-init-local.service enabled disabled cloud-init.service enabled disabled cockpit-motd.service static - cockpit-wsinstance-http.service static - cockpit-wsinstance-https-factory@.service static - cockpit-wsinstance-https@.service static - cockpit.service static - console-getty.service disabled disabled container-getty@.service static - cpupower.service disabled disabled crond.service enabled enabled dbus-broker.service enabled enabled dbus-org.freedesktop.hostname1.service alias - dbus-org.freedesktop.locale1.service alias - dbus-org.freedesktop.login1.service alias - dbus-org.freedesktop.nm-dispatcher.service alias - dbus-org.freedesktop.timedate1.service alias - dbus.service alias - debug-shell.service disabled disabled dm-event.service static - dnf-makecache.service static - dnf-system-upgrade-cleanup.service static - dnf-system-upgrade.service disabled disabled dracut-cmdline.service static - dracut-initqueue.service static - dracut-mount.service static - dracut-pre-mount.service static - dracut-pre-pivot.service static - dracut-pre-trigger.service static - dracut-pre-udev.service static - dracut-shutdown-onfailure.service static - dracut-shutdown.service static - driverctl@.service static - ebtables.service disabled disabled emergency.service static - fstrim.service static - fwupd-offline-update.service static - fwupd-refresh.service static - fwupd.service static - getty@.service enabled enabled grub-boot-indeterminate.service static - grub2-systemd-integration.service static - gssproxy.service disabled disabled import-state.service enabled enabled initrd-cleanup.service static - initrd-parse-etc.service static - initrd-switch-root.service static - initrd-udevadm-cleanup-db.service static - insights-client-boot.service enabled enabled insights-client-results.service static - insights-client.service static - ip6tables.service disabled disabled iptables.service disabled disabled irqbalance.service enabled enabled kdump.service enabled enabled kmod-static-nodes.service static - kvm_stat.service disabled disabled ldconfig.service static - loadmodules.service enabled enabled logrotate.service static - lvm2-lvmpolld.service static - lvm2-monitor.service enabled enabled man-db-cache-update.service static - man-db-restart-cache-update.service disabled disabled microcode.service enabled enabled modprobe@.service static - network.service generated - NetworkManager-dispatcher.service enabled enabled NetworkManager-wait-online.service enabled disabled NetworkManager.service enabled enabled neutron-cleanup.service enabled disabled nfs-blkmap.service disabled disabled nfs-idmapd.service static - nfs-mountd.service static - nfs-server.service disabled disabled nfs-utils.service static - nfsdcld.service static - nftables.service enabled disabled nis-domainname.service enabled enabled nm-priv-helper.service static - nmstate.service disabled disabled oddjobd.service disabled disabled openvswitch.service enabled disabled os-collect-config.service disabled disabled ovs-delete-transient-ports.service static - ovs-vswitchd.service static - ovsdb-server.service static - packagekit-offline-update.service static - packagekit.service static - pam_namespace.service static - podman-auto-update.service disabled disabled podman-clean-transient.service disabled disabled podman-kube@.service disabled disabled podman-restart.service disabled disabled podman.service disabled disabled polkit.service static - puppet.service disabled disabled puppetagent.service alias - qemu-guest-agent.service enabled enabled quotaon.service static - rc-local.service static - rdisc.service disabled disabled rescue.service static - rhsm-facts.service disabled disabled rhsm.service disabled disabled rhsmcertd.service enabled enabled rpc-gssd.service static - rpc-statd-notify.service static - rpc-statd.service static - rpcbind.service enabled enabled rpmdb-rebuild.service disabled disabled rsyslog.service enabled enabled selinux-autorelabel-mark.service enabled enabled selinux-autorelabel.service static - selinux-check-proper-disable.service disabled disabled serial-getty@.service indirect disabled setroubleshootd.service static - sshd-keygen@.service disabled disabled sshd.service enabled enabled sshd@.service static - sssd-autofs.service indirect disabled sssd-ifp.service static - sssd-kcm.service indirect disabled sssd-nss.service indirect disabled sssd-pac.service indirect disabled sssd-pam.service indirect disabled sssd-ssh.service indirect disabled sssd-sudo.service indirect disabled sssd.service enabled enabled sysstat-collect.service static - sysstat-summary.service static - sysstat.service enabled enabled system-update-cleanup.service static - systemd-ask-password-console.service static - systemd-ask-password-wall.service static - systemd-backlight@.service static - systemd-binfmt.service static - systemd-bless-boot.service static - systemd-boot-check-no-failures.service disabled disabled systemd-boot-system-token.service static - systemd-boot-update.service enabled enabled systemd-coredump@.service static - systemd-exit.service static - systemd-firstboot.service static - systemd-fsck-root.service static - systemd-fsck@.service static - systemd-halt.service static - systemd-hibernate-resume@.service static - systemd-hibernate.service static - systemd-hostnamed.service static - systemd-hwdb-update.service static - systemd-hybrid-sleep.service static - systemd-initctl.service static - systemd-journal-catalog-update.service static - systemd-journal-flush.service static - systemd-journald.service static - systemd-journald@.service static - systemd-kexec.service static - systemd-localed.service static - systemd-logind.service static - systemd-machine-id-commit.service static - systemd-modules-load.service static - systemd-network-generator.service enabled enabled systemd-pcrphase-initrd.service static - systemd-pcrphase-sysinit.service static - systemd-pcrphase.service static - systemd-poweroff.service static - systemd-pstore.service disabled enabled systemd-quotacheck.service static - systemd-random-seed.service static - systemd-reboot.service static - systemd-remount-fs.service enabled-runtime disabled systemd-repart.service static - systemd-rfkill.service static - systemd-suspend-then-hibernate.service static - systemd-suspend.service static - systemd-sysctl.service static - systemd-sysext.service disabled disabled systemd-sysupdate-reboot.service indirect disabled systemd-sysupdate.service indirect disabled systemd-sysusers.service static - systemd-timedated.service static - systemd-tmpfiles-clean.service static - systemd-tmpfiles-setup-dev.service static - systemd-tmpfiles-setup.service static - systemd-udev-settle.service static - systemd-udev-trigger.service static - systemd-udevd.service static - systemd-update-done.service static - systemd-update-utmp-runlevel.service static - systemd-update-utmp.service static - systemd-user-sessions.service static - systemd-vconsole-setup.service static - systemd-volatile-root.service static - teamd@.service static - tuned.service enabled enabled unbound-anchor.service static - user-runtime-dir@.service static - user@.service static - system-cockpithttps.slice static - system-systemd\x2dcryptsetup.slice static - user.slice static - cloud-init-hotplugd.socket disabled disabled cockpit-wsinstance-http.socket static - cockpit-wsinstance-https-factory.socket static - cockpit-wsinstance-https@.socket static - cockpit.socket disabled disabled dbus.socket enabled enabled dm-event.socket enabled enabled lvm2-lvmpolld.socket enabled enabled podman.socket disabled disabled rpcbind.socket enabled enabled sshd.socket disabled disabled sssd-autofs.socket disabled disabled sssd-kcm.socket enabled enabled sssd-nss.socket disabled disabled sssd-pac.socket disabled disabled sssd-pam-priv.socket disabled disabled sssd-pam.socket disabled disabled sssd-ssh.socket disabled disabled sssd-sudo.socket disabled disabled syslog.socket static - systemd-coredump.socket static - systemd-initctl.socket static - systemd-journald-audit.socket static - systemd-journald-dev-log.socket static - systemd-journald-varlink@.socket static - systemd-journald.socket static - systemd-journald@.socket static - systemd-rfkill.socket static - systemd-udevd-control.socket static - systemd-udevd-kernel.socket static - basic.target static - blockdev@.target static - bluetooth.target static - boot-complete.target static - cloud-config.target static - cloud-init.target enabled-runtime disabled cryptsetup-pre.target static - cryptsetup.target static - ctrl-alt-del.target alias - default.target alias - emergency.target static - exit.target disabled disabled factory-reset.target static - final.target static - first-boot-complete.target static - getty-pre.target static - getty.target static - graphical.target static - halt.target disabled disabled hibernate.target static - hybrid-sleep.target static - initrd-fs.target static - initrd-root-device.target static - initrd-root-fs.target static - initrd-switch-root.target static - initrd-usr-fs.target static - initrd.target static - integritysetup-pre.target static - integritysetup.target static - kexec.target disabled disabled local-fs-pre.target static - local-fs.target static - multi-user.target indirect disabled network-online.target static - network-pre.target static - network.target static - nfs-client.target enabled disabled nss-lookup.target static - nss-user-lookup.target static - paths.target static - poweroff.target disabled disabled printer.target static - reboot.target enabled enabled remote-cryptsetup.target disabled enabled remote-fs-pre.target static - remote-fs.target enabled enabled remote-veritysetup.target disabled disabled rescue.target static - rpc_pipefs.target static - rpcbind.target static - runlevel0.target alias - runlevel1.target alias - runlevel2.target alias - runlevel3.target alias - runlevel4.target alias - runlevel5.target alias - runlevel6.target alias - selinux-autorelabel.target static - shutdown.target static - sigpwr.target static - sleep.target static - slices.target static - smartcard.target static - sockets.target static - sound.target static - sshd-keygen.target static - suspend-then-hibernate.target static - suspend.target static - swap.target static - sysinit.target static - system-update-pre.target static - system-update.target static - time-set.target static - time-sync.target static - timers.target static - umount.target static - usb-gadget.target static - veritysetup-pre.target static - veritysetup.target static - dnf-makecache.timer enabled enabled fstrim.timer disabled disabled fwupd-refresh.timer disabled disabled insights-client.timer disabled disabled logrotate.timer enabled enabled podman-auto-update.timer disabled disabled sysstat-collect.timer enabled disabled sysstat-summary.timer enabled disabled systemd-sysupdate-reboot.timer disabled disabled systemd-sysupdate.timer disabled disabled systemd-tmpfiles-clean.timer static - unbound-anchor.timer enabled enabled 359 unit files listed. 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:27Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:27Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:27Z DEBUG Starting external process 2025-10-01T08:13:27Z DEBUG args=['/usr/bin/authselect', 'select', 'sssd', 'with-sudo', '--force', '--backup=pre_ipaclient_20251001081327'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout=Backup stored at /var/lib/authselect/backups/pre_ipaclient_20251001081327 Profile "sssd" was selected. The following nsswitch maps are overwritten by the profile: - passwd - group - netgroup - automount - services - sudoers Make sure that SSSD service is configured and enabled. See SSSD documentation for more information. 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:27Z INFO SSSD enabled 2025-10-01T08:13:27Z DEBUG Starting external process 2025-10-01T08:13:27Z DEBUG args=['/bin/systemctl', 'restart', 'sssd.service'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout= 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:27Z DEBUG Starting external process 2025-10-01T08:13:27Z DEBUG args=['/bin/systemctl', 'is-active', 'sssd.service'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout=active 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:27Z DEBUG Restart of sssd.service complete 2025-10-01T08:13:27Z DEBUG Starting external process 2025-10-01T08:13:27Z DEBUG args=['/bin/systemctl', 'enable', 'sssd.service'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout= 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:27Z DEBUG Backing up system configuration file '/etc/openldap/ldap.conf' 2025-10-01T08:13:27Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:27Z DEBUG Updating configuration file /etc/openldap/ldap.conf 2025-10-01T08:13:27Z DEBUG # File modified by ipa-client-install # We do not want to break your existing configuration, hence: # URI, BASE, and SASL_MECH # have been added if they were not set. # In case any of them were set, a comment has been inserted and # "# CONF_NAME modified by IPA" added to the line above. # To use IPA server with openLDAP tools, please comment out your # existing configuration for these options and uncomment the # corresponding lines generated by IPA. # # LDAP Defaults # # See ldap.conf(5) for details # This file should be world readable but not world writable. #BASE dc=example,dc=com #URI ldap://ldap.example.com ldap://ldap-master.example.com:666 #SIZELIMIT 12 #TIMELIMIT 15 #DEREF never # When no CA certificates are specified the Shared System Certificates # are in use. In order to have these available along with the ones specified # by TLS_CACERTDIR one has to include them explicitly: #TLS_CACERT /etc/pki/tls/cert.pem # System-wide Crypto Policies provide up to date cipher suite which should # be used unless one needs a finer grinded selection of ciphers. Hence, the # PROFILE=SYSTEM value represents the default behavior which is in place # when no explicit setting is used. (see openssl-ciphers(1) for more info) #TLS_CIPHER_SUITE PROFILE=SYSTEM # Turning this off breaks GSSAPI used with krb5 when rdns = false SASL_NOCANON on URI ldaps://ipa.ooo.test BASE dc=ooo,dc=test SASL_MECH GSSAPI 2025-10-01T08:13:27Z INFO Configured /etc/openldap/ldap.conf 2025-10-01T08:13:27Z DEBUG Starting external process 2025-10-01T08:13:27Z DEBUG args=['/usr/bin/getent', 'passwd', 'admin@ooo.test'] 2025-10-01T08:13:27Z DEBUG Process finished, return code=0 2025-10-01T08:13:27Z DEBUG stdout=admin:*:1261600000:1261600000:Administrator:/home/admin:/bin/bash 2025-10-01T08:13:27Z DEBUG stderr= 2025-10-01T08:13:28Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:28Z DEBUG Backing up system configuration file '/etc/ssh/ssh_config' 2025-10-01T08:13:28Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:28Z INFO Configured /etc/ssh/ssh_config 2025-10-01T08:13:28Z DEBUG Backing up system configuration file '/etc/ssh/sshd_config' 2025-10-01T08:13:28Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:28Z DEBUG Starting external process 2025-10-01T08:13:28Z DEBUG args=['/usr/sbin/sshd', '-t', '-f', '/dev/null', '-o', 'AuthorizedKeysCommand=/usr/bin/sss_ssh_authorizedkeys', '-o', 'AuthorizedKeysCommandUser=nobody'] 2025-10-01T08:13:28Z DEBUG Process finished, return code=0 2025-10-01T08:13:28Z DEBUG stdout= 2025-10-01T08:13:28Z DEBUG stderr=main: sshd: ssh-rsa algorithm is disabled 2025-10-01T08:13:28Z INFO Configured /etc/ssh/sshd_config 2025-10-01T08:13:28Z DEBUG Starting external process 2025-10-01T08:13:28Z DEBUG args=['/bin/systemctl', 'is-active', 'sshd.service'] 2025-10-01T08:13:28Z DEBUG Process finished, return code=0 2025-10-01T08:13:28Z DEBUG stdout=active 2025-10-01T08:13:28Z DEBUG stderr= 2025-10-01T08:13:28Z DEBUG Starting external process 2025-10-01T08:13:28Z DEBUG args=['/bin/systemctl', 'restart', 'sshd.service'] 2025-10-01T08:13:28Z DEBUG Process finished, return code=0 2025-10-01T08:13:28Z DEBUG stdout= 2025-10-01T08:13:28Z DEBUG stderr= 2025-10-01T08:13:28Z DEBUG Starting external process 2025-10-01T08:13:28Z DEBUG args=['/bin/systemctl', 'is-active', 'sshd.service'] 2025-10-01T08:13:28Z DEBUG Process finished, return code=0 2025-10-01T08:13:28Z DEBUG stdout=active 2025-10-01T08:13:28Z DEBUG stderr= 2025-10-01T08:13:28Z DEBUG Restart of sshd.service complete 2025-10-01T08:13:30Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:30Z INFO Configuring ooo.test as NIS domain. 2025-10-01T08:13:30Z DEBUG Starting external process 2025-10-01T08:13:30Z DEBUG args=['/usr/bin/nisdomainname'] 2025-10-01T08:13:30Z DEBUG Process finished, return code=1 2025-10-01T08:13:30Z DEBUG stdout=nisdomainname: Local domain name not set 2025-10-01T08:13:30Z DEBUG stderr= 2025-10-01T08:13:30Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:30Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:30Z DEBUG Starting external process 2025-10-01T08:13:30Z DEBUG args=['/bin/systemctl', 'is-enabled', 'nis-domainname.service'] 2025-10-01T08:13:30Z DEBUG Process finished, return code=0 2025-10-01T08:13:30Z DEBUG stdout=enabled 2025-10-01T08:13:30Z DEBUG stderr= 2025-10-01T08:13:30Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:30Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-01T08:13:30Z DEBUG Starting external process 2025-10-01T08:13:30Z DEBUG args=['/bin/systemctl', 'enable', 'nis-domainname.service'] 2025-10-01T08:13:30Z DEBUG Process finished, return code=0 2025-10-01T08:13:30Z DEBUG stdout= 2025-10-01T08:13:30Z DEBUG stderr= 2025-10-01T08:13:30Z DEBUG Starting external process 2025-10-01T08:13:30Z DEBUG args=['/bin/systemctl', 'restart', 'nis-domainname.service'] 2025-10-01T08:13:30Z DEBUG Process finished, return code=0 2025-10-01T08:13:30Z DEBUG stdout= 2025-10-01T08:13:30Z DEBUG stderr= 2025-10-01T08:13:30Z DEBUG Starting external process 2025-10-01T08:13:30Z DEBUG args=['/bin/systemctl', 'is-active', 'nis-domainname.service'] 2025-10-01T08:13:30Z DEBUG Process finished, return code=0 2025-10-01T08:13:30Z DEBUG stdout=active 2025-10-01T08:13:30Z DEBUG stderr= 2025-10-01T08:13:30Z DEBUG Restart of nis-domainname.service complete 2025-10-01T08:13:31Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:31Z DEBUG Backing up system configuration file '/etc/krb5.conf' 2025-10-01T08:13:31Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:31Z DEBUG Starting external process 2025-10-01T08:13:31Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-01T08:13:31Z DEBUG Process finished, return code=0 2025-10-01T08:13:31Z DEBUG stdout= 2025-10-01T08:13:31Z DEBUG stderr= 2025-10-01T08:13:31Z DEBUG Starting external process 2025-10-01T08:13:31Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-01T08:13:31Z DEBUG Process finished, return code=0 2025-10-01T08:13:31Z DEBUG stdout= 2025-10-01T08:13:31Z DEBUG stderr= 2025-10-01T08:13:31Z DEBUG Starting external process 2025-10-01T08:13:31Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-01T08:13:31Z DEBUG Process finished, return code=0 2025-10-01T08:13:31Z DEBUG stdout=342931890 2025-10-01T08:13:31Z DEBUG stderr= 2025-10-01T08:13:31Z DEBUG Enabling persistent keyring CCACHE 2025-10-01T08:13:31Z DEBUG Writing Kerberos configuration to /etc/krb5.conf: 2025-10-01T08:13:31Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:31Z DEBUG Writing configuration file /etc/krb5.conf 2025-10-01T08:13:31Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005463866.ooo.test = OOO.TEST 2025-10-01T08:13:31Z INFO Configured /etc/krb5.conf for IPA realm OOO.TEST 2025-10-01T08:13:32Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-01T08:13:32Z DEBUG Starting external process 2025-10-01T08:13:32Z DEBUG args=['/bin/systemctl', 'try-restart', 'certmonger.service'] 2025-10-01T08:13:32Z DEBUG Process finished, return code=0 2025-10-01T08:13:32Z DEBUG stdout= 2025-10-01T08:13:32Z DEBUG stderr= 2025-10-01T08:13:32Z DEBUG Starting external process 2025-10-01T08:13:32Z DEBUG args=['/bin/systemctl', 'is-active', 'certmonger.service'] 2025-10-01T08:13:32Z DEBUG Process finished, return code=3 2025-10-01T08:13:32Z DEBUG stdout=inactive 2025-10-01T08:13:32Z DEBUG stderr= 2025-10-01T08:13:32Z DEBUG Restart of certmonger.service complete