2025-10-11T08:01:44Z INFO This program will set up FreeIPA client. 2025-10-11T08:01:44Z INFO Version 4.10.1 2025-10-11T08:01:44Z INFO 2025-10-11T08:01:44Z DEBUG Starting external process 2025-10-11T08:01:44Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:01:44Z DEBUG Process finished, return code=0 2025-10-11T08:01:44Z DEBUG stdout= 2025-10-11T08:01:44Z DEBUG stderr= 2025-10-11T08:01:44Z DEBUG Starting external process 2025-10-11T08:01:44Z DEBUG args=['/bin/systemctl', 'is-enabled', 'ntpd.service'] 2025-10-11T08:01:44Z DEBUG Process finished, return code=1 2025-10-11T08:01:44Z DEBUG stdout= 2025-10-11T08:01:44Z DEBUG stderr=Failed to get unit file state for ntpd.service: No such file or directory 2025-10-11T08:01:44Z DEBUG Starting external process 2025-10-11T08:01:44Z DEBUG args=['/bin/systemctl', 'is-active', 'ntpd.service'] 2025-10-11T08:01:44Z DEBUG Process finished, return code=3 2025-10-11T08:01:44Z DEBUG stdout=inactive 2025-10-11T08:01:44Z DEBUG stderr= 2025-10-11T08:01:44Z DEBUG Starting external process 2025-10-11T08:01:44Z DEBUG args=['/bin/systemctl', 'is-enabled', 'systemd-timesyncd.service'] 2025-10-11T08:01:44Z DEBUG Process finished, return code=1 2025-10-11T08:01:44Z DEBUG stdout= 2025-10-11T08:01:44Z DEBUG stderr=Failed to get unit file state for systemd-timesyncd.service: No such file or directory 2025-10-11T08:01:44Z DEBUG Starting external process 2025-10-11T08:01:44Z DEBUG args=['/bin/systemctl', 'is-active', 'systemd-timesyncd.service'] 2025-10-11T08:01:44Z DEBUG Process finished, return code=3 2025-10-11T08:01:44Z DEBUG stdout=inactive 2025-10-11T08:01:44Z DEBUG stderr= 2025-10-11T08:01:44Z DEBUG Deleting invalid keytab: '/etc/krb5.keytab'. 2025-10-11T08:01:44Z DEBUG [IPA Discovery] 2025-10-11T08:01:44Z DEBUG Starting IPA discovery with domain=ooo.test, servers=['ipa.ooo.test'], hostname=np0005481014.ooo.test 2025-10-11T08:01:44Z DEBUG Server and domain forced 2025-10-11T08:01:44Z DEBUG [Kerberos realm search] 2025-10-11T08:01:44Z DEBUG Search DNS for TXT record of _kerberos.ooo.test 2025-10-11T08:01:44Z DEBUG DNS record found: "OOO.TEST" 2025-10-11T08:01:44Z DEBUG [LDAP server check] 2025-10-11T08:01:44Z DEBUG Verifying that ipa.ooo.test (realm OOO.TEST) is an IPA server 2025-10-11T08:01:44Z DEBUG Init LDAP connection to: ldap://ipa.ooo.test:389 2025-10-11T08:01:44Z DEBUG Search LDAP server for IPA base DN 2025-10-11T08:01:44Z DEBUG Check if naming context 'dc=ooo,dc=test' is for IPA 2025-10-11T08:01:44Z DEBUG Naming context 'dc=ooo,dc=test' is a valid IPA context 2025-10-11T08:01:44Z DEBUG Search for (objectClass=krbRealmContainer) in dc=ooo,dc=test (sub) 2025-10-11T08:01:44Z DEBUG Found: cn=OOO.TEST,cn=kerberos,dc=ooo,dc=test 2025-10-11T08:01:44Z DEBUG Discovery result: Success; server=ipa.ooo.test, domain=ooo.test, kdc=ipa.ooo.test, basedn=dc=ooo,dc=test 2025-10-11T08:01:44Z DEBUG Validated servers: ipa.ooo.test 2025-10-11T08:01:44Z DEBUG will use discovered domain: ooo.test 2025-10-11T08:01:44Z DEBUG Using servers from command line, disabling DNS discovery 2025-10-11T08:01:44Z DEBUG will use provided server: ipa.ooo.test 2025-10-11T08:01:44Z DEBUG will use discovered realm: OOO.TEST 2025-10-11T08:01:44Z DEBUG will use discovered basedn: dc=ooo,dc=test 2025-10-11T08:01:44Z INFO Client hostname: np0005481014.ooo.test 2025-10-11T08:01:44Z DEBUG Hostname source: Provided as option 2025-10-11T08:01:44Z INFO Realm: OOO.TEST 2025-10-11T08:01:44Z DEBUG Realm source: Discovered from LDAP DNS records in ipa.ooo.test 2025-10-11T08:01:44Z INFO DNS Domain: ooo.test 2025-10-11T08:01:44Z DEBUG DNS Domain source: Forced 2025-10-11T08:01:44Z INFO IPA Server: ipa.ooo.test 2025-10-11T08:01:44Z DEBUG IPA Server source: Provided as option 2025-10-11T08:01:44Z INFO BaseDN: dc=ooo,dc=test 2025-10-11T08:01:44Z DEBUG BaseDN source: From IPA server ldap://ipa.ooo.test:389 2025-10-11T08:01:46Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:46Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-enabled', 'ntpd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=1 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr=Failed to get unit file state for ntpd.service: No such file or directory 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-active', 'ntpd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=3 2025-10-11T08:01:46Z DEBUG stdout=inactive 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-enabled', 'systemd-timesyncd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=1 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr=Failed to get unit file state for systemd-timesyncd.service: No such file or directory 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-active', 'systemd-timesyncd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=3 2025-10-11T08:01:46Z DEBUG stdout=inactive 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z INFO Synchronizing time 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-enabled', 'chronyd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout=enabled 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:46Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:46Z DEBUG Configuring chrony 2025-10-11T08:01:46Z DEBUG Setting time servers: 2025-10-11T08:01:46Z DEBUG '' 2025-10-11T08:01:46Z DEBUG Backing up '/etc/chrony.conf' 2025-10-11T08:01:46Z DEBUG Backing up system configuration file '/etc/chrony.conf' 2025-10-11T08:01:46Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:46Z DEBUG Writing configuration to '/etc/chrony.conf' 2025-10-11T08:01:46Z ERROR Augeas failed to configure file /etc/chrony.conf 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/sbin/restorecon', '/etc/chrony.conf'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'enable', 'chronyd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'restart', 'chronyd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout= 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/bin/systemctl', 'is-active', 'chronyd.service'] 2025-10-11T08:01:46Z DEBUG Process finished, return code=0 2025-10-11T08:01:46Z DEBUG stdout=active 2025-10-11T08:01:46Z DEBUG stderr= 2025-10-11T08:01:46Z DEBUG Restart of chronyd.service complete 2025-10-11T08:01:46Z INFO Attempting to sync time with chronyc. 2025-10-11T08:01:46Z DEBUG Starting external process 2025-10-11T08:01:46Z DEBUG args=['/usr/bin/chronyc', '-d', 'waitsync', '4', '0', '0', '3'] 2025-10-11T08:01:52Z DEBUG Process finished, return code=0 2025-10-11T08:01:52Z DEBUG stdout=try: 1, refid: 00000000, correction: 0.000000000, skew: 0.000 try: 2, refid: 00000000, correction: 0.000000000, skew: 0.000 try: 3, refid: 1785A8F5, correction: 0.000012453, skew: 0.149 2025-10-11T08:01:52Z DEBUG stderr=Resolved 127.0.0.1 to 127.0.0.1 Resolved ::1 to ::1 Could not remove /run/chrony/chronyc.38909.sock : No such file or directory Opened Unix socket fd=3 remote=/run/chrony/chronyd.sock local=/run/chrony/chronyc.38909.sock Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 Sent data fd=3 len=104 Timeout 1.000000 seconds Received data fd=3 len=104 Reply cmd=33 reply=5 stat=0 2025-10-11T08:01:52Z INFO Time synchronization was successful. 2025-10-11T08:01:53Z DEBUG Initializing principal host/np0005481014.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-11T08:01:53Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-11T08:01:53Z DEBUG Starting external process 2025-10-11T08:01:53Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:01:53Z DEBUG Process finished, return code=0 2025-10-11T08:01:53Z DEBUG stdout= 2025-10-11T08:01:53Z DEBUG stderr= 2025-10-11T08:01:53Z DEBUG Starting external process 2025-10-11T08:01:53Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-11T08:01:53Z DEBUG Process finished, return code=0 2025-10-11T08:01:53Z DEBUG stdout= 2025-10-11T08:01:53Z DEBUG stderr= 2025-10-11T08:01:53Z DEBUG Starting external process 2025-10-11T08:01:53Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-11T08:01:53Z DEBUG Process finished, return code=0 2025-10-11T08:01:53Z DEBUG stdout=822773981 2025-10-11T08:01:53Z DEBUG stderr= 2025-10-11T08:01:53Z DEBUG Enabling persistent keyring CCACHE 2025-10-11T08:01:53Z DEBUG Writing Kerberos configuration to /tmp/tmpwsmjpsc6: 2025-10-11T08:01:53Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:01:53Z DEBUG Writing configuration file /tmp/tmpwsmjpsc6 2025-10-11T08:01:53Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:01:53Z DEBUG Initializing principal host/np0005481014.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-11T08:01:53Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-11T08:01:55Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:55Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:55Z DEBUG Backing up system configuration file '/etc/hostname' 2025-10-11T08:01:55Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:55Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:55Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:01:55Z DEBUG Starting external process 2025-10-11T08:01:55Z DEBUG args=['/bin/hostnamectl', 'set-hostname', 'np0005481014.ooo.test'] 2025-10-11T08:01:55Z DEBUG Process finished, return code=0 2025-10-11T08:01:55Z DEBUG stdout= 2025-10-11T08:01:55Z DEBUG stderr= 2025-10-11T08:01:56Z DEBUG Starting external process 2025-10-11T08:01:56Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:01:56Z DEBUG Process finished, return code=0 2025-10-11T08:01:56Z DEBUG stdout= 2025-10-11T08:01:56Z DEBUG stderr= 2025-10-11T08:01:56Z DEBUG Starting external process 2025-10-11T08:01:56Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-11T08:01:56Z DEBUG Process finished, return code=0 2025-10-11T08:01:56Z DEBUG stdout= 2025-10-11T08:01:56Z DEBUG stderr= 2025-10-11T08:01:56Z DEBUG Starting external process 2025-10-11T08:01:56Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-11T08:01:56Z DEBUG Process finished, return code=0 2025-10-11T08:01:56Z DEBUG stdout=822773981 2025-10-11T08:01:56Z DEBUG stderr= 2025-10-11T08:01:56Z DEBUG Enabling persistent keyring CCACHE 2025-10-11T08:01:56Z DEBUG Writing Kerberos configuration to /tmp/tmpaecqt39n: 2025-10-11T08:01:56Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:01:56Z DEBUG Writing configuration file /tmp/tmpaecqt39n 2025-10-11T08:01:56Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:01:57Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:57Z WARNING Downloading the CA certificate via HTTP, this is INSECURE 2025-10-11T08:01:57Z DEBUG trying to retrieve CA cert via HTTP from http://ipa.ooo.test/ipa/config/ca.crt 2025-10-11T08:01:57Z DEBUG Starting external process 2025-10-11T08:01:57Z DEBUG args=['/usr/bin/curl', '-o', '-', 'http://ipa.ooo.test/ipa/config/ca.crt'] 2025-10-11T08:01:57Z DEBUG Process finished, return code=0 2025-10-11T08:01:57Z DEBUG stdout=-----BEGIN CERTIFICATE----- MIIERDCCAqygAwIBAgIBATANBgkqhkiG9w0BAQsFADAzMREwDwYDVQQKDAhPT08u VEVTVDEeMBwGA1UEAwwVQ2VydGlmaWNhdGUgQXV0aG9yaXR5MB4XDTI1MTAxMTA3 NDUyM1oXDTQ1MTAxMTA3NDUyM1owMzERMA8GA1UECgwIT09PLlRFU1QxHjAcBgNV BAMMFUNlcnRpZmljYXRlIEF1dGhvcml0eTCCAaIwDQYJKoZIhvcNAQEBBQADggGP ADCCAYoCggGBALc/Tk+umF8r9n1m+hcJO7Ez2Mvq66jBrQYwVVrLL52P+TudS4Cm 3UuxpERPOLQ7EsB/Pd+NUk+fieqDUXJ629UtfsjCCzonap8yxAE2P5meGs4pJQ+e hkPwZiTZL+K1mfKkcFbLRixKMoJViQH1Ur73y9OLkgnzWUvP+r/tLBSvPj/n+xWh Vsy7GCV434sWkKqaKrBgm5A5eyPebdmk9mr764Z1CFuNDjyHpgJBgUaiezuCvyci GYpQT3bLLeV3qX/SshpeInYntfsucojaAsc1C4FQKzwT615CQ7PX06cuUsiLLDEU C62ekmAtL6Sn4Z9f1f37VJSf1PCLz7yfZ+ubLU2AuECiMJoM1hsHdRV0RBnyfHx2 rgJ3SwBIotV25j6qRE/sSIEH/EFaGnLgckwxH6vQGPnH3k8+pcCapH6wL5yS4xdU Tl9jtETt3SHYO42uo3kBcRqSYLfW7JxNEU1jU6ze9nYKUSVA+9LtkyvRlv+ud55R Ayn1BIeQWQXP0wIDAQABo2MwYTAdBgNVHQ4EFgQUpmo3qgn1Gyf8p8PaklOw1w0+ KGkwHwYDVR0jBBgwFoAUpmo3qgn1Gyf8p8PaklOw1w0+KGkwDwYDVR0TAQH/BAUw AwEB/zAOBgNVHQ8BAf8EBAMCAcYwDQYJKoZIhvcNAQELBQADggGBAGlRIj856dNC Gu/FOOcitr79joZK/MhjLd1KY0lYjiYdMA/WS2ffemd6cTfDDShkyBmvSe2fGMke 9sZWNk5y09zueFdie8qRcGHSwk+XzWqALDQ4PtU49T+/yJqZXGufLzETlonSwwdt t6mOWPBps1t8Y8cnz8XeYRki1BVolJTYiCVBsBtY4U+2SBlbAZk6SshgTP5gSH4R ZRNy76uvFttufpjYsifT3tYtqTj7An6Tqx7KQPiWhmKq57hlhCkbCbZLMPLb2cph R01a/M0MflKHE8qbdzDVKOLCymDU8UmtUv+KLSatLw8wszCaAxM3wLPrtQYhU/4T redohRttpGFJXwWjcuzUm36Buxn4QUtLBoy8a4RZ3wtX9qrMpfV1agnZ90PjBuCY rH0r0kOoltKp+f6Tj6XBQtlxta/Jzwc0TeVE/sJnQUN5RSdUoAzJMr32rJ6+JsoC mPoJ4bEJyeJw3SeDBxbdPO54X30nfR7z7AEpXspq8JxRIKNv5v7uUw== -----END CERTIFICATE----- 2025-10-11T08:01:57Z DEBUG stderr= % Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 100 1541 100 1541 0 0 501k 0 --:--:-- --:--:-- --:--:-- 501k 2025-10-11T08:01:57Z INFO Successfully retrieved CA cert Subject: CN=Certificate Authority,O=OOO.TEST Issuer: CN=Certificate Authority,O=OOO.TEST Valid From: 2025-10-11 07:45:23 Valid Until: 2045-10-11 07:45:23 2025-10-11T08:01:57Z DEBUG Starting external process 2025-10-11T08:01:57Z DEBUG args=['/usr/sbin/ipa-join', '-s', 'ipa.ooo.test', '-b', 'dc=ooo,dc=test', '-h', 'np0005481014.ooo.test', '-w', XXXXXXXX] 2025-10-11T08:01:57Z DEBUG Process finished, return code=0 2025-10-11T08:01:57Z DEBUG stdout= 2025-10-11T08:01:57Z DEBUG stderr=Keytab successfully retrieved and stored in: /etc/krb5.keytab 2025-10-11T08:01:57Z DEBUG Initializing principal host/np0005481014.ooo.test@OOO.TEST using keytab /etc/krb5.keytab 2025-10-11T08:01:57Z DEBUG using ccache /etc/ipa/.dns_ccache 2025-10-11T08:01:57Z DEBUG Attempt 1/5: success 2025-10-11T08:01:58Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:58Z DEBUG Backing up system configuration file '/etc/ipa/default.conf' 2025-10-11T08:01:58Z DEBUG -> Not backing up - '/etc/ipa/default.conf' doesn't exist 2025-10-11T08:01:58Z DEBUG Writing configuration file /etc/ipa/default.conf 2025-10-11T08:01:58Z DEBUG #File modified by ipa-client-install [global] basedn = dc=ooo,dc=test realm = OOO.TEST domain = ooo.test server = ipa.ooo.test host = np0005481014.ooo.test xmlrpc_uri = https://ipa.ooo.test/ipa/xml enable_ra = True 2025-10-11T08:01:59Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:01:59Z DEBUG New SSSD config will be created 2025-10-11T08:01:59Z INFO Configured /etc/sssd/sssd.conf 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/bin/certutil', '-d', '/tmp/tmpyyeqvuuv', '-N', '-f', '/tmp/tmpyyeqvuuv/pwdfile.txt', '-@', '/tmp/tmpyyeqvuuv/pwdfile.txt'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmpyyeqvuuv'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout=Warning no default label for /tmp/tmpyyeqvuuv 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmpyyeqvuuv/cert9.db'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout=Warning no default label for /tmp/tmpyyeqvuuv/cert9.db 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmpyyeqvuuv/key4.db'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout=Warning no default label for /tmp/tmpyyeqvuuv/key4.db 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmpyyeqvuuv/pkcs11.txt'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout=Warning no default label for /tmp/tmpyyeqvuuv/pkcs11.txt 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/sbin/restorecon', '-F', '/tmp/tmpyyeqvuuv/pwdfile.txt'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout=Warning no default label for /tmp/tmpyyeqvuuv/pwdfile.txt 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG Starting external process 2025-10-11T08:02:00Z DEBUG args=['/usr/bin/certutil', '-d', 'sql:/tmp/tmpyyeqvuuv', '-A', '-n', 'CA certificate 1', '-t', 'C,,', '-a', '-f', '/tmp/tmpyyeqvuuv/pwdfile.txt'] 2025-10-11T08:02:00Z DEBUG Process finished, return code=0 2025-10-11T08:02:00Z DEBUG stdout= 2025-10-11T08:02:00Z DEBUG stderr= 2025-10-11T08:02:00Z DEBUG failed to find session_cookie in persistent storage for principal 'host/np0005481014.ooo.test@OOO.TEST' 2025-10-11T08:02:00Z DEBUG trying https://ipa.ooo.test/ipa/json 2025-10-11T08:02:00Z DEBUG Created connection context.rpcclient_140053680159328 2025-10-11T08:02:00Z DEBUG [try 1]: Forwarding 'schema' to json server 'https://ipa.ooo.test/ipa/json' 2025-10-11T08:02:00Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-11T08:02:00Z DEBUG received Set-Cookie ()'['ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d;path=/ipa;httponly;secure;']' 2025-10-11T08:02:00Z DEBUG storing cookie 'ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d;' for principal host/np0005481014.ooo.test@OOO.TEST 2025-10-11T08:02:01Z DEBUG Destroyed connection context.rpcclient_140053680159328 2025-10-11T08:02:01Z DEBUG importing all plugin modules in ipaclient.remote_plugins.schema$e1d6c890... 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.remote_plugins.schema$e1d6c890.plugins 2025-10-11T08:02:01Z DEBUG importing all plugin modules in ipaclient.plugins... 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.automember 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.automount 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.ca 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.cert 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.certmap 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.certprofile 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.dns 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.hbacrule 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.hbactest 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.host 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.idrange 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.internal 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.location 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.migration 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.misc 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.otptoken 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.otptoken_yubikey 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.passwd 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.permission 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.rpcclient 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.server 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.service 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.sudorule 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.topology 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.trust 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.user 2025-10-11T08:02:01Z DEBUG importing plugin module ipaclient.plugins.vault 2025-10-11T08:02:01Z DEBUG found session_cookie in persistent storage for principal 'host/np0005481014.ooo.test@OOO.TEST', cookie: 'ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d' 2025-10-11T08:02:01Z DEBUG setting session_cookie into context 'ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d;' 2025-10-11T08:02:01Z DEBUG trying https://ipa.ooo.test/ipa/session/json 2025-10-11T08:02:01Z DEBUG Created connection context.rpcclient_140053658368992 2025-10-11T08:02:01Z DEBUG [try 1]: Forwarding 'ping' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-11T08:02:01Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-11T08:02:01Z DEBUG [try 1]: Forwarding 'ca_is_enabled' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-11T08:02:01Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-11T08:02:01Z DEBUG raw: config_show(version='2.251') 2025-10-11T08:02:01Z DEBUG config_show(version='2.251') 2025-10-11T08:02:01Z DEBUG [try 1]: Forwarding 'config_show/1' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-11T08:02:01Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-11T08:02:02Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:02Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:02Z DEBUG importing all plugin modules in ipaclient.remote_plugins.schema$e1d6c890... 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.remote_plugins.schema$e1d6c890.plugins 2025-10-11T08:02:02Z DEBUG importing all plugin modules in ipaclient.plugins... 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.automember 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.automount 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.ca 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.cert 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.certmap 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.certprofile 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.dns 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.hbacrule 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.hbactest 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.host 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.idrange 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.internal 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.location 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.migration 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.misc 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.otptoken 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.otptoken_yubikey 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.passwd 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.permission 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.rpcclient 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.server 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.service 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.sudorule 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.topology 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.trust 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.user 2025-10-11T08:02:02Z DEBUG importing plugin module ipaclient.plugins.vault 2025-10-11T08:02:03Z DEBUG found session_cookie in persistent storage for principal 'host/np0005481014.ooo.test@OOO.TEST', cookie: 'ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d' 2025-10-11T08:02:03Z DEBUG setting session_cookie into context 'ipa_session=MagBearerToken=cBR%2bm3hFH6fm2vwqWEs0D%2ftV1s0KZjAEjmZKrri59wnFCoP6O8bFQxsBznT%2fg6Td4n9pXI7a0TXp7jLMPzrwrqLyHDr2ehrMM4Ka%2bbV%2bFfSWOp6VJZdQqgiiLWOpgWCW%2bOhUgPodvSWFpfrsYdJsaU2giARXeOMuSXafXSy2S%2bP2bswgIWTNhIIrTe7GwIf410WmYuF8QmVLM7vjY%2bO1FIQJisvekXC4OUFvrBe76g2%2biAz51Yeejy8xZrKmDoFJoEmUES7M1wV2zUKCF7tQ2g%3d%3d;' 2025-10-11T08:02:03Z DEBUG trying https://ipa.ooo.test/ipa/session/json 2025-10-11T08:02:03Z DEBUG Created connection context.rpcclient_139799707784576 2025-10-11T08:02:03Z DEBUG [try 1]: Forwarding 'ping' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-11T08:02:03Z DEBUG New HTTP connection (ipa.ooo.test) 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/bin/certutil', '-d', '/etc/ipa/nssdb', '-N', '-f', '/etc/ipa/nssdb/pwdfile.txt', '-@', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/cert9.db'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/key4.db'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/pkcs11.txt'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG Starting external process 2025-10-11T08:02:03Z DEBUG args=['/sbin/restorecon', '-F', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-11T08:02:03Z DEBUG Process finished, return code=0 2025-10-11T08:02:03Z DEBUG stdout= 2025-10-11T08:02:03Z DEBUG stderr= 2025-10-11T08:02:03Z DEBUG retrieving schema for SchemaCache url=ldap://ipa.ooo.test:389 conn= 2025-10-11T08:02:04Z DEBUG Adding CA certificates to the IPA NSS database. 2025-10-11T08:02:04Z DEBUG Starting external process 2025-10-11T08:02:04Z DEBUG args=['/usr/bin/certutil', '-d', 'sql:/etc/ipa/nssdb', '-A', '-n', 'OOO.TEST IPA CA', '-t', 'CT,C,C', '-a', '-f', '/etc/ipa/nssdb/pwdfile.txt'] 2025-10-11T08:02:04Z DEBUG Process finished, return code=0 2025-10-11T08:02:04Z DEBUG stdout= 2025-10-11T08:02:04Z DEBUG stderr= 2025-10-11T08:02:04Z DEBUG Starting external process 2025-10-11T08:02:04Z DEBUG args=['/usr/bin/update-ca-trust'] 2025-10-11T08:02:05Z DEBUG Process finished, return code=0 2025-10-11T08:02:05Z DEBUG stdout= 2025-10-11T08:02:05Z DEBUG stderr= 2025-10-11T08:02:05Z INFO Systemwide CA database updated. 2025-10-11T08:02:05Z DEBUG The DNS query name does not exist: np0005481014.ooo.test. 2025-10-11T08:02:05Z WARNING Hostname (np0005481014.ooo.test) does not have A/AAAA record. 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use loopback IP address 127.0.0.1 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use loopback IP address ::1 2025-10-11T08:02:05Z DEBUG IP check successful: 38.102.83.219 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fe6a:2bb5%eth0 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fefb:5bba%eth1 2025-10-11T08:02:05Z DEBUG IP check successful: 192.168.122.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fefb:5bba%br-ex 2025-10-11T08:02:05Z DEBUG IP check successful: 172.17.0.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::e0a5:acff:fe5e:4e33%vlan20 2025-10-11T08:02:05Z DEBUG IP check successful: 172.20.0.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::588f:adff:fed0:b5a6%vlan23 2025-10-11T08:02:05Z DEBUG IP check successful: 172.21.0.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::1c9b:79ff:fe73:56bd%vlan44 2025-10-11T08:02:05Z DEBUG IP check successful: 172.19.0.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::146e:21ff:feea:1fb9%vlan22 2025-10-11T08:02:05Z DEBUG IP check successful: 172.18.0.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::bc0e:71ff:fe07:b697%vlan21 2025-10-11T08:02:05Z DEBUG IP check successful: 192.168.122.104 2025-10-11T08:02:05Z DEBUG IP check failed: cannot use link-local IP address fe80::f816:3eff:fefb:5bba%br-ex 2025-10-11T08:02:05Z DEBUG Searching for an interface of IP address: 192.168.122.104 2025-10-11T08:02:05Z DEBUG Testing local IP address: 127.0.0.1/255.0.0.0 (interface: lo) 2025-10-11T08:02:05Z DEBUG Testing local IP address: 38.102.83.219/255.255.255.0 (interface: eth0) 2025-10-11T08:02:05Z DEBUG Testing local IP address: 192.168.122.104/255.255.255.0 (interface: br-ex) 2025-10-11T08:02:05Z DEBUG Writing nsupdate commands to /etc/ipa/.dns_update.txt: 2025-10-11T08:02:05Z DEBUG debug update delete np0005481014.ooo.test. IN A show send update delete np0005481014.ooo.test. IN AAAA show send update add np0005481014.ooo.test. 1200 IN A 192.168.122.104 show send 2025-10-11T08:02:05Z DEBUG Starting external process 2025-10-11T08:02:05Z DEBUG args=['/usr/bin/nsupdate', '-g', '/etc/ipa/.dns_update.txt'] 2025-10-11T08:02:05Z DEBUG Process finished, return code=0 2025-10-11T08:02:05Z DEBUG stdout=Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY A Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 13175 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2995480808.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 2995480808.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760169725 3 NOERROR 1775 YIIG6wYGKwYBBQUCoIIG3zCCBtugDTALBgkqhkiG9xIBAgKiggbIBIIG xGCCBsAGCSqGSIb3EgECAgEAboIGrzCCBqugAwIBBaEDAgEOogcDBQAg AAAAo4IFsGGCBawwggWooAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBXMwggVvoAMCARqhAwIBAqKC BWEEggVdMUSDISQqRQJ9G3t9es1HHFwzupFXJB7h402U7FZNwtAQDrdq KmAX1jv4HmXVS9a6Q9NwOp4iRcPELNKFQJ4M4wvcC6XlhYmZqI8+zdQ2 En6L75ZVd1DrdlxbF16F+qZtUiNPQgePKGhAN4USyqSuwWrBay8RTGJJ NXRONVCxx7RcstoyVNyUJf4lxBnvnK6PHXj6SwlovppkgR5l9AAK4jyJ TAy2SFKoKo7oNJnKltRzXacKSP77tWb+0xStfFSo1R3+Mj9TUG0R+WKf EXn0ea1Dzy7h4SSxa7VBCKukCvy9eP7F7HdgQ6LVs+mOS96cYfUd+r7b jj491aLcJw/ou2ehYrS4UH7LZLfvTgedZC2nq1jU7+o2DpITapqnKqj7 SEOq9TyLe3jveOF5tO/Mpmyd6RAVSgcD0QknaZlszS60AU0DWC5LHmyX 16BFYvSRDQ/EYhKd5H1EcJiYPwwL8ZEpBFujrLNJdrxEZ/jfpCfCozAv yo5o9F5p5/9e5mN/9F2i9DcmZtrSNk6eUN0e8J1TC01Lhq6UyCvOCym9 51z9CBbpxXseyEWARIDxP1APkinqKWMBz2wFP0czcyHIu2PA9OF6AYQW xg0upDgSkYUAQ4fqR3nX2Sd3hR/B9JvgSAUYcPfDcLnfmYS0pJgfNKiO vgMijFruDu8/8nL84uzduR1aiyaRgIY4ZJy3N4ly21nrEajpm/XPDFvP HRcjTTUUSg8JXa8t7yiOw6nrtHszUeVgizXLiuSbDgzEEY4i94yJNy4+ 0Uk79svEf/xoQJme3f7Epsm4yHkYfpzhUPjI0G8DSxwsHQl0jBY/A+uD heGuqP97SMNWptxEl8YY1BpH8iqgw4+ekNrqdNVc+C0ReDT/SzMBEDlw Ax8q3y0O/LCHiEgYpFgZKZGalVOhkzXrjnRVha9W5JKUwotAaJDrHFtL I/IlTdC+RvjotL/c+Dgj0ajAQ5q3jCBS5hsAMpWvk6zb6s6ZigjnoAIT yzyz08tsbGtOgX77ec1pZ/ryN4WzAyeVBK4L1Oc42egn3N2nbDoZxmO2 K58xlUQQqqYGr/mISseTe/1AIiHEBjizlXoJi9LV2WGQTDsnThPCGBpY D6syTt1W0rvkFZ5z/rDZiyouinzT9OpQR8AyoeRWOgZ+p7m/gdZyyCvJ wSAKYHB/d+CmTiQzShJn8P+EMGEAK70VgbGEDbUyGW2BCUR5CbfPr2dE wbhMUu0FeZ1h1dUUhH3Y2cBt+KNHfarN3BI0dsczT5y8U8PdfQR0EaYZ Z6xRhQdR5BUfVlpXYzwZfBu0pefPoRjJRQUsMKVtpxEvJSqyvnhY4xSS saaEVkacgpN5rYbok1Ovse2D1TMqiidKGlsc/Y7FkNmtKWUqqinwMeB7 VN20Z9r3lkZVwZS6ZCJuGGhy3Scr6wmOOJIbByliVQ6Es8tmxirmlTFa ZrUwUfqr9B1ovcVX/BrGNuLJP7TZrhfxbZneTQhdczUaODSpUcMvpI5p fqP+SaAJxrpjV+0DpR1lSwC1sZ8Jl0It6xe9SxO6VAhT/kZufnwK3+XM bK0HadcXlCXB9Pmv3kuccJU1drdaTKvIb5pVmUJNq7uayHHbfbxGlDb7 /N1MnRR8SfoxP47ZkDQMYNxc2gJneM5HJcqYPmosOi6kanNomeeAE6nh 6gnJ7pp8wxcCUlZjggCNRa2IVgYLhM9RACBValRSpfd2kIV+86L00H03 E7ktYJd5l6Dv7Tw2s9JaVqOSMq/dnNoQ+x4VQdf0ky/o7URZ5zKMz3Ym +DP6qf8TxTxJlH8VXJyEOJZu1U4RCYWPdYeqxYh+tJ9xVzikgeEwgd6g AwIBEqKB1gSB066xiuSoGEldlA/7DtY2PAo1bQh4lXyIiHLpp8ocYNp1 hry+6/oIuOgTVZkXB2jAk3khWC1l87cKnnSvQXC+hi/DhhG3WeCOUDxo 72zdjiMhROgGSTxkKTHart7Fzz8zwwhp42GxMJHHEweLpHKg3h6RUaIo PDNhGwcxIgHhHlXdkL4huj5hiDdsxYgnMeABNPRWebkYUTD5TioTOUVg Hd2c4RykhkGDyDcgtgxLo6Ifn8uoew4vTJ98NiVj2MCY0qSyut1TueRd iBvL+VKEkLgmNkc= 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 48490 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY A ;; TSIG PSEUDOSECTION: 2995480808.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQE//////8AAAAACrm+D2X5uRsyhVEBRHrbvg== 48490 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY AAAA Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5221 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;484338566.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 484338566.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760169725 3 NOERROR 1775 YIIG6wYGKwYBBQUCoIIG3zCCBtugDTALBgkqhkiG9xIBAgKiggbIBIIG xGCCBsAGCSqGSIb3EgECAgEAboIGrzCCBqugAwIBBaEDAgEOogcDBQAg AAAAo4IFsGGCBawwggWooAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBXMwggVvoAMCARqhAwIBAqKC BWEEggVdMUSDISQqRQJ9G3t9es1HHFwzupFXJB7h402U7FZNwtAQDrdq KmAX1jv4HmXVS9a6Q9NwOp4iRcPELNKFQJ4M4wvcC6XlhYmZqI8+zdQ2 En6L75ZVd1DrdlxbF16F+qZtUiNPQgePKGhAN4USyqSuwWrBay8RTGJJ NXRONVCxx7RcstoyVNyUJf4lxBnvnK6PHXj6SwlovppkgR5l9AAK4jyJ TAy2SFKoKo7oNJnKltRzXacKSP77tWb+0xStfFSo1R3+Mj9TUG0R+WKf EXn0ea1Dzy7h4SSxa7VBCKukCvy9eP7F7HdgQ6LVs+mOS96cYfUd+r7b jj491aLcJw/ou2ehYrS4UH7LZLfvTgedZC2nq1jU7+o2DpITapqnKqj7 SEOq9TyLe3jveOF5tO/Mpmyd6RAVSgcD0QknaZlszS60AU0DWC5LHmyX 16BFYvSRDQ/EYhKd5H1EcJiYPwwL8ZEpBFujrLNJdrxEZ/jfpCfCozAv yo5o9F5p5/9e5mN/9F2i9DcmZtrSNk6eUN0e8J1TC01Lhq6UyCvOCym9 51z9CBbpxXseyEWARIDxP1APkinqKWMBz2wFP0czcyHIu2PA9OF6AYQW xg0upDgSkYUAQ4fqR3nX2Sd3hR/B9JvgSAUYcPfDcLnfmYS0pJgfNKiO vgMijFruDu8/8nL84uzduR1aiyaRgIY4ZJy3N4ly21nrEajpm/XPDFvP HRcjTTUUSg8JXa8t7yiOw6nrtHszUeVgizXLiuSbDgzEEY4i94yJNy4+ 0Uk79svEf/xoQJme3f7Epsm4yHkYfpzhUPjI0G8DSxwsHQl0jBY/A+uD heGuqP97SMNWptxEl8YY1BpH8iqgw4+ekNrqdNVc+C0ReDT/SzMBEDlw Ax8q3y0O/LCHiEgYpFgZKZGalVOhkzXrjnRVha9W5JKUwotAaJDrHFtL I/IlTdC+RvjotL/c+Dgj0ajAQ5q3jCBS5hsAMpWvk6zb6s6ZigjnoAIT yzyz08tsbGtOgX77ec1pZ/ryN4WzAyeVBK4L1Oc42egn3N2nbDoZxmO2 K58xlUQQqqYGr/mISseTe/1AIiHEBjizlXoJi9LV2WGQTDsnThPCGBpY D6syTt1W0rvkFZ5z/rDZiyouinzT9OpQR8AyoeRWOgZ+p7m/gdZyyCvJ wSAKYHB/d+CmTiQzShJn8P+EMGEAK70VgbGEDbUyGW2BCUR5CbfPr2dE wbhMUu0FeZ1h1dUUhH3Y2cBt+KNHfarN3BI0dsczT5y8U8PdfQR0EaYZ Z6xRhQdR5BUfVlpXYzwZfBu0pefPoRjJRQUsMKVtpxEvJSqyvnhY4xSS saaEVkacgpN5rYbok1Ovse2D1TMqiidKGlsc/Y7FkNmtKWUqqinwMeB7 VN20Z9r3lkZVwZS6ZCJuGGhy3Scr6wmOOJIbByliVQ6Es8tmxirmlTFa ZrUwUfqr9B1ovcVX/BrGNuLJP7TZrhfxbZneTQhdczUaODSpUcMvpI5p fqP+SaAJxrpjV+0DpR1lSwC1sZ8Jl0It6xe9SxO6VAhT/kZufnwK3+XM bK0HadcXlCXB9Pmv3kuccJU1drdaTKvIb5pVmUJNq7uayHHbfbxGlDb7 /N1MnRR8SfoxP47ZkDQMYNxc2gJneM5HJcqYPmosOi6kanNomeeAE6nh 6gnJ7pp8wxcCUlZjggCNRa2IVgYLhM9RACBValRSpfd2kIV+86L00H03 E7ktYJd5l6Dv7Tw2s9JaVqOSMq/dnNoQ+x4VQdf0ky/o7URZ5zKMz3Ym +DP6qf8TxTxJlH8VXJyEOJZu1U4RCYWPdYeqxYh+tJ9xVzikgeEwgd6g AwIBEqKB1gSB0x53QO1DZhGPUkSdyLpF/Q1c/GpIAV3KkZUUbG0+WUFC 98/Jca9kMzq4sotBivwix12JEAb28aimzRNj6gXUWYD55/g5rIWBzdai tZeiUrOQkJqMRVBooDuFWupYmCQwv9pstYV78s5AerrF3GBlijA4wn7B QzTi0YxjorlOxCQZaahpTMq8FNEYL2zakOUsZTudNfaOby8hm7jd1fu0 YrT1ledtKvq0v48k8uVa/KYRAELQw46RwC1psh+y5Aw00IFUhI7Dazlc OxAwjwxyJh7+6+0= 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 4702 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY AAAA ;; TSIG PSEUDOSECTION: 484338566.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQE//////8AAAAAOTIBdwxqhw/Hr7LDnFiITw== 4702 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005481014.ooo.test. 1200 IN A 192.168.122.104 Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5644 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;1310510880.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 1310510880.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760169725 3 NOERROR 1775 YIIG6wYGKwYBBQUCoIIG3zCCBtugDTALBgkqhkiG9xIBAgKiggbIBIIG xGCCBsAGCSqGSIb3EgECAgEAboIGrzCCBqugAwIBBaEDAgEOogcDBQAg AAAAo4IFsGGCBawwggWooAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBXMwggVvoAMCARqhAwIBAqKC BWEEggVdMUSDISQqRQJ9G3t9es1HHFwzupFXJB7h402U7FZNwtAQDrdq KmAX1jv4HmXVS9a6Q9NwOp4iRcPELNKFQJ4M4wvcC6XlhYmZqI8+zdQ2 En6L75ZVd1DrdlxbF16F+qZtUiNPQgePKGhAN4USyqSuwWrBay8RTGJJ NXRONVCxx7RcstoyVNyUJf4lxBnvnK6PHXj6SwlovppkgR5l9AAK4jyJ TAy2SFKoKo7oNJnKltRzXacKSP77tWb+0xStfFSo1R3+Mj9TUG0R+WKf EXn0ea1Dzy7h4SSxa7VBCKukCvy9eP7F7HdgQ6LVs+mOS96cYfUd+r7b jj491aLcJw/ou2ehYrS4UH7LZLfvTgedZC2nq1jU7+o2DpITapqnKqj7 SEOq9TyLe3jveOF5tO/Mpmyd6RAVSgcD0QknaZlszS60AU0DWC5LHmyX 16BFYvSRDQ/EYhKd5H1EcJiYPwwL8ZEpBFujrLNJdrxEZ/jfpCfCozAv yo5o9F5p5/9e5mN/9F2i9DcmZtrSNk6eUN0e8J1TC01Lhq6UyCvOCym9 51z9CBbpxXseyEWARIDxP1APkinqKWMBz2wFP0czcyHIu2PA9OF6AYQW xg0upDgSkYUAQ4fqR3nX2Sd3hR/B9JvgSAUYcPfDcLnfmYS0pJgfNKiO vgMijFruDu8/8nL84uzduR1aiyaRgIY4ZJy3N4ly21nrEajpm/XPDFvP HRcjTTUUSg8JXa8t7yiOw6nrtHszUeVgizXLiuSbDgzEEY4i94yJNy4+ 0Uk79svEf/xoQJme3f7Epsm4yHkYfpzhUPjI0G8DSxwsHQl0jBY/A+uD heGuqP97SMNWptxEl8YY1BpH8iqgw4+ekNrqdNVc+C0ReDT/SzMBEDlw Ax8q3y0O/LCHiEgYpFgZKZGalVOhkzXrjnRVha9W5JKUwotAaJDrHFtL I/IlTdC+RvjotL/c+Dgj0ajAQ5q3jCBS5hsAMpWvk6zb6s6ZigjnoAIT yzyz08tsbGtOgX77ec1pZ/ryN4WzAyeVBK4L1Oc42egn3N2nbDoZxmO2 K58xlUQQqqYGr/mISseTe/1AIiHEBjizlXoJi9LV2WGQTDsnThPCGBpY D6syTt1W0rvkFZ5z/rDZiyouinzT9OpQR8AyoeRWOgZ+p7m/gdZyyCvJ wSAKYHB/d+CmTiQzShJn8P+EMGEAK70VgbGEDbUyGW2BCUR5CbfPr2dE wbhMUu0FeZ1h1dUUhH3Y2cBt+KNHfarN3BI0dsczT5y8U8PdfQR0EaYZ Z6xRhQdR5BUfVlpXYzwZfBu0pefPoRjJRQUsMKVtpxEvJSqyvnhY4xSS saaEVkacgpN5rYbok1Ovse2D1TMqiidKGlsc/Y7FkNmtKWUqqinwMeB7 VN20Z9r3lkZVwZS6ZCJuGGhy3Scr6wmOOJIbByliVQ6Es8tmxirmlTFa ZrUwUfqr9B1ovcVX/BrGNuLJP7TZrhfxbZneTQhdczUaODSpUcMvpI5p fqP+SaAJxrpjV+0DpR1lSwC1sZ8Jl0It6xe9SxO6VAhT/kZufnwK3+XM bK0HadcXlCXB9Pmv3kuccJU1drdaTKvIb5pVmUJNq7uayHHbfbxGlDb7 /N1MnRR8SfoxP47ZkDQMYNxc2gJneM5HJcqYPmosOi6kanNomeeAE6nh 6gnJ7pp8wxcCUlZjggCNRa2IVgYLhM9RACBValRSpfd2kIV+86L00H03 E7ktYJd5l6Dv7Tw2s9JaVqOSMq/dnNoQ+x4VQdf0ky/o7URZ5zKMz3Ym +DP6qf8TxTxJlH8VXJyEOJZu1U4RCYWPdYeqxYh+tJ9xVzikgeEwgd6g AwIBEqKB1gSB04T7Qi0i6enylz7kuIX76NOaK0gJqd9nX7JTQwFX+kIO sJ1Q1mzaDSrRH7n+NHbA/haDLa0U9L/Tpl8LBP+RVzyMTZvp7eH/NzkT 5bEXV+GU5uH4cZ2Pi+f/mtJXAb2CmWk5kPGrBUySYxm6V8k0O4JTghVM kdtiqjMFFJvCD9InfoRZhbXVHjKsX5JiTd7j6gjGDhakCyUtFle9P7DI 1W9JxBIH63FmL1+fIb2ztIolrZkMM0kFjQduvRdC7rnvefES0iu4WjV2 DK8vjtLznxklUjo= 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 32691 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005481014.ooo.test. 1200 IN A 192.168.122.104 ;; TSIG PSEUDOSECTION: 1310510880.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQE//////8AAAAAFi6VKHVsKFfBbpvpH0eCPA== 32691 NOERROR 0 2025-10-11T08:02:05Z DEBUG stderr=Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 30732 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005481014.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1760169741 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest Found realm from ticket: OOO.TEST send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 13175 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;2995480808.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 2995480808.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760173325 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvii+iF35ZPwR+ ylKDgOT3+v2Gc2Gb0Ynjku5srwIg5Xw2QLcEqJRw4J1oW6Mhsavr6g+i mAKn7plfTsyEitJKTHoMqjOqBDPhS9IwFmrXh+j0drGAMQethUikz0eV pQAzYs7iYE3wyLfwoNChSuyu 0 ;; TSIG PSEUDOSECTION: 2995480808.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAGDgZXYDkVwlmyQLrO2LcIA== 13175 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 48490 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 2995480808.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAGDgZXt8xRYEgMY1BJqhfFg== 48490 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 49515 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005481014.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1760169741 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5221 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;484338566.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 484338566.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760173325 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvaVU9RYZkEDn+ YLbGI35GEngg/lxYjgwU2eG6ULq2TC+T8sJAz5/93OIumdrcEWr/3Yzu Pm9tZGVVu/7nycSte8eBC5VqdmeCx+FzrhrGUqDx5qeS52wSt4aGc9Xs bX/96428oZnjWceBju0dwDXW 0 ;; TSIG PSEUDOSECTION: 484338566.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAACp1FuDNXMvEGsK9knmlJ0A== 5221 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 4702 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 484338566.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAACp1FuXZgILsorSggAdL+xg== 4702 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 27763 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005481014.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 0 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1760169742 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5644 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;1310510880.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 1310510880.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760173325 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvIb4lsNy4NZ+M rJI7nfvPAHRjdmsl6LMtW/WAI1t5o+fBblt0t0JFxw5OGL8vlRVfldU5 GOg7Dm8MSPpUOmaeN2Y9KkH4E2y6NbS/LMS2R03dYG2/rCucffmyZOs+ QfhDe4tb3WqDznOSNg90Xtwd 0 ;; TSIG PSEUDOSECTION: 1310510880.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAB9y5dzBagpyKok4rVvKS3g== 5644 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 32691 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 1310510880.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAB9y5eMX5Bl+pCNe+oObHJw== 32691 NOERROR 0 2025-10-11T08:02:05Z DEBUG DNS resolver: Query: np0005481014.ooo.test IN A 2025-10-11T08:02:05Z DEBUG DNS resolver: Query: np0005481014.ooo.test IN AAAA 2025-10-11T08:02:05Z DEBUG DNS resolver: No record. 2025-10-11T08:02:05Z DEBUG DNS resolver: Query: 192.168.122.104 IN PTR 2025-10-11T08:02:05Z DEBUG DNS resolver: No record. 2025-10-11T08:02:05Z WARNING Missing reverse record(s) for address(es): 192.168.122.104. 2025-10-11T08:02:05Z INFO Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub 2025-10-11T08:02:05Z INFO Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub 2025-10-11T08:02:05Z INFO Adding SSH public key from /etc/ssh/ssh_host_ed25519_key.pub 2025-10-11T08:02:05Z DEBUG [try 1]: Forwarding 'host_mod' to json server 'https://ipa.ooo.test/ipa/session/json' 2025-10-11T08:02:05Z DEBUG HTTP connection keep-alive (ipa.ooo.test) 2025-10-11T08:02:05Z DEBUG Writing nsupdate commands to /etc/ipa/.dns_update.txt: 2025-10-11T08:02:05Z DEBUG debug update delete np0005481014.ooo.test. IN SSHFP show send update add np0005481014.ooo.test. 1200 IN SSHFP 1 1 76457B3E9E5A5B6D1D7513DC07676598F20F234C update add np0005481014.ooo.test. 1200 IN SSHFP 1 2 65E0AF78B3C38D0F295E6A62FF703FAD25F266950DA7D03505B3FDA01C9EB079 update add np0005481014.ooo.test. 1200 IN SSHFP 3 1 673AEE76CA3E93CF72BD00B100E986A325432E96 update add np0005481014.ooo.test. 1200 IN SSHFP 3 2 FE62CB95E25575C127B74AD0FA2C560EE153F39CAF790B8271086AA3B90FD00D update add np0005481014.ooo.test. 1200 IN SSHFP 4 1 3ABFB0E8199B69355D00F90EE6058EB72FD7E98A update add np0005481014.ooo.test. 1200 IN SSHFP 4 2 07AA10031D58C6BDABCF28D2EDE8FC9DE07921B33E7BB2A0B935A468C60A64E7 show send 2025-10-11T08:02:05Z DEBUG Starting external process 2025-10-11T08:02:05Z DEBUG args=['/usr/bin/nsupdate', '-g', '/etc/ipa/.dns_update.txt'] 2025-10-11T08:02:05Z DEBUG Process finished, return code=0 2025-10-11T08:02:05Z DEBUG stdout=Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY SSHFP Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36261 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3308052983.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 3308052983.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760169725 3 NOERROR 1775 YIIG6wYGKwYBBQUCoIIG3zCCBtugDTALBgkqhkiG9xIBAgKiggbIBIIG xGCCBsAGCSqGSIb3EgECAgEAboIGrzCCBqugAwIBBaEDAgEOogcDBQAg AAAAo4IFsGGCBawwggWooAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBXMwggVvoAMCARqhAwIBAqKC BWEEggVdMUSDISQqRQJ9G3t9es1HHFwzupFXJB7h402U7FZNwtAQDrdq KmAX1jv4HmXVS9a6Q9NwOp4iRcPELNKFQJ4M4wvcC6XlhYmZqI8+zdQ2 En6L75ZVd1DrdlxbF16F+qZtUiNPQgePKGhAN4USyqSuwWrBay8RTGJJ NXRONVCxx7RcstoyVNyUJf4lxBnvnK6PHXj6SwlovppkgR5l9AAK4jyJ TAy2SFKoKo7oNJnKltRzXacKSP77tWb+0xStfFSo1R3+Mj9TUG0R+WKf EXn0ea1Dzy7h4SSxa7VBCKukCvy9eP7F7HdgQ6LVs+mOS96cYfUd+r7b jj491aLcJw/ou2ehYrS4UH7LZLfvTgedZC2nq1jU7+o2DpITapqnKqj7 SEOq9TyLe3jveOF5tO/Mpmyd6RAVSgcD0QknaZlszS60AU0DWC5LHmyX 16BFYvSRDQ/EYhKd5H1EcJiYPwwL8ZEpBFujrLNJdrxEZ/jfpCfCozAv yo5o9F5p5/9e5mN/9F2i9DcmZtrSNk6eUN0e8J1TC01Lhq6UyCvOCym9 51z9CBbpxXseyEWARIDxP1APkinqKWMBz2wFP0czcyHIu2PA9OF6AYQW xg0upDgSkYUAQ4fqR3nX2Sd3hR/B9JvgSAUYcPfDcLnfmYS0pJgfNKiO vgMijFruDu8/8nL84uzduR1aiyaRgIY4ZJy3N4ly21nrEajpm/XPDFvP HRcjTTUUSg8JXa8t7yiOw6nrtHszUeVgizXLiuSbDgzEEY4i94yJNy4+ 0Uk79svEf/xoQJme3f7Epsm4yHkYfpzhUPjI0G8DSxwsHQl0jBY/A+uD heGuqP97SMNWptxEl8YY1BpH8iqgw4+ekNrqdNVc+C0ReDT/SzMBEDlw Ax8q3y0O/LCHiEgYpFgZKZGalVOhkzXrjnRVha9W5JKUwotAaJDrHFtL I/IlTdC+RvjotL/c+Dgj0ajAQ5q3jCBS5hsAMpWvk6zb6s6ZigjnoAIT yzyz08tsbGtOgX77ec1pZ/ryN4WzAyeVBK4L1Oc42egn3N2nbDoZxmO2 K58xlUQQqqYGr/mISseTe/1AIiHEBjizlXoJi9LV2WGQTDsnThPCGBpY D6syTt1W0rvkFZ5z/rDZiyouinzT9OpQR8AyoeRWOgZ+p7m/gdZyyCvJ wSAKYHB/d+CmTiQzShJn8P+EMGEAK70VgbGEDbUyGW2BCUR5CbfPr2dE wbhMUu0FeZ1h1dUUhH3Y2cBt+KNHfarN3BI0dsczT5y8U8PdfQR0EaYZ Z6xRhQdR5BUfVlpXYzwZfBu0pefPoRjJRQUsMKVtpxEvJSqyvnhY4xSS saaEVkacgpN5rYbok1Ovse2D1TMqiidKGlsc/Y7FkNmtKWUqqinwMeB7 VN20Z9r3lkZVwZS6ZCJuGGhy3Scr6wmOOJIbByliVQ6Es8tmxirmlTFa ZrUwUfqr9B1ovcVX/BrGNuLJP7TZrhfxbZneTQhdczUaODSpUcMvpI5p fqP+SaAJxrpjV+0DpR1lSwC1sZ8Jl0It6xe9SxO6VAhT/kZufnwK3+XM bK0HadcXlCXB9Pmv3kuccJU1drdaTKvIb5pVmUJNq7uayHHbfbxGlDb7 /N1MnRR8SfoxP47ZkDQMYNxc2gJneM5HJcqYPmosOi6kanNomeeAE6nh 6gnJ7pp8wxcCUlZjggCNRa2IVgYLhM9RACBValRSpfd2kIV+86L00H03 E7ktYJd5l6Dv7Tw2s9JaVqOSMq/dnNoQ+x4VQdf0ky/o7URZ5zKMz3Ym +DP6qf8TxTxJlH8VXJyEOJZu1U4RCYWPdYeqxYh+tJ9xVzikgeEwgd6g AwIBEqKB1gSB04GemCYy87uqvX/pSr7lDTFJ7jgLDd9Y4SNqGgi62jnB u53UXX0i39tVcQ9ceVjs1W0aToE4wFunikJ9swVw/vSyoPnDb3Zysbfn Xl9Q68tbcDgO/doJ2mQCstos3cosNAC5hBzUjV+CkrTFiqSOaq3gwpi9 9MKdUD/9+TQPhZ2RYw/oy+Xdav0wuJ6lbad+En/suJIdSsfY12VEsovb o8tMTbtmnrANK0dSkRU2jRas3+hDhv4HAaA69k6WPJwTuR94xQidYR7/ TjKXRuxEiEl7fzs= 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 59387 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 1, ADDITIONAL: 1 ;; UPDATE SECTION: np0005481014.ooo.test. 0 ANY SSHFP ;; TSIG PSEUDOSECTION: 3308052983.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQE//////8AAAAAJlZWDTIpULUFHTOwuYJNVg== 59387 NOERROR 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 ;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 ;; UPDATE SECTION: np0005481014.ooo.test. 1200 IN SSHFP 1 1 76457B3E9E5A5B6D1D7513DC07676598F20F234C np0005481014.ooo.test. 1200 IN SSHFP 1 2 65E0AF78B3C38D0F295E6A62FF703FAD25F266950DA7D03505B3FDA0 1C9EB079 np0005481014.ooo.test. 1200 IN SSHFP 3 1 673AEE76CA3E93CF72BD00B100E986A325432E96 np0005481014.ooo.test. 1200 IN SSHFP 3 2 FE62CB95E25575C127B74AD0FA2C560EE153F39CAF790B8271086AA3 B90FD00D np0005481014.ooo.test. 1200 IN SSHFP 4 1 3ABFB0E8199B69355D00F90EE6058EB72FD7E98A np0005481014.ooo.test. 1200 IN SSHFP 4 2 07AA10031D58C6BDABCF28D2EDE8FC9DE07921B33E7BB2A0B935A468 C60A64E7 Outgoing update query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12156 ;; flags:; QUESTION: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;1407161288.sig-ipa.ooo.test. ANY TKEY ;; ADDITIONAL SECTION: 1407161288.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760169725 3 NOERROR 1775 YIIG6wYGKwYBBQUCoIIG3zCCBtugDTALBgkqhkiG9xIBAgKiggbIBIIG xGCCBsAGCSqGSIb3EgECAgEAboIGrzCCBqugAwIBBaEDAgEOogcDBQAg AAAAo4IFsGGCBawwggWooAMCAQWhChsIT09PLlRFU1SiHjAcoAMCAQGh FTATGwNETlMbDGlwYS5vb28udGVzdKOCBXMwggVvoAMCARqhAwIBAqKC BWEEggVdMUSDISQqRQJ9G3t9es1HHFwzupFXJB7h402U7FZNwtAQDrdq KmAX1jv4HmXVS9a6Q9NwOp4iRcPELNKFQJ4M4wvcC6XlhYmZqI8+zdQ2 En6L75ZVd1DrdlxbF16F+qZtUiNPQgePKGhAN4USyqSuwWrBay8RTGJJ NXRONVCxx7RcstoyVNyUJf4lxBnvnK6PHXj6SwlovppkgR5l9AAK4jyJ TAy2SFKoKo7oNJnKltRzXacKSP77tWb+0xStfFSo1R3+Mj9TUG0R+WKf EXn0ea1Dzy7h4SSxa7VBCKukCvy9eP7F7HdgQ6LVs+mOS96cYfUd+r7b jj491aLcJw/ou2ehYrS4UH7LZLfvTgedZC2nq1jU7+o2DpITapqnKqj7 SEOq9TyLe3jveOF5tO/Mpmyd6RAVSgcD0QknaZlszS60AU0DWC5LHmyX 16BFYvSRDQ/EYhKd5H1EcJiYPwwL8ZEpBFujrLNJdrxEZ/jfpCfCozAv yo5o9F5p5/9e5mN/9F2i9DcmZtrSNk6eUN0e8J1TC01Lhq6UyCvOCym9 51z9CBbpxXseyEWARIDxP1APkinqKWMBz2wFP0czcyHIu2PA9OF6AYQW xg0upDgSkYUAQ4fqR3nX2Sd3hR/B9JvgSAUYcPfDcLnfmYS0pJgfNKiO vgMijFruDu8/8nL84uzduR1aiyaRgIY4ZJy3N4ly21nrEajpm/XPDFvP HRcjTTUUSg8JXa8t7yiOw6nrtHszUeVgizXLiuSbDgzEEY4i94yJNy4+ 0Uk79svEf/xoQJme3f7Epsm4yHkYfpzhUPjI0G8DSxwsHQl0jBY/A+uD heGuqP97SMNWptxEl8YY1BpH8iqgw4+ekNrqdNVc+C0ReDT/SzMBEDlw Ax8q3y0O/LCHiEgYpFgZKZGalVOhkzXrjnRVha9W5JKUwotAaJDrHFtL I/IlTdC+RvjotL/c+Dgj0ajAQ5q3jCBS5hsAMpWvk6zb6s6ZigjnoAIT yzyz08tsbGtOgX77ec1pZ/ryN4WzAyeVBK4L1Oc42egn3N2nbDoZxmO2 K58xlUQQqqYGr/mISseTe/1AIiHEBjizlXoJi9LV2WGQTDsnThPCGBpY D6syTt1W0rvkFZ5z/rDZiyouinzT9OpQR8AyoeRWOgZ+p7m/gdZyyCvJ wSAKYHB/d+CmTiQzShJn8P+EMGEAK70VgbGEDbUyGW2BCUR5CbfPr2dE wbhMUu0FeZ1h1dUUhH3Y2cBt+KNHfarN3BI0dsczT5y8U8PdfQR0EaYZ Z6xRhQdR5BUfVlpXYzwZfBu0pefPoRjJRQUsMKVtpxEvJSqyvnhY4xSS saaEVkacgpN5rYbok1Ovse2D1TMqiidKGlsc/Y7FkNmtKWUqqinwMeB7 VN20Z9r3lkZVwZS6ZCJuGGhy3Scr6wmOOJIbByliVQ6Es8tmxirmlTFa ZrUwUfqr9B1ovcVX/BrGNuLJP7TZrhfxbZneTQhdczUaODSpUcMvpI5p fqP+SaAJxrpjV+0DpR1lSwC1sZ8Jl0It6xe9SxO6VAhT/kZufnwK3+XM bK0HadcXlCXB9Pmv3kuccJU1drdaTKvIb5pVmUJNq7uayHHbfbxGlDb7 /N1MnRR8SfoxP47ZkDQMYNxc2gJneM5HJcqYPmosOi6kanNomeeAE6nh 6gnJ7pp8wxcCUlZjggCNRa2IVgYLhM9RACBValRSpfd2kIV+86L00H03 E7ktYJd5l6Dv7Tw2s9JaVqOSMq/dnNoQ+x4VQdf0ky/o7URZ5zKMz3Ym +DP6qf8TxTxJlH8VXJyEOJZu1U4RCYWPdYeqxYh+tJ9xVzikgeEwgd6g AwIBEqKB1gSB07L75/nBN8m0hoQQfhWszk5wqTRbXyrWZ6E1UUSjCmg8 DuCnhixpEtSAW5OnLadxDKw00dbz7mPUb8pGY3LO3LW+rM7ddGdMSs7Y UXh64MfIBOEMHTD3nl/7H8yTUPgmhcqepIu8Xi2u20+moqfZvrEYlX26 /wCHZ2rfIaEpE8R9F6HnibJgXV0J3e2Q07faC+iEDmh//rqWZ/PPS8Wk QjWOTG5FMla3qwW0a9v1DkUqNCiB54iITfn3EL6H0Wv9EltkTDqPnggm CusucROEutocAEM= 0 Outgoing update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 57134 ;; flags:; ZONE: 1, PREREQ: 0, UPDATE: 6, ADDITIONAL: 1 ;; UPDATE SECTION: np0005481014.ooo.test. 1200 IN SSHFP 1 1 76457B3E9E5A5B6D1D7513DC07676598F20F234C np0005481014.ooo.test. 1200 IN SSHFP 1 2 65E0AF78B3C38D0F295E6A62FF703FAD25F266950DA7D03505B3FDA0 1C9EB079 np0005481014.ooo.test. 1200 IN SSHFP 3 1 673AEE76CA3E93CF72BD00B100E986A325432E96 np0005481014.ooo.test. 1200 IN SSHFP 3 2 FE62CB95E25575C127B74AD0FA2C560EE153F39CAF790B8271086AA3 B90FD00D np0005481014.ooo.test. 1200 IN SSHFP 4 1 3ABFB0E8199B69355D00F90EE6058EB72FD7E98A np0005481014.ooo.test. 1200 IN SSHFP 4 2 07AA10031D58C6BDABCF28D2EDE8FC9DE07921B33E7BB2A0B935A468 C60A64E7 ;; TSIG PSEUDOSECTION: 1407161288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQE//////8AAAAAIO2XWpCkO/6Jo7dChq0oMA== 57134 NOERROR 0 2025-10-11T08:02:05Z DEBUG stderr=Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 8625 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005481014.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 3600 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1760169743 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest Found realm from ticket: OOO.TEST send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36261 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;3308052983.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 3308052983.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760173325 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvmtMABpNA5yoh HzO6S6JdsqMZSJ0wPqa1wrPpZR+iFR9m/+/J44v3dpT+boo44+4j+KrH /SXsxa/HoNrZUVv+AgUDXL6pQLTmghyQYrYHxo77tZF0BGOKchH+hhD0 khKhI9oU3DBO+ZJx2HH+UiGo 0 ;; TSIG PSEUDOSECTION: 3308052983.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAFMOTrEoJe4LACBFl1zwBKA== 36261 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 59387 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 3308052983.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAAFMOTrWekesQhjOC30jXEHw== 59387 NOERROR 0 Reply from SOA query: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 16642 ;; flags: qr aa rd ra; QUESTION: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;np0005481014.ooo.test. IN SOA ;; AUTHORITY SECTION: ooo.test. 3600 IN SOA ipa.ooo.test. hostmaster.ooo.test. 1760169745 3600 900 1209600 3600 Found zone name: ooo.test The master is: ipa.ooo.test start_gssrequest send_gssrequest recvmsg reply from GSS-TSIG query ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12156 ;; flags: qr ra; QUESTION: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;1407161288.sig-ipa.ooo.test. ANY TKEY ;; ANSWER SECTION: 1407161288.sig-ipa.ooo.test. 0 ANY TKEY gss-tsig. 1760169725 1760173325 3 NOERROR 186 oYG3MIG0oAMKAQChCwYJKoZIhvcSAQICooGfBIGcYIGZBgkqhkiG9xIB AgICAG+BiTCBhqADAgEFoQMCAQ+iejB4oAMCARKicQRvB58EZNhW+sQq V7Iy4uintmIuGldUmMCSlM0Dj2XPRiP++ZLRWz41jyt5tv4YJM0mBPZn jWCvRcZHpGlhylDIWr919MlazJHEmdSwcrcGh/lG7l8epEIPRDthK4Dg 3S5EQwcyZ8pjCut1han7kTZV 0 ;; TSIG PSEUDOSECTION: 1407161288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAALkjX/Zz3Ww1V6rQQxHDSdw== 12156 NOERROR 0 Sending update to 10.255.255.25#53 Reply from update query: ;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 57134 ;; flags: qr; ZONE: 1, PREREQ: 0, UPDATE: 0, ADDITIONAL: 1 ;; ZONE SECTION: ;ooo.test. IN SOA ;; TSIG PSEUDOSECTION: 1407161288.sig-ipa.ooo.test. 0 ANY TSIG gss-tsig. 1760169725 300 28 BAQF//////8AAAAALkjX/qHhfdhMkn2J8irvpg== 57134 NOERROR 0 2025-10-11T08:02:05Z DEBUG Starting external process 2025-10-11T08:02:05Z DEBUG args=['/bin/systemctl', 'list-unit-files', '--full'] 2025-10-11T08:02:06Z DEBUG Process finished, return code=0 2025-10-11T08:02:06Z DEBUG stdout=UNIT FILE STATE PRESET efi.automount generated - proc-sys-fs-binfmt_misc.automount static - -.mount generated - boot-efi.mount generated - boot.mount generated - dev-hugepages.mount static - dev-mqueue.mount static - efi.mount generated - proc-fs-nfsd.mount static - proc-sys-fs-binfmt_misc.mount disabled disabled sys-fs-fuse-connections.mount static - sys-kernel-config.mount static - sys-kernel-debug.mount static - sys-kernel-tracing.mount static - tmp.mount disabled disabled var-lib-nfs-rpc_pipefs.mount static - insights-client-results.path disabled disabled systemd-ask-password-console.path static - systemd-ask-password-wall.path static - session-1.scope transient - session-14.scope transient - session-15.scope transient - arptables.service disabled disabled auditd.service enabled enabled auth-rpcgss-module.service static - autofs.service disabled disabled autovt@.service alias - blk-availability.service disabled disabled certmonger.service disabled disabled chrony-online.service enabled disabled chrony-wait.service disabled disabled chronyd.service enabled enabled cinder-lvm-losetup.service enabled disabled cloud-config.service enabled disabled cloud-final.service enabled disabled cloud-init-hotplugd.service static - cloud-init-local.service enabled disabled cloud-init.service enabled disabled cockpit-motd.service static - cockpit-wsinstance-http.service static - cockpit-wsinstance-https-factory@.service static - cockpit-wsinstance-https@.service static - cockpit.service static - console-getty.service disabled disabled container-getty@.service static - cpupower.service disabled disabled crond.service enabled enabled dbus-broker.service enabled enabled dbus-org.freedesktop.hostname1.service alias - dbus-org.freedesktop.locale1.service alias - dbus-org.freedesktop.login1.service alias - dbus-org.freedesktop.nm-dispatcher.service alias - dbus-org.freedesktop.timedate1.service alias - dbus.service alias - debug-shell.service disabled disabled dm-event.service static - dnf-makecache.service static - dnf-system-upgrade-cleanup.service static - dnf-system-upgrade.service disabled disabled dracut-cmdline.service static - dracut-initqueue.service static - dracut-mount.service static - dracut-pre-mount.service static - dracut-pre-pivot.service static - dracut-pre-trigger.service static - dracut-pre-udev.service static - dracut-shutdown-onfailure.service static - dracut-shutdown.service static - driverctl@.service static - ebtables.service disabled disabled emergency.service static - fstrim.service static - fwupd-offline-update.service static - fwupd-refresh.service static - fwupd.service static - getty@.service enabled enabled grub-boot-indeterminate.service static - grub2-systemd-integration.service static - gssproxy.service disabled disabled import-state.service enabled enabled initrd-cleanup.service static - initrd-parse-etc.service static - initrd-switch-root.service static - initrd-udevadm-cleanup-db.service static - insights-client-boot.service enabled enabled insights-client-results.service static - insights-client.service static - ip6tables.service disabled disabled iptables.service disabled disabled irqbalance.service enabled enabled kdump.service enabled enabled kmod-static-nodes.service static - kvm_stat.service disabled disabled ldconfig.service static - loadmodules.service enabled enabled logrotate.service static - lvm2-lvmpolld.service static - lvm2-monitor.service enabled enabled man-db-cache-update.service static - man-db-restart-cache-update.service disabled disabled microcode.service enabled enabled modprobe@.service static - network.service generated - NetworkManager-dispatcher.service enabled enabled NetworkManager-wait-online.service enabled disabled NetworkManager.service enabled enabled neutron-cleanup.service enabled disabled nfs-blkmap.service disabled disabled nfs-idmapd.service static - nfs-mountd.service static - nfs-server.service disabled disabled nfs-utils.service static - nfsdcld.service static - nftables.service enabled disabled nis-domainname.service enabled enabled nm-priv-helper.service static - nmstate.service disabled disabled oddjobd.service disabled disabled openvswitch.service enabled disabled os-collect-config.service disabled disabled ovs-delete-transient-ports.service static - ovs-vswitchd.service static - ovsdb-server.service static - packagekit-offline-update.service static - packagekit.service static - pam_namespace.service static - podman-auto-update.service disabled disabled podman-clean-transient.service disabled disabled podman-kube@.service disabled disabled podman-restart.service disabled disabled podman.service disabled disabled polkit.service static - puppet.service disabled disabled puppetagent.service alias - qemu-guest-agent.service enabled enabled quotaon.service static - rc-local.service static - rdisc.service disabled disabled rescue.service static - rhsm-facts.service disabled disabled rhsm.service disabled disabled rhsmcertd.service enabled enabled rpc-gssd.service static - rpc-statd-notify.service static - rpc-statd.service static - rpcbind.service enabled enabled rpmdb-rebuild.service disabled disabled rsyslog.service enabled enabled selinux-autorelabel-mark.service enabled enabled selinux-autorelabel.service static - selinux-check-proper-disable.service disabled disabled serial-getty@.service indirect disabled setroubleshootd.service static - sshd-keygen@.service disabled disabled sshd.service enabled enabled sshd@.service static - sssd-autofs.service indirect disabled sssd-ifp.service static - sssd-kcm.service indirect disabled sssd-nss.service indirect disabled sssd-pac.service indirect disabled sssd-pam.service indirect disabled sssd-ssh.service indirect disabled sssd-sudo.service indirect disabled sssd.service enabled enabled sysstat-collect.service static - sysstat-summary.service static - sysstat.service enabled enabled system-update-cleanup.service static - systemd-ask-password-console.service static - systemd-ask-password-wall.service static - systemd-backlight@.service static - systemd-binfmt.service static - systemd-bless-boot.service static - systemd-boot-check-no-failures.service disabled disabled systemd-boot-system-token.service static - systemd-boot-update.service enabled enabled systemd-coredump@.service static - systemd-exit.service static - systemd-firstboot.service static - systemd-fsck-root.service static - systemd-fsck@.service static - systemd-halt.service static - systemd-hibernate-resume@.service static - systemd-hibernate.service static - systemd-hostnamed.service static - systemd-hwdb-update.service static - systemd-hybrid-sleep.service static - systemd-initctl.service static - systemd-journal-catalog-update.service static - systemd-journal-flush.service static - systemd-journald.service static - systemd-journald@.service static - systemd-kexec.service static - systemd-localed.service static - systemd-logind.service static - systemd-machine-id-commit.service static - systemd-modules-load.service static - systemd-network-generator.service enabled enabled systemd-pcrphase-initrd.service static - systemd-pcrphase-sysinit.service static - systemd-pcrphase.service static - systemd-poweroff.service static - systemd-pstore.service disabled enabled systemd-quotacheck.service static - systemd-random-seed.service static - systemd-reboot.service static - systemd-remount-fs.service enabled-runtime disabled systemd-repart.service static - systemd-rfkill.service static - systemd-suspend-then-hibernate.service static - systemd-suspend.service static - systemd-sysctl.service static - systemd-sysext.service disabled disabled systemd-sysupdate-reboot.service indirect disabled systemd-sysupdate.service indirect disabled systemd-sysusers.service static - systemd-timedated.service static - systemd-tmpfiles-clean.service static - systemd-tmpfiles-setup-dev.service static - systemd-tmpfiles-setup.service static - systemd-udev-settle.service static - systemd-udev-trigger.service static - systemd-udevd.service static - systemd-update-done.service static - systemd-update-utmp-runlevel.service static - systemd-update-utmp.service static - systemd-user-sessions.service static - systemd-vconsole-setup.service static - systemd-volatile-root.service static - teamd@.service static - tuned.service enabled enabled unbound-anchor.service static - user-runtime-dir@.service static - user@.service static - system-cockpithttps.slice static - system-systemd\x2dcryptsetup.slice static - user.slice static - cloud-init-hotplugd.socket disabled disabled cockpit-wsinstance-http.socket static - cockpit-wsinstance-https-factory.socket static - cockpit-wsinstance-https@.socket static - cockpit.socket disabled disabled dbus.socket enabled enabled dm-event.socket enabled enabled lvm2-lvmpolld.socket enabled enabled podman.socket disabled disabled rpcbind.socket enabled enabled sshd.socket disabled disabled sssd-autofs.socket disabled disabled sssd-kcm.socket enabled enabled sssd-nss.socket disabled disabled sssd-pac.socket disabled disabled sssd-pam-priv.socket disabled disabled sssd-pam.socket disabled disabled sssd-ssh.socket disabled disabled sssd-sudo.socket disabled disabled syslog.socket static - systemd-coredump.socket static - systemd-initctl.socket static - systemd-journald-audit.socket static - systemd-journald-dev-log.socket static - systemd-journald-varlink@.socket static - systemd-journald.socket static - systemd-journald@.socket static - systemd-rfkill.socket static - systemd-udevd-control.socket static - systemd-udevd-kernel.socket static - basic.target static - blockdev@.target static - bluetooth.target static - boot-complete.target static - cloud-config.target static - cloud-init.target enabled-runtime disabled cryptsetup-pre.target static - cryptsetup.target static - ctrl-alt-del.target alias - default.target alias - emergency.target static - exit.target disabled disabled factory-reset.target static - final.target static - first-boot-complete.target static - getty-pre.target static - getty.target static - graphical.target static - halt.target disabled disabled hibernate.target static - hybrid-sleep.target static - initrd-fs.target static - initrd-root-device.target static - initrd-root-fs.target static - initrd-switch-root.target static - initrd-usr-fs.target static - initrd.target static - integritysetup-pre.target static - integritysetup.target static - kexec.target disabled disabled local-fs-pre.target static - local-fs.target static - multi-user.target indirect disabled network-online.target static - network-pre.target static - network.target static - nfs-client.target enabled disabled nss-lookup.target static - nss-user-lookup.target static - paths.target static - poweroff.target disabled disabled printer.target static - reboot.target enabled enabled remote-cryptsetup.target disabled enabled remote-fs-pre.target static - remote-fs.target enabled enabled remote-veritysetup.target disabled disabled rescue.target static - rpc_pipefs.target static - rpcbind.target static - runlevel0.target alias - runlevel1.target alias - runlevel2.target alias - runlevel3.target alias - runlevel4.target alias - runlevel5.target alias - runlevel6.target alias - selinux-autorelabel.target static - shutdown.target static - sigpwr.target static - sleep.target static - slices.target static - smartcard.target static - sockets.target static - sound.target static - sshd-keygen.target static - suspend-then-hibernate.target static - suspend.target static - swap.target static - sysinit.target static - system-update-pre.target static - system-update.target static - time-set.target static - time-sync.target static - timers.target static - umount.target static - usb-gadget.target static - veritysetup-pre.target static - veritysetup.target static - dnf-makecache.timer enabled enabled fstrim.timer disabled disabled fwupd-refresh.timer disabled disabled insights-client.timer disabled disabled logrotate.timer enabled enabled podman-auto-update.timer disabled disabled sysstat-collect.timer enabled disabled sysstat-summary.timer enabled disabled systemd-sysupdate-reboot.timer disabled disabled systemd-sysupdate.timer disabled disabled systemd-tmpfiles-clean.timer static - unbound-anchor.timer enabled enabled 359 unit files listed. 2025-10-11T08:02:06Z DEBUG stderr= 2025-10-11T08:02:06Z DEBUG Starting external process 2025-10-11T08:02:06Z DEBUG args=['/bin/systemctl', 'list-unit-files', '--full'] 2025-10-11T08:02:06Z DEBUG Process finished, return code=0 2025-10-11T08:02:06Z DEBUG stdout=UNIT FILE STATE PRESET efi.automount generated - proc-sys-fs-binfmt_misc.automount static - -.mount generated - boot-efi.mount generated - boot.mount generated - dev-hugepages.mount static - dev-mqueue.mount static - efi.mount generated - proc-fs-nfsd.mount static - proc-sys-fs-binfmt_misc.mount disabled disabled sys-fs-fuse-connections.mount static - sys-kernel-config.mount static - sys-kernel-debug.mount static - sys-kernel-tracing.mount static - tmp.mount disabled disabled var-lib-nfs-rpc_pipefs.mount static - insights-client-results.path disabled disabled systemd-ask-password-console.path static - systemd-ask-password-wall.path static - session-1.scope transient - session-14.scope transient - session-15.scope transient - arptables.service disabled disabled auditd.service enabled enabled auth-rpcgss-module.service static - autofs.service disabled disabled autovt@.service alias - blk-availability.service disabled disabled certmonger.service disabled disabled chrony-online.service enabled disabled chrony-wait.service disabled disabled chronyd.service enabled enabled cinder-lvm-losetup.service enabled disabled cloud-config.service enabled disabled cloud-final.service enabled disabled cloud-init-hotplugd.service static - cloud-init-local.service enabled disabled cloud-init.service enabled disabled cockpit-motd.service static - cockpit-wsinstance-http.service static - cockpit-wsinstance-https-factory@.service static - cockpit-wsinstance-https@.service static - cockpit.service static - console-getty.service disabled disabled container-getty@.service static - cpupower.service disabled disabled crond.service enabled enabled dbus-broker.service enabled enabled dbus-org.freedesktop.hostname1.service alias - dbus-org.freedesktop.locale1.service alias - dbus-org.freedesktop.login1.service alias - dbus-org.freedesktop.nm-dispatcher.service alias - dbus-org.freedesktop.timedate1.service alias - dbus.service alias - debug-shell.service disabled disabled dm-event.service static - dnf-makecache.service static - dnf-system-upgrade-cleanup.service static - dnf-system-upgrade.service disabled disabled dracut-cmdline.service static - dracut-initqueue.service static - dracut-mount.service static - dracut-pre-mount.service static - dracut-pre-pivot.service static - dracut-pre-trigger.service static - dracut-pre-udev.service static - dracut-shutdown-onfailure.service static - dracut-shutdown.service static - driverctl@.service static - ebtables.service disabled disabled emergency.service static - fstrim.service static - fwupd-offline-update.service static - fwupd-refresh.service static - fwupd.service static - getty@.service enabled enabled grub-boot-indeterminate.service static - grub2-systemd-integration.service static - gssproxy.service disabled disabled import-state.service enabled enabled initrd-cleanup.service static - initrd-parse-etc.service static - initrd-switch-root.service static - initrd-udevadm-cleanup-db.service static - insights-client-boot.service enabled enabled insights-client-results.service static - insights-client.service static - ip6tables.service disabled disabled iptables.service disabled disabled irqbalance.service enabled enabled kdump.service enabled enabled kmod-static-nodes.service static - kvm_stat.service disabled disabled ldconfig.service static - loadmodules.service enabled enabled logrotate.service static - lvm2-lvmpolld.service static - lvm2-monitor.service enabled enabled man-db-cache-update.service static - man-db-restart-cache-update.service disabled disabled microcode.service enabled enabled modprobe@.service static - network.service generated - NetworkManager-dispatcher.service enabled enabled NetworkManager-wait-online.service enabled disabled NetworkManager.service enabled enabled neutron-cleanup.service enabled disabled nfs-blkmap.service disabled disabled nfs-idmapd.service static - nfs-mountd.service static - nfs-server.service disabled disabled nfs-utils.service static - nfsdcld.service static - nftables.service enabled disabled nis-domainname.service enabled enabled nm-priv-helper.service static - nmstate.service disabled disabled oddjobd.service disabled disabled openvswitch.service enabled disabled os-collect-config.service disabled disabled ovs-delete-transient-ports.service static - ovs-vswitchd.service static - ovsdb-server.service static - packagekit-offline-update.service static - packagekit.service static - pam_namespace.service static - podman-auto-update.service disabled disabled podman-clean-transient.service disabled disabled podman-kube@.service disabled disabled podman-restart.service disabled disabled podman.service disabled disabled polkit.service static - puppet.service disabled disabled puppetagent.service alias - qemu-guest-agent.service enabled enabled quotaon.service static - rc-local.service static - rdisc.service disabled disabled rescue.service static - rhsm-facts.service disabled disabled rhsm.service disabled disabled rhsmcertd.service enabled enabled rpc-gssd.service static - rpc-statd-notify.service static - rpc-statd.service static - rpcbind.service enabled enabled rpmdb-rebuild.service disabled disabled rsyslog.service enabled enabled selinux-autorelabel-mark.service enabled enabled selinux-autorelabel.service static - selinux-check-proper-disable.service disabled disabled serial-getty@.service indirect disabled setroubleshootd.service static - sshd-keygen@.service disabled disabled sshd.service enabled enabled sshd@.service static - sssd-autofs.service indirect disabled sssd-ifp.service static - sssd-kcm.service indirect disabled sssd-nss.service indirect disabled sssd-pac.service indirect disabled sssd-pam.service indirect disabled sssd-ssh.service indirect disabled sssd-sudo.service indirect disabled sssd.service enabled enabled sysstat-collect.service static - sysstat-summary.service static - sysstat.service enabled enabled system-update-cleanup.service static - systemd-ask-password-console.service static - systemd-ask-password-wall.service static - systemd-backlight@.service static - systemd-binfmt.service static - systemd-bless-boot.service static - systemd-boot-check-no-failures.service disabled disabled systemd-boot-system-token.service static - systemd-boot-update.service enabled enabled systemd-coredump@.service static - systemd-exit.service static - systemd-firstboot.service static - systemd-fsck-root.service static - systemd-fsck@.service static - systemd-halt.service static - systemd-hibernate-resume@.service static - systemd-hibernate.service static - systemd-hostnamed.service static - systemd-hwdb-update.service static - systemd-hybrid-sleep.service static - systemd-initctl.service static - systemd-journal-catalog-update.service static - systemd-journal-flush.service static - systemd-journald.service static - systemd-journald@.service static - systemd-kexec.service static - systemd-localed.service static - systemd-logind.service static - systemd-machine-id-commit.service static - systemd-modules-load.service static - systemd-network-generator.service enabled enabled systemd-pcrphase-initrd.service static - systemd-pcrphase-sysinit.service static - systemd-pcrphase.service static - systemd-poweroff.service static - systemd-pstore.service disabled enabled systemd-quotacheck.service static - systemd-random-seed.service static - systemd-reboot.service static - systemd-remount-fs.service enabled-runtime disabled systemd-repart.service static - systemd-rfkill.service static - systemd-suspend-then-hibernate.service static - systemd-suspend.service static - systemd-sysctl.service static - systemd-sysext.service disabled disabled systemd-sysupdate-reboot.service indirect disabled systemd-sysupdate.service indirect disabled systemd-sysusers.service static - systemd-timedated.service static - systemd-tmpfiles-clean.service static - systemd-tmpfiles-setup-dev.service static - systemd-tmpfiles-setup.service static - systemd-udev-settle.service static - systemd-udev-trigger.service static - systemd-udevd.service static - systemd-update-done.service static - systemd-update-utmp-runlevel.service static - systemd-update-utmp.service static - systemd-user-sessions.service static - systemd-vconsole-setup.service static - systemd-volatile-root.service static - teamd@.service static - tuned.service enabled enabled unbound-anchor.service static - user-runtime-dir@.service static - user@.service static - system-cockpithttps.slice static - system-systemd\x2dcryptsetup.slice static - user.slice static - cloud-init-hotplugd.socket disabled disabled cockpit-wsinstance-http.socket static - cockpit-wsinstance-https-factory.socket static - cockpit-wsinstance-https@.socket static - cockpit.socket disabled disabled dbus.socket enabled enabled dm-event.socket enabled enabled lvm2-lvmpolld.socket enabled enabled podman.socket disabled disabled rpcbind.socket enabled enabled sshd.socket disabled disabled sssd-autofs.socket disabled disabled sssd-kcm.socket enabled enabled sssd-nss.socket disabled disabled sssd-pac.socket disabled disabled sssd-pam-priv.socket disabled disabled sssd-pam.socket disabled disabled sssd-ssh.socket disabled disabled sssd-sudo.socket disabled disabled syslog.socket static - systemd-coredump.socket static - systemd-initctl.socket static - systemd-journald-audit.socket static - systemd-journald-dev-log.socket static - systemd-journald-varlink@.socket static - systemd-journald.socket static - systemd-journald@.socket static - systemd-rfkill.socket static - systemd-udevd-control.socket static - systemd-udevd-kernel.socket static - basic.target static - blockdev@.target static - bluetooth.target static - boot-complete.target static - cloud-config.target static - cloud-init.target enabled-runtime disabled cryptsetup-pre.target static - cryptsetup.target static - ctrl-alt-del.target alias - default.target alias - emergency.target static - exit.target disabled disabled factory-reset.target static - final.target static - first-boot-complete.target static - getty-pre.target static - getty.target static - graphical.target static - halt.target disabled disabled hibernate.target static - hybrid-sleep.target static - initrd-fs.target static - initrd-root-device.target static - initrd-root-fs.target static - initrd-switch-root.target static - initrd-usr-fs.target static - initrd.target static - integritysetup-pre.target static - integritysetup.target static - kexec.target disabled disabled local-fs-pre.target static - local-fs.target static - multi-user.target indirect disabled network-online.target static - network-pre.target static - network.target static - nfs-client.target enabled disabled nss-lookup.target static - nss-user-lookup.target static - paths.target static - poweroff.target disabled disabled printer.target static - reboot.target enabled enabled remote-cryptsetup.target disabled enabled remote-fs-pre.target static - remote-fs.target enabled enabled remote-veritysetup.target disabled disabled rescue.target static - rpc_pipefs.target static - rpcbind.target static - runlevel0.target alias - runlevel1.target alias - runlevel2.target alias - runlevel3.target alias - runlevel4.target alias - runlevel5.target alias - runlevel6.target alias - selinux-autorelabel.target static - shutdown.target static - sigpwr.target static - sleep.target static - slices.target static - smartcard.target static - sockets.target static - sound.target static - sshd-keygen.target static - suspend-then-hibernate.target static - suspend.target static - swap.target static - sysinit.target static - system-update-pre.target static - system-update.target static - time-set.target static - time-sync.target static - timers.target static - umount.target static - usb-gadget.target static - veritysetup-pre.target static - veritysetup.target static - dnf-makecache.timer enabled enabled fstrim.timer disabled disabled fwupd-refresh.timer disabled disabled insights-client.timer disabled disabled logrotate.timer enabled enabled podman-auto-update.timer disabled disabled sysstat-collect.timer enabled disabled sysstat-summary.timer enabled disabled systemd-sysupdate-reboot.timer disabled disabled systemd-sysupdate.timer disabled disabled systemd-tmpfiles-clean.timer static - unbound-anchor.timer enabled enabled 359 unit files listed. 2025-10-11T08:02:06Z DEBUG stderr= 2025-10-11T08:02:06Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:06Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:06Z DEBUG Starting external process 2025-10-11T08:02:06Z DEBUG args=['/usr/bin/authselect', 'select', 'sssd', 'with-sudo', '--force', '--backup=pre_ipaclient_20251011080206'] 2025-10-11T08:02:06Z DEBUG Process finished, return code=0 2025-10-11T08:02:06Z DEBUG stdout=Backup stored at /var/lib/authselect/backups/pre_ipaclient_20251011080206 Profile "sssd" was selected. The following nsswitch maps are overwritten by the profile: - passwd - group - netgroup - automount - services - sudoers Make sure that SSSD service is configured and enabled. See SSSD documentation for more information. 2025-10-11T08:02:06Z DEBUG stderr= 2025-10-11T08:02:06Z INFO SSSD enabled 2025-10-11T08:02:06Z DEBUG Starting external process 2025-10-11T08:02:06Z DEBUG args=['/bin/systemctl', 'restart', 'sssd.service'] 2025-10-11T08:02:06Z DEBUG Process finished, return code=0 2025-10-11T08:02:06Z DEBUG stdout= 2025-10-11T08:02:06Z DEBUG stderr= 2025-10-11T08:02:06Z DEBUG Starting external process 2025-10-11T08:02:06Z DEBUG args=['/bin/systemctl', 'is-active', 'sssd.service'] 2025-10-11T08:02:06Z DEBUG Process finished, return code=0 2025-10-11T08:02:06Z DEBUG stdout=active 2025-10-11T08:02:06Z DEBUG stderr= 2025-10-11T08:02:06Z DEBUG Restart of sssd.service complete 2025-10-11T08:02:06Z DEBUG Starting external process 2025-10-11T08:02:06Z DEBUG args=['/bin/systemctl', 'enable', 'sssd.service'] 2025-10-11T08:02:07Z DEBUG Process finished, return code=0 2025-10-11T08:02:07Z DEBUG stdout= 2025-10-11T08:02:07Z DEBUG stderr= 2025-10-11T08:02:07Z DEBUG Backing up system configuration file '/etc/openldap/ldap.conf' 2025-10-11T08:02:07Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:07Z DEBUG Updating configuration file /etc/openldap/ldap.conf 2025-10-11T08:02:07Z DEBUG # File modified by ipa-client-install # We do not want to break your existing configuration, hence: # URI, BASE, and SASL_MECH # have been added if they were not set. # In case any of them were set, a comment has been inserted and # "# CONF_NAME modified by IPA" added to the line above. # To use IPA server with openLDAP tools, please comment out your # existing configuration for these options and uncomment the # corresponding lines generated by IPA. # # LDAP Defaults # # See ldap.conf(5) for details # This file should be world readable but not world writable. #BASE dc=example,dc=com #URI ldap://ldap.example.com ldap://ldap-master.example.com:666 #SIZELIMIT 12 #TIMELIMIT 15 #DEREF never # When no CA certificates are specified the Shared System Certificates # are in use. In order to have these available along with the ones specified # by TLS_CACERTDIR one has to include them explicitly: #TLS_CACERT /etc/pki/tls/cert.pem # System-wide Crypto Policies provide up to date cipher suite which should # be used unless one needs a finer grinded selection of ciphers. Hence, the # PROFILE=SYSTEM value represents the default behavior which is in place # when no explicit setting is used. (see openssl-ciphers(1) for more info) #TLS_CIPHER_SUITE PROFILE=SYSTEM # Turning this off breaks GSSAPI used with krb5 when rdns = false SASL_NOCANON on URI ldaps://ipa.ooo.test BASE dc=ooo,dc=test SASL_MECH GSSAPI 2025-10-11T08:02:07Z INFO Configured /etc/openldap/ldap.conf 2025-10-11T08:02:07Z DEBUG Starting external process 2025-10-11T08:02:07Z DEBUG args=['/usr/bin/getent', 'passwd', 'admin@ooo.test'] 2025-10-11T08:02:07Z DEBUG Process finished, return code=0 2025-10-11T08:02:07Z DEBUG stdout=admin:*:1697800000:1697800000:Administrator:/home/admin:/bin/bash 2025-10-11T08:02:07Z DEBUG stderr= 2025-10-11T08:02:08Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:08Z DEBUG Backing up system configuration file '/etc/ssh/ssh_config' 2025-10-11T08:02:08Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:08Z INFO Configured /etc/ssh/ssh_config 2025-10-11T08:02:08Z DEBUG Backing up system configuration file '/etc/ssh/sshd_config' 2025-10-11T08:02:08Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:08Z DEBUG Starting external process 2025-10-11T08:02:08Z DEBUG args=['/usr/sbin/sshd', '-t', '-f', '/dev/null', '-o', 'AuthorizedKeysCommand=/usr/bin/sss_ssh_authorizedkeys', '-o', 'AuthorizedKeysCommandUser=nobody'] 2025-10-11T08:02:08Z DEBUG Process finished, return code=0 2025-10-11T08:02:08Z DEBUG stdout= 2025-10-11T08:02:08Z DEBUG stderr=main: sshd: ssh-rsa algorithm is disabled 2025-10-11T08:02:08Z INFO Configured /etc/ssh/sshd_config 2025-10-11T08:02:08Z DEBUG Starting external process 2025-10-11T08:02:08Z DEBUG args=['/bin/systemctl', 'is-active', 'sshd.service'] 2025-10-11T08:02:08Z DEBUG Process finished, return code=0 2025-10-11T08:02:08Z DEBUG stdout=active 2025-10-11T08:02:08Z DEBUG stderr= 2025-10-11T08:02:08Z DEBUG Starting external process 2025-10-11T08:02:08Z DEBUG args=['/bin/systemctl', 'restart', 'sshd.service'] 2025-10-11T08:02:08Z DEBUG Process finished, return code=0 2025-10-11T08:02:08Z DEBUG stdout= 2025-10-11T08:02:08Z DEBUG stderr= 2025-10-11T08:02:08Z DEBUG Starting external process 2025-10-11T08:02:08Z DEBUG args=['/bin/systemctl', 'is-active', 'sshd.service'] 2025-10-11T08:02:08Z DEBUG Process finished, return code=0 2025-10-11T08:02:08Z DEBUG stdout=active 2025-10-11T08:02:08Z DEBUG stderr= 2025-10-11T08:02:08Z DEBUG Restart of sshd.service complete 2025-10-11T08:02:09Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:09Z INFO Configuring ooo.test as NIS domain. 2025-10-11T08:02:09Z DEBUG Starting external process 2025-10-11T08:02:09Z DEBUG args=['/usr/bin/nisdomainname'] 2025-10-11T08:02:09Z DEBUG Process finished, return code=1 2025-10-11T08:02:09Z DEBUG stdout=nisdomainname: Local domain name not set 2025-10-11T08:02:09Z DEBUG stderr= 2025-10-11T08:02:09Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:09Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:09Z DEBUG Starting external process 2025-10-11T08:02:09Z DEBUG args=['/bin/systemctl', 'is-enabled', 'nis-domainname.service'] 2025-10-11T08:02:09Z DEBUG Process finished, return code=0 2025-10-11T08:02:09Z DEBUG stdout=enabled 2025-10-11T08:02:09Z DEBUG stderr= 2025-10-11T08:02:09Z DEBUG Loading StateFile from '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:09Z DEBUG Saving StateFile to '/var/lib/ipa-client/sysrestore/sysrestore.state' 2025-10-11T08:02:09Z DEBUG Starting external process 2025-10-11T08:02:09Z DEBUG args=['/bin/systemctl', 'enable', 'nis-domainname.service'] 2025-10-11T08:02:10Z DEBUG Process finished, return code=0 2025-10-11T08:02:10Z DEBUG stdout= 2025-10-11T08:02:10Z DEBUG stderr= 2025-10-11T08:02:10Z DEBUG Starting external process 2025-10-11T08:02:10Z DEBUG args=['/bin/systemctl', 'restart', 'nis-domainname.service'] 2025-10-11T08:02:10Z DEBUG Process finished, return code=0 2025-10-11T08:02:10Z DEBUG stdout= 2025-10-11T08:02:10Z DEBUG stderr= 2025-10-11T08:02:10Z DEBUG Starting external process 2025-10-11T08:02:10Z DEBUG args=['/bin/systemctl', 'is-active', 'nis-domainname.service'] 2025-10-11T08:02:10Z DEBUG Process finished, return code=0 2025-10-11T08:02:10Z DEBUG stdout=active 2025-10-11T08:02:10Z DEBUG stderr= 2025-10-11T08:02:10Z DEBUG Restart of nis-domainname.service complete 2025-10-11T08:02:11Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:11Z DEBUG Backing up system configuration file '/etc/krb5.conf' 2025-10-11T08:02:11Z DEBUG Saving Index File to '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:11Z DEBUG Starting external process 2025-10-11T08:02:11Z DEBUG args=['/usr/sbin/selinuxenabled'] 2025-10-11T08:02:11Z DEBUG Process finished, return code=0 2025-10-11T08:02:11Z DEBUG stdout= 2025-10-11T08:02:11Z DEBUG stderr= 2025-10-11T08:02:11Z DEBUG Starting external process 2025-10-11T08:02:11Z DEBUG args=['/sbin/restorecon', '/etc/krb5.conf.d/freeipa'] 2025-10-11T08:02:11Z DEBUG Process finished, return code=0 2025-10-11T08:02:11Z DEBUG stdout= 2025-10-11T08:02:11Z DEBUG stderr= 2025-10-11T08:02:11Z DEBUG Starting external process 2025-10-11T08:02:11Z DEBUG args=['/bin/keyctl', 'get_persistent', '@s', '0'] 2025-10-11T08:02:11Z DEBUG Process finished, return code=0 2025-10-11T08:02:11Z DEBUG stdout=822773981 2025-10-11T08:02:11Z DEBUG stderr= 2025-10-11T08:02:11Z DEBUG Enabling persistent keyring CCACHE 2025-10-11T08:02:11Z DEBUG Writing Kerberos configuration to /etc/krb5.conf: 2025-10-11T08:02:11Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:02:11Z DEBUG Writing configuration file /etc/krb5.conf 2025-10-11T08:02:11Z DEBUG #File modified by ipa-client-install includedir /etc/krb5.conf.d/ includedir /var/lib/sss/pubconf/krb5.include.d/ [libdefaults] default_realm = OOO.TEST dns_lookup_realm = false rdns = false dns_canonicalize_hostname = false dns_lookup_kdc = true ticket_lifetime = 24h forwardable = true udp_preference_limit = 0 default_ccache_name = KEYRING:persistent:%{uid} [realms] OOO.TEST = { kdc = ipa.ooo.test:88 master_kdc = ipa.ooo.test:88 admin_server = ipa.ooo.test:749 kpasswd_server = ipa.ooo.test:464 default_domain = ooo.test pkinit_anchors = FILE:/var/lib/ipa-client/pki/kdc-ca-bundle.pem pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem } [domain_realm] .ooo.test = OOO.TEST ooo.test = OOO.TEST np0005481014.ooo.test = OOO.TEST 2025-10-11T08:02:11Z INFO Configured /etc/krb5.conf for IPA realm OOO.TEST 2025-10-11T08:02:12Z DEBUG Loading Index file from '/var/lib/ipa-client/sysrestore/sysrestore.index' 2025-10-11T08:02:12Z DEBUG Starting external process 2025-10-11T08:02:12Z DEBUG args=['/bin/systemctl', 'try-restart', 'certmonger.service'] 2025-10-11T08:02:12Z DEBUG Process finished, return code=0 2025-10-11T08:02:12Z DEBUG stdout= 2025-10-11T08:02:12Z DEBUG stderr= 2025-10-11T08:02:12Z DEBUG Starting external process 2025-10-11T08:02:12Z DEBUG args=['/bin/systemctl', 'is-active', 'certmonger.service'] 2025-10-11T08:02:12Z DEBUG Process finished, return code=3 2025-10-11T08:02:12Z DEBUG stdout=inactive 2025-10-11T08:02:12Z DEBUG stderr= 2025-10-11T08:02:12Z DEBUG Restart of certmonger.service complete