Results

By type

          Caller Properties Initialized
cat SSO
cadi_keyfile=/root/.aaf/keyfile
aaf_id=deployer@people.osaaf.org
aaf_password=enc:Bsb3AeFf05vXt23VNvwvzBclseheo0ZjowTSQdZOlDC
aaf_locate_url=https://-locator.:8095
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%NS.cm:2.1
aaf_url=https://AAF_LOCATE_URL/%CNS.%NS.service:2.1
cadi_truststore=/root/.aaf/truststoreONAPall.jks
cadi_truststore_password=changeit
cadi_latitude=
cadi_longitude=
hostname=aai
aaf_locator_fqdn=aai
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
cadi_longitude=0.0
cadi_latitude=0.0
aaf_locator_public_fqdn=aai.onap.org
Created /opt/app/osaaf/local
Existing files in /opt/app/osaaf/local
total 0
Clean up directory /opt/app/osaaf/local
Namespace is org.onap.aai
#### Create Configuration files 
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.aai.keyfile
Passed in Truststore is /root/.aaf/truststoreONAPall.jks
New Truststore is /opt/app/osaaf/local/truststoreONAPall.jks
Creating new /opt/app/osaaf/local/org.onap.aai.props
Creating new /opt/app/osaaf/local/org.onap.aai.location.props
Creating new /opt/app/osaaf/local/org.onap.aai.cred.props
2022-10-29T05:01:02.888+0000: Trans Info
         REMOTE Get Configuration 1130.6304ms
 
############################################################
# Properties Generated by AT&T Certificate Manager
#   by root
#   on 2022-10-29T05:01:02.878+0000
# @copyright 2019, AT&T
############################################################
aaf_env=DEV
aaf_id=aai@aai.onap.org
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locator_fqdn=aai
aaf_locator_public_fqdn=aai.onap.org
aaf_oauth2_introspect_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.introspect:2.1/introspect
aaf_oauth2_token_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.token:2.1/token
aaf_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%AAF_NS.cm:2.1
aaf_url_fs=https://AAF_LOCATE_URL/%CNS.%AAF_NS.fs:2.1
aaf_url_gui=https://AAF_LOCATE_URL/%CNS.%AAF_NS.gui:2.1
aaf_url_hello=https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1
aaf_url_oauth=https://AAF_LOCATE_URL/%CNS.%AAF_NS.oauth:2.1
cadi_prop_files=/opt/app/osaaf/local/org.onap.aai.location.props:/opt/app/osaaf/local/org.onap.aai.cred.props
cadi_protocols=TLSv1.1,TLSv1.2

#### Certificate Authorization Artifact
2022-10-29T05:01:03.332+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-10-29T05:01:03.371+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-10-29T05:01:03.372+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
AppID:          aai@aai.onap.org
  Sponsor:       mmanager@osaaf.org
Machine:         aai
CA:              local
Types:           file,jks,pkcs12
Namespace:       org.onap.aai
Directory:       /opt/app/osaaf/local
O/S User:        root
Renew Days:      60
Notification     mailto:
2022-10-29T05:01:05.171+0000: Trans Info
         Read Artifact 663.1929ms
 
#### Place Certificates (by deployer)
2022-10-29T05:01:05.691+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-10-29T05:01:05.732+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-10-29T05:01:05.732+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.aai.crt
Writing file /opt/app/osaaf/local/org.onap.aai.key
Writing file /opt/app/osaaf/local/org.onap.aai.jks
Writing file /opt/app/osaaf/local/org.onap.aai.trust.jks
Writing file /opt/app/osaaf/local/org.onap.aai.p12
Writing file /opt/app/osaaf/local/org.onap.aai.trust.jks
Backing up /opt/app/osaaf/local/org.onap.aai.cred.props
2022-10-29T05:01:08.321+0000: Trans Info
         REMOTE Place Artifact 1371.0122ms
        Reconstitute Private Key 0.364306ms
        Reconstitute Private Key 0.089465ms
 
Obtained Certificates
#### Validate Configuration and Certificate with live call
2022-10-29T05:01:08.893+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-10-29T05:01:08.941+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-10-29T05:01:08.942+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Validating Configuration...
2022-10-29T05:01:10.051+0000 INIT [cadi] X509 Chain
  0)
    Subject: C=US, O=ONAP, OU=OSAAF, OU=aai@aai.onap.org:DEV, CN=aai
    Issuer : CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Expires: Sun Oct 29 05:01:08 GMT 2023
  1)
    Subject: CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Issuer : C=US, O=ONAP, OU=OSAAF
    Expires: Thu Aug 17 18:51:37 GMT 2023

2022-10-29T05:01:10.061+0000 INIT [cadi] https.protocols loaded from System Properties
2022-10-29T05:01:10.062+0000 INIT [cadi] jdk.tls.client.protocols loaded from System Properties
2022-10-29T05:01:10.158+0000 INIT [cadi] RegistrationProperty: default_container='oom'
2022-10-29T05:01:10.159+0000 INIT [cadi] RegistrationProperty: public_port='null'
2022-10-29T05:01:10.171+0000 INIT [cadi] RegistrationProperty: hostname='aai-graphadmin'
2022-10-29T05:01:10.172+0000 INIT [cadi] RegistrationProperty: public_fqdn='aai.onap.org'
2022-10-29T05:01:10.172+0000 INIT [cadi] RegistrationProperty: default_name='%NS.%N'
2022-10-29T05:01:10.172+0000 INIT [cadi] RegistrationProperty: latitude='0.0'
2022-10-29T05:01:10.173+0000 INIT [cadi] RegistrationProperty: longitude='0.0'
2022-10-29T05:01:10.173+0000 INIT [cadi] RegistrationProperty: public_hostname(overloaded by )='aai.onap.org'
2022-10-29T05:01:10.173+0000 INIT [cadi] RegistrationProperty: default_fqdn='aai'
2022-10-29T05:01:10.173+0000 INIT [cadi] RegistrationProperty: default_container_ns='onap'
2022-10-29T05:01:10.174+0000 DEBUG [cadi] RegistrationReplacement from AAFCon, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.174+0000 INFO [cadi] AAFCon has URL of https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.284+0000 DEBUG [cadi] Configured AbsAAFLocator not found"LocatorCreator is not set"Continuing Locator creation 
2022-10-29T05:01:10.285+0000 DEBUG [cadi] RegistrationReplacement from Config.loadLocator, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.285+0000 INFO [cadi] loadLocator URL is https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.288+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: https://AAF_LOCATE_URL, dot_le: .oom, value: https://aaf-locate.onap:8095
2022-10-29T05:01:10.288+0000 INFO [cadi] AbsAAFLocator AAF URI is https://aaf-locate.onap:8095/locate
2022-10-29T05:01:10.289+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: onap.org.osaaf.aaf.service:2.1, dot_le: .oom, value: onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.289+0000 INFO [cadi] AbsAAFLocator name is https://aaf-locate.onap:8095/locate
2022-10-29T05:01:10.312+0000 DEBUG [cadi] Root URI: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-10-29T05:01:10.325+0000 INFO [cadi] AAFLocator enabled using https://aaf-locate.onap:8095
Success connecting to https://aaf-service.onap:8100
   Permissions for aai@aai.onap.org
	org.onap.aai.access|*|*
	org.onap.aai.resources|*|delete
	org.onap.aai.resources|*|get
	org.onap.aai.resources|*|patch
	org.onap.aai.resources|*|post
	org.onap.aai.resources|*|put
	org.onap.aai.traversal|*|advanced
Initialization complete
*** retrieving passwords for certificates
*** password retrieval succeeded
*** changing them into shell safe ones

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore org.onap.aai.jks -destkeystore org.onap.aai.jks -deststoretype pkcs12".
*** set key password as same password as keystore password

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore org.onap.aai.jks -destkeystore org.onap.aai.jks -deststoretype pkcs12".
*** writing passwords into prop file
*** change ownership of certificates to targeted user