Caller Properties Initialized cat SSO cadi_keyfile=/root/.aaf/keyfile aaf_id=deployer@people.osaaf.org aaf_password=enc:yIHeRruKdVZWTYjy1Dk8lSKKoaOsivP6w-hCDyAa3gW aaf_locate_url=https://-locator.:8095 aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%NS.cm:2.1 aaf_url=https://AAF_LOCATE_URL/%CNS.%NS.service:2.1 cadi_truststore=/root/.aaf/truststoreONAPall.jks cadi_truststore_password=changeit cadi_latitude= cadi_longitude= hostname=holmes-rule-mgmt aaf_locator_fqdn=holmes-rule-mgmt aaf_locator_container=oom aaf_locator_container_ns=onap aaf_locate_url=https://aaf-locate.onap:8095 aaf_locator_app_ns=org.osaaf.aaf cadi_longitude=0.0 cadi_latitude=0.0 aaf_locator_public_fqdn=holmes-rule-mgmt.onap.org /opt/app/osaaf/local exists Existing files in /opt/app/osaaf/local total 3168 -rw-r--r-- 1 root root 16 Apr 26 11:20 VERSION -rw-r--r-- 1 root root 3058405 Apr 26 11:20 aaf-cadi-aaf-2.1.20-full.jar -rwxr-xr-x 1 root root 49 Apr 26 11:20 agent -rwxr-xr-x 1 root root 54 Apr 26 11:20 cadi -rw-r--r-- 1 root root 0 Apr 26 11:20 org.onap.holmes-rule-mgmt -rw-r--r-- 1 root root 470 Apr 26 11:20 org.onap.holmes-rule-mgmt.cred.props -rw-r--r-- 1 root root 556 Apr 26 11:18 org.onap.holmes-rule-mgmt.cred.props.10037583240587375113.backup -rw-r--r-- 1 root root 1103 Apr 26 11:20 org.onap.holmes-rule-mgmt.cred.props.16768928879711494496.backup -rw-r--r-- 1 root root 1624 Apr 26 11:20 org.onap.holmes-rule-mgmt.crt -r-------- 1 root root 1705 Apr 26 11:20 org.onap.holmes-rule-mgmt.key -r-------- 1 root root 2074 Apr 26 11:18 org.onap.holmes-rule-mgmt.keyfile -rw-r--r-- 1 root root 282 Apr 26 11:20 org.onap.holmes-rule-mgmt.location.props -rw-r--r-- 1 root root 282 Apr 26 11:18 org.onap.holmes-rule-mgmt.location.props.15589217145038385553.backup -rw-r--r-- 1 root root 4288 Apr 26 11:20 org.onap.holmes-rule-mgmt.p12 -rw-r--r-- 1 root root 1211 Apr 26 11:20 org.onap.holmes-rule-mgmt.props -rw-r--r-- 1 root root 1211 Apr 26 11:18 org.onap.holmes-rule-mgmt.props.1531279039622308115.backup -rw-r--r-- 1 root root 1413 Apr 26 11:20 org.onap.holmes-rule-mgmt.trust.jks -rw-r--r-- 1 root root 117990 Apr 26 11:18 truststoreONAPall.jks Namespace is org.onap.holmes-rule-mgmt #### Create Configuration files 2021-04-26T11:20:32.971+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.keyfile 2021-04-26T11:20:32.991+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties 2021-04-26T11:20:32.992+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols Writing to /opt/app/osaaf/local 2021-04-26T11:20:33.302+0000 INIT [cadi] RegistrationProperty: default_container='oom' 2021-04-26T11:20:33.302+0000 INIT [cadi] RegistrationProperty: public_port='null' 2021-04-26T11:20:33.311+0000 INIT [cadi] RegistrationProperty: hostname='onap-holmes-rule-mgmt-7d569998dd-hwcvx' 2021-04-26T11:20:33.311+0000 INIT [cadi] RegistrationProperty: public_fqdn='holmes-rule-mgmt.onap.org' 2021-04-26T11:20:33.311+0000 INIT [cadi] RegistrationProperty: default_name='%NS.%N' 2021-04-26T11:20:33.311+0000 INIT [cadi] RegistrationProperty: latitude='0.0' 2021-04-26T11:20:33.312+0000 INIT [cadi] RegistrationProperty: longitude='0.0' 2021-04-26T11:20:33.312+0000 INIT [cadi] RegistrationProperty: public_hostname(overloaded by )='holmes-rule-mgmt.onap.org' 2021-04-26T11:20:33.313+0000 INIT [cadi] RegistrationProperty: default_fqdn='holmes-rule-mgmt' 2021-04-26T11:20:33.313+0000 INIT [cadi] RegistrationProperty: default_container_ns='onap' 2021-04-26T11:20:33.314+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://aaf-locate.onap:8095, dot_le: .oom, value: https://aaf-locate.onap:8095 2021-04-26T11:20:33.314+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:33.315+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.oauth:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.oauth:2.1 2021-04-26T11:20:33.315+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.cm:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.cm:2.1 2021-04-26T11:20:33.316+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.gui:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.gui:2.1 2021-04-26T11:20:33.316+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.fs:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.fs:2.1 2021-04-26T11:20:33.316+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1 2021-04-26T11:20:33.317+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.token:2.1/token, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.token:2.1/token 2021-04-26T11:20:33.317+0000 DEBUG [cadi] RegistrationReplacement from Agent:loadURLs, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.introspect:2.1/introspect, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.introspect:2.1/introspect Passed in Truststore is /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.trust.jks New Truststore is /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.trust.jks Reading /opt/app/osaaf/local/./org.onap.holmes-rule-mgmt.props Backing up /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.location.props Backing up /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.props Backing up /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.cred.props 2021-04-26T11:20:33.390+0000: Trans Info REMOTE Get Configuration 88.78702ms ############################################################ # Properties Generated by AT&T Certificate Manager # by root # on 2021-04-26T11:20:33.386+0000 # @copyright 2019, AT&T ############################################################ aaf_env=DEV aaf_id=holmes-rule-mgmt@holmes-rule-mgmt.onap.org aaf_locate_url=https://aaf-locate.onap:8095 aaf_locator_app_ns=org.osaaf.aaf aaf_locator_container=oom aaf_locator_container_ns=onap aaf_locator_fqdn=holmes-rule-mgmt aaf_locator_public_fqdn=holmes-rule-mgmt.onap.org aaf_oauth2_introspect_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.introspect:2.1/introspect aaf_oauth2_token_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.token:2.1/token aaf_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1 aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%AAF_NS.cm:2.1 aaf_url_fs=https://AAF_LOCATE_URL/%CNS.%AAF_NS.fs:2.1 aaf_url_gui=https://AAF_LOCATE_URL/%CNS.%AAF_NS.gui:2.1 aaf_url_hello=https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1 aaf_url_oauth=https://AAF_LOCATE_URL/%CNS.%AAF_NS.oauth:2.1 cadi_prop_files=/opt/app/osaaf/local/org.onap.holmes-rule-mgmt.location.props:/opt/app/osaaf/local/org.onap.holmes-rule-mgmt.cred.props cadi_protocols=TLSv1.1,TLSv1.2 #### Certificate Authorization Artifact 2021-04-26T11:20:33.614+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.keyfile 2021-04-26T11:20:33.635+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties 2021-04-26T11:20:33.635+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols AppID: holmes-rule-mgmt@holmes-rule-mgmt.onap.org Sponsor: mmanager@osaaf.org Machine: holmes-rule-mgmt CA: local Types: file,pkcs12 Namespace: org.onap.holmes-rule-mgmt Directory: /opt/app/osaaf/local O/S User: root Renew Days: 30 Notification mailto: 2021-04-26T11:20:36.216+0000: Trans Info Read Artifact 1998.7445ms #### Place Certificates (by deployer) 2021-04-26T11:20:36.429+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.keyfile 2021-04-26T11:20:36.447+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties 2021-04-26T11:20:36.448+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols Writing to /opt/app/osaaf/local Writing file /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.crt Writing file /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.key Writing file /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.p12 Writing file /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.trust.jks Backing up /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.cred.props 2021-04-26T11:20:41.861+0000: Trans Info REMOTE Place Artifact 4861.5015ms Reconstitute Private Key 0.298644ms Obtained Certificates #### Validate Configuration and Certificate with live call 2021-04-26T11:20:42.089+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-rule-mgmt.keyfile 2021-04-26T11:20:42.108+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties 2021-04-26T11:20:42.108+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols Validating Configuration... 2021-04-26T11:20:42.751+0000 INIT [cadi] X509 Chain 0) Subject: C=US, O=ONAP, OU=OSAAF, OU=holmes-rule-mgmt@holmes-rule-mgmt.onap.org:DEV, CN=holmes-rule-mgmt Issuer : CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US Expires: Tue Apr 26 11:20:40 GMT 2022 1) Subject: CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US Issuer : C=US, O=ONAP, OU=OSAAF Expires: Thu Aug 17 18:51:37 GMT 2023 2021-04-26T11:20:42.755+0000 INIT [cadi] https.protocols loaded from System Properties 2021-04-26T11:20:42.756+0000 INIT [cadi] jdk.tls.client.protocols loaded from System Properties 2021-04-26T11:20:42.821+0000 INIT [cadi] RegistrationProperty: default_container='oom' 2021-04-26T11:20:42.821+0000 INIT [cadi] RegistrationProperty: public_port='null' 2021-04-26T11:20:42.827+0000 INIT [cadi] RegistrationProperty: hostname='onap-holmes-rule-mgmt-7d569998dd-hwcvx' 2021-04-26T11:20:42.827+0000 INIT [cadi] RegistrationProperty: public_fqdn='holmes-rule-mgmt.onap.org' 2021-04-26T11:20:42.828+0000 INIT [cadi] RegistrationProperty: default_name='%NS.%N' 2021-04-26T11:20:42.828+0000 INIT [cadi] RegistrationProperty: latitude='0.0' 2021-04-26T11:20:42.828+0000 INIT [cadi] RegistrationProperty: longitude='0.0' 2021-04-26T11:20:42.828+0000 INIT [cadi] RegistrationProperty: public_hostname(overloaded by )='holmes-rule-mgmt.onap.org' 2021-04-26T11:20:42.828+0000 INIT [cadi] RegistrationProperty: default_fqdn='holmes-rule-mgmt' 2021-04-26T11:20:42.829+0000 INIT [cadi] RegistrationProperty: default_container_ns='onap' 2021-04-26T11:20:42.829+0000 DEBUG [cadi] RegistrationReplacement from AAFCon, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.829+0000 INFO [cadi] AAFCon has URL of https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.889+0000 DEBUG [cadi] Configured AbsAAFLocator not found"LocatorCreator is not set"Continuing Locator creation 2021-04-26T11:20:42.889+0000 DEBUG [cadi] RegistrationReplacement from Config.loadLocator, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.889+0000 INFO [cadi] loadLocator URL is https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.891+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: https://AAF_LOCATE_URL, dot_le: .oom, value: https://aaf-locate.onap:8095 2021-04-26T11:20:42.891+0000 INFO [cadi] AbsAAFLocator AAF URI is https://aaf-locate.onap:8095/locate 2021-04-26T11:20:42.891+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: onap.org.osaaf.aaf.service:2.1, dot_le: .oom, value: onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.892+0000 INFO [cadi] AbsAAFLocator name is https://aaf-locate.onap:8095/locate 2021-04-26T11:20:42.905+0000 DEBUG [cadi] Root URI: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1 2021-04-26T11:20:42.917+0000 INFO [cadi] AAFLocator enabled using https://aaf-locate.onap:8095 Success connecting to https://aaf-service.onap:8100 Permissions for holmes-rule-mgmt@holmes-rule-mgmt.onap.org org.onap.holmes-rule-mgmt.access|*|* org.onap.holmes-rule-mgmt.certman|local|request,ignoreIPs,showpass Initialization complete *** retrieving passwords for certificates *** password retrieval succeeded *** changing them into shell safe ones *** set key password as same password as keystore password keytool error: java.lang.UnsupportedOperationException: -keypasswd commands not supported if -storetype is PKCS12 *** save the generated passwords *** change ownership of certificates to targeted user