Results

By type

          Caller Properties Initialized
cat SSO
cadi_keyfile=/root/.aaf/keyfile
aaf_id=deployer@people.osaaf.org
aaf_password=enc:jwvulmOhNyegr8iSigBfmBCY85eOzzRIq1_XxIEP8w5
aaf_locate_url=https://-locator.:8095
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%NS.cm:2.1
aaf_url=https://AAF_LOCATE_URL/%CNS.%NS.service:2.1
cadi_truststore=/root/.aaf/truststoreONAPall.jks
cadi_truststore_password=changeit
cadi_latitude=
cadi_longitude=
hostname=holmes-engine-mgmt
aaf_locator_fqdn=holmes-engine-mgmt
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
cadi_longitude=0.0
cadi_latitude=0.0
aaf_locator_public_fqdn=holmes-engine-mgmt.onap.org
Created /opt/app/osaaf/local
Existing files in /opt/app/osaaf/local
total 0
Clean up directory /opt/app/osaaf/local
Namespace is org.onap.holmes-engine-mgmt
#### Create Configuration files 
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.keyfile
Passed in Truststore is /root/.aaf/truststoreONAPall.jks
New Truststore is /opt/app/osaaf/local/truststoreONAPall.jks
Creating new /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.props
Creating new /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.cred.props
Creating new /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.location.props
2021-05-29T23:11:35.293+0000: Trans Info
         REMOTE Get Configuration 2779.238ms
 
############################################################
# Properties Generated by AT&T Certificate Manager
#   by root
#   on 2021-05-29T23:11:35.289+0000
# @copyright 2019, AT&T
############################################################
aaf_env=DEV
aaf_id=holmes-engine-mgmt@holmes-engine-mgmt.onap.org
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locator_fqdn=holmes-engine-mgmt
aaf_locator_public_fqdn=holmes-engine-mgmt.onap.org
aaf_oauth2_introspect_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.introspect:2.1/introspect
aaf_oauth2_token_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.token:2.1/token
aaf_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%AAF_NS.cm:2.1
aaf_url_fs=https://AAF_LOCATE_URL/%CNS.%AAF_NS.fs:2.1
aaf_url_gui=https://AAF_LOCATE_URL/%CNS.%AAF_NS.gui:2.1
aaf_url_hello=https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1
aaf_url_oauth=https://AAF_LOCATE_URL/%CNS.%AAF_NS.oauth:2.1
cadi_prop_files=/opt/app/osaaf/local/org.onap.holmes-engine-mgmt.location.props:/opt/app/osaaf/local/org.onap.holmes-engine-mgmt.cred.props
cadi_protocols=TLSv1.1,TLSv1.2

#### Certificate Authorization Artifact
2021-05-29T23:11:35.999+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.keyfile
2021-05-29T23:11:36.019+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2021-05-29T23:11:36.019+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
AppID:          holmes-engine-mgmt@holmes-engine-mgmt.onap.org
  Sponsor:       aaf_admin@osaaf.org
Machine:         holmes-engine-mgmt
CA:              local
Types:           file,pkcs12
Namespace:       org.onap.holmes-engine-mgmt
Directory:       /opt/app/osaaf/local
O/S User:        root
Renew Days:      30
Notification     mailto:
2021-05-29T23:17:45.392+0000: Trans Info
         Read Artifact 366417.84ms
 
#### Place Certificates (by deployer)
2021-05-29T23:17:46.099+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.keyfile
2021-05-29T23:17:46.118+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2021-05-29T23:17:46.119+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.crt
Writing file /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.key
Writing file /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.p12
Writing file /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.trust.jks
Backing up /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.cred.props
2021-05-29T23:18:32.796+0000: Trans Info
         REMOTE Place Artifact 44076.266ms
        Reconstitute Private Key 0.84037ms
 
Obtained Certificates
#### Validate Configuration and Certificate with live call
2021-05-29T23:18:33.408+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.holmes-engine-mgmt.keyfile
2021-05-29T23:18:33.495+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2021-05-29T23:18:33.496+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Validating Configuration...
2021-05-29T23:18:36.299+0000 INIT [cadi] X509 Chain
  0)
    Subject: C=US, O=ONAP, OU=OSAAF, OU=holmes-engine-mgmt@holmes-engine-mgmt.onap.org:DEV, CN=holmes-engine-mgmt
    Issuer : CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Expires: Sun May 29 23:18:27 GMT 2022
  1)
    Subject: CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Issuer : C=US, O=ONAP, OU=OSAAF
    Expires: Thu Aug 17 18:51:37 GMT 2023

2021-05-29T23:18:36.303+0000 INIT [cadi] https.protocols loaded from System Properties
2021-05-29T23:18:36.303+0000 INIT [cadi] jdk.tls.client.protocols loaded from System Properties
2021-05-29T23:18:36.506+0000 INIT [cadi] RegistrationProperty: default_container='oom'
2021-05-29T23:18:36.506+0000 INIT [cadi] RegistrationProperty: public_port='null'
2021-05-29T23:18:36.598+0000 INIT [cadi] RegistrationProperty: hostname='onap-holmes-engine-mgmt-7b9c986d8c-fcpr2'
2021-05-29T23:18:36.598+0000 INIT [cadi] RegistrationProperty: public_fqdn='holmes-engine-mgmt.onap.org'
2021-05-29T23:18:36.598+0000 INIT [cadi] RegistrationProperty: default_name='%NS.%N'
2021-05-29T23:18:36.599+0000 INIT [cadi] RegistrationProperty: latitude='0.0'
2021-05-29T23:18:36.599+0000 INIT [cadi] RegistrationProperty: longitude='0.0'
2021-05-29T23:18:36.599+0000 INIT [cadi] RegistrationProperty: public_hostname(overloaded by )='holmes-engine-mgmt.onap.org'
2021-05-29T23:18:36.600+0000 INIT [cadi] RegistrationProperty: default_fqdn='holmes-engine-mgmt'
2021-05-29T23:18:36.600+0000 INIT [cadi] RegistrationProperty: default_container_ns='onap'
2021-05-29T23:18:36.600+0000 DEBUG [cadi] RegistrationReplacement from AAFCon, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:36.600+0000 INFO [cadi] AAFCon has URL of https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:36.917+0000 DEBUG [cadi] Configured AbsAAFLocator not found"LocatorCreator is not set"Continuing Locator creation 
2021-05-29T23:18:36.989+0000 DEBUG [cadi] RegistrationReplacement from Config.loadLocator, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:36.989+0000 INFO [cadi] loadLocator URL is https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:36.992+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: https://AAF_LOCATE_URL, dot_le: .oom, value: https://aaf-locate.onap:8095
2021-05-29T23:18:36.992+0000 INFO [cadi] AbsAAFLocator AAF URI is https://aaf-locate.onap:8095/locate
2021-05-29T23:18:36.992+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: onap.org.osaaf.aaf.service:2.1, dot_le: .oom, value: onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:36.993+0000 INFO [cadi] AbsAAFLocator name is https://aaf-locate.onap:8095/locate
2021-05-29T23:18:37.090+0000 DEBUG [cadi] Root URI: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2021-05-29T23:18:37.097+0000 INFO [cadi] AAFLocator enabled using https://aaf-locate.onap:8095
Success connecting to https://aaf-service.onap:8100
   Permissions for holmes-engine-mgmt@holmes-engine-mgmt.onap.org
	org.onap.holmes-engine-mgmt.access|*|*
	org.onap.holmes-engine-mgmt.certman|local|request,ignoreIPs,showpass
Initialization complete
*** retrieving passwords for certificates
*** password retrieval succeeded
*** changing them into shell safe ones
*** set key password as same password as keystore password
keytool error: java.lang.UnsupportedOperationException: -keypasswd commands not supported if -storetype is PKCS12
*** save the generated passwords
*** change ownership of certificates to targeted user