Results

By type

          Caller Properties Initialized
cat SSO
cadi_keyfile=/root/.aaf/keyfile
aaf_id=deployer@people.osaaf.org
aaf_password=enc:xFU1AFD-Beo5fekiqkFl6ZsS05-u6JRjG_z8CdQl0Pm
aaf_locate_url=https://-locator.:8095
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%NS.cm:2.1
aaf_url=https://AAF_LOCATE_URL/%CNS.%NS.service:2.1
cadi_truststore=/root/.aaf/truststoreONAPall.jks
cadi_truststore_password=changeit
cadi_latitude=
cadi_longitude=
hostname=aai
aaf_locator_fqdn=aai
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
cadi_longitude=0.0
cadi_latitude=0.0
aaf_locator_public_fqdn=aai.onap.org
Created /opt/app/osaaf/local
Existing files in /opt/app/osaaf/local
total 0
Clean up directory /opt/app/osaaf/local
Namespace is org.onap.aai
#### Create Configuration files 
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.aai.keyfile
Passed in Truststore is /root/.aaf/truststoreONAPall.jks
New Truststore is /opt/app/osaaf/local/truststoreONAPall.jks
Creating new /opt/app/osaaf/local/org.onap.aai.props
Creating new /opt/app/osaaf/local/org.onap.aai.location.props
Creating new /opt/app/osaaf/local/org.onap.aai.cred.props
2022-05-31T01:54:44.973+0000: Trans Info
         REMOTE Get Configuration 1896.0922ms
 
############################################################
# Properties Generated by AT&T Certificate Manager
#   by root
#   on 2022-05-31T01:54:44.969+0000
# @copyright 2019, AT&T
############################################################
aaf_env=DEV
aaf_id=aai@aai.onap.org
aaf_locate_url=https://aaf-locate.onap:8095
aaf_locator_app_ns=org.osaaf.aaf
aaf_locator_container=oom
aaf_locator_container_ns=onap
aaf_locator_fqdn=aai
aaf_locator_public_fqdn=aai.onap.org
aaf_oauth2_introspect_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.introspect:2.1/introspect
aaf_oauth2_token_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.token:2.1/token
aaf_url=https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1
aaf_url_cm=https://AAF_LOCATE_URL/%CNS.%AAF_NS.cm:2.1
aaf_url_fs=https://AAF_LOCATE_URL/%CNS.%AAF_NS.fs:2.1
aaf_url_gui=https://AAF_LOCATE_URL/%CNS.%AAF_NS.gui:2.1
aaf_url_hello=https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.hello:2.1
aaf_url_oauth=https://AAF_LOCATE_URL/%CNS.%AAF_NS.oauth:2.1
cadi_prop_files=/opt/app/osaaf/local/org.onap.aai.location.props:/opt/app/osaaf/local/org.onap.aai.cred.props
cadi_protocols=TLSv1.1,TLSv1.2

#### Certificate Authorization Artifact
2022-05-31T01:54:45.187+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-05-31T01:54:45.206+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-05-31T01:54:45.207+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
AppID:          aai@aai.onap.org
  Sponsor:       mmanager@osaaf.org
Machine:         aai
CA:              local
Types:           file,jks,pkcs12
Namespace:       org.onap.aai
Directory:       /opt/app/osaaf/local
O/S User:        root
Renew Days:      60
Notification     mailto:
2022-05-31T01:54:49.418+0000: Trans Info
         Read Artifact 3474.7761ms
 
#### Place Certificates (by deployer)
2022-05-31T01:54:49.643+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-05-31T01:54:49.661+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-05-31T01:54:49.662+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Writing to /opt/app/osaaf/local
Writing file /opt/app/osaaf/local/org.onap.aai.crt
Writing file /opt/app/osaaf/local/org.onap.aai.key
Writing file /opt/app/osaaf/local/org.onap.aai.jks
Writing file /opt/app/osaaf/local/org.onap.aai.trust.jks
Writing file /opt/app/osaaf/local/org.onap.aai.p12
Writing file /opt/app/osaaf/local/org.onap.aai.trust.jks
Backing up /opt/app/osaaf/local/org.onap.aai.cred.props
2022-05-31T01:54:52.821+0000: Trans Info
         REMOTE Place Artifact 2528.1118ms
        Reconstitute Private Key 0.321118ms
        Reconstitute Private Key 0.040728ms
 
Obtained Certificates
#### Validate Configuration and Certificate with live call
2022-05-31T01:54:53.087+0000 INIT [cadi] cadi_keyfile points to /opt/app/osaaf/local/org.onap.aai.keyfile
2022-05-31T01:54:53.111+0000 INIT [cadi] https.protocols set by cadi_protocols in CADI Properties
2022-05-31T01:54:53.111+0000 INIT [cadi] jdk.tls.client.protocols set from Default Protocols
Validating Configuration...
2022-05-31T01:54:53.783+0000 INIT [cadi] X509 Chain
  0)
    Subject: C=US, O=ONAP, OU=OSAAF, OU=aai@aai.onap.org:DEV, CN=aai
    Issuer : CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Expires: Wed May 31 01:54:51 GMT 2023
  1)
    Subject: CN=intermediateCA_9, OU=OSAAF, O=ONAP, C=US
    Issuer : C=US, O=ONAP, OU=OSAAF
    Expires: Thu Aug 17 18:51:37 GMT 2023

2022-05-31T01:54:53.787+0000 INIT [cadi] https.protocols loaded from System Properties
2022-05-31T01:54:53.787+0000 INIT [cadi] jdk.tls.client.protocols loaded from System Properties
2022-05-31T01:54:53.846+0000 INIT [cadi] RegistrationProperty: default_container='oom'
2022-05-31T01:54:53.846+0000 INIT [cadi] RegistrationProperty: public_port='null'
2022-05-31T01:54:53.853+0000 INIT [cadi] RegistrationProperty: hostname='onap-aai-graphadmin-create-db-schema--1-l9ps8'
2022-05-31T01:54:53.853+0000 INIT [cadi] RegistrationProperty: public_fqdn='aai.onap.org'
2022-05-31T01:54:53.853+0000 INIT [cadi] RegistrationProperty: default_name='%NS.%N'
2022-05-31T01:54:53.853+0000 INIT [cadi] RegistrationProperty: latitude='0.0'
2022-05-31T01:54:53.853+0000 INIT [cadi] RegistrationProperty: longitude='0.0'
2022-05-31T01:54:53.854+0000 INIT [cadi] RegistrationProperty: public_hostname(overloaded by )='aai.onap.org'
2022-05-31T01:54:53.854+0000 INIT [cadi] RegistrationProperty: default_fqdn='aai'
2022-05-31T01:54:53.854+0000 INIT [cadi] RegistrationProperty: default_container_ns='onap'
2022-05-31T01:54:53.854+0000 DEBUG [cadi] RegistrationReplacement from AAFCon, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.854+0000 INFO [cadi] AAFCon has URL of https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.950+0000 DEBUG [cadi] Configured AbsAAFLocator not found"LocatorCreator is not set"Continuing Locator creation 
2022-05-31T01:54:53.950+0000 DEBUG [cadi] RegistrationReplacement from Config.loadLocator, source: https://AAF_LOCATE_URL/%CNS.%AAF_NS.service:2.1, dot_le: .oom, value: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.950+0000 INFO [cadi] loadLocator URL is https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.952+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: https://AAF_LOCATE_URL, dot_le: .oom, value: https://aaf-locate.onap:8095
2022-05-31T01:54:53.952+0000 INFO [cadi] AbsAAFLocator AAF URI is https://aaf-locate.onap:8095/locate
2022-05-31T01:54:53.953+0000 DEBUG [cadi] RegistrationReplacement from AAFLocator, source: onap.org.osaaf.aaf.service:2.1, dot_le: .oom, value: onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.953+0000 INFO [cadi] AbsAAFLocator name is https://aaf-locate.onap:8095/locate
2022-05-31T01:54:53.966+0000 DEBUG [cadi] Root URI: https://aaf-locate.onap:8095/locate/onap.org.osaaf.aaf.service:2.1
2022-05-31T01:54:53.972+0000 INFO [cadi] AAFLocator enabled using https://aaf-locate.onap:8095
Success connecting to https://aaf-service.onap:8100
   Permissions for aai@aai.onap.org
	org.onap.aai.access|*|*
	org.onap.aai.resources|*|delete
	org.onap.aai.resources|*|get
	org.onap.aai.resources|*|patch
	org.onap.aai.resources|*|post
	org.onap.aai.resources|*|put
	org.onap.aai.traversal|*|advanced
Initialization complete
*** retrieving passwords for certificates
*** password retrieval succeeded
*** changing them into shell safe ones

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore org.onap.aai.jks -destkeystore org.onap.aai.jks -deststoretype pkcs12".
*** set key password as same password as keystore password

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore org.onap.aai.jks -destkeystore org.onap.aai.jks -deststoretype pkcs12".
*** writing passwords into prop file
*** change ownership of certificates to targeted user