Advertisement
Guest User

Untitled

a guest
Mar 21st, 2017
295
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 196.96 KB | None | 0 0
  1. 2017-03-21 09:31:49 FINE Version: ovirt-engine-4.0.7.4 ()
  2. 2017-03-21 09:31:49 INFO ========================================================================
  3. 2017-03-21 09:31:49 INFO ============================ Initialization ============================
  4. 2017-03-21 09:31:49 INFO ========================================================================
  5. 2017-03-21 09:31:49 FINE Loading extension file 'internal-authz.properties'
  6. 2017-03-21 09:31:49 INFO Loading extension 'internal-authz'
  7. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  8. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_LOAD[b0f2460e-7971-4a9c-b4e1-c1db1362a47a], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/internal-authz.properties, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=internal-authz}}
  9. 2017-03-21 09:31:49 FINEST Invoke Input END
  10. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  11. 2017-03-21 09:31:49 FINEST {Extkey[name=AAA_AUTHZ_STATUS;type=class java.lang.Integer;uuid=AAA_AUTHZ_STATUS[566f0ba5-8329-4de1-952a-7a81e4bedd3e];]=0, Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  12. 2017-03-21 09:31:49 FINEST Invoke Output END
  13. 2017-03-21 09:31:49 INFO Extension 'internal-authz' loaded
  14. 2017-03-21 09:31:49 FINE Config BEGIN
  15. 2017-03-21 09:31:49 FINE ovirt.engine.extension.provides: org.ovirt.engine.api.extensions.aaa.Authz
  16. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.class: org.ovirt.engine.extension.aaa.jdbc.binding.api.AuthzExtension
  17. 2017-03-21 09:31:49 FINE ovirt.engine.extension.bindings.method: jbossmodule
  18. 2017-03-21 09:31:49 FINE config.datasource.file: /etc/ovirt-engine/aaa/internal.properties
  19. 2017-03-21 09:31:49 FINE ovirt.engine.extension.name: internal-authz
  20. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.module: org.ovirt.engine.extension.aaa.jdbc
  21. 2017-03-21 09:31:49 FINE Config END
  22. 2017-03-21 09:31:49 FINE Loading extension file 'internal-authn.properties'
  23. 2017-03-21 09:31:49 INFO Loading extension 'internal-authn'
  24. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  25. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_LOAD[b0f2460e-7971-4a9c-b4e1-c1db1362a47a], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authn], Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/internal-authn.properties, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=internal-authn}}
  26. 2017-03-21 09:31:49 FINEST Invoke Input END
  27. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  28. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  29. 2017-03-21 09:31:49 FINEST Invoke Output END
  30. 2017-03-21 09:31:49 INFO Extension 'internal-authn' loaded
  31. 2017-03-21 09:31:49 FINE Config BEGIN
  32. 2017-03-21 09:31:49 FINE ovirt.engine.aaa.authn.profile.name: internal
  33. 2017-03-21 09:31:49 FINE ovirt.engine.extension.provides: org.ovirt.engine.api.extensions.aaa.Authn
  34. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.class: org.ovirt.engine.extension.aaa.jdbc.binding.api.AuthnExtension
  35. 2017-03-21 09:31:49 FINE ovirt.engine.aaa.authn.authz.plugin: internal-authz
  36. 2017-03-21 09:31:49 FINE ovirt.engine.extension.bindings.method: jbossmodule
  37. 2017-03-21 09:31:49 FINE config.datasource.file: /etc/ovirt-engine/aaa/internal.properties
  38. 2017-03-21 09:31:49 FINE ovirt.engine.extension.name: internal-authn
  39. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.module: org.ovirt.engine.extension.aaa.jdbc
  40. 2017-03-21 09:31:49 FINE Config END
  41. 2017-03-21 09:31:49 FINE Loading extension file 'karmalabs-authz.properties'
  42. 2017-03-21 09:31:49 INFO Loading extension 'karmalabs-authz'
  43. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  44. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_LOAD[b0f2460e-7971-4a9c-b4e1-c1db1362a47a], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authz.properties, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authz}}
  45. 2017-03-21 09:31:49 FINEST Invoke Input END
  46. 2017-03-21 09:31:49 FINE PROPERTIES-BEGIN
  47. 2017-03-21 09:31:49 FINE ._basedir=/etc/ovirt-engine/extensions.d/../aaa
  48. .attrmap.map-group-record.attr.GroupRecord_DISPLAY_NAME.map=description
  49. .attrmap.map-group-record.attr.GroupRecord_DN.map=_dn
  50. .attrmap.map-group-record.attr.GroupRecord_ID.map=entryUUID
  51. .attrmap.map-group-record.attr.GroupRecord_NAME.map=cn
  52. .attrmap.map-principal-record.attr.PrincipalRecord_DEPARTMENT.map=department
  53. .attrmap.map-principal-record.attr.PrincipalRecord_DISPLAY_NAME.map=displayName
  54. .attrmap.map-principal-record.attr.PrincipalRecord_DN.map=_dn
  55. .attrmap.map-principal-record.attr.PrincipalRecord_EMAIL.map=mail
  56. .attrmap.map-principal-record.attr.PrincipalRecord_FIRST_NAME.map=givenName
  57. .attrmap.map-principal-record.attr.PrincipalRecord_ID.map=entryUUID
  58. .attrmap.map-principal-record.attr.PrincipalRecord_LAST_NAME.map=sn
  59. .attrmap.map-principal-record.attr.PrincipalRecord_NAME.map=uid
  60. .attrmap.map-principal-record.attr.PrincipalRecord_PRINCIPAL.map=uid
  61. .attrmap.map-principal-record.attr.PrincipalRecord_TITLE.map=title
  62. .attrmap.simple-map-memberOf.attr.memberOf.map=${seq\:simple_attrMemberOf}
  63. .attrmap.simple-map-namespace.attr.namespace.map=${seq\:simple_attrsBaseDN}
  64. .auth-check.default.auth.gssapi.jAASClientName=oVirtKerb
  65. .auth-check.default.auth.gssapi.suppressedSystemProperties=java.security.krb5.kdc,\ java.security.krb5.realm,\ java.security.auth.login.config,\ javax.security.auth.useSubjectCredsOnly
  66. .auth-check.default.auth.type=simple
  67. .auth-check.default.diagnostic.mapping.AUTHORIZATION_DENIED=CREDENTIALS_INCORRECT
  68. .auth-check.default.diagnostic.mapping.AUTH_UNKNOWN=CREDENTIALS_INVALID
  69. .auth-check.default.diagnostic.mapping.CONNECT_ERROR=REMOTE_UNAVAILABLE
  70. .auth-check.default.diagnostic.mapping.CONSTRAINT_VIOLATION=ACCOUNT_RESTRICTION
  71. .auth-check.default.diagnostic.mapping.INAPPROPRIATE_AUTHENTICATION=CREDENTIALS_INVALID
  72. .auth-check.default.diagnostic.mapping.INVALID_CREDENTIALS=CREDENTIALS_INCORRECT
  73. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.1=ACCOUNT_EXPIRED
  74. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.12=ACCOUNT_RESTRICTION
  75. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.18=ACCOUNT_LOCKED
  76. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.23=CREDENTIALS_EXPIRED
  77. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.24=CREDENTIALS_INCORRECT
  78. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.6=CREDENTIALS_INVALID
  79. .auth-check.default.diagnostic.mapping.LOCAL_ERROR._comment=http\://www.rfc-editor.org/rfc/rfc1510.txt
  80. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.translation.pattern=^javax\\.security\\.auth\\.login\\.LoginException\:.*\ \\((?<code>[0-9]+)\\).*$
  81. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.translation.replace=${code}
  82. .auth-check.default.diagnostic.mapping.NO_SUCH_OBJECT=CREDENTIALS_INVALID
  83. .auth-check.default.diagnostic.mapping.PASSWORD_EXPIRED=CREDENTIALS_EXPIRED
  84. .auth-check.default.diagnostic.mapping.SERVER_DOWN=REMOTE_UNAVAILABLE
  85. .auth-check.default.diagnostic.mapping.SUCCESS=SUCCESS
  86. .auth-check.default.diagnostic.mapping.TIMEOUT=TIMED_OUT
  87. .auth-check.default.diagnostic.mapping.UNAVAILABLE=REMOTE_UNAVAILABLE
  88. .auth-check.default.diagnostic.mapping.UNWILLING_TO_PERFORM=ACCOUNT_DISABLED
  89. .auth-check.default.diagnostic.mapping.default=GENERAL_ERROR
  90. .auth-check.default.diagnostic.mapping.translation.pattern=^(.*)$
  91. .auth-check.default.diagnostic.mapping.translation.replace=$1
  92. .auth-check.default.password=***
  93. .auth-check.default.pool=authn
  94. .auth-check.default.reuse-connections=true
  95. .auth-check.default.user=${seq\:_simple_bind_user}
  96. .auth-check.default.whoami.enable=true
  97. .include=<openldap.properties>
  98. .pool.authz.auth.type=simple
  99. .pool.default.auth.digest-md5.jAASClientName=oVirtKerb
  100. .pool.default.auth.gssapi.jAASClientName=oVirtKerb
  101. .pool.default.auth.gssapi.suppressedSystemProperties=java.security.krb5.kdc,\ java.security.krb5.realm,\ java.security.auth.login.config,\ javax.security.auth.useSubjectCredsOnly
  102. .pool.default.auth.simple.bindDN=cn\=admin,dc\=karmalabs,dc\=com
  103. .pool.default.auth.simple.password=***
  104. .pool.default.auth.type=none
  105. .pool.default.connection-options.abandonOnTimeout=true
  106. .pool.default.connection-options.allowConcurrentSocketFactoryUse=true
  107. .pool.default.connection-options.autoReconnect=true
  108. .pool.default.connection-options.connectTimeoutMillis=5000
  109. .pool.default.connection-options.responseTimeoutMillis=60000
  110. .pool.default.connection-pool.initialConnectThreads=1
  111. .pool.default.connection-pool.initialConnections=4
  112. .pool.default.connection-pool.maxConnectionAgeMillis=600000
  113. .pool.default.connection-pool.maxConnections=20
  114. .pool.default.dc-resolve.default.serverset.srvrecord.domain=${seq\:__dc_resolve_domain}
  115. .pool.default.dc-resolve.default.serverset.type=srvrecord
  116. .pool.default.dc-resolve.enable=false
  117. .pool.default.serverset.dns-round-robin.dnsRecordTypes=A
  118. .pool.default.serverset.dns-round-robin.selectionMode=RANDOM
  119. .pool.default.serverset.dns-round-robin.server=389
  120. .pool.default.serverset.failover.port=389
  121. .pool.default.serverset.fastest-connect.port=389
  122. .pool.default.serverset.fewest-connections.port=389
  123. .pool.default.serverset.single.port=389
  124. .pool.default.serverset.single.server=ldap.karmalabs.com
  125. .pool.default.serverset.srvrecord.domain-conversion.type=none
  126. .pool.default.serverset.srvrecord.protocol=tcp
  127. .pool.default.serverset.srvrecord.service=ldap
  128. .pool.default.serverset.type=single
  129. .pool.default.socketfactory.resolver.cacheTTL=10000
  130. .pool.default.socketfactory.resolver.supportIPv6=false
  131. .pool.default.socketfactory.type=java
  132. .pool.default.ssl.enable=false
  133. .pool.default.ssl.host-name-verify.enable=true
  134. .pool.default.ssl.host-name-verify.wildcards=true
  135. .pool.default.ssl.insecure=false
  136. .pool.default.ssl.protocol=TLSv1
  137. .pool.default.ssl.startTLS=false
  138. .pool.default.ssl.startTLSProtocol=TLSv1
  139. .search.default.dc-resolve.enable=true
  140. .search.default.page-size=100
  141. .search.default.paging=true
  142. .search.default.scope=SUB
  143. .search.simple-namespace.attrmap=simple-map-namespace
  144. .search.simple-namespace.pool=authz
  145. .search.simple-namespace.search-request.attributes=${seq\:simple_attrsBaseDN}
  146. .search.simple-namespace.search-request.baseDN=
  147. .search.simple-namespace.search-request.filter=&(objectClass\=*)
  148. .search.simple-namespace.search-request.scope=BASE
  149. .search.simple-query-groups.attrmap=map-group-record
  150. .search.simple-query-groups.pool=authz
  151. .search.simple-query-groups.search-request.attributes=${seq\:simple_attrsGroupRecord}
  152. .search.simple-query-groups.search-request.baseDN=${seq\:namespace}
  153. .search.simple-query-groups.search-request.filter=&${seq\:simple_filterGroupObject}${seq\:filter}
  154. .search.simple-query-principals.attrmap=map-principal-record
  155. .search.simple-query-principals.pool=authz
  156. .search.simple-query-principals.search-request.attributes=${seq\:simple_attrsPrincipalRecord}
  157. .search.simple-query-principals.search-request.baseDN=${seq\:namespace}
  158. .search.simple-query-principals.search-request.filter=&${seq\:simple_filterUserObject}${seq\:filter}
  159. .search.simple-resolve-groups-member.attrmap=map-group-record
  160. .search.simple-resolve-groups-member.pool=authz
  161. .search.simple-resolve-groups-member.search-request.attributes=${seq\:simple_attrsGroupRecord}
  162. .search.simple-resolve-groups-member.search-request.baseDN=${seq\:simple_baseDN}
  163. .search.simple-resolve-groups-member.search-request.filter=&${seq\:simple_filterGroupObject}(${seq\:simple_attrGroupMemberDN}\=${seq\:_simple_dn_encoded})
  164. .search.simple-resolve-groups-memberOf.attrmap=simple-map-memberOf
  165. .search.simple-resolve-groups-memberOf.pool=authz
  166. .search.simple-resolve-groups-memberOf.search-request.attributes=${seq\:simple_attrMemberOf}
  167. .search.simple-resolve-groups-memberOf.search-request.baseDN=${seq\:_simple_dn}
  168. .search.simple-resolve-groups-memberOf.search-request.filter=&(objectClass\=*)
  169. .search.simple-resolve-groups-memberOf.search-request.scope=BASE
  170. .search.simple-resolve-groups-memberOf-item.attrmap=map-group-record
  171. .search.simple-resolve-groups-memberOf-item.pool=authz
  172. .search.simple-resolve-groups-memberOf-item.search-request.attributes=${seq\:simple_attrsGroupRecord}
  173. .search.simple-resolve-groups-memberOf-item.search-request.baseDN=${seq\:_simple_dn}
  174. .search.simple-resolve-groups-memberOf-item.search-request.filter=&(objectClass\=*)
  175. .search.simple-resolve-groups-memberOf-item.search-request.scope=BASE
  176. .search.simple-user-fetch.attrmap=map-principal-record
  177. .search.simple-user-fetch.pool=authz
  178. .search.simple-user-fetch.search-request.attributes=${seq\:simple_attrsPrincipalRecord}
  179. .search.simple-user-fetch.search-request.baseDN=${seq\:simple_baseDN}
  180. .search.simple-user-fetch.search-request.filter=&${seq\:simple_filterUserObject}(${seq\:simple_attrsUserName}\=${seq\:user_encoded})
  181. .sensitive-keys.001=password
  182. .sequence.__init0.01.description=set\ sensitive\ keys
  183. .sequence.__init0.01.type=var-set
  184. .sequence.__init0.01.var-set.value=${seq\:sensitiveKeys},\ password,\ passwordNew
  185. .sequence.__init0.01.var-set.variable=sensitiveKeys
  186. .sequence.__init0.02.condition.not=true
  187. .sequence.__init0.02.condition.type=var-set
  188. .sequence.__init0.02.condition.var-set.variable=maxFilterSize
  189. .sequence.__init0.02.description=set\ max\ filter\ size
  190. .sequence.__init0.02.type=var-set
  191. .sequence.__init0.02.var-set.value=50
  192. .sequence.__init0.02.var-set.variable=maxFilterSize
  193. .sequence.__init0.03.condition.not=true
  194. .sequence.__init0.03.condition.type=var-set
  195. .sequence.__init0.03.condition.var-set.variable=capability_recursiveGroupResolution
  196. .sequence.__init0.03.description=set\ default\ as\ not\ recursive\ group\ resolution
  197. .sequence.__init0.03.type=var-set
  198. .sequence.__init0.03.var-set.value=false
  199. .sequence.__init0.03.var-set.variable=capability_recursiveGroupResolution
  200. .sequence.__init0.04.condition.not=true
  201. .sequence.__init0.04.condition.type=var-set
  202. .sequence.__init0.04.condition.var-set.variable=capability_credentialsChange
  203. .sequence.__init0.04.description=set\ default\ as\ no\ credentials\ change
  204. .sequence.__init0.04.type=var-set
  205. .sequence.__init0.04.var-set.value=false
  206. .sequence.__init0.04.var-set.variable=capability_credentialsChange
  207. .sequence.authn.stub.call.name=simple-authn
  208. .sequence.authn.stub.description=call\ simple
  209. .sequence.authn.stub.type=call
  210. .sequence.credentials-change.stub.call.name=simple-credentials-change
  211. .sequence.credentials-change.stub.description=call\ simple
  212. .sequence.credentials-change.stub.type=call
  213. .sequence.namespace.stub.call.name=simple-namespace
  214. .sequence.namespace.stub.description=call\ simple
  215. .sequence.namespace.stub.type=call
  216. .sequence.openldap-init-vars.010.description=set\ base\ dn
  217. .sequence.openldap-init-vars.010.type=var-set
  218. .sequence.openldap-init-vars.010.var-set.value=namingContexts
  219. .sequence.openldap-init-vars.010.var-set.variable=simple_attrsBaseDN
  220. .sequence.openldap-init-vars.020.description=set\ user\ attribute
  221. .sequence.openldap-init-vars.020.type=var-set
  222. .sequence.openldap-init-vars.020.var-set.value=uid
  223. .sequence.openldap-init-vars.020.var-set.variable=simple_attrsUserName
  224. .sequence.openldap-init-vars.030.description=set\ principal\ record\ attributes
  225. .sequence.openldap-init-vars.030.type=var-set
  226. .sequence.openldap-init-vars.030.var-set.value=entryUUID,\ uid,\ cn,\ displayName,\ department,\ givenName,\ sn,\ title,\ mail
  227. .sequence.openldap-init-vars.030.var-set.variable=simple_attrsPrincipalRecord
  228. .sequence.openldap-init-vars.040.description=set\ user\ object\ filter
  229. .sequence.openldap-init-vars.040.type=var-set
  230. .sequence.openldap-init-vars.040.var-set.value=(objectClass\=uidObject)(${seq\:simple_attrsUserName}\=*)
  231. .sequence.openldap-init-vars.040.var-set.variable=simple_filterUserObject
  232. .sequence.openldap-init-vars.050.description=set\ group\ record\ attributes
  233. .sequence.openldap-init-vars.050.type=var-set
  234. .sequence.openldap-init-vars.050.var-set.value=entryUUID,\ cn,\ description
  235. .sequence.openldap-init-vars.050.var-set.variable=simple_attrsGroupRecord
  236. .sequence.openldap-init-vars.060.description=set\ group\ object\ filter
  237. .sequence.openldap-init-vars.060.type=var-set
  238. .sequence.openldap-init-vars.060.var-set.value=(objectClass\=groupOfNames)
  239. .sequence.openldap-init-vars.060.var-set.variable=simple_filterGroupObject
  240. .sequence.openldap-init-vars.070.description=set\ group\ member\ filter
  241. .sequence.openldap-init-vars.070.type=var-set
  242. .sequence.openldap-init-vars.070.var-set.value=member
  243. .sequence.openldap-init-vars.070.var-set.variable=simple_attrGroupMemberDN
  244. .sequence.query-groups.stub.call.name=simple-query-groups
  245. .sequence.query-groups.stub.description=call\ simple
  246. .sequence.query-groups.stub.type=call
  247. .sequence.query-principals.stub.call.name=simple-query-principals
  248. .sequence.query-principals.stub.description=call\ simple
  249. .sequence.query-principals.stub.type=call
  250. .sequence.resolve-groups.stub.call.name=simple-resolve-groups
  251. .sequence.resolve-groups.stub.description=call\ simple
  252. .sequence.resolve-groups.stub.type=call
  253. .sequence.resolve-principal.stub.call.name=simple-resolve-principal
  254. .sequence.resolve-principal.stub.description=call\ simple
  255. .sequence.resolve-principal.stub.type=call
  256. .sequence.simple-authn.010.call.name=simple-resolve-user
  257. .sequence.simple-authn.010.description=resolve\ user
  258. .sequence.simple-authn.010.type=call
  259. .sequence.simple-authn.020.auth-check.name=simple-authn
  260. .sequence.simple-authn.020.description=auth\ check
  261. .sequence.simple-authn.020.type=auth-check
  262. .sequence.simple-credentials-change.010.call.name=simple-resolve-user
  263. .sequence.simple-credentials-change.010.description=resolve\ user
  264. .sequence.simple-credentials-change.010.type=call
  265. .sequence.simple-credentials-change.020.credentials-change.password.current=${seq\:password}
  266. .sequence.simple-credentials-change.020.credentials-change.password.new=${seq\:passwordNew}
  267. .sequence.simple-credentials-change.020.credentials-change.pool=authn
  268. .sequence.simple-credentials-change.020.credentials-change.user=${seq\:PrincipalRecord_DN}
  269. .sequence.simple-credentials-change.020.description=resolve\ user
  270. .sequence.simple-credentials-change.020.type=credentials-change
  271. .sequence.simple-init-vars.010.condition.not=true
  272. .sequence.simple-init-vars.010.condition.type=var-set
  273. .sequence.simple-init-vars.010.condition.var-set.variable=simple_bindFormat
  274. .sequence.simple-init-vars.010.description=set\ user\ format\:\ sam\ for\ basic,\ realm\ for\ sasl
  275. .sequence.simple-init-vars.010.type=var-set
  276. .sequence.simple-init-vars.010.var-set.value=dn
  277. .sequence.simple-init-vars.010.var-set.variable=simple_bindFormat
  278. .sequence.simple-init-vars.020.condition.not=true
  279. .sequence.simple-init-vars.020.condition.type=var-set
  280. .sequence.simple-init-vars.020.condition.var-set.variable=simple_groupLogic
  281. .sequence.simple-init-vars.020.description=set\ group\ logic
  282. .sequence.simple-init-vars.020.type=var-set
  283. .sequence.simple-init-vars.020.var-set.value=member
  284. .sequence.simple-init-vars.020.var-set.variable=simple_groupLogic
  285. .sequence.simple-init-vars.030.condition.not=true
  286. .sequence.simple-init-vars.030.condition.type=var-set
  287. .sequence.simple-init-vars.030.condition.var-set.variable=simple_attrGroupMemberDN
  288. .sequence.simple-init-vars.030.description=set\ group\ member\ attribute
  289. .sequence.simple-init-vars.030.type=var-set
  290. .sequence.simple-init-vars.030.var-set.value=uniqueMember\:uniqueMemberMatch\:
  291. .sequence.simple-init-vars.030.var-set.variable=simple_attrGroupMemberDN
  292. .sequence.simple-init-vars.040.condition.not=true
  293. .sequence.simple-init-vars.040.condition.type=var-set
  294. .sequence.simple-init-vars.040.condition.var-set.variable=simple_attrMemberOf
  295. .sequence.simple-init-vars.040.description=set\ object\ group\ membership\ attribute
  296. .sequence.simple-init-vars.040.type=var-set
  297. .sequence.simple-init-vars.040.var-set.value=memberOf
  298. .sequence.simple-init-vars.040.var-set.variable=simple_attrMemberOf
  299. .sequence.simple-init-vars.050.condition.not=true
  300. .sequence.simple-init-vars.050.condition.type=var-set
  301. .sequence.simple-init-vars.050.condition.var-set.variable=simple_attrsBaseDNIndex
  302. .sequence.simple-init-vars.050.description=set\ default\ index\ for\ baseDN
  303. .sequence.simple-init-vars.050.type=var-set
  304. .sequence.simple-init-vars.050.var-set.value=0
  305. .sequence.simple-init-vars.050.var-set.variable=simple_attrsBaseDNIndex
  306. .sequence.simple-namespace.010.condition.type=var-set
  307. .sequence.simple-namespace.010.condition.var-set.variable=simple_namespaceDefault
  308. .sequence.simple-namespace.010.description=set\ default\ namespace
  309. .sequence.simple-namespace.010.type=var-set
  310. .sequence.simple-namespace.010.var-set.value=${seq\:simple_namespaceDefault}
  311. .sequence.simple-namespace.010.var-set.variable=namespaceDefault
  312. .sequence.simple-namespace.020.description=namespace\ search
  313. .sequence.simple-namespace.020.type=var-list-set
  314. .sequence.simple-namespace.020.var-list-set.values.01.value=${seq\:simple_baseDN}
  315. .sequence.simple-namespace.020.var-list-set.variable=namespaces
  316. .sequence.simple-open-pools.010.description=create\ authz\ pool
  317. .sequence.simple-open-pools.010.pool-create.name=authz
  318. .sequence.simple-open-pools.010.type=pool-create
  319. .sequence.simple-open-pools.020.condition.type=var-set
  320. .sequence.simple-open-pools.020.condition.var-set.variable=authn_enable
  321. .sequence.simple-open-pools.020.description=create\ authn\ pool
  322. .sequence.simple-open-pools.020.pool-create.name=authn
  323. .sequence.simple-open-pools.020.type=pool-create
  324. .sequence.simple-open-vars.010.condition.not=true
  325. .sequence.simple-open-vars.010.condition.type=var-set
  326. .sequence.simple-open-vars.010.condition.var-set.variable=simple_baseDN
  327. .sequence.simple-open-vars.010.description=set\ base\ DN
  328. .sequence.simple-open-vars.010.fetch-record.map.namespace.name=simple_baseDN
  329. .sequence.simple-open-vars.010.fetch-record.map.namespace.select=${seq\:simple_attrsBaseDNIndex}
  330. .sequence.simple-open-vars.010.fetch-record.search=simple-namespace
  331. .sequence.simple-open-vars.010.type=fetch-record
  332. .sequence.simple-query-groups.010.description=query\ groups
  333. .sequence.simple-query-groups.010.search-open.search=simple-query-groups
  334. .sequence.simple-query-groups.010.search-open.variable=query
  335. .sequence.simple-query-groups.010.type=search-open
  336. .sequence.simple-query-principals.010.description=principals\ search
  337. .sequence.simple-query-principals.010.search-open.search=simple-query-principals
  338. .sequence.simple-query-principals.010.search-open.variable=query
  339. .sequence.simple-query-principals.010.type=search-open
  340. .sequence.simple-resolve-groups.001.call.name=simple-resolve-groups-${seq\:simple_groupLogic}
  341. .sequence.simple-resolve-groups.001.description=call\ simple\ ${seq\:simple_groupLogic}
  342. .sequence.simple-resolve-groups.001.type=call
  343. .sequence.simple-resolve-groups-member.010.description=set\ dn
  344. .sequence.simple-resolve-groups-member.010.type=var-set
  345. .sequence.simple-resolve-groups-member.010.var-set.value=${seq\:dn}
  346. .sequence.simple-resolve-groups-member.010.var-set.variable=_simple_dn
  347. .sequence.simple-resolve-groups-member.020.description=query\ groups
  348. .sequence.simple-resolve-groups-member.020.search-open.search=simple-resolve-groups-member
  349. .sequence.simple-resolve-groups-member.020.search-open.variable=querySimpleByDN
  350. .sequence.simple-resolve-groups-member.020.type=search-open
  351. .sequence.simple-resolve-groups-memberOf.010.description=set\ dn
  352. .sequence.simple-resolve-groups-memberOf.010.type=var-set
  353. .sequence.simple-resolve-groups-memberOf.010.var-set.value=${seq\:dn}
  354. .sequence.simple-resolve-groups-memberOf.010.var-set.variable=_simple_dn
  355. .sequence.simple-resolve-groups-memberOf.020.description=enum\ groups
  356. .sequence.simple-resolve-groups-memberOf.020.fetch-record.map.memberOf.name=_simple_memberOf
  357. .sequence.simple-resolve-groups-memberOf.020.fetch-record.map.memberOf.select=-1
  358. .sequence.simple-resolve-groups-memberOf.020.fetch-record.search=simple-resolve-groups-memberOf
  359. .sequence.simple-resolve-groups-memberOf.020.type=fetch-record
  360. .sequence.simple-resolve-groups-memberOf.030.description=iterate\ groups\ and\ fetch
  361. .sequence.simple-resolve-groups-memberOf.030.for-each.sequence=simple-resolve-groups-memberOf-item
  362. .sequence.simple-resolve-groups-memberOf.030.for-each.var-value=_simple_dn
  363. .sequence.simple-resolve-groups-memberOf.030.for-each.variable=_simple_memberOf
  364. .sequence.simple-resolve-groups-memberOf.030.type=for-each
  365. .sequence.simple-resolve-groups-memberOf-item.010.description=resolve\ group
  366. .sequence.simple-resolve-groups-memberOf-item.010.search-open.search=simple-resolve-groups-memberOf-item
  367. .sequence.simple-resolve-groups-memberOf-item.010.search-open.variable=querySimpleByDN${seq\:forEachIndex}
  368. .sequence.simple-resolve-groups-memberOf-item.010.type=search-open
  369. .sequence.simple-resolve-principal.010.description=copy\ principal
  370. .sequence.simple-resolve-principal.010.type=var-set
  371. .sequence.simple-resolve-principal.010.var-set.value=${seq\:PrincipalRecord_PRINCIPAL}
  372. .sequence.simple-resolve-principal.010.var-set.variable=user
  373. .sequence.simple-resolve-principal.020.search-open.search=simple-user-fetch
  374. .sequence.simple-resolve-principal.020.search-open.variable=query
  375. .sequence.simple-resolve-principal.020.type=search-open
  376. .sequence.simple-resolve-user.010.description=resolve\ user
  377. .sequence.simple-resolve-user.010.fetch-record.map.PrincipalRecord_DN.name=PrincipalRecord_DN
  378. .sequence.simple-resolve-user.010.fetch-record.map.PrincipalRecord_PRINCIPAL.name=PrincipalRecord_PRINCIPAL
  379. .sequence.simple-resolve-user.010.fetch-record.search=simple-user-fetch
  380. .sequence.simple-resolve-user.010.type=fetch-record
  381. .sequence.simple-resolve-user.020.call.name=simple-resolve-user-error
  382. .sequence.simple-resolve-user.020.condition.not=true
  383. .sequence.simple-resolve-user.020.condition.type=var-set
  384. .sequence.simple-resolve-user.020.condition.var-set.variable=PrincipalRecord_DN
  385. .sequence.simple-resolve-user.020.description=no\ user?
  386. .sequence.simple-resolve-user.020.type=call
  387. .sequence.simple-resolve-user.030.call.name=${seq\:simple_principalPostFetch}
  388. .sequence.simple-resolve-user.030.condition.type=var-set
  389. .sequence.simple-resolve-user.030.condition.var-set.variable=simple_principalPostFetch
  390. .sequence.simple-resolve-user.030.description=post-fetch\ validation
  391. .sequence.simple-resolve-user.030.type=call
  392. .sequence.simple-resolve-user.040-01.condition.compare.left=${seq\:simple_bindFormat}
  393. .sequence.simple-resolve-user.040-01.condition.compare.right=dn
  394. .sequence.simple-resolve-user.040-01.condition.type=compare
  395. .sequence.simple-resolve-user.040-01.description=set\ bind\ user
  396. .sequence.simple-resolve-user.040-01.type=var-set
  397. .sequence.simple-resolve-user.040-01.var-set.value=${seq\:PrincipalRecord_DN}
  398. .sequence.simple-resolve-user.040-01.var-set.variable=_simple_bind_user
  399. .sequence.simple-resolve-user.040-02.condition.compare.left=${seq\:simple_bindFormat}
  400. .sequence.simple-resolve-user.040-02.condition.compare.right=realm
  401. .sequence.simple-resolve-user.040-02.condition.type=compare
  402. .sequence.simple-resolve-user.040-02.description=set\ bind\ user
  403. .sequence.simple-resolve-user.040-02.type=var-set
  404. .sequence.simple-resolve-user.040-02.var-set.value=${seq\:user}
  405. .sequence.simple-resolve-user.040-02.var-set.variable=_simple_bind_user
  406. .sequence.simple-resolve-user-error.010.description=error
  407. .sequence.simple-resolve-user-error.010.type=var-set
  408. .sequence.simple-resolve-user-error.010.var-set.value=INVALID_CREDENTIALS
  409. .sequence.simple-resolve-user-error.010.var-set.variable=resultCode
  410. .sequence.simple-resolve-user-error.020.description=error
  411. .sequence.simple-resolve-user-error.020.type=var-set
  412. .sequence.simple-resolve-user-error.020.var-set.value=CREDENTIALS_INVALID
  413. .sequence.simple-resolve-user-error.020.var-set.variable=authTranslatedMessage
  414. .sequence.simple-resolve-user-error.030.description=stop
  415. .sequence.simple-resolve-user-error.030.type=stop
  416. .sequence-init.init.0000=__init0
  417. .sequence-init.init.500-simple-init-vars=simple-init-vars
  418. .sequence-init.init.600-openldap-init-vars=openldap-init-vars
  419. .sequence-init.open.500-simple-open-pools-authz=simple-open-pools
  420. .sequence-init.open.900-simple-open-vars=simple-open-vars
  421. .stats.interval=60000
  422. .vars.password=***
  423. .vars.server=ldap.karmalabs.com
  424. .vars.user=cn\=admin,dc\=karmalabs,dc\=com
  425.  
  426. 2017-03-21 09:31:49 FINE PROPERTIES-END
  427. 2017-03-21 09:31:49 FINE init Entry
  428. 2017-03-21 09:31:49 FINE runSequence Entry name='__init0'
  429. 2017-03-21 09:31:49 FINE Running sequence __init0/01/var-set set sensitive keys
  430. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  431. 2017-03-21 09:31:49 FINEST authz_enable = 1
  432. 2017-03-21 09:31:49 FINEST stop = false
  433. 2017-03-21 09:31:49 FINEST VARS-END
  434. 2017-03-21 09:31:49 FINE End sequence __init0 set sensitive keys
  435. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  436. 2017-03-21 09:31:49 FINEST authz_enable = 1
  437. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  438. 2017-03-21 09:31:49 FINEST stop = false
  439. 2017-03-21 09:31:49 FINEST VARS-END
  440. 2017-03-21 09:31:49 FINE Running sequence __init0/02/var-set set max filter size
  441. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  442. 2017-03-21 09:31:49 FINEST authz_enable = 1
  443. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  444. 2017-03-21 09:31:49 FINEST stop = false
  445. 2017-03-21 09:31:49 FINEST VARS-END
  446. 2017-03-21 09:31:49 FINE End sequence __init0 set max filter size
  447. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  448. 2017-03-21 09:31:49 FINEST authz_enable = 1
  449. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  450. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  451. 2017-03-21 09:31:49 FINEST stop = false
  452. 2017-03-21 09:31:49 FINEST VARS-END
  453. 2017-03-21 09:31:49 FINE Running sequence __init0/03/var-set set default as not recursive group resolution
  454. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  455. 2017-03-21 09:31:49 FINEST authz_enable = 1
  456. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  457. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  458. 2017-03-21 09:31:49 FINEST stop = false
  459. 2017-03-21 09:31:49 FINEST VARS-END
  460. 2017-03-21 09:31:49 FINE End sequence __init0 set default as not recursive group resolution
  461. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  462. 2017-03-21 09:31:49 FINEST authz_enable = 1
  463. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  464. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  465. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  466. 2017-03-21 09:31:49 FINEST stop = false
  467. 2017-03-21 09:31:49 FINEST VARS-END
  468. 2017-03-21 09:31:49 FINE Running sequence __init0/04/var-set set default as no credentials change
  469. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  470. 2017-03-21 09:31:49 FINEST authz_enable = 1
  471. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  472. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  473. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  474. 2017-03-21 09:31:49 FINEST stop = false
  475. 2017-03-21 09:31:49 FINEST VARS-END
  476. 2017-03-21 09:31:49 FINE End sequence __init0 set default as no credentials change
  477. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  478. 2017-03-21 09:31:49 FINEST authz_enable = 1
  479. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  480. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  481. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  482. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  483. 2017-03-21 09:31:49 FINEST stop = false
  484. 2017-03-21 09:31:49 FINEST VARS-END
  485. 2017-03-21 09:31:49 FINE runSequence Return name='__init0'
  486. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-init-vars'
  487. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/010/var-set set user format: sam for basic, realm for sasl
  488. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  489. 2017-03-21 09:31:49 FINEST authz_enable = 1
  490. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  491. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  492. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  493. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  494. 2017-03-21 09:31:49 FINEST stop = false
  495. 2017-03-21 09:31:49 FINEST VARS-END
  496. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set user format: sam for basic, realm for sasl
  497. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  498. 2017-03-21 09:31:49 FINEST authz_enable = 1
  499. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  500. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  501. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  502. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  503. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  504. 2017-03-21 09:31:49 FINEST stop = false
  505. 2017-03-21 09:31:49 FINEST VARS-END
  506. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/020/var-set set group logic
  507. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  508. 2017-03-21 09:31:49 FINEST authz_enable = 1
  509. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  510. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  511. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  512. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  513. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  514. 2017-03-21 09:31:49 FINEST stop = false
  515. 2017-03-21 09:31:49 FINEST VARS-END
  516. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set group logic
  517. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  518. 2017-03-21 09:31:49 FINEST authz_enable = 1
  519. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  520. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  521. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  522. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  523. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  524. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  525. 2017-03-21 09:31:49 FINEST stop = false
  526. 2017-03-21 09:31:49 FINEST VARS-END
  527. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/030/var-set set group member attribute
  528. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  529. 2017-03-21 09:31:49 FINEST authz_enable = 1
  530. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  531. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  532. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  533. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  534. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  535. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  536. 2017-03-21 09:31:49 FINEST stop = false
  537. 2017-03-21 09:31:49 FINEST VARS-END
  538. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set group member attribute
  539. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  540. 2017-03-21 09:31:49 FINEST authz_enable = 1
  541. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  542. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  543. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  544. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  545. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  546. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  547. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  548. 2017-03-21 09:31:49 FINEST stop = false
  549. 2017-03-21 09:31:49 FINEST VARS-END
  550. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/040/var-set set object group membership attribute
  551. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  552. 2017-03-21 09:31:49 FINEST authz_enable = 1
  553. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  554. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  555. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  556. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  557. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  558. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  559. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  560. 2017-03-21 09:31:49 FINEST stop = false
  561. 2017-03-21 09:31:49 FINEST VARS-END
  562. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set object group membership attribute
  563. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  564. 2017-03-21 09:31:49 FINEST authz_enable = 1
  565. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  566. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  567. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  568. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  569. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  570. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  571. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  572. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  573. 2017-03-21 09:31:49 FINEST stop = false
  574. 2017-03-21 09:31:49 FINEST VARS-END
  575. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/050/var-set set default index for baseDN
  576. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  577. 2017-03-21 09:31:49 FINEST authz_enable = 1
  578. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  579. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  580. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  581. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  582. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  583. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  584. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  585. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  586. 2017-03-21 09:31:49 FINEST stop = false
  587. 2017-03-21 09:31:49 FINEST VARS-END
  588. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set default index for baseDN
  589. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  590. 2017-03-21 09:31:49 FINEST authz_enable = 1
  591. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  592. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  593. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  594. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  595. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  596. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  597. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  598. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  599. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  600. 2017-03-21 09:31:49 FINEST stop = false
  601. 2017-03-21 09:31:49 FINEST VARS-END
  602. 2017-03-21 09:31:49 FINE runSequence Return name='simple-init-vars'
  603. 2017-03-21 09:31:49 FINE runSequence Entry name='openldap-init-vars'
  604. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/010/var-set set base dn
  605. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  606. 2017-03-21 09:31:49 FINEST authz_enable = 1
  607. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  608. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  609. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  610. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  611. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  612. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  613. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  614. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  615. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  616. 2017-03-21 09:31:49 FINEST stop = false
  617. 2017-03-21 09:31:49 FINEST VARS-END
  618. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set base dn
  619. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  620. 2017-03-21 09:31:49 FINEST authz_enable = 1
  621. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  622. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  623. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  624. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  625. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  626. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  627. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  628. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  629. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  630. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  631. 2017-03-21 09:31:49 FINEST stop = false
  632. 2017-03-21 09:31:49 FINEST VARS-END
  633. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/020/var-set set user attribute
  634. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  635. 2017-03-21 09:31:49 FINEST authz_enable = 1
  636. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  637. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  638. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  639. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  640. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  641. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  642. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  643. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  644. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  645. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  646. 2017-03-21 09:31:49 FINEST stop = false
  647. 2017-03-21 09:31:49 FINEST VARS-END
  648. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set user attribute
  649. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  650. 2017-03-21 09:31:49 FINEST authz_enable = 1
  651. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  652. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  653. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  654. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  655. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  656. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  657. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  658. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  659. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  660. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  661. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  662. 2017-03-21 09:31:49 FINEST stop = false
  663. 2017-03-21 09:31:49 FINEST VARS-END
  664. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/030/var-set set principal record attributes
  665. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  666. 2017-03-21 09:31:49 FINEST authz_enable = 1
  667. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  668. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  669. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  670. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  671. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  672. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  673. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  674. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  675. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  676. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  677. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  678. 2017-03-21 09:31:49 FINEST stop = false
  679. 2017-03-21 09:31:49 FINEST VARS-END
  680. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set principal record attributes
  681. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  682. 2017-03-21 09:31:49 FINEST authz_enable = 1
  683. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  684. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  685. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  686. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  687. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  688. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  689. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  690. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  691. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  692. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  693. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  694. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  695. 2017-03-21 09:31:49 FINEST stop = false
  696. 2017-03-21 09:31:49 FINEST VARS-END
  697. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/040/var-set set user object filter
  698. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  699. 2017-03-21 09:31:49 FINEST authz_enable = 1
  700. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  701. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  702. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  703. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  704. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  705. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  706. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  707. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  708. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  709. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  710. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  711. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  712. 2017-03-21 09:31:49 FINEST stop = false
  713. 2017-03-21 09:31:49 FINEST VARS-END
  714. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set user object filter
  715. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  716. 2017-03-21 09:31:49 FINEST authz_enable = 1
  717. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  718. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  719. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  720. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  721. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  722. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  723. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  724. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  725. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  726. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  727. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  728. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  729. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  730. 2017-03-21 09:31:49 FINEST stop = false
  731. 2017-03-21 09:31:49 FINEST VARS-END
  732. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/050/var-set set group record attributes
  733. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  734. 2017-03-21 09:31:49 FINEST authz_enable = 1
  735. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  736. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  737. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  738. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  739. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  740. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  741. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  742. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  743. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  744. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  745. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  746. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  747. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  748. 2017-03-21 09:31:49 FINEST stop = false
  749. 2017-03-21 09:31:49 FINEST VARS-END
  750. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group record attributes
  751. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  752. 2017-03-21 09:31:49 FINEST authz_enable = 1
  753. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  754. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  755. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  756. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  757. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  758. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  759. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  760. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  761. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  762. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  763. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  764. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  765. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  766. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  767. 2017-03-21 09:31:49 FINEST stop = false
  768. 2017-03-21 09:31:49 FINEST VARS-END
  769. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/060/var-set set group object filter
  770. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  771. 2017-03-21 09:31:49 FINEST authz_enable = 1
  772. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  773. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  774. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  775. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  776. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  777. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  778. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  779. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  780. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  781. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  782. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  783. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  784. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  785. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  786. 2017-03-21 09:31:49 FINEST stop = false
  787. 2017-03-21 09:31:49 FINEST VARS-END
  788. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group object filter
  789. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  790. 2017-03-21 09:31:49 FINEST authz_enable = 1
  791. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  792. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  793. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  794. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  795. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  796. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  797. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  798. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  799. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  800. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  801. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  802. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  803. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  804. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  805. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  806. 2017-03-21 09:31:49 FINEST stop = false
  807. 2017-03-21 09:31:49 FINEST VARS-END
  808. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/070/var-set set group member filter
  809. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  810. 2017-03-21 09:31:49 FINEST authz_enable = 1
  811. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  812. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  813. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  814. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  815. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  816. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  817. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  818. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  819. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  820. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  821. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  822. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  823. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  824. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  825. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  826. 2017-03-21 09:31:49 FINEST stop = false
  827. 2017-03-21 09:31:49 FINEST VARS-END
  828. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group member filter
  829. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  830. 2017-03-21 09:31:49 FINEST authz_enable = 1
  831. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  832. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  833. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  834. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  835. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  836. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  837. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  838. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  839. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  840. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  841. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  842. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  843. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  844. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  845. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  846. 2017-03-21 09:31:49 FINEST stop = false
  847. 2017-03-21 09:31:49 FINEST VARS-END
  848. 2017-03-21 09:31:49 FINE runSequence Return name='openldap-init-vars'
  849. 2017-03-21 09:31:49 FINE init Return globals={sensitiveKeys=, password, passwordNew, simple_attrMemberOf=memberOf, simple_filterGroupObject=(objectClass=groupOfNames), simple_attrsGroupRecord=entryUUID, cn, description, simple_filterUserObject=(objectClass=uidObject)(uid=*), authz_enable=1, maxFilterSize=50, capability_recursiveGroupResolution=false, simple_attrsUserName=uid, stop=false, simple_attrGroupMemberDN=member, simple_attrsBaseDNIndex=0, simple_bindFormat=dn, simple_attrsPrincipalRecord=entryUUID, uid, cn, displayName, department, givenName, sn, title, mail, capability_credentialsChange=false, simple_groupLogic=member, simple_attrsBaseDN=namingContexts}
  850. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  851. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  852. 2017-03-21 09:31:49 FINEST Invoke Output END
  853. 2017-03-21 09:31:49 INFO Extension 'karmalabs-authz' loaded
  854. 2017-03-21 09:31:49 FINE Config BEGIN
  855. 2017-03-21 09:31:49 FINE ovirt.engine.extension.provides: org.ovirt.engine.api.extensions.aaa.Authz
  856. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.class: org.ovirt.engineextensions.aaa.ldap.AuthzExtension
  857. 2017-03-21 09:31:49 FINE ovirt.engine.extension.bindings.method: jbossmodule
  858. 2017-03-21 09:31:49 FINE ovirt.engine.extension.name: karmalabs-authz
  859. 2017-03-21 09:31:49 FINE config.profile.file.1: ../aaa/karmalabs.properties
  860. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.module: org.ovirt.engine-extensions.aaa.ldap
  861. 2017-03-21 09:31:49 FINE Config END
  862. 2017-03-21 09:31:49 FINE Loading extension file 'karmalabs-authn.properties'
  863. 2017-03-21 09:31:49 INFO Loading extension 'karmalabs-authn'
  864. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  865. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_LOAD[b0f2460e-7971-4a9c-b4e1-c1db1362a47a], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authn], Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authn.properties, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authn}}
  866. 2017-03-21 09:31:49 FINEST Invoke Input END
  867. 2017-03-21 09:31:49 FINE PROPERTIES-BEGIN
  868. 2017-03-21 09:31:49 FINE ._basedir=/etc/ovirt-engine/extensions.d/../aaa
  869. .attrmap.map-group-record.attr.GroupRecord_DISPLAY_NAME.map=description
  870. .attrmap.map-group-record.attr.GroupRecord_DN.map=_dn
  871. .attrmap.map-group-record.attr.GroupRecord_ID.map=entryUUID
  872. .attrmap.map-group-record.attr.GroupRecord_NAME.map=cn
  873. .attrmap.map-principal-record.attr.PrincipalRecord_DEPARTMENT.map=department
  874. .attrmap.map-principal-record.attr.PrincipalRecord_DISPLAY_NAME.map=displayName
  875. .attrmap.map-principal-record.attr.PrincipalRecord_DN.map=_dn
  876. .attrmap.map-principal-record.attr.PrincipalRecord_EMAIL.map=mail
  877. .attrmap.map-principal-record.attr.PrincipalRecord_FIRST_NAME.map=givenName
  878. .attrmap.map-principal-record.attr.PrincipalRecord_ID.map=entryUUID
  879. .attrmap.map-principal-record.attr.PrincipalRecord_LAST_NAME.map=sn
  880. .attrmap.map-principal-record.attr.PrincipalRecord_NAME.map=uid
  881. .attrmap.map-principal-record.attr.PrincipalRecord_PRINCIPAL.map=uid
  882. .attrmap.map-principal-record.attr.PrincipalRecord_TITLE.map=title
  883. .attrmap.simple-map-memberOf.attr.memberOf.map=${seq\:simple_attrMemberOf}
  884. .attrmap.simple-map-namespace.attr.namespace.map=${seq\:simple_attrsBaseDN}
  885. .auth-check.default.auth.gssapi.jAASClientName=oVirtKerb
  886. .auth-check.default.auth.gssapi.suppressedSystemProperties=java.security.krb5.kdc,\ java.security.krb5.realm,\ java.security.auth.login.config,\ javax.security.auth.useSubjectCredsOnly
  887. .auth-check.default.auth.type=simple
  888. .auth-check.default.diagnostic.mapping.AUTHORIZATION_DENIED=CREDENTIALS_INCORRECT
  889. .auth-check.default.diagnostic.mapping.AUTH_UNKNOWN=CREDENTIALS_INVALID
  890. .auth-check.default.diagnostic.mapping.CONNECT_ERROR=REMOTE_UNAVAILABLE
  891. .auth-check.default.diagnostic.mapping.CONSTRAINT_VIOLATION=ACCOUNT_RESTRICTION
  892. .auth-check.default.diagnostic.mapping.INAPPROPRIATE_AUTHENTICATION=CREDENTIALS_INVALID
  893. .auth-check.default.diagnostic.mapping.INVALID_CREDENTIALS=CREDENTIALS_INCORRECT
  894. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.1=ACCOUNT_EXPIRED
  895. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.12=ACCOUNT_RESTRICTION
  896. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.18=ACCOUNT_LOCKED
  897. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.23=CREDENTIALS_EXPIRED
  898. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.24=CREDENTIALS_INCORRECT
  899. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.6=CREDENTIALS_INVALID
  900. .auth-check.default.diagnostic.mapping.LOCAL_ERROR._comment=http\://www.rfc-editor.org/rfc/rfc1510.txt
  901. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.translation.pattern=^javax\\.security\\.auth\\.login\\.LoginException\:.*\ \\((?<code>[0-9]+)\\).*$
  902. .auth-check.default.diagnostic.mapping.LOCAL_ERROR.translation.replace=${code}
  903. .auth-check.default.diagnostic.mapping.NO_SUCH_OBJECT=CREDENTIALS_INVALID
  904. .auth-check.default.diagnostic.mapping.PASSWORD_EXPIRED=CREDENTIALS_EXPIRED
  905. .auth-check.default.diagnostic.mapping.SERVER_DOWN=REMOTE_UNAVAILABLE
  906. .auth-check.default.diagnostic.mapping.SUCCESS=SUCCESS
  907. .auth-check.default.diagnostic.mapping.TIMEOUT=TIMED_OUT
  908. .auth-check.default.diagnostic.mapping.UNAVAILABLE=REMOTE_UNAVAILABLE
  909. .auth-check.default.diagnostic.mapping.UNWILLING_TO_PERFORM=ACCOUNT_DISABLED
  910. .auth-check.default.diagnostic.mapping.default=GENERAL_ERROR
  911. .auth-check.default.diagnostic.mapping.translation.pattern=^(.*)$
  912. .auth-check.default.diagnostic.mapping.translation.replace=$1
  913. .auth-check.default.password=***
  914. .auth-check.default.pool=authn
  915. .auth-check.default.reuse-connections=true
  916. .auth-check.default.user=${seq\:_simple_bind_user}
  917. .auth-check.default.whoami.enable=true
  918. .include=<openldap.properties>
  919. .pool.authz.auth.type=simple
  920. .pool.default.auth.digest-md5.jAASClientName=oVirtKerb
  921. .pool.default.auth.gssapi.jAASClientName=oVirtKerb
  922. .pool.default.auth.gssapi.suppressedSystemProperties=java.security.krb5.kdc,\ java.security.krb5.realm,\ java.security.auth.login.config,\ javax.security.auth.useSubjectCredsOnly
  923. .pool.default.auth.simple.bindDN=cn\=admin,dc\=karmalabs,dc\=com
  924. .pool.default.auth.simple.password=***
  925. .pool.default.auth.type=none
  926. .pool.default.connection-options.abandonOnTimeout=true
  927. .pool.default.connection-options.allowConcurrentSocketFactoryUse=true
  928. .pool.default.connection-options.autoReconnect=true
  929. .pool.default.connection-options.connectTimeoutMillis=5000
  930. .pool.default.connection-options.responseTimeoutMillis=60000
  931. .pool.default.connection-pool.initialConnectThreads=1
  932. .pool.default.connection-pool.initialConnections=4
  933. .pool.default.connection-pool.maxConnectionAgeMillis=600000
  934. .pool.default.connection-pool.maxConnections=20
  935. .pool.default.dc-resolve.default.serverset.srvrecord.domain=${seq\:__dc_resolve_domain}
  936. .pool.default.dc-resolve.default.serverset.type=srvrecord
  937. .pool.default.dc-resolve.enable=false
  938. .pool.default.serverset.dns-round-robin.dnsRecordTypes=A
  939. .pool.default.serverset.dns-round-robin.selectionMode=RANDOM
  940. .pool.default.serverset.dns-round-robin.server=389
  941. .pool.default.serverset.failover.port=389
  942. .pool.default.serverset.fastest-connect.port=389
  943. .pool.default.serverset.fewest-connections.port=389
  944. .pool.default.serverset.single.port=389
  945. .pool.default.serverset.single.server=ldap.karmalabs.com
  946. .pool.default.serverset.srvrecord.domain-conversion.type=none
  947. .pool.default.serverset.srvrecord.protocol=tcp
  948. .pool.default.serverset.srvrecord.service=ldap
  949. .pool.default.serverset.type=single
  950. .pool.default.socketfactory.resolver.cacheTTL=10000
  951. .pool.default.socketfactory.resolver.supportIPv6=false
  952. .pool.default.socketfactory.type=java
  953. .pool.default.ssl.enable=false
  954. .pool.default.ssl.host-name-verify.enable=true
  955. .pool.default.ssl.host-name-verify.wildcards=true
  956. .pool.default.ssl.insecure=false
  957. .pool.default.ssl.protocol=TLSv1
  958. .pool.default.ssl.startTLS=false
  959. .pool.default.ssl.startTLSProtocol=TLSv1
  960. .search.default.dc-resolve.enable=true
  961. .search.default.page-size=100
  962. .search.default.paging=true
  963. .search.default.scope=SUB
  964. .search.simple-namespace.attrmap=simple-map-namespace
  965. .search.simple-namespace.pool=authz
  966. .search.simple-namespace.search-request.attributes=${seq\:simple_attrsBaseDN}
  967. .search.simple-namespace.search-request.baseDN=
  968. .search.simple-namespace.search-request.filter=&(objectClass\=*)
  969. .search.simple-namespace.search-request.scope=BASE
  970. .search.simple-query-groups.attrmap=map-group-record
  971. .search.simple-query-groups.pool=authz
  972. .search.simple-query-groups.search-request.attributes=${seq\:simple_attrsGroupRecord}
  973. .search.simple-query-groups.search-request.baseDN=${seq\:namespace}
  974. .search.simple-query-groups.search-request.filter=&${seq\:simple_filterGroupObject}${seq\:filter}
  975. .search.simple-query-principals.attrmap=map-principal-record
  976. .search.simple-query-principals.pool=authz
  977. .search.simple-query-principals.search-request.attributes=${seq\:simple_attrsPrincipalRecord}
  978. .search.simple-query-principals.search-request.baseDN=${seq\:namespace}
  979. .search.simple-query-principals.search-request.filter=&${seq\:simple_filterUserObject}${seq\:filter}
  980. .search.simple-resolve-groups-member.attrmap=map-group-record
  981. .search.simple-resolve-groups-member.pool=authz
  982. .search.simple-resolve-groups-member.search-request.attributes=${seq\:simple_attrsGroupRecord}
  983. .search.simple-resolve-groups-member.search-request.baseDN=${seq\:simple_baseDN}
  984. .search.simple-resolve-groups-member.search-request.filter=&${seq\:simple_filterGroupObject}(${seq\:simple_attrGroupMemberDN}\=${seq\:_simple_dn_encoded})
  985. .search.simple-resolve-groups-memberOf.attrmap=simple-map-memberOf
  986. .search.simple-resolve-groups-memberOf.pool=authz
  987. .search.simple-resolve-groups-memberOf.search-request.attributes=${seq\:simple_attrMemberOf}
  988. .search.simple-resolve-groups-memberOf.search-request.baseDN=${seq\:_simple_dn}
  989. .search.simple-resolve-groups-memberOf.search-request.filter=&(objectClass\=*)
  990. .search.simple-resolve-groups-memberOf.search-request.scope=BASE
  991. .search.simple-resolve-groups-memberOf-item.attrmap=map-group-record
  992. .search.simple-resolve-groups-memberOf-item.pool=authz
  993. .search.simple-resolve-groups-memberOf-item.search-request.attributes=${seq\:simple_attrsGroupRecord}
  994. .search.simple-resolve-groups-memberOf-item.search-request.baseDN=${seq\:_simple_dn}
  995. .search.simple-resolve-groups-memberOf-item.search-request.filter=&(objectClass\=*)
  996. .search.simple-resolve-groups-memberOf-item.search-request.scope=BASE
  997. .search.simple-user-fetch.attrmap=map-principal-record
  998. .search.simple-user-fetch.pool=authz
  999. .search.simple-user-fetch.search-request.attributes=${seq\:simple_attrsPrincipalRecord}
  1000. .search.simple-user-fetch.search-request.baseDN=${seq\:simple_baseDN}
  1001. .search.simple-user-fetch.search-request.filter=&${seq\:simple_filterUserObject}(${seq\:simple_attrsUserName}\=${seq\:user_encoded})
  1002. .sensitive-keys.001=password
  1003. .sequence.__init0.01.description=set\ sensitive\ keys
  1004. .sequence.__init0.01.type=var-set
  1005. .sequence.__init0.01.var-set.value=${seq\:sensitiveKeys},\ password,\ passwordNew
  1006. .sequence.__init0.01.var-set.variable=sensitiveKeys
  1007. .sequence.__init0.02.condition.not=true
  1008. .sequence.__init0.02.condition.type=var-set
  1009. .sequence.__init0.02.condition.var-set.variable=maxFilterSize
  1010. .sequence.__init0.02.description=set\ max\ filter\ size
  1011. .sequence.__init0.02.type=var-set
  1012. .sequence.__init0.02.var-set.value=50
  1013. .sequence.__init0.02.var-set.variable=maxFilterSize
  1014. .sequence.__init0.03.condition.not=true
  1015. .sequence.__init0.03.condition.type=var-set
  1016. .sequence.__init0.03.condition.var-set.variable=capability_recursiveGroupResolution
  1017. .sequence.__init0.03.description=set\ default\ as\ not\ recursive\ group\ resolution
  1018. .sequence.__init0.03.type=var-set
  1019. .sequence.__init0.03.var-set.value=false
  1020. .sequence.__init0.03.var-set.variable=capability_recursiveGroupResolution
  1021. .sequence.__init0.04.condition.not=true
  1022. .sequence.__init0.04.condition.type=var-set
  1023. .sequence.__init0.04.condition.var-set.variable=capability_credentialsChange
  1024. .sequence.__init0.04.description=set\ default\ as\ no\ credentials\ change
  1025. .sequence.__init0.04.type=var-set
  1026. .sequence.__init0.04.var-set.value=false
  1027. .sequence.__init0.04.var-set.variable=capability_credentialsChange
  1028. .sequence.authn.stub.call.name=simple-authn
  1029. .sequence.authn.stub.description=call\ simple
  1030. .sequence.authn.stub.type=call
  1031. .sequence.credentials-change.stub.call.name=simple-credentials-change
  1032. .sequence.credentials-change.stub.description=call\ simple
  1033. .sequence.credentials-change.stub.type=call
  1034. .sequence.namespace.stub.call.name=simple-namespace
  1035. .sequence.namespace.stub.description=call\ simple
  1036. .sequence.namespace.stub.type=call
  1037. .sequence.openldap-init-vars.010.description=set\ base\ dn
  1038. .sequence.openldap-init-vars.010.type=var-set
  1039. .sequence.openldap-init-vars.010.var-set.value=namingContexts
  1040. .sequence.openldap-init-vars.010.var-set.variable=simple_attrsBaseDN
  1041. .sequence.openldap-init-vars.020.description=set\ user\ attribute
  1042. .sequence.openldap-init-vars.020.type=var-set
  1043. .sequence.openldap-init-vars.020.var-set.value=uid
  1044. .sequence.openldap-init-vars.020.var-set.variable=simple_attrsUserName
  1045. .sequence.openldap-init-vars.030.description=set\ principal\ record\ attributes
  1046. .sequence.openldap-init-vars.030.type=var-set
  1047. .sequence.openldap-init-vars.030.var-set.value=entryUUID,\ uid,\ cn,\ displayName,\ department,\ givenName,\ sn,\ title,\ mail
  1048. .sequence.openldap-init-vars.030.var-set.variable=simple_attrsPrincipalRecord
  1049. .sequence.openldap-init-vars.040.description=set\ user\ object\ filter
  1050. .sequence.openldap-init-vars.040.type=var-set
  1051. .sequence.openldap-init-vars.040.var-set.value=(objectClass\=uidObject)(${seq\:simple_attrsUserName}\=*)
  1052. .sequence.openldap-init-vars.040.var-set.variable=simple_filterUserObject
  1053. .sequence.openldap-init-vars.050.description=set\ group\ record\ attributes
  1054. .sequence.openldap-init-vars.050.type=var-set
  1055. .sequence.openldap-init-vars.050.var-set.value=entryUUID,\ cn,\ description
  1056. .sequence.openldap-init-vars.050.var-set.variable=simple_attrsGroupRecord
  1057. .sequence.openldap-init-vars.060.description=set\ group\ object\ filter
  1058. .sequence.openldap-init-vars.060.type=var-set
  1059. .sequence.openldap-init-vars.060.var-set.value=(objectClass\=groupOfNames)
  1060. .sequence.openldap-init-vars.060.var-set.variable=simple_filterGroupObject
  1061. .sequence.openldap-init-vars.070.description=set\ group\ member\ filter
  1062. .sequence.openldap-init-vars.070.type=var-set
  1063. .sequence.openldap-init-vars.070.var-set.value=member
  1064. .sequence.openldap-init-vars.070.var-set.variable=simple_attrGroupMemberDN
  1065. .sequence.query-groups.stub.call.name=simple-query-groups
  1066. .sequence.query-groups.stub.description=call\ simple
  1067. .sequence.query-groups.stub.type=call
  1068. .sequence.query-principals.stub.call.name=simple-query-principals
  1069. .sequence.query-principals.stub.description=call\ simple
  1070. .sequence.query-principals.stub.type=call
  1071. .sequence.resolve-groups.stub.call.name=simple-resolve-groups
  1072. .sequence.resolve-groups.stub.description=call\ simple
  1073. .sequence.resolve-groups.stub.type=call
  1074. .sequence.resolve-principal.stub.call.name=simple-resolve-principal
  1075. .sequence.resolve-principal.stub.description=call\ simple
  1076. .sequence.resolve-principal.stub.type=call
  1077. .sequence.simple-authn.010.call.name=simple-resolve-user
  1078. .sequence.simple-authn.010.description=resolve\ user
  1079. .sequence.simple-authn.010.type=call
  1080. .sequence.simple-authn.020.auth-check.name=simple-authn
  1081. .sequence.simple-authn.020.description=auth\ check
  1082. .sequence.simple-authn.020.type=auth-check
  1083. .sequence.simple-credentials-change.010.call.name=simple-resolve-user
  1084. .sequence.simple-credentials-change.010.description=resolve\ user
  1085. .sequence.simple-credentials-change.010.type=call
  1086. .sequence.simple-credentials-change.020.credentials-change.password.current=${seq\:password}
  1087. .sequence.simple-credentials-change.020.credentials-change.password.new=${seq\:passwordNew}
  1088. .sequence.simple-credentials-change.020.credentials-change.pool=authn
  1089. .sequence.simple-credentials-change.020.credentials-change.user=${seq\:PrincipalRecord_DN}
  1090. .sequence.simple-credentials-change.020.description=resolve\ user
  1091. .sequence.simple-credentials-change.020.type=credentials-change
  1092. .sequence.simple-init-vars.010.condition.not=true
  1093. .sequence.simple-init-vars.010.condition.type=var-set
  1094. .sequence.simple-init-vars.010.condition.var-set.variable=simple_bindFormat
  1095. .sequence.simple-init-vars.010.description=set\ user\ format\:\ sam\ for\ basic,\ realm\ for\ sasl
  1096. .sequence.simple-init-vars.010.type=var-set
  1097. .sequence.simple-init-vars.010.var-set.value=dn
  1098. .sequence.simple-init-vars.010.var-set.variable=simple_bindFormat
  1099. .sequence.simple-init-vars.020.condition.not=true
  1100. .sequence.simple-init-vars.020.condition.type=var-set
  1101. .sequence.simple-init-vars.020.condition.var-set.variable=simple_groupLogic
  1102. .sequence.simple-init-vars.020.description=set\ group\ logic
  1103. .sequence.simple-init-vars.020.type=var-set
  1104. .sequence.simple-init-vars.020.var-set.value=member
  1105. .sequence.simple-init-vars.020.var-set.variable=simple_groupLogic
  1106. .sequence.simple-init-vars.030.condition.not=true
  1107. .sequence.simple-init-vars.030.condition.type=var-set
  1108. .sequence.simple-init-vars.030.condition.var-set.variable=simple_attrGroupMemberDN
  1109. .sequence.simple-init-vars.030.description=set\ group\ member\ attribute
  1110. .sequence.simple-init-vars.030.type=var-set
  1111. .sequence.simple-init-vars.030.var-set.value=uniqueMember\:uniqueMemberMatch\:
  1112. .sequence.simple-init-vars.030.var-set.variable=simple_attrGroupMemberDN
  1113. .sequence.simple-init-vars.040.condition.not=true
  1114. .sequence.simple-init-vars.040.condition.type=var-set
  1115. .sequence.simple-init-vars.040.condition.var-set.variable=simple_attrMemberOf
  1116. .sequence.simple-init-vars.040.description=set\ object\ group\ membership\ attribute
  1117. .sequence.simple-init-vars.040.type=var-set
  1118. .sequence.simple-init-vars.040.var-set.value=memberOf
  1119. .sequence.simple-init-vars.040.var-set.variable=simple_attrMemberOf
  1120. .sequence.simple-init-vars.050.condition.not=true
  1121. .sequence.simple-init-vars.050.condition.type=var-set
  1122. .sequence.simple-init-vars.050.condition.var-set.variable=simple_attrsBaseDNIndex
  1123. .sequence.simple-init-vars.050.description=set\ default\ index\ for\ baseDN
  1124. .sequence.simple-init-vars.050.type=var-set
  1125. .sequence.simple-init-vars.050.var-set.value=0
  1126. .sequence.simple-init-vars.050.var-set.variable=simple_attrsBaseDNIndex
  1127. .sequence.simple-namespace.010.condition.type=var-set
  1128. .sequence.simple-namespace.010.condition.var-set.variable=simple_namespaceDefault
  1129. .sequence.simple-namespace.010.description=set\ default\ namespace
  1130. .sequence.simple-namespace.010.type=var-set
  1131. .sequence.simple-namespace.010.var-set.value=${seq\:simple_namespaceDefault}
  1132. .sequence.simple-namespace.010.var-set.variable=namespaceDefault
  1133. .sequence.simple-namespace.020.description=namespace\ search
  1134. .sequence.simple-namespace.020.type=var-list-set
  1135. .sequence.simple-namespace.020.var-list-set.values.01.value=${seq\:simple_baseDN}
  1136. .sequence.simple-namespace.020.var-list-set.variable=namespaces
  1137. .sequence.simple-open-pools.010.description=create\ authz\ pool
  1138. .sequence.simple-open-pools.010.pool-create.name=authz
  1139. .sequence.simple-open-pools.010.type=pool-create
  1140. .sequence.simple-open-pools.020.condition.type=var-set
  1141. .sequence.simple-open-pools.020.condition.var-set.variable=authn_enable
  1142. .sequence.simple-open-pools.020.description=create\ authn\ pool
  1143. .sequence.simple-open-pools.020.pool-create.name=authn
  1144. .sequence.simple-open-pools.020.type=pool-create
  1145. .sequence.simple-open-vars.010.condition.not=true
  1146. .sequence.simple-open-vars.010.condition.type=var-set
  1147. .sequence.simple-open-vars.010.condition.var-set.variable=simple_baseDN
  1148. .sequence.simple-open-vars.010.description=set\ base\ DN
  1149. .sequence.simple-open-vars.010.fetch-record.map.namespace.name=simple_baseDN
  1150. .sequence.simple-open-vars.010.fetch-record.map.namespace.select=${seq\:simple_attrsBaseDNIndex}
  1151. .sequence.simple-open-vars.010.fetch-record.search=simple-namespace
  1152. .sequence.simple-open-vars.010.type=fetch-record
  1153. .sequence.simple-query-groups.010.description=query\ groups
  1154. .sequence.simple-query-groups.010.search-open.search=simple-query-groups
  1155. .sequence.simple-query-groups.010.search-open.variable=query
  1156. .sequence.simple-query-groups.010.type=search-open
  1157. .sequence.simple-query-principals.010.description=principals\ search
  1158. .sequence.simple-query-principals.010.search-open.search=simple-query-principals
  1159. .sequence.simple-query-principals.010.search-open.variable=query
  1160. .sequence.simple-query-principals.010.type=search-open
  1161. .sequence.simple-resolve-groups.001.call.name=simple-resolve-groups-${seq\:simple_groupLogic}
  1162. .sequence.simple-resolve-groups.001.description=call\ simple\ ${seq\:simple_groupLogic}
  1163. .sequence.simple-resolve-groups.001.type=call
  1164. .sequence.simple-resolve-groups-member.010.description=set\ dn
  1165. .sequence.simple-resolve-groups-member.010.type=var-set
  1166. .sequence.simple-resolve-groups-member.010.var-set.value=${seq\:dn}
  1167. .sequence.simple-resolve-groups-member.010.var-set.variable=_simple_dn
  1168. .sequence.simple-resolve-groups-member.020.description=query\ groups
  1169. .sequence.simple-resolve-groups-member.020.search-open.search=simple-resolve-groups-member
  1170. .sequence.simple-resolve-groups-member.020.search-open.variable=querySimpleByDN
  1171. .sequence.simple-resolve-groups-member.020.type=search-open
  1172. .sequence.simple-resolve-groups-memberOf.010.description=set\ dn
  1173. .sequence.simple-resolve-groups-memberOf.010.type=var-set
  1174. .sequence.simple-resolve-groups-memberOf.010.var-set.value=${seq\:dn}
  1175. .sequence.simple-resolve-groups-memberOf.010.var-set.variable=_simple_dn
  1176. .sequence.simple-resolve-groups-memberOf.020.description=enum\ groups
  1177. .sequence.simple-resolve-groups-memberOf.020.fetch-record.map.memberOf.name=_simple_memberOf
  1178. .sequence.simple-resolve-groups-memberOf.020.fetch-record.map.memberOf.select=-1
  1179. .sequence.simple-resolve-groups-memberOf.020.fetch-record.search=simple-resolve-groups-memberOf
  1180. .sequence.simple-resolve-groups-memberOf.020.type=fetch-record
  1181. .sequence.simple-resolve-groups-memberOf.030.description=iterate\ groups\ and\ fetch
  1182. .sequence.simple-resolve-groups-memberOf.030.for-each.sequence=simple-resolve-groups-memberOf-item
  1183. .sequence.simple-resolve-groups-memberOf.030.for-each.var-value=_simple_dn
  1184. .sequence.simple-resolve-groups-memberOf.030.for-each.variable=_simple_memberOf
  1185. .sequence.simple-resolve-groups-memberOf.030.type=for-each
  1186. .sequence.simple-resolve-groups-memberOf-item.010.description=resolve\ group
  1187. .sequence.simple-resolve-groups-memberOf-item.010.search-open.search=simple-resolve-groups-memberOf-item
  1188. .sequence.simple-resolve-groups-memberOf-item.010.search-open.variable=querySimpleByDN${seq\:forEachIndex}
  1189. .sequence.simple-resolve-groups-memberOf-item.010.type=search-open
  1190. .sequence.simple-resolve-principal.010.description=copy\ principal
  1191. .sequence.simple-resolve-principal.010.type=var-set
  1192. .sequence.simple-resolve-principal.010.var-set.value=${seq\:PrincipalRecord_PRINCIPAL}
  1193. .sequence.simple-resolve-principal.010.var-set.variable=user
  1194. .sequence.simple-resolve-principal.020.search-open.search=simple-user-fetch
  1195. .sequence.simple-resolve-principal.020.search-open.variable=query
  1196. .sequence.simple-resolve-principal.020.type=search-open
  1197. .sequence.simple-resolve-user.010.description=resolve\ user
  1198. .sequence.simple-resolve-user.010.fetch-record.map.PrincipalRecord_DN.name=PrincipalRecord_DN
  1199. .sequence.simple-resolve-user.010.fetch-record.map.PrincipalRecord_PRINCIPAL.name=PrincipalRecord_PRINCIPAL
  1200. .sequence.simple-resolve-user.010.fetch-record.search=simple-user-fetch
  1201. .sequence.simple-resolve-user.010.type=fetch-record
  1202. .sequence.simple-resolve-user.020.call.name=simple-resolve-user-error
  1203. .sequence.simple-resolve-user.020.condition.not=true
  1204. .sequence.simple-resolve-user.020.condition.type=var-set
  1205. .sequence.simple-resolve-user.020.condition.var-set.variable=PrincipalRecord_DN
  1206. .sequence.simple-resolve-user.020.description=no\ user?
  1207. .sequence.simple-resolve-user.020.type=call
  1208. .sequence.simple-resolve-user.030.call.name=${seq\:simple_principalPostFetch}
  1209. .sequence.simple-resolve-user.030.condition.type=var-set
  1210. .sequence.simple-resolve-user.030.condition.var-set.variable=simple_principalPostFetch
  1211. .sequence.simple-resolve-user.030.description=post-fetch\ validation
  1212. .sequence.simple-resolve-user.030.type=call
  1213. .sequence.simple-resolve-user.040-01.condition.compare.left=${seq\:simple_bindFormat}
  1214. .sequence.simple-resolve-user.040-01.condition.compare.right=dn
  1215. .sequence.simple-resolve-user.040-01.condition.type=compare
  1216. .sequence.simple-resolve-user.040-01.description=set\ bind\ user
  1217. .sequence.simple-resolve-user.040-01.type=var-set
  1218. .sequence.simple-resolve-user.040-01.var-set.value=${seq\:PrincipalRecord_DN}
  1219. .sequence.simple-resolve-user.040-01.var-set.variable=_simple_bind_user
  1220. .sequence.simple-resolve-user.040-02.condition.compare.left=${seq\:simple_bindFormat}
  1221. .sequence.simple-resolve-user.040-02.condition.compare.right=realm
  1222. .sequence.simple-resolve-user.040-02.condition.type=compare
  1223. .sequence.simple-resolve-user.040-02.description=set\ bind\ user
  1224. .sequence.simple-resolve-user.040-02.type=var-set
  1225. .sequence.simple-resolve-user.040-02.var-set.value=${seq\:user}
  1226. .sequence.simple-resolve-user.040-02.var-set.variable=_simple_bind_user
  1227. .sequence.simple-resolve-user-error.010.description=error
  1228. .sequence.simple-resolve-user-error.010.type=var-set
  1229. .sequence.simple-resolve-user-error.010.var-set.value=INVALID_CREDENTIALS
  1230. .sequence.simple-resolve-user-error.010.var-set.variable=resultCode
  1231. .sequence.simple-resolve-user-error.020.description=error
  1232. .sequence.simple-resolve-user-error.020.type=var-set
  1233. .sequence.simple-resolve-user-error.020.var-set.value=CREDENTIALS_INVALID
  1234. .sequence.simple-resolve-user-error.020.var-set.variable=authTranslatedMessage
  1235. .sequence.simple-resolve-user-error.030.description=stop
  1236. .sequence.simple-resolve-user-error.030.type=stop
  1237. .sequence-init.init.0000=__init0
  1238. .sequence-init.init.500-simple-init-vars=simple-init-vars
  1239. .sequence-init.init.600-openldap-init-vars=openldap-init-vars
  1240. .sequence-init.open.500-simple-open-pools-authz=simple-open-pools
  1241. .sequence-init.open.900-simple-open-vars=simple-open-vars
  1242. .stats.interval=60000
  1243. .vars.password=***
  1244. .vars.server=ldap.karmalabs.com
  1245. .vars.user=cn\=admin,dc\=karmalabs,dc\=com
  1246.  
  1247. 2017-03-21 09:31:49 FINE PROPERTIES-END
  1248. 2017-03-21 09:31:49 FINE init Entry
  1249. 2017-03-21 09:31:49 FINE runSequence Entry name='__init0'
  1250. 2017-03-21 09:31:49 FINE Running sequence __init0/01/var-set set sensitive keys
  1251. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1252. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1253. 2017-03-21 09:31:49 FINEST stop = false
  1254. 2017-03-21 09:31:49 FINEST VARS-END
  1255. 2017-03-21 09:31:49 FINE End sequence __init0 set sensitive keys
  1256. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1257. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1258. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1259. 2017-03-21 09:31:49 FINEST stop = false
  1260. 2017-03-21 09:31:49 FINEST VARS-END
  1261. 2017-03-21 09:31:49 FINE Running sequence __init0/02/var-set set max filter size
  1262. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1263. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1264. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1265. 2017-03-21 09:31:49 FINEST stop = false
  1266. 2017-03-21 09:31:49 FINEST VARS-END
  1267. 2017-03-21 09:31:49 FINE End sequence __init0 set max filter size
  1268. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1269. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1270. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1271. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1272. 2017-03-21 09:31:49 FINEST stop = false
  1273. 2017-03-21 09:31:49 FINEST VARS-END
  1274. 2017-03-21 09:31:49 FINE Running sequence __init0/03/var-set set default as not recursive group resolution
  1275. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1276. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1277. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1278. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1279. 2017-03-21 09:31:49 FINEST stop = false
  1280. 2017-03-21 09:31:49 FINEST VARS-END
  1281. 2017-03-21 09:31:49 FINE End sequence __init0 set default as not recursive group resolution
  1282. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1283. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1284. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1285. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1286. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1287. 2017-03-21 09:31:49 FINEST stop = false
  1288. 2017-03-21 09:31:49 FINEST VARS-END
  1289. 2017-03-21 09:31:49 FINE Running sequence __init0/04/var-set set default as no credentials change
  1290. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1291. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1292. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1293. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1294. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1295. 2017-03-21 09:31:49 FINEST stop = false
  1296. 2017-03-21 09:31:49 FINEST VARS-END
  1297. 2017-03-21 09:31:49 FINE End sequence __init0 set default as no credentials change
  1298. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1299. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1300. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1301. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1302. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1303. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1304. 2017-03-21 09:31:49 FINEST stop = false
  1305. 2017-03-21 09:31:49 FINEST VARS-END
  1306. 2017-03-21 09:31:49 FINE runSequence Return name='__init0'
  1307. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-init-vars'
  1308. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/010/var-set set user format: sam for basic, realm for sasl
  1309. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1310. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1311. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1312. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1313. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1314. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1315. 2017-03-21 09:31:49 FINEST stop = false
  1316. 2017-03-21 09:31:49 FINEST VARS-END
  1317. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set user format: sam for basic, realm for sasl
  1318. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1319. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1320. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1321. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1322. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1323. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1324. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1325. 2017-03-21 09:31:49 FINEST stop = false
  1326. 2017-03-21 09:31:49 FINEST VARS-END
  1327. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/020/var-set set group logic
  1328. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1329. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1330. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1331. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1332. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1333. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1334. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1335. 2017-03-21 09:31:49 FINEST stop = false
  1336. 2017-03-21 09:31:49 FINEST VARS-END
  1337. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set group logic
  1338. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1339. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1340. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1341. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1342. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1343. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1344. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1345. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1346. 2017-03-21 09:31:49 FINEST stop = false
  1347. 2017-03-21 09:31:49 FINEST VARS-END
  1348. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/030/var-set set group member attribute
  1349. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1350. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1351. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1352. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1353. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1354. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1355. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1356. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1357. 2017-03-21 09:31:49 FINEST stop = false
  1358. 2017-03-21 09:31:49 FINEST VARS-END
  1359. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set group member attribute
  1360. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1361. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1362. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1363. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1364. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1365. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1366. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1367. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1368. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1369. 2017-03-21 09:31:49 FINEST stop = false
  1370. 2017-03-21 09:31:49 FINEST VARS-END
  1371. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/040/var-set set object group membership attribute
  1372. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1373. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1374. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1375. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1376. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1377. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1378. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1379. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1380. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1381. 2017-03-21 09:31:49 FINEST stop = false
  1382. 2017-03-21 09:31:49 FINEST VARS-END
  1383. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set object group membership attribute
  1384. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1385. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1386. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1387. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1388. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1389. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1390. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1391. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1392. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1393. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1394. 2017-03-21 09:31:49 FINEST stop = false
  1395. 2017-03-21 09:31:49 FINEST VARS-END
  1396. 2017-03-21 09:31:49 FINE Running sequence simple-init-vars/050/var-set set default index for baseDN
  1397. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1398. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1399. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1400. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1401. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1402. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1403. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1404. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1405. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1406. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1407. 2017-03-21 09:31:49 FINEST stop = false
  1408. 2017-03-21 09:31:49 FINEST VARS-END
  1409. 2017-03-21 09:31:49 FINE End sequence simple-init-vars set default index for baseDN
  1410. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1411. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1412. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1413. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1414. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1415. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1416. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1417. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1418. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1419. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1420. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1421. 2017-03-21 09:31:49 FINEST stop = false
  1422. 2017-03-21 09:31:49 FINEST VARS-END
  1423. 2017-03-21 09:31:49 FINE runSequence Return name='simple-init-vars'
  1424. 2017-03-21 09:31:49 FINE runSequence Entry name='openldap-init-vars'
  1425. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/010/var-set set base dn
  1426. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1427. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1428. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1429. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1430. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1431. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1432. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1433. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1434. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1435. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1436. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1437. 2017-03-21 09:31:49 FINEST stop = false
  1438. 2017-03-21 09:31:49 FINEST VARS-END
  1439. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set base dn
  1440. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1441. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1442. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1443. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1444. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1445. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1446. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1447. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1448. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1449. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1450. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1451. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1452. 2017-03-21 09:31:49 FINEST stop = false
  1453. 2017-03-21 09:31:49 FINEST VARS-END
  1454. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/020/var-set set user attribute
  1455. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1456. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1457. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1458. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1459. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1460. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1461. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1462. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1463. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1464. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1465. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1466. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1467. 2017-03-21 09:31:49 FINEST stop = false
  1468. 2017-03-21 09:31:49 FINEST VARS-END
  1469. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set user attribute
  1470. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1471. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1472. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1473. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1474. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1475. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1476. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1477. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1478. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1479. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1480. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1481. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1482. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1483. 2017-03-21 09:31:49 FINEST stop = false
  1484. 2017-03-21 09:31:49 FINEST VARS-END
  1485. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/030/var-set set principal record attributes
  1486. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1487. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1488. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1489. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1490. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1491. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1492. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1493. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1494. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1495. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1496. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1497. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1498. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1499. 2017-03-21 09:31:49 FINEST stop = false
  1500. 2017-03-21 09:31:49 FINEST VARS-END
  1501. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set principal record attributes
  1502. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1503. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1504. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1505. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1506. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1507. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1508. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1509. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1510. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1511. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1512. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1513. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1514. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1515. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1516. 2017-03-21 09:31:49 FINEST stop = false
  1517. 2017-03-21 09:31:49 FINEST VARS-END
  1518. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/040/var-set set user object filter
  1519. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1520. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1521. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1522. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1523. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1524. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1525. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1526. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1527. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1528. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1529. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1530. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1531. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1532. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1533. 2017-03-21 09:31:49 FINEST stop = false
  1534. 2017-03-21 09:31:49 FINEST VARS-END
  1535. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set user object filter
  1536. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1537. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1538. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1539. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1540. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1541. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1542. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1543. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1544. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1545. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1546. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1547. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1548. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1549. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1550. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1551. 2017-03-21 09:31:49 FINEST stop = false
  1552. 2017-03-21 09:31:49 FINEST VARS-END
  1553. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/050/var-set set group record attributes
  1554. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1555. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1556. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1557. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1558. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1559. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1560. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1561. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1562. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1563. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1564. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1565. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1566. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1567. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1568. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1569. 2017-03-21 09:31:49 FINEST stop = false
  1570. 2017-03-21 09:31:49 FINEST VARS-END
  1571. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group record attributes
  1572. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1573. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1574. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1575. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1576. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1577. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1578. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1579. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1580. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1581. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1582. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1583. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1584. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1585. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1586. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1587. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1588. 2017-03-21 09:31:49 FINEST stop = false
  1589. 2017-03-21 09:31:49 FINEST VARS-END
  1590. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/060/var-set set group object filter
  1591. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1592. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1593. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1594. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1595. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1596. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1597. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1598. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1599. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1600. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1601. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1602. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1603. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1604. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1605. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1606. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1607. 2017-03-21 09:31:49 FINEST stop = false
  1608. 2017-03-21 09:31:49 FINEST VARS-END
  1609. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group object filter
  1610. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1611. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1612. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1613. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1614. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1615. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1616. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1617. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1618. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1619. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1620. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1621. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1622. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1623. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1624. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1625. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1626. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1627. 2017-03-21 09:31:49 FINEST stop = false
  1628. 2017-03-21 09:31:49 FINEST VARS-END
  1629. 2017-03-21 09:31:49 FINE Running sequence openldap-init-vars/070/var-set set group member filter
  1630. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1631. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1632. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1633. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1634. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1635. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1636. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = uniqueMember:uniqueMemberMatch:
  1637. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1638. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1639. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1640. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1641. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1642. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1643. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1644. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1645. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1646. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1647. 2017-03-21 09:31:49 FINEST stop = false
  1648. 2017-03-21 09:31:49 FINEST VARS-END
  1649. 2017-03-21 09:31:49 FINE End sequence openldap-init-vars set group member filter
  1650. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1651. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1652. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1653. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1654. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1655. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1656. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1657. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1658. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1659. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1660. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1661. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1662. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1663. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1664. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1665. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1666. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1667. 2017-03-21 09:31:49 FINEST stop = false
  1668. 2017-03-21 09:31:49 FINEST VARS-END
  1669. 2017-03-21 09:31:49 FINE runSequence Return name='openldap-init-vars'
  1670. 2017-03-21 09:31:49 FINE init Return globals={sensitiveKeys=, password, passwordNew, simple_attrMemberOf=memberOf, simple_filterGroupObject=(objectClass=groupOfNames), simple_attrsGroupRecord=entryUUID, cn, description, simple_filterUserObject=(objectClass=uidObject)(uid=*), authn_enable=1, maxFilterSize=50, capability_recursiveGroupResolution=false, simple_attrsUserName=uid, stop=false, simple_attrGroupMemberDN=member, simple_attrsBaseDNIndex=0, simple_bindFormat=dn, simple_attrsPrincipalRecord=entryUUID, uid, cn, displayName, department, givenName, sn, title, mail, capability_credentialsChange=false, simple_groupLogic=member, simple_attrsBaseDN=namingContexts}
  1671. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  1672. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  1673. 2017-03-21 09:31:49 FINEST Invoke Output END
  1674. 2017-03-21 09:31:49 INFO Extension 'karmalabs-authn' loaded
  1675. 2017-03-21 09:31:49 FINE Config BEGIN
  1676. 2017-03-21 09:31:49 FINE ovirt.engine.aaa.authn.profile.name: karmalabs
  1677. 2017-03-21 09:31:49 FINE ovirt.engine.extension.provides: org.ovirt.engine.api.extensions.aaa.Authn
  1678. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.class: org.ovirt.engineextensions.aaa.ldap.AuthnExtension
  1679. 2017-03-21 09:31:49 FINE ovirt.engine.aaa.authn.authz.plugin: karmalabs-authz
  1680. 2017-03-21 09:31:49 FINE ovirt.engine.extension.bindings.method: jbossmodule
  1681. 2017-03-21 09:31:49 FINE ovirt.engine.extension.name: karmalabs-authn
  1682. 2017-03-21 09:31:49 FINE config.profile.file.1: ../aaa/karmalabs.properties
  1683. 2017-03-21 09:31:49 FINE ovirt.engine.extension.binding.jbossmodule.module: org.ovirt.engine-extensions.aaa.ldap
  1684. 2017-03-21 09:31:49 FINE Config END
  1685. 2017-03-21 09:31:49 INFO Initializing extension 'internal-authz'
  1686. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  1687. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_INITIALIZE[e5ae1b7f-9104-4f23-a444-7b9175ff68d2], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=AAA_AUTHZ_AVAILABLE_NAMESPACES;type=interface java.util.Collection;uuid=AAA_AUTHZ_AVAILABLE_NAMESPACES[6dffa34c-955f-486a-bd35-0a272b45a711];]=[*], Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]="ovirt-engine-extension-aaa-jdbc".authz, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace."ovirt-engine-extension-aaa-jdbc".authz.internal-authz), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]="1.1.4", Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/internal-authz.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE[2eb1f541-0f65-44a1-a6e3-014e247595f5];]=100, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=internal-authz, Extkey[name=AAA_AUTHZ_CAPABILITIES;type=class java.lang.Long;uuid=AAA_AUTHZ_CAPABILITIES[6106d1fb-9291-4351-a947-b897b9540a23];]=1, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: "ovirt-engine-extension-aaa-jdbc"}}
  1688. 2017-03-21 09:31:49 FINEST Invoke Input END
  1689. 2017-03-21 09:31:49 FINEST cursor for: SELECT COUNT(script) AS count FROM schema_version WHERE script = $CXcjt$upgrade/01_00_0050_enable_change_password_capability.sql$CXcjt$
  1690. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  1691. 2017-03-21 09:31:49 FINEST {Extkey[name=AAA_AUTHZ_STATUS;type=class java.lang.Integer;uuid=AAA_AUTHZ_STATUS[566f0ba5-8329-4de1-952a-7a81e4bedd3e];]=0, Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  1692. 2017-03-21 09:31:49 FINEST Invoke Output END
  1693. 2017-03-21 09:31:49 INFO Extension 'internal-authz' initialized
  1694. 2017-03-21 09:31:49 FINE Extension 'internal-authz' initialized
  1695. 2017-03-21 09:31:49 INFO Initializing extension 'internal-authn'
  1696. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  1697. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_INITIALIZE[e5ae1b7f-9104-4f23-a444-7b9175ff68d2], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]="ovirt-engine-extension-aaa-jdbc".authn, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace."ovirt-engine-extension-aaa-jdbc".authn.internal-authn), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]="1.1.4", Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authn], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/internal-authn.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=internal-authn, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=AAA_AUTHN_CAPABILITIES;type=class java.lang.Long;uuid=AAA_AUTHN_CAPABILITIES[9d16bee3-10fd-46f2-83f9-3d3c54cf258d];]=44, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: "ovirt-engine-extension-aaa-jdbc"}}
  1698. 2017-03-21 09:31:49 FINEST Invoke Input END
  1699. 2017-03-21 09:31:49 FINEST cursor for: SELECT COUNT(script) AS count FROM schema_version WHERE script = $tfPKi$upgrade/01_00_0050_enable_change_password_capability.sql$tfPKi$
  1700. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  1701. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  1702. 2017-03-21 09:31:49 FINEST Invoke Output END
  1703. 2017-03-21 09:31:49 INFO Extension 'internal-authn' initialized
  1704. 2017-03-21 09:31:49 FINE Extension 'internal-authn' initialized
  1705. 2017-03-21 09:31:49 INFO Initializing extension 'karmalabs-authz'
  1706. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  1707. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_INITIALIZE[e5ae1b7f-9104-4f23-a444-7b9175ff68d2], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]=ovirt-engine-extension-aaa-ldap.authz, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace.ovirt-engine-extension-aaa-ldap.authz.karmalabs-authz), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]=1.2.3, Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authz.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE[2eb1f541-0f65-44a1-a6e3-014e247595f5];]=50, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authz, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev}}
  1708. 2017-03-21 09:31:49 FINEST Invoke Input END
  1709. 2017-03-21 09:31:49 FINE open Entry
  1710. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-open-pools'
  1711. 2017-03-21 09:31:49 FINE Running sequence simple-open-pools/010/pool-create create authz pool
  1712. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1713. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1714. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1715. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1716. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1717. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1718. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1719. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1720. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1721. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1722. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1723. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1724. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1725. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1726. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1727. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1728. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1729. 2017-03-21 09:31:49 FINEST stop = false
  1730. 2017-03-21 09:31:49 FINEST VARS-END
  1731. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authz', dn='null'
  1732. 2017-03-21 09:31:49 FINE getConnectionPoolEntry no pool for 'authz'
  1733. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authz::karmalabs-authz] Creating LDAP pool 'authz'
  1734. 2017-03-21 09:31:49 FINE createPool Entry name='authz'
  1735. 2017-03-21 09:31:49 FINE createConnectionPool Entry
  1736. 2017-03-21 09:31:49 FINE Creating LDAPConnectionOptions
  1737. 2017-03-21 09:31:49 FINE LDAPConnectionOptions: LDAPConnectionOptions(autoReconnect=true, bindWithDNRequiresPassword=true, followReferrals=false, useKeepAlive=true, useLinger=true, lingerTimeoutSeconds=5, useReuseAddress=true, useSchema=false, usePooledSchema=false, pooledSchemaTimeoutMillis=3600000, useSynchronousMode=false, useTCPNoDelay=true, captureConnectStackTrace=false, connectTimeoutMillis=5000, responseTimeoutMillis=60000, abandonOnTimeout=true, maxMessageSize=20971520, receiveBufferSize=0, sendBufferSize=0, allowConcurrentSocketFactoryUse=true, sslSocketVerifierClass='com.unboundid.util.ssl.TrustAllSSLSocketVerifier')
  1738. 2017-03-21 09:31:49 FINE Creating SocketFactory
  1739. 2017-03-21 09:31:49 FINE SocketFactory: javax.net.DefaultSocketFactory@5ae63ade
  1740. 2017-03-21 09:31:49 FINE Creating ServerSet
  1741. 2017-03-21 09:31:49 FINE ServerSet: SingleServerSet(server=ldap.karmalabs.com:389)
  1742. 2017-03-21 09:31:49 FINE Creating BindRequest
  1743. 2017-03-21 09:31:49 FINE createBindRequest Entry type='simple', user=''
  1744. 2017-03-21 09:31:49 FINE createBindRequest Return SimpleBindRequest(dn='cn=admin,dc=karmalabs,dc=com')
  1745. 2017-03-21 09:31:49 FINE BindRequest: SimpleBindRequest(dn='cn=admin,dc=karmalabs,dc=com')
  1746. 2017-03-21 09:31:49 FINE Creating LDAPConnectionPool
  1747. 2017-03-21 09:31:49 FINE createConnectionPool Return: LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20)
  1748. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authz::karmalabs-authz] LDAP pool 'authz' information: vendor='null' version='null'
  1749. 2017-03-21 09:31:49 FINE RootDSE: [Attribute(name=objectClass, values={'top', 'OpenLDAProotDSE'}), Attribute(name=structuralObjectClass, values={'OpenLDAProotDSE'}), Attribute(name=configContext, values={'cn=config'}), Attribute(name=namingContexts, values={'dc=karmalabs,dc=com'}), Attribute(name=supportedControl, values={'2.16.840.1.113730.3.4.18', '2.16.840.1.113730.3.4.2', '1.3.6.1.4.1.4203.1.10.1', '1.2.840.113556.1.4.319', '1.2.826.0.1.3344810.2.3', '1.3.6.1.1.13.2', '1.3.6.1.1.13.1', '1.3.6.1.1.12'}), Attribute(name=supportedExtension, values={'1.3.6.1.4.1.4203.1.11.1', '1.3.6.1.4.1.4203.1.11.3', '1.3.6.1.1.8'}), Attribute(name=supportedFeatures, values={'1.3.6.1.1.14', '1.3.6.1.4.1.4203.1.5.1', '1.3.6.1.4.1.4203.1.5.2', '1.3.6.1.4.1.4203.1.5.3', '1.3.6.1.4.1.4203.1.5.4', '1.3.6.1.4.1.4203.1.5.5'}), Attribute(name=supportedLDAPVersion, values={'3'}), Attribute(name=supportedSASLMechanisms, values={'DIGEST-MD5', 'CRAM-MD5', 'NTLM'}), Attribute(name=entryDN, values={''}), Attribute(name=subschemaSubentry, values={'cn=Subschema'})]
  1750. 2017-03-21 09:31:49 FINE createPool Return ConnectionPoolEntry(name='authz', connectionPool=LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20), supportPaging=true, supportPasswordModify=true, supportWhoAmI=true)
  1751. 2017-03-21 09:31:49 FINE End sequence simple-open-pools create authz pool
  1752. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1753. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1754. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1755. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1756. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1757. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1758. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1759. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1760. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1761. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1762. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1763. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1764. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1765. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1766. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1767. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1768. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1769. 2017-03-21 09:31:49 FINEST stop = false
  1770. 2017-03-21 09:31:49 FINEST VARS-END
  1771. 2017-03-21 09:31:49 FINE Running sequence simple-open-pools/020/pool-create create authn pool
  1772. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1773. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1774. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1775. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1776. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1777. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1778. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1779. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1780. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1781. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1782. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1783. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1784. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1785. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1786. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1787. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1788. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1789. 2017-03-21 09:31:49 FINEST stop = false
  1790. 2017-03-21 09:31:49 FINEST VARS-END
  1791. 2017-03-21 09:31:49 FINE Skip
  1792. 2017-03-21 09:31:49 FINE runSequence Return name='simple-open-pools'
  1793. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-open-vars'
  1794. 2017-03-21 09:31:49 FINE Running sequence simple-open-vars/010/fetch-record set base DN
  1795. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1796. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1797. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1798. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1799. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1800. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1801. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1802. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1803. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1804. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1805. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1806. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1807. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1808. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1809. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1810. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1811. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1812. 2017-03-21 09:31:49 FINEST stop = false
  1813. 2017-03-21 09:31:49 FINEST VARS-END
  1814. 2017-03-21 09:31:49 FINE searchOpen Entry name='simple-namespace', pageSize=0, limit=5
  1815. 2017-03-21 09:31:49 FINE Creating SearchRequest
  1816. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts})
  1817. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authz', dn=''
  1818. 2017-03-21 09:31:49 FINE getAttrMap Entry name='simple-map-namespace'
  1819. 2017-03-21 09:31:49 FINE getAttrMap Return [AttrMapInfo(namespace, STRING)]
  1820. 2017-03-21 09:31:49 FINE SearchOpen Return SearchInstance(searchRequest='SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts})', doPaging=true, resumeCookie='null', pageSize=100, limitLeft=5, done=false)
  1821. 2017-03-21 09:31:49 FINEST searchExecute Entry
  1822. 2017-03-21 09:31:49 FINE Getting connection out of pool 'authz'
  1823. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts}, controls={SimplePagedResultsControl(pageSize=100, isCritical=false)})
  1824. 2017-03-21 09:31:49 FINE SearchResult: SearchResult(resultCode=0 (success), messageID=2, entriesReturned=1, referencesReturned=0)
  1825. 2017-03-21 09:31:49 FINEST SearchReferences: []
  1826. 2017-03-21 09:31:49 FINEST SearchReferences: []
  1827. 2017-03-21 09:31:49 FINEST searchExecute Return: [{_dn=[], namespace=[dc=karmalabs,dc=com]}]
  1828. 2017-03-21 09:31:49 FINEST searchExecute Entry
  1829. 2017-03-21 09:31:49 FINEST searchExecute Return: null
  1830. 2017-03-21 09:31:49 FINE searchClose Entry
  1831. 2017-03-21 09:31:49 FINE We have connection
  1832. 2017-03-21 09:31:49 FINE Releasing connection
  1833. 2017-03-21 09:31:49 FINE searchClose Return
  1834. 2017-03-21 09:31:49 FINE End sequence simple-open-vars set base DN
  1835. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1836. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1837. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1838. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1839. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1840. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1841. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1842. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1843. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1844. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1845. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1846. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1847. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1848. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1849. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1850. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1851. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1852. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1853. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1854. 2017-03-21 09:31:49 FINEST stop = false
  1855. 2017-03-21 09:31:49 FINEST VARS-END
  1856. 2017-03-21 09:31:49 FINE runSequence Return name='simple-open-vars'
  1857. 2017-03-21 09:31:49 FINE open Return globals={simple_attrMemberOf=memberOf, simple_filterGroupObject=(objectClass=groupOfNames), simple_filterUserObject=(objectClass=uidObject)(uid=*), maxFilterSize=50, capability_recursiveGroupResolution=false, simple_attrsBaseDNIndex=0, simple_attrsPrincipalRecord=entryUUID, uid, cn, displayName, department, givenName, sn, title, mail, capability_credentialsChange=false, search_attr__dn=, simple_attrsBaseDN=namingContexts, sensitiveKeys=, password, passwordNew, simple_attrsGroupRecord=entryUUID, cn, description, authz_enable=1, simple_baseDN=dc=karmalabs,dc=com, simple_attrsUserName=uid, stop=false, simple_attrGroupMemberDN=member, simple_bindFormat=dn, simple_groupLogic=member}
  1858. 2017-03-21 09:31:49 FINE runSequence Entry name='namespace'
  1859. 2017-03-21 09:31:49 FINE Running sequence namespace/stub/call call simple
  1860. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1861. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1862. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1863. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1864. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1865. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1866. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1867. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1868. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1869. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1870. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1871. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1872. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1873. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1874. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1875. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1876. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1877. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1878. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1879. 2017-03-21 09:31:49 FINEST stop = false
  1880. 2017-03-21 09:31:49 FINEST VARS-END
  1881. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-namespace'
  1882. 2017-03-21 09:31:49 FINE Running sequence simple-namespace/010/var-set set default namespace
  1883. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1884. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1885. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1886. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1887. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1888. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1889. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1890. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1891. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1892. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1893. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1894. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1895. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1896. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1897. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1898. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1899. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1900. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1901. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1902. 2017-03-21 09:31:49 FINEST stop = false
  1903. 2017-03-21 09:31:49 FINEST VARS-END
  1904. 2017-03-21 09:31:49 FINE Skip
  1905. 2017-03-21 09:31:49 FINE Running sequence simple-namespace/020/var-list-set namespace search
  1906. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1907. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1908. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1909. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1910. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1911. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1912. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1913. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1914. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1915. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1916. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1917. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1918. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1919. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1920. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1921. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1922. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1923. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1924. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1925. 2017-03-21 09:31:49 FINEST stop = false
  1926. 2017-03-21 09:31:49 FINEST VARS-END
  1927. 2017-03-21 09:31:49 FINE End sequence simple-namespace namespace search
  1928. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1929. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1930. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1931. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1932. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1933. 2017-03-21 09:31:49 FINEST namespaces = [dc=karmalabs,dc=com]
  1934. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1935. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1936. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1937. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1938. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1939. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1940. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1941. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1942. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1943. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1944. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1945. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1946. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1947. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1948. 2017-03-21 09:31:49 FINEST stop = false
  1949. 2017-03-21 09:31:49 FINEST VARS-END
  1950. 2017-03-21 09:31:49 FINE runSequence Return name='simple-namespace'
  1951. 2017-03-21 09:31:49 FINE End sequence namespace call simple
  1952. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1953. 2017-03-21 09:31:49 FINEST authz_enable = 1
  1954. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1955. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1956. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1957. 2017-03-21 09:31:49 FINEST namespaces = [dc=karmalabs,dc=com]
  1958. 2017-03-21 09:31:49 FINEST search_attr__dn =
  1959. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1960. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1961. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1962. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1963. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1964. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1965. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  1966. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  1967. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  1968. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  1969. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  1970. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  1971. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  1972. 2017-03-21 09:31:49 FINEST stop = false
  1973. 2017-03-21 09:31:49 FINEST VARS-END
  1974. 2017-03-21 09:31:49 FINE runSequence Return name='namespace'
  1975. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authz::karmalabs-authz] Available Namespaces: [dc=karmalabs,dc=com]
  1976. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  1977. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  1978. 2017-03-21 09:31:49 FINEST Invoke Output END
  1979. 2017-03-21 09:31:49 INFO Extension 'karmalabs-authz' initialized
  1980. 2017-03-21 09:31:49 FINE Extension 'karmalabs-authz' initialized
  1981. 2017-03-21 09:31:49 INFO Initializing extension 'karmalabs-authn'
  1982. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  1983. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=EXTENSION_INITIALIZE[e5ae1b7f-9104-4f23-a444-7b9175ff68d2], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]=ovirt-engine-extension-aaa-ldap.authn, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace.ovirt-engine-extension-aaa-ldap.authn.karmalabs-authn), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]=1.2.3, Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authn], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authn.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authn, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=AAA_AUTHN_CAPABILITIES;type=class java.lang.Long;uuid=AAA_AUTHN_CAPABILITIES[9d16bee3-10fd-46f2-83f9-3d3c54cf258d];]=12, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev}}
  1984. 2017-03-21 09:31:49 FINEST Invoke Input END
  1985. 2017-03-21 09:31:49 FINE open Entry
  1986. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-open-pools'
  1987. 2017-03-21 09:31:49 FINE Running sequence simple-open-pools/010/pool-create create authz pool
  1988. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  1989. 2017-03-21 09:31:49 FINEST authn_enable = 1
  1990. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  1991. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  1992. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  1993. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  1994. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  1995. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  1996. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  1997. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  1998. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  1999. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2000. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2001. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2002. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2003. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2004. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2005. 2017-03-21 09:31:49 FINEST stop = false
  2006. 2017-03-21 09:31:49 FINEST VARS-END
  2007. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authz', dn='null'
  2008. 2017-03-21 09:31:49 FINE getConnectionPoolEntry no pool for 'authz'
  2009. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authn::karmalabs-authn] Creating LDAP pool 'authz'
  2010. 2017-03-21 09:31:49 FINE createPool Entry name='authz'
  2011. 2017-03-21 09:31:49 FINE createConnectionPool Entry
  2012. 2017-03-21 09:31:49 FINE Creating LDAPConnectionOptions
  2013. 2017-03-21 09:31:49 FINE LDAPConnectionOptions: LDAPConnectionOptions(autoReconnect=true, bindWithDNRequiresPassword=true, followReferrals=false, useKeepAlive=true, useLinger=true, lingerTimeoutSeconds=5, useReuseAddress=true, useSchema=false, usePooledSchema=false, pooledSchemaTimeoutMillis=3600000, useSynchronousMode=false, useTCPNoDelay=true, captureConnectStackTrace=false, connectTimeoutMillis=5000, responseTimeoutMillis=60000, abandonOnTimeout=true, maxMessageSize=20971520, receiveBufferSize=0, sendBufferSize=0, allowConcurrentSocketFactoryUse=true, sslSocketVerifierClass='com.unboundid.util.ssl.TrustAllSSLSocketVerifier')
  2014. 2017-03-21 09:31:49 FINE Creating SocketFactory
  2015. 2017-03-21 09:31:49 FINE SocketFactory: javax.net.DefaultSocketFactory@5ae63ade
  2016. 2017-03-21 09:31:49 FINE Creating ServerSet
  2017. 2017-03-21 09:31:49 FINE ServerSet: SingleServerSet(server=ldap.karmalabs.com:389)
  2018. 2017-03-21 09:31:49 FINE Creating BindRequest
  2019. 2017-03-21 09:31:49 FINE createBindRequest Entry type='simple', user=''
  2020. 2017-03-21 09:31:49 FINE createBindRequest Return SimpleBindRequest(dn='cn=admin,dc=karmalabs,dc=com')
  2021. 2017-03-21 09:31:49 FINE BindRequest: SimpleBindRequest(dn='cn=admin,dc=karmalabs,dc=com')
  2022. 2017-03-21 09:31:49 FINE Creating LDAPConnectionPool
  2023. 2017-03-21 09:31:49 FINE createConnectionPool Return: LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20)
  2024. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authn::karmalabs-authn] LDAP pool 'authz' information: vendor='null' version='null'
  2025. 2017-03-21 09:31:49 FINE RootDSE: [Attribute(name=objectClass, values={'top', 'OpenLDAProotDSE'}), Attribute(name=structuralObjectClass, values={'OpenLDAProotDSE'}), Attribute(name=configContext, values={'cn=config'}), Attribute(name=namingContexts, values={'dc=karmalabs,dc=com'}), Attribute(name=supportedControl, values={'2.16.840.1.113730.3.4.18', '2.16.840.1.113730.3.4.2', '1.3.6.1.4.1.4203.1.10.1', '1.2.840.113556.1.4.319', '1.2.826.0.1.3344810.2.3', '1.3.6.1.1.13.2', '1.3.6.1.1.13.1', '1.3.6.1.1.12'}), Attribute(name=supportedExtension, values={'1.3.6.1.4.1.4203.1.11.1', '1.3.6.1.4.1.4203.1.11.3', '1.3.6.1.1.8'}), Attribute(name=supportedFeatures, values={'1.3.6.1.1.14', '1.3.6.1.4.1.4203.1.5.1', '1.3.6.1.4.1.4203.1.5.2', '1.3.6.1.4.1.4203.1.5.3', '1.3.6.1.4.1.4203.1.5.4', '1.3.6.1.4.1.4203.1.5.5'}), Attribute(name=supportedLDAPVersion, values={'3'}), Attribute(name=supportedSASLMechanisms, values={'DIGEST-MD5', 'CRAM-MD5', 'NTLM'}), Attribute(name=entryDN, values={''}), Attribute(name=subschemaSubentry, values={'cn=Subschema'})]
  2026. 2017-03-21 09:31:49 FINE createPool Return ConnectionPoolEntry(name='authz', connectionPool=LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20), supportPaging=true, supportPasswordModify=true, supportWhoAmI=true)
  2027. 2017-03-21 09:31:49 FINE End sequence simple-open-pools create authz pool
  2028. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2029. 2017-03-21 09:31:49 FINEST authn_enable = 1
  2030. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2031. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2032. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2033. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2034. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2035. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2036. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2037. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2038. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2039. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2040. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2041. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2042. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2043. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2044. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2045. 2017-03-21 09:31:49 FINEST stop = false
  2046. 2017-03-21 09:31:49 FINEST VARS-END
  2047. 2017-03-21 09:31:49 FINE Running sequence simple-open-pools/020/pool-create create authn pool
  2048. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2049. 2017-03-21 09:31:49 FINEST authn_enable = 1
  2050. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2051. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2052. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2053. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2054. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2055. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2056. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2057. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2058. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2059. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2060. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2061. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2062. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2063. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2064. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2065. 2017-03-21 09:31:49 FINEST stop = false
  2066. 2017-03-21 09:31:49 FINEST VARS-END
  2067. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authn', dn='null'
  2068. 2017-03-21 09:31:49 FINE getConnectionPoolEntry no pool for 'authn'
  2069. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authn::karmalabs-authn] Creating LDAP pool 'authn'
  2070. 2017-03-21 09:31:49 FINE createPool Entry name='authn'
  2071. 2017-03-21 09:31:49 FINE createConnectionPool Entry
  2072. 2017-03-21 09:31:49 FINE Creating LDAPConnectionOptions
  2073. 2017-03-21 09:31:49 FINE LDAPConnectionOptions: LDAPConnectionOptions(autoReconnect=true, bindWithDNRequiresPassword=true, followReferrals=false, useKeepAlive=true, useLinger=true, lingerTimeoutSeconds=5, useReuseAddress=true, useSchema=false, usePooledSchema=false, pooledSchemaTimeoutMillis=3600000, useSynchronousMode=false, useTCPNoDelay=true, captureConnectStackTrace=false, connectTimeoutMillis=5000, responseTimeoutMillis=60000, abandonOnTimeout=true, maxMessageSize=20971520, receiveBufferSize=0, sendBufferSize=0, allowConcurrentSocketFactoryUse=true, sslSocketVerifierClass='com.unboundid.util.ssl.TrustAllSSLSocketVerifier')
  2074. 2017-03-21 09:31:49 FINE Creating SocketFactory
  2075. 2017-03-21 09:31:49 FINE SocketFactory: javax.net.DefaultSocketFactory@5ae63ade
  2076. 2017-03-21 09:31:49 FINE Creating ServerSet
  2077. 2017-03-21 09:31:49 FINE ServerSet: SingleServerSet(server=ldap.karmalabs.com:389)
  2078. 2017-03-21 09:31:49 FINE Creating BindRequest
  2079. 2017-03-21 09:31:49 FINE createBindRequest Entry type='none', user=''
  2080. 2017-03-21 09:31:49 FINE createBindRequest Return SimpleBindRequest(dn='')
  2081. 2017-03-21 09:31:49 FINE BindRequest: SimpleBindRequest(dn='')
  2082. 2017-03-21 09:31:49 FINE Creating LDAPConnectionPool
  2083. 2017-03-21 09:31:49 FINE createConnectionPool Return: LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20)
  2084. 2017-03-21 09:31:49 INFO [ovirt-engine-extension-aaa-ldap.authn::karmalabs-authn] LDAP pool 'authn' information: vendor='null' version='null'
  2085. 2017-03-21 09:31:49 FINE RootDSE: [Attribute(name=objectClass, values={'top', 'OpenLDAProotDSE'}), Attribute(name=structuralObjectClass, values={'OpenLDAProotDSE'}), Attribute(name=configContext, values={'cn=config'}), Attribute(name=namingContexts, values={'dc=karmalabs,dc=com'}), Attribute(name=supportedControl, values={'2.16.840.1.113730.3.4.18', '2.16.840.1.113730.3.4.2', '1.3.6.1.4.1.4203.1.10.1', '1.2.840.113556.1.4.319', '1.2.826.0.1.3344810.2.3', '1.3.6.1.1.13.2', '1.3.6.1.1.13.1', '1.3.6.1.1.12'}), Attribute(name=supportedExtension, values={'1.3.6.1.4.1.4203.1.11.1', '1.3.6.1.4.1.4203.1.11.3', '1.3.6.1.1.8'}), Attribute(name=supportedFeatures, values={'1.3.6.1.1.14', '1.3.6.1.4.1.4203.1.5.1', '1.3.6.1.4.1.4203.1.5.2', '1.3.6.1.4.1.4203.1.5.3', '1.3.6.1.4.1.4203.1.5.4', '1.3.6.1.4.1.4203.1.5.5'}), Attribute(name=supportedLDAPVersion, values={'3'}), Attribute(name=supportedSASLMechanisms, values={'DIGEST-MD5', 'CRAM-MD5', 'NTLM'}), Attribute(name=entryDN, values={''}), Attribute(name=subschemaSubentry, values={'cn=Subschema'})]
  2086. 2017-03-21 09:31:49 FINE createPool Return ConnectionPoolEntry(name='authn', connectionPool=LDAPConnectionPool(serverSet=SingleServerSet(server=ldap.karmalabs.com:389), maxConnections=20), supportPaging=true, supportPasswordModify=true, supportWhoAmI=true)
  2087. 2017-03-21 09:31:49 FINE End sequence simple-open-pools create authn pool
  2088. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2089. 2017-03-21 09:31:49 FINEST authn_enable = 1
  2090. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2091. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2092. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2093. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2094. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2095. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2096. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2097. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2098. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2099. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2100. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2101. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2102. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2103. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2104. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2105. 2017-03-21 09:31:49 FINEST stop = false
  2106. 2017-03-21 09:31:49 FINEST VARS-END
  2107. 2017-03-21 09:31:49 FINE runSequence Return name='simple-open-pools'
  2108. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-open-vars'
  2109. 2017-03-21 09:31:49 FINE Running sequence simple-open-vars/010/fetch-record set base DN
  2110. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2111. 2017-03-21 09:31:49 FINEST authn_enable = 1
  2112. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2113. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2114. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2115. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2116. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2117. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2118. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2119. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2120. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2121. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2122. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2123. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2124. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2125. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2126. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2127. 2017-03-21 09:31:49 FINEST stop = false
  2128. 2017-03-21 09:31:49 FINEST VARS-END
  2129. 2017-03-21 09:31:49 FINE searchOpen Entry name='simple-namespace', pageSize=0, limit=5
  2130. 2017-03-21 09:31:49 FINE Creating SearchRequest
  2131. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts})
  2132. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authz', dn=''
  2133. 2017-03-21 09:31:49 FINE getAttrMap Entry name='simple-map-namespace'
  2134. 2017-03-21 09:31:49 FINE getAttrMap Return [AttrMapInfo(namespace, STRING)]
  2135. 2017-03-21 09:31:49 FINE SearchOpen Return SearchInstance(searchRequest='SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts})', doPaging=true, resumeCookie='null', pageSize=100, limitLeft=5, done=false)
  2136. 2017-03-21 09:31:49 FINEST searchExecute Entry
  2137. 2017-03-21 09:31:49 FINE Getting connection out of pool 'authz'
  2138. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='', scope=BASE, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=*)', attrs={namingContexts}, controls={SimplePagedResultsControl(pageSize=100, isCritical=false)})
  2139. 2017-03-21 09:31:49 FINE SearchResult: SearchResult(resultCode=0 (success), messageID=2, entriesReturned=1, referencesReturned=0)
  2140. 2017-03-21 09:31:49 FINEST SearchReferences: []
  2141. 2017-03-21 09:31:49 FINEST SearchReferences: []
  2142. 2017-03-21 09:31:49 FINEST searchExecute Return: [{_dn=[], namespace=[dc=karmalabs,dc=com]}]
  2143. 2017-03-21 09:31:49 FINEST searchExecute Entry
  2144. 2017-03-21 09:31:49 FINEST searchExecute Return: null
  2145. 2017-03-21 09:31:49 FINE searchClose Entry
  2146. 2017-03-21 09:31:49 FINE We have connection
  2147. 2017-03-21 09:31:49 FINE Releasing connection
  2148. 2017-03-21 09:31:49 FINE searchClose Return
  2149. 2017-03-21 09:31:49 FINE End sequence simple-open-vars set base DN
  2150. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2151. 2017-03-21 09:31:49 FINEST authn_enable = 1
  2152. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2153. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2154. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2155. 2017-03-21 09:31:49 FINEST search_attr__dn =
  2156. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2157. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2158. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2159. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2160. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2161. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2162. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2163. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2164. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  2165. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2166. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2167. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2168. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2169. 2017-03-21 09:31:49 FINEST stop = false
  2170. 2017-03-21 09:31:49 FINEST VARS-END
  2171. 2017-03-21 09:31:49 FINE runSequence Return name='simple-open-vars'
  2172. 2017-03-21 09:31:49 FINE open Return globals={simple_attrMemberOf=memberOf, simple_filterGroupObject=(objectClass=groupOfNames), simple_filterUserObject=(objectClass=uidObject)(uid=*), maxFilterSize=50, capability_recursiveGroupResolution=false, simple_attrsBaseDNIndex=0, simple_attrsPrincipalRecord=entryUUID, uid, cn, displayName, department, givenName, sn, title, mail, capability_credentialsChange=false, search_attr__dn=, simple_attrsBaseDN=namingContexts, sensitiveKeys=, password, passwordNew, simple_attrsGroupRecord=entryUUID, cn, description, authn_enable=1, simple_baseDN=dc=karmalabs,dc=com, simple_attrsUserName=uid, stop=false, simple_attrGroupMemberDN=member, simple_bindFormat=dn, simple_groupLogic=member}
  2173. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  2174. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  2175. 2017-03-21 09:31:49 FINEST Invoke Output END
  2176. 2017-03-21 09:31:49 INFO Extension 'karmalabs-authn' initialized
  2177. 2017-03-21 09:31:49 FINE Extension 'karmalabs-authn' initialized
  2178. 2017-03-21 09:31:49 INFO Start of enabled extensions list
  2179. 2017-03-21 09:31:49 INFO Instance name: 'internal-authn', Extension name: '"ovirt-engine-extension-aaa-jdbc".authn', Version: '"1.1.4"', Notes: 'Display name: "ovirt-engine-extension-aaa-jdbc"', License: 'ASL 2.0', Home: 'http://www.ovirt.org', Author 'The oVirt Project', Build interface Version: '0', File: '/etc/ovirt-engine/extensions.d/internal-authn.properties', Initialized: 'true'
  2180. 2017-03-21 09:31:49 INFO Instance name: 'internal-authz', Extension name: '"ovirt-engine-extension-aaa-jdbc".authz', Version: '"1.1.4"', Notes: 'Display name: "ovirt-engine-extension-aaa-jdbc"', License: 'ASL 2.0', Home: 'http://www.ovirt.org', Author 'The oVirt Project', Build interface Version: '0', File: '/etc/ovirt-engine/extensions.d/internal-authz.properties', Initialized: 'true'
  2181. 2017-03-21 09:31:49 INFO Instance name: 'karmalabs-authn', Extension name: 'ovirt-engine-extension-aaa-ldap.authn', Version: '1.2.3', Notes: 'Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev', License: 'ASL 2.0', Home: 'http://www.ovirt.org', Author 'The oVirt Project', Build interface Version: '0', File: '/etc/ovirt-engine/extensions.d/karmalabs-authn.properties', Initialized: 'true'
  2182. 2017-03-21 09:31:49 INFO Instance name: 'karmalabs-authz', Extension name: 'ovirt-engine-extension-aaa-ldap.authz', Version: '1.2.3', Notes: 'Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev', License: 'ASL 2.0', Home: 'http://www.ovirt.org', Author 'The oVirt Project', Build interface Version: '0', File: '/etc/ovirt-engine/extensions.d/karmalabs-authz.properties', Initialized: 'true'
  2183. 2017-03-21 09:31:49 INFO End of enabled extensions list
  2184. 2017-03-21 09:31:49 INFO ========================================================================
  2185. 2017-03-21 09:31:49 INFO ============================== Execution ===============================
  2186. 2017-03-21 09:31:49 INFO ========================================================================
  2187. 2017-03-21 09:31:49 INFO Iteration: 0
  2188. 2017-03-21 09:31:49 INFO --- Begin QueryFilterRecord ---
  2189. 2017-03-21 09:31:49 FINE QueryFilterRecord: {Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=102, Extkey[name=AAA_AUTHZ_QUERY_FILTER_FILTER;type=interface java.util.Collection;uuid=AAA_AUTHZ_QUERY_FILTER_FILTER[a84d8b7a-0436-46bc-a49a-4dfda94e3a51];]=[{Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=0, Extkey[name=AAA_AUTHZ_QUERY_FILTER_KEY;type=class org.ovirt.engine.api.extensions.ExtKey;uuid=AAA_AUTHZ_QUERY_FILTER_KEY[2be62864-6a4c-4a1b-80f0-bed68d9eb529];]=Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];], Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]=*}], Extkey[name=AAA_AUTHZ_QUERY_ENTITY;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=AAA_AUTHZ_QUERY_ENTITY[d0a55f21-b604-43c4-84a0-2bf459b32fa8];]=AAA_AUTHZ_QUERY_ENTITY_PRINCIPAL[1695cd36-4656-474f-b7bc-4466e12634e4]}
  2190. 2017-03-21 09:31:49 INFO AAA_AUTHZ_QUERY_FILTER_OPERATOR: 102
  2191. 2017-03-21 09:31:49 INFO AAA_AUTHZ_QUERY_ENTITY: AAA_AUTHZ_QUERY_ENTITY_PRINCIPAL[1695cd36-4656-474f-b7bc-4466e12634e4]
  2192. 2017-03-21 09:31:49 INFO --- Begin QueryFilterRecord ---
  2193. 2017-03-21 09:31:49 FINE QueryFilterRecord: {Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=0, Extkey[name=AAA_AUTHZ_QUERY_FILTER_KEY;type=class org.ovirt.engine.api.extensions.ExtKey;uuid=AAA_AUTHZ_QUERY_FILTER_KEY[2be62864-6a4c-4a1b-80f0-bed68d9eb529];]=Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];], Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]=*}
  2194. 2017-03-21 09:31:49 INFO AAA_AUTHZ_QUERY_FILTER_OPERATOR: 0
  2195. 2017-03-21 09:31:49 INFO AAA_AUTHZ_QUERY_FILTER_KEY: Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]
  2196. 2017-03-21 09:31:49 INFO AAA_AUTHZ_PRINCIPAL_NAME: *
  2197. 2017-03-21 09:31:49 INFO --- End QueryFilterRecord ---
  2198. 2017-03-21 09:31:49 INFO --- End QueryFilterRecord ---
  2199. 2017-03-21 09:31:49 INFO API: -->Authz.InvokeCommands.QUERY_OPEN namespace='dc=karmalabs,dc=com'
  2200. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  2201. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=AAA_AUTHZ_QUERY_OPEN[8879cfd1-17f8-477b-a057-c0fa849dc97f], Extkey[name=AAA_AUTHZ_QUERY_FILTER;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=AAA_AUTHZ_QUERY_FILTER[93086835-fef1-4d69-8173-a45d738b932a];]={Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=102, Extkey[name=AAA_AUTHZ_QUERY_FILTER_FILTER;type=interface java.util.Collection;uuid=AAA_AUTHZ_QUERY_FILTER_FILTER[a84d8b7a-0436-46bc-a49a-4dfda94e3a51];]=[{Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=0, Extkey[name=AAA_AUTHZ_QUERY_FILTER_KEY;type=class org.ovirt.engine.api.extensions.ExtKey;uuid=AAA_AUTHZ_QUERY_FILTER_KEY[2be62864-6a4c-4a1b-80f0-bed68d9eb529];]=Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];], Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]=*}], Extkey[name=AAA_AUTHZ_QUERY_ENTITY;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=AAA_AUTHZ_QUERY_ENTITY[d0a55f21-b604-43c4-84a0-2bf459b32fa8];]=AAA_AUTHZ_QUERY_ENTITY_PRINCIPAL[1695cd36-4656-474f-b7bc-4466e12634e4]}, Extkey[name=AAA_AUTHZ_QUERY_ENTITY;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=AAA_AUTHZ_QUERY_ENTITY[d0a55f21-b604-43c4-84a0-2bf459b32fa8];]=AAA_AUTHZ_QUERY_ENTITY_PRINCIPAL[1695cd36-4656-474f-b7bc-4466e12634e4], Extkey[name=AAA_AUTHZ_QUERY_FLAGS;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FLAGS[97d226e9-8d87-49a0-9a7f-af689320907b];]=0, Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=AAA_AUTHZ_AVAILABLE_NAMESPACES;type=interface java.util.Collection;uuid=AAA_AUTHZ_AVAILABLE_NAMESPACES[6dffa34c-955f-486a-bd35-0a272b45a711];]=[dc=karmalabs,dc=com], Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]=ovirt-engine-extension-aaa-ldap.authz, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace.ovirt-engine-extension-aaa-ldap.authz.karmalabs-authz), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]=1.2.3, Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authz.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE[2eb1f541-0f65-44a1-a6e3-014e247595f5];]=50, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authz, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev}, Extkey[name=AAA_AUTHZ_NAMESPACE;type=class java.lang.String;uuid=AAA_AUTHZ_NAMESPACE[7e12d802-86ff-4162-baaa-d6f6fe73201e];]=dc=karmalabs,dc=com}
  2202. 2017-03-21 09:31:49 FINEST Invoke Input END
  2203. 2017-03-21 09:31:49 FINE doQueryOpen Enter
  2204. 2017-03-21 09:31:49 FINE Flags=0
  2205. 2017-03-21 09:31:49 FINE getAttrMap Entry name='map-principal-record'
  2206. 2017-03-21 09:31:49 FINE getAttrMap Return [AttrMapInfo(PrincipalRecord_DEPARTMENT, STRING), AttrMapInfo(PrincipalRecord_DISPLAY_NAME, STRING), AttrMapInfo(PrincipalRecord_DN, STRING), AttrMapInfo(PrincipalRecord_EMAIL, STRING), AttrMapInfo(PrincipalRecord_FIRST_NAME, STRING), AttrMapInfo(PrincipalRecord_ID, STRING), AttrMapInfo(PrincipalRecord_LAST_NAME, STRING), AttrMapInfo(PrincipalRecord_NAME, STRING), AttrMapInfo(PrincipalRecord_PRINCIPAL, STRING), AttrMapInfo(PrincipalRecord_TITLE, STRING)]
  2207. 2017-03-21 09:31:49 FINE transformFilter entry
  2208. 2017-03-21 09:31:49 FINEST filter {Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=102, Extkey[name=AAA_AUTHZ_QUERY_FILTER_FILTER;type=interface java.util.Collection;uuid=AAA_AUTHZ_QUERY_FILTER_FILTER[a84d8b7a-0436-46bc-a49a-4dfda94e3a51];]=[{Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=0, Extkey[name=AAA_AUTHZ_QUERY_FILTER_KEY;type=class org.ovirt.engine.api.extensions.ExtKey;uuid=AAA_AUTHZ_QUERY_FILTER_KEY[2be62864-6a4c-4a1b-80f0-bed68d9eb529];]=Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];], Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]=*}], Extkey[name=AAA_AUTHZ_QUERY_ENTITY;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=AAA_AUTHZ_QUERY_ENTITY[d0a55f21-b604-43c4-84a0-2bf459b32fa8];]=AAA_AUTHZ_QUERY_ENTITY_PRINCIPAL[1695cd36-4656-474f-b7bc-4466e12634e4]}
  2209. 2017-03-21 09:31:49 FINEST no key
  2210. 2017-03-21 09:31:49 FINE transformFilter entry
  2211. 2017-03-21 09:31:49 FINEST filter {Extkey[name=AAA_AUTHZ_QUERY_FILTER_OPERATOR;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_FILTER_OPERATOR[c8588111-25a3-40e9-bf82-44acd3d0049d];]=0, Extkey[name=AAA_AUTHZ_QUERY_FILTER_KEY;type=class org.ovirt.engine.api.extensions.ExtKey;uuid=AAA_AUTHZ_QUERY_FILTER_KEY[2be62864-6a4c-4a1b-80f0-bed68d9eb529];]=Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];], Extkey[name=AAA_AUTHZ_PRINCIPAL_NAME;type=class java.lang.String;uuid=AAA_AUTHZ_PRINCIPAL_NAME[a0df5bcc-6ead-40a2-8565-2f5cc8773bdd];]=*}
  2212. 2017-03-21 09:31:49 FINE transformFilter Return (uid=*)
  2213. 2017-03-21 09:31:49 FINE transformFilter Return (|(uid=*))
  2214. 2017-03-21 09:31:49 FINE runSequence Entry name='query-principals'
  2215. 2017-03-21 09:31:49 FINE Running sequence query-principals/stub/call call simple
  2216. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2217. 2017-03-21 09:31:49 FINEST authz_enable = 1
  2218. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2219. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2220. 2017-03-21 09:31:49 FINEST filter = (|(uid=*))
  2221. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2222. 2017-03-21 09:31:49 FINEST namespace = dc=karmalabs,dc=com
  2223. 2017-03-21 09:31:49 FINEST search_attr__dn =
  2224. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2225. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2226. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2227. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2228. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2229. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2230. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2231. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2232. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  2233. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2234. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2235. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2236. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2237. 2017-03-21 09:31:49 FINEST stop = false
  2238. 2017-03-21 09:31:49 FINEST VARS-END
  2239. 2017-03-21 09:31:49 FINE runSequence Entry name='simple-query-principals'
  2240. 2017-03-21 09:31:49 FINE Running sequence simple-query-principals/010/search-open principals search
  2241. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2242. 2017-03-21 09:31:49 FINEST authz_enable = 1
  2243. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2244. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2245. 2017-03-21 09:31:49 FINEST filter = (|(uid=*))
  2246. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2247. 2017-03-21 09:31:49 FINEST namespace = dc=karmalabs,dc=com
  2248. 2017-03-21 09:31:49 FINEST search_attr__dn =
  2249. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2250. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2251. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2252. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2253. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2254. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2255. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2256. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2257. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  2258. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2259. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2260. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2261. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2262. 2017-03-21 09:31:49 FINEST stop = false
  2263. 2017-03-21 09:31:49 FINEST VARS-END
  2264. 2017-03-21 09:31:49 FINE searchOpen Entry name='simple-query-principals', pageSize=0, limit=0
  2265. 2017-03-21 09:31:49 FINE Creating SearchRequest
  2266. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='dc=karmalabs,dc=com', scope=SUB, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=uidObject)(uid=*)(|(uid=*))', attrs={entryUUID, uid, cn, displayName, department, givenName, sn, title, mail})
  2267. 2017-03-21 09:31:49 FINE getConnectionPoolEntry Entry name='authz', dn='dc=karmalabs,dc=com'
  2268. 2017-03-21 09:31:49 FINE getAttrMap Entry name='map-principal-record'
  2269. 2017-03-21 09:31:49 FINE getAttrMap Return [AttrMapInfo(PrincipalRecord_DEPARTMENT, STRING), AttrMapInfo(PrincipalRecord_DISPLAY_NAME, STRING), AttrMapInfo(PrincipalRecord_DN, STRING), AttrMapInfo(PrincipalRecord_EMAIL, STRING), AttrMapInfo(PrincipalRecord_FIRST_NAME, STRING), AttrMapInfo(PrincipalRecord_ID, STRING), AttrMapInfo(PrincipalRecord_LAST_NAME, STRING), AttrMapInfo(PrincipalRecord_NAME, STRING), AttrMapInfo(PrincipalRecord_PRINCIPAL, STRING), AttrMapInfo(PrincipalRecord_TITLE, STRING)]
  2270. 2017-03-21 09:31:49 FINE SearchOpen Return SearchInstance(searchRequest='SearchRequest(baseDN='dc=karmalabs,dc=com', scope=SUB, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=uidObject)(uid=*)(|(uid=*))', attrs={entryUUID, uid, cn, displayName, department, givenName, sn, title, mail})', doPaging=true, resumeCookie='null', pageSize=100, limitLeft=2147483647, done=false)
  2271. 2017-03-21 09:31:49 FINE End sequence simple-query-principals principals search
  2272. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2273. 2017-03-21 09:31:49 FINEST authz_enable = 1
  2274. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2275. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2276. 2017-03-21 09:31:49 FINEST filter = (|(uid=*))
  2277. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2278. 2017-03-21 09:31:49 FINEST namespace = dc=karmalabs,dc=com
  2279. 2017-03-21 09:31:49 FINEST query = SearchInstance(searchRequest='SearchRequest(baseDN='dc=karmalabs,dc=com', scope=SUB, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=uidObject)(uid=*)(|(uid=*))', attrs={entryUUID, uid, cn, displayName, department, givenName, sn, title, mail})', doPaging=true, resumeCookie='null', pageSize=100, limitLeft=2147483647, done=false)
  2280. 2017-03-21 09:31:49 FINEST search_attr__dn =
  2281. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2282. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2283. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2284. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2285. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2286. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2287. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2288. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2289. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  2290. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2291. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2292. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2293. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2294. 2017-03-21 09:31:49 FINEST stop = false
  2295. 2017-03-21 09:31:49 FINEST VARS-END
  2296. 2017-03-21 09:31:49 FINE runSequence Return name='simple-query-principals'
  2297. 2017-03-21 09:31:49 FINE End sequence query-principals call simple
  2298. 2017-03-21 09:31:49 FINEST VARS-BEGIN
  2299. 2017-03-21 09:31:49 FINEST authz_enable = 1
  2300. 2017-03-21 09:31:49 FINEST capability_credentialsChange = false
  2301. 2017-03-21 09:31:49 FINEST capability_recursiveGroupResolution = false
  2302. 2017-03-21 09:31:49 FINEST filter = (|(uid=*))
  2303. 2017-03-21 09:31:49 FINEST maxFilterSize = 50
  2304. 2017-03-21 09:31:49 FINEST namespace = dc=karmalabs,dc=com
  2305. 2017-03-21 09:31:49 FINEST query = SearchInstance(searchRequest='SearchRequest(baseDN='dc=karmalabs,dc=com', scope=SUB, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=uidObject)(uid=*)(|(uid=*))', attrs={entryUUID, uid, cn, displayName, department, givenName, sn, title, mail})', doPaging=true, resumeCookie='null', pageSize=100, limitLeft=2147483647, done=false)
  2306. 2017-03-21 09:31:49 FINEST search_attr__dn =
  2307. 2017-03-21 09:31:49 FINEST sensitiveKeys = , password, passwordNew
  2308. 2017-03-21 09:31:49 FINEST simple_attrGroupMemberDN = member
  2309. 2017-03-21 09:31:49 FINEST simple_attrMemberOf = memberOf
  2310. 2017-03-21 09:31:49 FINEST simple_attrsBaseDN = namingContexts
  2311. 2017-03-21 09:31:49 FINEST simple_attrsBaseDNIndex = 0
  2312. 2017-03-21 09:31:49 FINEST simple_attrsGroupRecord = entryUUID, cn, description
  2313. 2017-03-21 09:31:49 FINEST simple_attrsPrincipalRecord = entryUUID, uid, cn, displayName, department, givenName, sn, title, mail
  2314. 2017-03-21 09:31:49 FINEST simple_attrsUserName = uid
  2315. 2017-03-21 09:31:49 FINEST simple_baseDN = dc=karmalabs,dc=com
  2316. 2017-03-21 09:31:49 FINEST simple_bindFormat = dn
  2317. 2017-03-21 09:31:49 FINEST simple_filterGroupObject = (objectClass=groupOfNames)
  2318. 2017-03-21 09:31:49 FINEST simple_filterUserObject = (objectClass=uidObject)(uid=*)
  2319. 2017-03-21 09:31:49 FINEST simple_groupLogic = member
  2320. 2017-03-21 09:31:49 FINEST stop = false
  2321. 2017-03-21 09:31:49 FINEST VARS-END
  2322. 2017-03-21 09:31:49 FINE runSequence Return name='query-principals'
  2323. 2017-03-21 09:31:49 FINE doQueryOpen Return
  2324. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  2325. 2017-03-21 09:31:49 FINEST {Extkey[name=AAA_AUTHZ_QUERY_OPAQUE;type=class java.lang.Object;uuid=AAA_AUTHZ_QUERY_OPAQUE[3e2491e9-2b2d-4108-ad4c-8048e2308f3e];]=org.ovirt.engineextensions.aaa.ldap.AuthzExtension$SearchOpaque@37374a5e, Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  2326. 2017-03-21 09:31:49 FINEST Invoke Output END
  2327. 2017-03-21 09:31:49 INFO API: <--Authz.InvokeCommands.QUERY_OPEN
  2328. 2017-03-21 09:31:49 INFO API: -->Authz.InvokeCommands.QUERY_EXECUTE
  2329. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  2330. 2017-03-21 09:31:49 FINEST {Extkey[name=AAA_AUTHZ_QUERY_OPAQUE;type=class java.lang.Object;uuid=AAA_AUTHZ_QUERY_OPAQUE[3e2491e9-2b2d-4108-ad4c-8048e2308f3e];]=org.ovirt.engineextensions.aaa.ldap.AuthzExtension$SearchOpaque@37374a5e, Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=AAA_AUTHZ_QUERY_EXECUTE[b572eb07-11b6-4337-89e3-d1a4e0dafe41], Extkey[name=AAA_AUTHZ_PAGE_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_PAGE_SIZE[03197cd2-2d0f-4636-bd88-f65c4a543efe];]=100, Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=AAA_AUTHZ_AVAILABLE_NAMESPACES;type=interface java.util.Collection;uuid=AAA_AUTHZ_AVAILABLE_NAMESPACES[6dffa34c-955f-486a-bd35-0a272b45a711];]=[dc=karmalabs,dc=com], Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]=ovirt-engine-extension-aaa-ldap.authz, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace.ovirt-engine-extension-aaa-ldap.authz.karmalabs-authz), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]=1.2.3, Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authz.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE[2eb1f541-0f65-44a1-a6e3-014e247595f5];]=50, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authz, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev}}
  2331. 2017-03-21 09:31:49 FINEST Invoke Input END
  2332. 2017-03-21 09:31:49 FINE doQueryExecute Enter
  2333. 2017-03-21 09:31:49 FINEST searchExecute Entry
  2334. 2017-03-21 09:31:49 FINE Getting connection out of pool 'authz'
  2335. 2017-03-21 09:31:49 FINE SearchRequest: SearchRequest(baseDN='dc=karmalabs,dc=com', scope=SUB, deref=NEVER, sizeLimit=0, timeLimit=0, filter='&(objectClass=uidObject)(uid=*)(|(uid=*))', attrs={entryUUID, uid, cn, displayName, department, givenName, sn, title, mail}, controls={SimplePagedResultsControl(pageSize=100, isCritical=false)})
  2336. 2017-03-21 09:31:49 FINE SearchResult: SearchResult(resultCode=0 (success), messageID=2, entriesReturned=0, referencesReturned=0, responseControls={SimplePagedResultsControl(pageSize=0, isCritical=false)})
  2337. 2017-03-21 09:31:49 FINEST SearchReferences: []
  2338. 2017-03-21 09:31:49 FINEST SearchReferences: []
  2339. 2017-03-21 09:31:49 FINEST searchExecute Return: null
  2340. 2017-03-21 09:31:49 FINE doQueryExecute Return
  2341. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  2342. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  2343. 2017-03-21 09:31:49 FINEST Invoke Output END
  2344. 2017-03-21 09:31:49 INFO API: <--Authz.InvokeCommands.QUERY_EXECUTE count=END
  2345. 2017-03-21 09:31:49 INFO API: -->Authz.InvokeCommands.QUERY_CLOSE
  2346. 2017-03-21 09:31:49 FINEST Invoke Input BEGIN
  2347. 2017-03-21 09:31:49 FINEST {Extkey[name=AAA_AUTHZ_QUERY_OPAQUE;type=class java.lang.Object;uuid=AAA_AUTHZ_QUERY_OPAQUE[3e2491e9-2b2d-4108-ad4c-8048e2308f3e];]=org.ovirt.engineextensions.aaa.ldap.AuthzExtension$SearchOpaque@37374a5e, Extkey[name=EXTENSION_INVOKE_COMMAND;type=class org.ovirt.engine.api.extensions.ExtUUID;uuid=EXTENSION_INVOKE_COMMAND[485778ab-bede-4f1a-b823-77b262a2f28d];]=AAA_AUTHZ_QUERY_CLOSE[3e049bc0-055e-4789-a4e3-0ef51bfe6685], Extkey[name=EXTENSION_INVOKE_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_INVOKE_CONTEXT[886d2ebb-312a-49ae-9cc3-e1f849834b7d];]={Extkey[name=AAA_AUTHZ_AVAILABLE_NAMESPACES;type=interface java.util.Collection;uuid=AAA_AUTHZ_AVAILABLE_NAMESPACES[6dffa34c-955f-486a-bd35-0a272b45a711];]=[dc=karmalabs,dc=com], Extkey[name=EXTENSION_LICENSE;type=class java.lang.String;uuid=EXTENSION_LICENSE[8a61ad65-054c-4e31-9c6d-1ca4d60a4c18];]=ASL 2.0, Extkey[name=EXTENSION_GLOBAL_CONTEXT;type=class org.ovirt.engine.api.extensions.ExtMap;uuid=EXTENSION_GLOBAL_CONTEXT[9799e72f-7af6-4cf1-bf08-297bc8903676];]=*skip*, Extkey[name=EXTENSION_NAME;type=class java.lang.String;uuid=EXTENSION_NAME[651381d3-f54f-4547-bf28-b0b01a103184];]=ovirt-engine-extension-aaa-ldap.authz, Extkey[name=EXTENSION_MANAGER_TRACE_LOG;type=interface org.slf4j.Logger;uuid=EXTENSION_MANAGER_TRACE_LOG[863db666-3ea7-4751-9695-918a3197ad83];]=org.slf4j.impl.JDK14LoggerAdapter(org.ovirt.engine.core.extensions.mgr.ExtensionsManager.trace.ovirt-engine-extension-aaa-ldap.authz.karmalabs-authz), Extkey[name=EXTENSION_CONFIGURATION_SENSITIVE_KEYS;type=interface java.util.Collection;uuid=EXTENSION_CONFIGURATION_SENSITIVE_KEYS[a456efa1-73ff-4204-9f9b-ebff01e35263];]=[], Extkey[name=EXTENSION_VERSION;type=class java.lang.String;uuid=EXTENSION_VERSION[fe35f6a8-8239-4bdb-ab1a-af9f779ce68c];]=1.2.3, Extkey[name=EXTENSION_PROVIDES;type=interface java.util.Collection;uuid=EXTENSION_PROVIDES[8cf373a6-65b5-4594-b828-0e275087de91];]=[org.ovirt.engine.api.extensions.aaa.Authz], Extkey[name=EXTENSION_AUTHOR;type=class java.lang.String;uuid=EXTENSION_AUTHOR[ef242f7a-2dad-4bc5-9aad-e07018b7fbcc];]=The oVirt Project, Extkey[name=EXTENSION_LOCALE;type=class java.lang.String;uuid=EXTENSION_LOCALE[0780b112-0ce0-404a-b85e-8765d778bb29];]=en_US, Extkey[name=EXTENSION_CONFIGURATION_FILE;type=class java.lang.String;uuid=EXTENSION_CONFIGURATION_FILE[4fb0ffd3-983c-4f3f-98ff-9660bd67af6a];]=/etc/ovirt-engine/extensions.d/karmalabs-authz.properties, Extkey[name=EXTENSION_HOME_URL;type=class java.lang.String;uuid=EXTENSION_HOME_URL[4ad7a2f4-f969-42d4-b399-72d192e18304];]=http://www.ovirt.org, Extkey[name=EXTENSION_CONFIGURATION;type=class java.util.Properties;uuid=EXTENSION_CONFIGURATION[2d48ab72-f0a1-4312-b4ae-5068a226b0fc];]=***, Extkey[name=EXTENSION_INTERFACE_VERSION_MAX;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MAX[f4cff49f-2717-4901-8ee9-df362446e3e7];]=0, Extkey[name=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE;type=class java.lang.Integer;uuid=AAA_AUTHZ_QUERY_MAX_FILTER_SIZE[2eb1f541-0f65-44a1-a6e3-014e247595f5];]=50, Extkey[name=EXTENSION_INTERFACE_VERSION_MIN;type=class java.lang.Integer;uuid=EXTENSION_INTERFACE_VERSION_MIN[2b84fc91-305b-497b-a1d7-d961b9d2ce0b];]=0, Extkey[name=EXTENSION_INSTANCE_NAME;type=class java.lang.String;uuid=EXTENSION_INSTANCE_NAME[65c67ff6-aeca-4bd5-a245-8674327f011b];]=karmalabs-authz, Extkey[name=EXTENSION_BUILD_INTERFACE_VERSION;type=class java.lang.Integer;uuid=EXTENSION_BUILD_INTERFACE_VERSION[cb479e5a-4b23-46f8-aed3-56a4747a8ab7];]=0, Extkey[name=EXTENSION_NOTES;type=class java.lang.String;uuid=EXTENSION_NOTES[2da5ad7e-185a-4584-aaff-97f66978e4ea];]=Display name: ovirt-engine-extension-aaa-ldap-1.2.3-1.el7ev}}
  2348. 2017-03-21 09:31:49 FINEST Invoke Input END
  2349. 2017-03-21 09:31:49 FINE doQueryClose Enter
  2350. 2017-03-21 09:31:49 FINE searchClose Entry
  2351. 2017-03-21 09:31:49 FINE We have connection
  2352. 2017-03-21 09:31:49 FINE Releasing connection
  2353. 2017-03-21 09:31:49 FINE searchClose Return
  2354. 2017-03-21 09:31:49 FINE doQueryClose Return
  2355. 2017-03-21 09:31:49 FINEST Invoke Output BEGIN
  2356. 2017-03-21 09:31:49 FINEST {Extkey[name=EXTENSION_INVOKE_RESULT;type=class java.lang.Integer;uuid=EXTENSION_INVOKE_RESULT[0909d91d-8bde-40fb-b6c0-099c772ddd4e];]=0}
  2357. 2017-03-21 09:31:49 FINEST Invoke Output END
  2358. 2017-03-21 09:31:49 INFO API: <--Authz.InvokeCommands.QUERY_CLOSE
  2359. 2017-03-21 09:31:49 FINE Exiting with status '0'
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement