From eduardo at freedominterface.org Thu Apr 4 14:45:45 2013 Content-Type: multipart/mixed; boundary="===============1276516646216687903==" MIME-Version: 1.0 From: Eduardo Ramos To: users at ovirt.org Subject: [Users] DNS reverse configuration Date: Thu, 04 Apr 2013 15:45:36 -0300 Message-ID: <515DCA50.1050003@freedominterface.org> --===============1276516646216687903== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable This is a multi-part message in MIME format. --------------030000020905080205090702 Content-Type: text/plain; charset=3DISO-8859-1; format=3Dflowed Content-Transfer-Encoding: 7bit Hi all! I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is = ActiveDirectory complaint. But when I use engine-manage-domains, it = returns me a strange message: [root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd = -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator = -interactive Enter password: Error: Authentication Failed. Error in DNS configuration. Please verify = the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic = domain is: getconnection: driver class = name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: = url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering = encrypted passord. secdomain=3Dencryptdbpasswordexecute: beginning = execution of action action_get.fetching key=3Ddomainname ver=3Dgeneral Failure while applying Kerberos configuration. Details: Authentication = Failed. Error in DNS configuration. Please verify the oVirt Engine host = has a valid reverse DNS (PTR) record. Using host command, I got the following results: [root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br ovirt-dir.gsr.inpe.br has address 150.163.80.125 [root(a)ovirt-dir eduardo]# host 150.163.80.125 125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br. [root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br _kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br. [root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br samba4.gsr.inpe.br has address 150.163.73.109 [root(a)ovirt-dir eduardo]# host 150.163.73.109 109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br. As you can see, it is everything ok. No DNS problem. Someone have any idea? Thanks. --------------030000020905080205090702 Content-Type: text/html; charset=3DISO-8859-1 Content-Transfer-Encoding: 7bit Hi all!

I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is ActiveDirectory complaint. But when I use engine-manage-domains, it returns me a strange message:

[root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrat= or -interactive
Enter password:

Error: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic domain is: getconnection: driver class name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering encrypted passord. secdomain=3Dencryptdbpasswordexecute: beginning execution of action action_get.fetching key=3Ddomainname ver=3Dgeneral
Failure while applying Kerberos configuration. Details: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.

Using host command, I got the following results:

[root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br
ovirt-dir.gsr.inpe.br has address 150.163.80.125

[root(a)ovirt-dir eduardo]# host 150.163.80.125
125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br
_kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br
samba4.gsr.inpe.br has address 150.163.73.109

[root(a)ovirt-dir eduardo]# host 150.163.73.109
109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br.

As you can see, it is everything ok. No DNS problem.

Someone have any idea?

Thanks.
--------------030000020905080205090702-- --===============1276516646216687903== Content-Type: multipart/alternative MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.bin" VGhpcyBpcyBhIG11bHRpLXBhcnQgbWVzc2FnZSBpbiBNSU1FIGZvcm1hdC4KLS0tLS0tLS0tLS0t LS0wMzAwMDAwMjA5MDUwODAyMDUwOTA3MDIKQ29udGVudC1UeXBlOiB0ZXh0L3BsYWluOyBjaGFy c2V0PUlTTy04ODU5LTE7IGZvcm1hdD1mbG93ZWQKQ29udGVudC1UcmFuc2Zlci1FbmNvZGluZzog N2JpdAoKSGkgYWxsIQoKSSdtIHRyeWluZyB0byBjb25uZWN0IG15IG92aXJ0LWVuZ2luZSBpbiBh IHNhbWJhNCBzZXJ2ZXIuIFNhbWJhNCBpcyAKQWN0aXZlRGlyZWN0b3J5IGNvbXBsYWludC4gQnV0 IHdoZW4gSSB1c2UgZW5naW5lLW1hbmFnZS1kb21haW5zLCBpdCAKcmV0dXJucyBtZSBhIHN0cmFu Z2UgbWVzc2FnZToKCltyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgZW5naW5lLW1hbmFnZS1kb21h aW5zIC1hY3Rpb249YWRkIAotZG9tYWluPWdzci5pbnBlLmJyIC1wcm92aWRlcj1hY3RpdmVEaXJl Y3RvcnkgLXVzZXI9QWRtaW5pc3RyYXRvciAKLWludGVyYWN0aXZlCkVudGVyIHBhc3N3b3JkOgoK RXJyb3I6IEF1dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5TIGNvbmZpZ3VyYXRpb24u IFBsZWFzZSB2ZXJpZnkgCnRoZSBvVmlydCBFbmdpbmUgaG9zdCBoYXMgYSB2YWxpZCByZXZlcnNl IEROUyAoUFRSKSByZWNvcmQuLiBQcm9ibGVtYXRpYyAKZG9tYWluIGlzOiBnZXRjb25uZWN0aW9u OiBkcml2ZXIgY2xhc3MgCm5hbWU9b3JnLnBvc3RncmVzcWwueGEucGd4YWRhdGFzb3VyY2VnZXRj b25uZWN0aW9uOiAKdXJsPWpkYmM6cG9zdGdyZXNxbDovL2xvY2FsaG9zdDo1NDMyL2VuZ2luZWdl dGNvbm5lY3Rpb246IGNvbnNpZGVyaW5nIAplbmNyeXB0ZWQgcGFzc29yZC4gc2VjZG9tYWluPWVu Y3J5cHRkYnBhc3N3b3JkZXhlY3V0ZTogYmVnaW5uaW5nIApleGVjdXRpb24gb2YgYWN0aW9uIGFj dGlvbl9nZXQuZmV0Y2hpbmcga2V5PWRvbWFpbm5hbWUgdmVyPWdlbmVyYWwKRmFpbHVyZSB3aGls ZSBhcHBseWluZyBLZXJiZXJvcyBjb25maWd1cmF0aW9uLiBEZXRhaWxzOiBBdXRoZW50aWNhdGlv biAKRmFpbGVkLiBFcnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlIHZlcmlmeSB0aGUg b1ZpcnQgRW5naW5lIGhvc3QgCmhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQVFIpIHJlY29yZC4K ClVzaW5nIGhvc3QgY29tbWFuZCwgSSBnb3QgdGhlIGZvbGxvd2luZyByZXN1bHRzOgoKW3Jvb3RA b3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IG92aXJ0LWRpci5nc3IuaW5wZS5icgpvdmlydC1kaXIu Z3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My44MC4xMjUKCltyb290QG92aXJ0LWRpciBl ZHVhcmRvXSMgaG9zdCAxNTAuMTYzLjgwLjEyNQoxMjUuODAuMTYzLjE1MC5pbi1hZGRyLmFycGEg ZG9tYWluIG5hbWUgcG9pbnRlciBvdmlydC1kaXIuZ3NyLmlucGUuYnIuCgpbcm9vdEBvdmlydC1k aXIgZWR1YXJkb10jIGhvc3QgLXQgc3J2IF9rZXJiZXJvcy5fdGNwLmdzci5pbnBlLmJyCl9rZXJi ZXJvcy5fdGNwLmdzci5pbnBlLmJyIGhhcyBTUlYgcmVjb3JkIDEgMCA4OCBzYW1iYTQuZ3NyLmlu cGUuYnIuCgpbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGhvc3Qgc2FtYmE0Lmdzci5pbnBlLmJy CnNhbWJhNC5nc3IuaW5wZS5iciBoYXMgYWRkcmVzcyAxNTAuMTYzLjczLjEwOQoKW3Jvb3RAb3Zp cnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMuMTA5CjEwOS43My4xNjMuMTUwLmluLWFk ZHIuYXJwYSBkb21haW4gbmFtZSBwb2ludGVyIHNhbWJhNC5nc3IuaW5wZS5ici4KCkFzIHlvdSBj YW4gc2VlLCBpdCBpcyBldmVyeXRoaW5nIG9rLiBObyBETlMgcHJvYmxlbS4KClNvbWVvbmUgaGF2 ZSBhbnkgaWRlYT8KClRoYW5rcy4KCi0tLS0tLS0tLS0tLS0tMDMwMDAwMDIwOTA1MDgwMjA1MDkw NzAyCkNvbnRlbnQtVHlwZTogdGV4dC9odG1sOyBjaGFyc2V0PUlTTy04ODU5LTEKQ29udGVudC1U cmFuc2Zlci1FbmNvZGluZzogN2JpdAoKPGh0bWw+CiAgPGhlYWQ+CgogICAgPG1ldGEgaHR0cC1l cXVpdj0iY29udGVudC10eXBlIiBjb250ZW50PSJ0ZXh0L2h0bWw7IGNoYXJzZXQ9SVNPLTg4NTkt MSI+CiAgPC9oZWFkPgogIDxib2R5IGJnY29sb3I9IiNGRkZGRkYiIHRleHQ9IiMwMDAwMDAiPgog ICAgSGkgYWxsITxicj4KICAgIDxicj4KICAgIEknbSB0cnlpbmcgdG8gY29ubmVjdCBteSBvdmly dC1lbmdpbmUgaW4gYSBzYW1iYTQgc2VydmVyLiBTYW1iYTQgaXMKICAgIEFjdGl2ZURpcmVjdG9y eSBjb21wbGFpbnQuIEJ1dCB3aGVuIEkgdXNlIGVuZ2luZS1tYW5hZ2UtZG9tYWlucywgaXQKICAg IHJldHVybnMgbWUgYSBzdHJhbmdlIG1lc3NhZ2U6PGJyPgogICAgPGJyPgogICAgPHNtYWxsPlty b290QG92aXJ0LWRpciBlZHVhcmRvXSMgZW5naW5lLW1hbmFnZS1kb21haW5zIC1hY3Rpb249YWRk CiAgICAgIC1kb21haW49Z3NyLmlucGUuYnIgLXByb3ZpZGVyPWFjdGl2ZURpcmVjdG9yeSAtdXNl cj1BZG1pbmlzdHJhdG9yCiAgICAgIC1pbnRlcmFjdGl2ZTxicj4KICAgICAgRW50ZXIgcGFzc3dv cmQ6PGJyPgogICAgICA8YnI+CiAgICAgIEVycm9yOiBBdXRoZW50aWNhdGlvbiBGYWlsZWQuIEVy cm9yIGluIEROUyBjb25maWd1cmF0aW9uLiBQbGVhc2UKICAgICAgdmVyaWZ5IHRoZSBvVmlydCBF bmdpbmUgaG9zdCBoYXMgYSB2YWxpZCByZXZlcnNlIEROUyAoUFRSKQogICAgICByZWNvcmQuLiBQ cm9ibGVtYXRpYyBkb21haW4gaXM6IGdldGNvbm5lY3Rpb246IGRyaXZlciBjbGFzcwogICAgICBu YW1lPW9yZy5wb3N0Z3Jlc3FsLnhhLnBneGFkYXRhc291cmNlZ2V0Y29ubmVjdGlvbjoKICAgICAg dXJsPWpkYmM6cG9zdGdyZXNxbDovL2xvY2FsaG9zdDo1NDMyL2VuZ2luZWdldGNvbm5lY3Rpb246 CiAgICAgIGNvbnNpZGVyaW5nIGVuY3J5cHRlZCBwYXNzb3JkLiBzZWNkb21haW49ZW5jcnlwdGRi cGFzc3dvcmRleGVjdXRlOgogICAgICBiZWdpbm5pbmcgZXhlY3V0aW9uIG9mIGFjdGlvbiBhY3Rp b25fZ2V0LmZldGNoaW5nIGtleT1kb21haW5uYW1lCiAgICAgIHZlcj1nZW5lcmFsPGJyPgogICAg ICBGYWlsdXJlIHdoaWxlIGFwcGx5aW5nIEtlcmJlcm9zIGNvbmZpZ3VyYXRpb24uIERldGFpbHM6 CiAgICAgIEF1dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5TIGNvbmZpZ3VyYXRpb24u IFBsZWFzZSB2ZXJpZnkKICAgICAgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJl dmVyc2UgRE5TIChQVFIpIHJlY29yZC48YnI+CiAgICAgIDxicj4KICAgICAgPGJpZz48YmlnPjxz bWFsbD5Vc2luZyBob3N0IGNvbW1hbmQsIEkgZ290IHRoZSBmb2xsb3dpbmcgcmVzdWx0czo8YnI+ CiAgICAgICAgICAgIDxzbWFsbD48YnI+CiAgICAgICAgICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVk dWFyZG9dIyBob3N0IG92aXJ0LWRpci5nc3IuaW5wZS5icjxicj4KICAgICAgICAgICAgICBvdmly dC1kaXIuZ3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My44MC4xMjU8YnI+CiAgICAgICAg ICAgICAgPGJyPgogICAgICAgICAgICAgIFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAx NTAuMTYzLjgwLjEyNTxicj4KICAgICAgICAgICAgICAxMjUuODAuMTYzLjE1MC5pbi1hZGRyLmFy cGEgZG9tYWluIG5hbWUgcG9pbnRlcgogICAgICAgICAgICAgIG92aXJ0LWRpci5nc3IuaW5wZS5i ci48YnI+CiAgICAgICAgICAgICAgPGJyPgogICAgICAgICAgICAgIFtyb290QG92aXJ0LWRpciBl ZHVhcmRvXSMgaG9zdCAtdCBzcnYKICAgICAgICAgICAgICBfa2VyYmVyb3MuX3RjcC5nc3IuaW5w ZS5icjxicj4KICAgICAgICAgICAgICBfa2VyYmVyb3MuX3RjcC5nc3IuaW5wZS5iciBoYXMgU1JW IHJlY29yZCAxIDAgODgKICAgICAgICAgICAgICBzYW1iYTQuZ3NyLmlucGUuYnIuPGJyPgogICAg ICAgICAgICAgIDxicj4KICAgICAgICAgICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGhv c3Qgc2FtYmE0Lmdzci5pbnBlLmJyPGJyPgogICAgICAgICAgICAgIHNhbWJhNC5nc3IuaW5wZS5i ciBoYXMgYWRkcmVzcyAxNTAuMTYzLjczLjEwOTxicj4KICAgICAgICAgICAgICA8YnI+CiAgICAg ICAgICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMuMTA5PGJy PgogICAgICAgICAgICAgIDEwOS43My4xNjMuMTUwLmluLWFkZHIuYXJwYSBkb21haW4gbmFtZSBw b2ludGVyCiAgICAgICAgICAgICAgc2FtYmE0Lmdzci5pbnBlLmJyLjxicj4KICAgICAgICAgICAg ICA8YnI+CiAgICAgICAgICAgICAgPGJpZz5BcyB5b3UgY2FuIHNlZSwgaXQgaXMgZXZlcnl0aGlu ZyBvay4gTm8gRE5TIHByb2JsZW0uPGJyPgogICAgICAgICAgICAgICAgPGJyPgogICAgICAgICAg ICAgICAgU29tZW9uZSBoYXZlIGFueSBpZGVhPzxicj4KICAgICAgICAgICAgICAgIDxicj4KICAg ICAgICAgICAgICAgIFRoYW5rcy48YnI+CiAgICAgICAgICAgICAgPC9iaWc+PC9zbWFsbD48L3Nt YWxsPjwvYmlnPjwvYmlnPjwvc21hbGw+CiAgPC9ib2R5Pgo8L2h0bWw+CgotLS0tLS0tLS0tLS0t LTAzMDAwMDAyMDkwNTA4MDIwNTA5MDcwMi0tCg== --===============1276516646216687903==-- From cnoffsin at gmail.com Thu Apr 4 14:48:09 2013 Content-Type: multipart/mixed; boundary="===============7209914767428918905==" MIME-Version: 1.0 From: Chris Noffsinger To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Thu, 04 Apr 2013 18:48:05 +0000 Message-ID: <1914090044-1365101286-cardhu_decombobulator_blackberry.rim.net-586664970-@b28.c20.bise6.blackberry> In-Reply-To: 515DCA50.1050003@freedominterface.org --===============7209914767428918905== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable I have successfully gotten samba4 to work with ovirt but I could not use th= e Administrator user. I had to create another admin user to. Get it to work. Chris Noffsinger -----Original Message----- From: Eduardo Ramos Sender: users-bounces(a)ovirt.org Date: Thu, 04 Apr 2013 15:45:36 = To: Subject: [Users] DNS reverse configuration _______________________________________________ Users mailing list Users(a)ovirt.org http://lists.ovirt.org/mailman/listinfo/users --===============7209914767428918905==-- From gianluca.cecchi at gmail.com Thu Apr 4 16:36:37 2013 Content-Type: multipart/mixed; boundary="===============3675747991341605954==" MIME-Version: 1.0 From: Gianluca Cecchi To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Thu, 04 Apr 2013 22:36:37 +0200 Message-ID: In-Reply-To: 1914090044-1365101286-cardhu_decombobulator_blackberry.rim.net-586664970-@b28.c20.bise6.blackberry --===============3675747991341605954== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable On Thu, Apr 4, 2013 at 8:48 PM, Chris Noffsinger wrote: > I have successfully gotten samba4 to work with ovirt but I could not use = the Administrator user. > > I had to create another admin user to. Get it to work. > Chris Noffsinger It is intended to be so and I think it is the right thing to separate respective roles. I had to do the same with FreeIPA. Gianluca --===============3675747991341605954==-- From r.koch at ovido.at Fri Apr 5 07:27:01 2013 Content-Type: multipart/mixed; boundary="===============0274776522701280595==" MIME-Version: 1.0 From: =?utf-8?q?Ren=C3=A9_Koch_=28ovido=29_=3Cr=2Ekoch_at_ovido=2Eat=3E?= To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Fri, 05 Apr 2013 13:26:38 +0200 Message-ID: <1365161198.12727.8.camel@pc-ovido02.lan.ovido.at> In-Reply-To: 1914090044-1365101286-cardhu_decombobulator_blackberry.rim.net-586664970-@b28.c20.bise6.blackberry --===============0274776522701280595== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable On Thu, 2013-04-04 at 18:48 +0000, Chris Noffsinger wrote: > I have successfully gotten samba4 to work with ovirt but I could not use = the Administrator user. > = > I had to create another admin user to. Get it to work. I can confirm that it's possible to use oVirt/RHEV with Samba 4 - tested RHEV 3.0/3.1 with Univention Corporate Server which is a SBS server on Linux base with Samba 4. For RHEV it's not recommended to use Administrator for Active Directory even if it works mostly. Did it several times where it worked fine with Microsoft Active Directory - not sure if I faced isses with Administrator user. But in general it's better to have an other user with admin permissions, as this will always work (if you set up DNS correctly). Regards, Ren=C3=A9 > Chris Noffsinger > = > -----Original Message----- > From: Eduardo Ramos > Sender: users-bounces(a)ovirt.org > Date: Thu, 04 Apr 2013 15:45:36 = > To: > Subject: [Users] DNS reverse configuration > = > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users > = > = > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users --===============0274776522701280595==-- From eduardo at freedominterface.org Fri Apr 5 07:28:11 2013 Content-Type: multipart/mixed; boundary="===============0449443499639694319==" MIME-Version: 1.0 From: Eduardo Ramos To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Fri, 05 Apr 2013 08:28:09 -0300 Message-ID: <515EB549.8090500@freedominterface.org> In-Reply-To: CAG2kNCyJtEOxdM3k_O+UOgVp_UMt+Wn4c23UMNdqts6zDhLr7A@mail.gmail.com --===============0449443499639694319== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Even though ovirt-engine did not tried connect to samba4, I used another = user. The issue is that engine-manage-domains said not found PTR entry, = although host/nslookup/dig command say the opposite. Is there any detail? On 04/04/2013 05:36 PM, Gianluca Cecchi wrote: > On Thu, Apr 4, 2013 at 8:48 PM, Chris Noffsinger wrote: >> I have successfully gotten samba4 to work with ovirt but I could not use= the Administrator user. >> >> I had to create another admin user to. Get it to work. >> Chris Noffsinger > It is intended to be so and I think it is the right thing to separate > respective roles. > I had to do the same with FreeIPA. > > Gianluca --===============0449443499639694319==-- From jj197005 at gmail.com Fri Apr 5 08:21:43 2013 Content-Type: multipart/mixed; boundary="===============3723618220758059685==" MIME-Version: 1.0 From: Juan Jose To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Fri, 05 Apr 2013 14:21:42 +0200 Message-ID: In-Reply-To: 515EB549.8090500@freedominterface.org --===============3723618220758059685== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Hello everybody, Is there some howto or some procedure to connect Samba4 to oVirt 3.1 and what components are necessary to install and configure?, Ren=C3=A9, can you post all steps to configure it to have oVirt working with Sanba 4, please? Many thanks in avanced, Juanjo. On Fri, Apr 5, 2013 at 1:28 PM, Eduardo Ramos wrote: > Even though ovirt-engine did not tried connect to samba4, I used another > user. The issue is that engine-manage-domains said not found PTR entry, > although host/nslookup/dig command say the opposite. Is there any detail? > > > On 04/04/2013 05:36 PM, Gianluca Cecchi wrote: > >> On Thu, Apr 4, 2013 at 8:48 PM, Chris Noffsinger wrote: >> >>> I have successfully gotten samba4 to work with ovirt but I could not use >>> the Administrator user. >>> >>> I had to create another admin user to. Get it to work. >>> Chris Noffsinger >>> >> It is intended to be so and I think it is the right thing to separate >> respective roles. >> I had to do the same with FreeIPA. >> >> Gianluca >> > > ______________________________**_________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/**mailman/listinfo/users > --===============3723618220758059685== Content-Type: text/html MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.html" PGRpdiBkaXI9Imx0ciI+PGJyPjxkaXY+SGVsbG8gZXZlcnlib2R5LDwvZGl2PjxkaXY+PGJyPjwv ZGl2PjxkaXY+SXMgdGhlcmUgc29tZSBob3d0byBvciBzb21lIHByb2NlZHVyZSB0byBjb25uZWN0 IFNhbWJhNCB0byBvVmlydCAzLjEgYW5kIHdoYXQgY29tcG9uZW50cyBhcmUgbmVjZXNzYXJ5IHRv IGluc3RhbGwgYW5kIGNvbmZpZ3VyZT8sIKBSZW7pLCBjYW4geW91IHBvc3QgYWxsIHN0ZXBzIHRv IGNvbmZpZ3VyZSBpdCB0byBoYXZlIG9WaXJ0IHdvcmtpbmcgd2l0aCBTYW5iYSA0LCBwbGVhc2U/ PC9kaXY+CjxkaXY+PGJyPjwvZGl2PjxkaXY+TWFueSB0aGFua3MgaW4gYXZhbmNlZCw8L2Rpdj48 ZGl2Pjxicj48L2Rpdj48ZGl2Pkp1YW5qby48L2Rpdj48L2Rpdj48ZGl2IGNsYXNzPSJnbWFpbF9l eHRyYSI+PGJyPjxicj48ZGl2IGNsYXNzPSJnbWFpbF9xdW90ZSI+T24gRnJpLCBBcHIgNSwgMjAx MyBhdCAxOjI4IFBNLCBFZHVhcmRvIFJhbW9zIDxzcGFuIGRpcj0ibHRyIj4mbHQ7PGEgaHJlZj0i bWFpbHRvOmVkdWFyZG9AZnJlZWRvbWludGVyZmFjZS5vcmciIHRhcmdldD0iX2JsYW5rIj5lZHVh cmRvQGZyZWVkb21pbnRlcmZhY2Uub3JnPC9hPiZndDs8L3NwYW4+IHdyb3RlOjxicj4KPGJsb2Nr cXVvdGUgY2xhc3M9ImdtYWlsX3F1b3RlIiBzdHlsZT0ibWFyZ2luOjAgMCAwIC44ZXg7Ym9yZGVy LWxlZnQ6MXB4ICNjY2Mgc29saWQ7cGFkZGluZy1sZWZ0OjFleCI+RXZlbiB0aG91Z2ggb3ZpcnQt ZW5naW5lIGRpZCBub3QgdHJpZWQgY29ubmVjdCB0byBzYW1iYTQsIEkgdXNlZCBhbm90aGVyIHVz ZXIuIFRoZSBpc3N1ZSBpcyB0aGF0IGVuZ2luZS1tYW5hZ2UtZG9tYWlucyBzYWlkIG5vdCBmb3Vu ZCBQVFIgZW50cnksIGFsdGhvdWdoIGhvc3QvbnNsb29rdXAvZGlnIGNvbW1hbmQgc2F5IHRoZSBv cHBvc2l0ZS4gSXMgdGhlcmUgYW55IGRldGFpbD88ZGl2IGNsYXNzPSJIT0VuWmIiPgo8ZGl2IGNs YXNzPSJoNSI+PGJyPgo8YnI+Ck9uIDA0LzA0LzIwMTMgMDU6MzYgUE0sIEdpYW5sdWNhIENlY2No aSB3cm90ZTo8YnI+CjxibG9ja3F1b3RlIGNsYXNzPSJnbWFpbF9xdW90ZSIgc3R5bGU9Im1hcmdp bjowIDAgMCAuOGV4O2JvcmRlci1sZWZ0OjFweCAjY2NjIHNvbGlkO3BhZGRpbmctbGVmdDoxZXgi PgpPbiBUaHUsIEFwciA0LCAyMDEzIGF0IDg6NDggUE0sIENocmlzIE5vZmZzaW5nZXIgd3JvdGU6 PGJyPgo8YmxvY2txdW90ZSBjbGFzcz0iZ21haWxfcXVvdGUiIHN0eWxlPSJtYXJnaW46MCAwIDAg LjhleDtib3JkZXItbGVmdDoxcHggI2NjYyBzb2xpZDtwYWRkaW5nLWxlZnQ6MWV4Ij4KSSBoYXZl IHN1Y2Nlc3NmdWxseSBnb3R0ZW4gc2FtYmE0IHRvIHdvcmsgd2l0aCBvdmlydCBidXQgSSBjb3Vs ZCBub3QgdXNlIHRoZSBBZG1pbmlzdHJhdG9yIHVzZXIuPGJyPgo8YnI+CkkgaGFkIHRvIGNyZWF0 ZSBhbm90aGVyIGFkbWluIHVzZXIgdG8uIEdldCBpdCB0byB3b3JrLjxicj4KQ2hyaXMgTm9mZnNp bmdlcjxicj4KPC9ibG9ja3F1b3RlPgpJdCBpcyBpbnRlbmRlZCB0byBiZSBzbyBhbmQgSSB0aGlu ayBpdCBpcyB0aGUgcmlnaHQgdGhpbmcgdG8gc2VwYXJhdGU8YnI+CnJlc3BlY3RpdmUgcm9sZXMu PGJyPgpJIGhhZCB0byBkbyB0aGUgc2FtZSB3aXRoIEZyZWVJUEEuPGJyPgo8YnI+CkdpYW5sdWNh PGJyPgo8L2Jsb2NrcXVvdGU+Cjxicj4KX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fPHU+ PC91Pl9fX19fX19fX19fX19fX19fPGJyPgpVc2VycyBtYWlsaW5nIGxpc3Q8YnI+CjxhIGhyZWY9 Im1haWx0bzpVc2Vyc0BvdmlydC5vcmciIHRhcmdldD0iX2JsYW5rIj5Vc2Vyc0BvdmlydC5vcmc8 L2E+PGJyPgo8YSBocmVmPSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8v dXNlcnMiIHRhcmdldD0iX2JsYW5rIj5odHRwOi8vbGlzdHMub3ZpcnQub3JnLzx1PjwvdT5tYWls bWFuL2xpc3RpbmZvL3VzZXJzPC9hPjxicj4KPC9kaXY+PC9kaXY+PC9ibG9ja3F1b3RlPjwvZGl2 Pjxicj48L2Rpdj4K --===============3723618220758059685==-- From r.koch at ovido.at Fri Apr 5 10:10:50 2013 Content-Type: multipart/mixed; boundary="===============3152413379677934317==" MIME-Version: 1.0 From: =?utf-8?q?Ren=C3=A9_Koch_=28ovido=29_=3Cr=2Ekoch_at_ovido=2Eat=3E?= To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Fri, 05 Apr 2013 16:10:45 +0200 Message-ID: <1365171045.12727.84.camel@pc-ovido02.lan.ovido.at> In-Reply-To: CADrE9wZ-Ue=TyjZydhznpRD2Zy5cswk5VnXqOooFTMQb3YeNoA@mail.gmail.com --===============3152413379677934317== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable On Fri, 2013-04-05 at 14:21 +0200, Juan Jose wrote: > = > Hello everybody, > = > = > Is there some howto or some procedure to connect Samba4 to oVirt 3.1 > and what components are necessary to install and configure?, Ren=C3=A9, > can you post all steps to configure it to have oVirt working with > Sanba 4, please? Sorry, can't give you detailed information on how to create a Samba 4 directory (use UCS appliance) - there is plenty of documentation in the internet on how to do that. To connect oVirt to your existing Samba domain, use the DNS server from your samba server on your ovirt-engine host (don't do replication to external bind servers, as this causes some issues). You have to make sure, that you have valid forward (A) and reverse (PTR) DNS entries for your ovirt-engine host and SRV records for LDAP, Kerberos,... (but these should be created by default and are required for your Windows clients, too). You can join your Samba4 domain with "engine-manage-domains -provider=3DActiveDirectory ..." I hope this helps you a bit. > = > = > Many thanks in avanced, > = > = > Juanjo. > = > = > On Fri, Apr 5, 2013 at 1:28 PM, Eduardo Ramos > wrote: > Even though ovirt-engine did not tried connect to samba4, I > used another user. The issue is that engine-manage-domains > said not found PTR entry, although host/nslookup/dig command > say the opposite. Is there any detail? > = > = > On 04/04/2013 05:36 PM, Gianluca Cecchi wrote: > On Thu, Apr 4, 2013 at 8:48 PM, Chris Noffsinger > wrote: > I have successfully gotten samba4 to work with > ovirt but I could not use the Administrator > user. > = > I had to create another admin user to. Get it > to work. > Chris Noffsinger > It is intended to be so and I think it is the right > thing to separate > respective roles. > I had to do the same with FreeIPA. > = > Gianluca > = > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users > = > = > = > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users --===============3152413379677934317==-- From cnoffsin at gmail.com Fri Apr 5 10:15:11 2013 Content-Type: multipart/mixed; boundary="===============4526034840702038164==" MIME-Version: 1.0 From: Chris Noffsinger To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Fri, 05 Apr 2013 10:15:10 -0400 Message-ID: In-Reply-To: CADrE9wZ-Ue=TyjZydhznpRD2Zy5cswk5VnXqOooFTMQb3YeNoA@mail.gmail.com --===============4526034840702038164== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable I wish that I had documented it, because I have now reinstalled that management server. But I do believe that I had to put my realms manually into /etc/krb5.conf to get it to work. On Fri, Apr 5, 2013 at 8:21 AM, Juan Jose wrote: > > Hello everybody, > > Is there some howto or some procedure to connect Samba4 to oVirt 3.1 and > what components are necessary to install and configure?, Ren=C3=A9, can = you > post all steps to configure it to have oVirt working with Sanba 4, please? > > Many thanks in avanced, > > Juanjo. > > > On Fri, Apr 5, 2013 at 1:28 PM, Eduardo Ramos < > eduardo(a)freedominterface.org> wrote: > >> Even though ovirt-engine did not tried connect to samba4, I used another >> user. The issue is that engine-manage-domains said not found PTR entry, >> although host/nslookup/dig command say the opposite. Is there any detail? >> >> >> On 04/04/2013 05:36 PM, Gianluca Cecchi wrote: >> >>> On Thu, Apr 4, 2013 at 8:48 PM, Chris Noffsinger wrote: >>> >>>> I have successfully gotten samba4 to work with ovirt but I could not >>>> use the Administrator user. >>>> >>>> I had to create another admin user to. Get it to work. >>>> Chris Noffsinger >>>> >>> It is intended to be so and I think it is the right thing to separate >>> respective roles. >>> I had to do the same with FreeIPA. >>> >>> Gianluca >>> >> >> ______________________________**_________________ >> Users mailing list >> Users(a)ovirt.org >> http://lists.ovirt.org/**mailman/listinfo/users >> > > > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users > > -- = Chris Noffsinger --===============4526034840702038164== Content-Type: text/html MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.html" SSB3aXNoIHRoYXQgSSBoYWQgZG9jdW1lbnRlZCBpdCwgYmVjYXVzZSBJIGhhdmUgbm93IHJlaW5z dGFsbGVkIHRoYXQgbWFuYWdlbWVudCBzZXJ2ZXIuPGRpdj48YnI+PC9kaXY+PGRpdj5CdXQgSSBk byBiZWxpZXZlIHRoYXQgSSBoYWQgdG8gcHV0IG15IHJlYWxtcyBtYW51YWxseSBpbnRvIC9ldGMv a3JiNS5jb25mIHRvIGdldCBpdCB0byB3b3JrLjxicj48YnI+PGRpdiBjbGFzcz0iZ21haWxfcXVv dGUiPgpPbiBGcmksIEFwciA1LCAyMDEzIGF0IDg6MjEgQU0sIEp1YW4gSm9zZSA8c3BhbiBkaXI9 Imx0ciI+Jmx0OzxhIGhyZWY9Im1haWx0bzpqajE5NzAwNUBnbWFpbC5jb20iIHRhcmdldD0iX2Js YW5rIj5qajE5NzAwNUBnbWFpbC5jb208L2E+Jmd0Ozwvc3Bhbj4gd3JvdGU6PGJyPjxibG9ja3F1 b3RlIGNsYXNzPSJnbWFpbF9xdW90ZSIgc3R5bGU9Im1hcmdpbjowIDAgMCAuOGV4O2JvcmRlci1s ZWZ0OjFweCAjY2NjIHNvbGlkO3BhZGRpbmctbGVmdDoxZXgiPgo8ZGl2IGRpcj0ibHRyIj48YnI+ PGRpdj5IZWxsbyBldmVyeWJvZHksPC9kaXY+PGRpdj48YnI+PC9kaXY+PGRpdj5JcyB0aGVyZSBz b21lIGhvd3RvIG9yIHNvbWUgcHJvY2VkdXJlIHRvIGNvbm5lY3QgU2FtYmE0IHRvIG9WaXJ0IDMu MSBhbmQgd2hhdCBjb21wb25lbnRzIGFyZSBuZWNlc3NhcnkgdG8gaW5zdGFsbCBhbmQgY29uZmln dXJlPywgoFJlbuksIGNhbiB5b3UgcG9zdCBhbGwgc3RlcHMgdG8gY29uZmlndXJlIGl0IHRvIGhh dmUgb1ZpcnQgd29ya2luZyB3aXRoIFNhbmJhIDQsIHBsZWFzZT88L2Rpdj4KCjxkaXY+PGJyPjwv ZGl2PjxkaXY+TWFueSB0aGFua3MgaW4gYXZhbmNlZCw8L2Rpdj48ZGl2Pjxicj48L2Rpdj48ZGl2 Pkp1YW5qby48L2Rpdj48L2Rpdj48ZGl2IGNsYXNzPSJnbWFpbF9leHRyYSI+PGJyPjxicj48ZGl2 IGNsYXNzPSJnbWFpbF9xdW90ZSI+T24gRnJpLCBBcHIgNSwgMjAxMyBhdCAxOjI4IFBNLCBFZHVh cmRvIFJhbW9zIDxzcGFuIGRpcj0ibHRyIj4mbHQ7PGEgaHJlZj0ibWFpbHRvOmVkdWFyZG9AZnJl ZWRvbWludGVyZmFjZS5vcmciIHRhcmdldD0iX2JsYW5rIj5lZHVhcmRvQGZyZWVkb21pbnRlcmZh Y2Uub3JnPC9hPiZndDs8L3NwYW4+IHdyb3RlOjxicj4KCjxibG9ja3F1b3RlIGNsYXNzPSJnbWFp bF9xdW90ZSIgc3R5bGU9Im1hcmdpbjowIDAgMCAuOGV4O2JvcmRlci1sZWZ0OjFweCAjY2NjIHNv bGlkO3BhZGRpbmctbGVmdDoxZXgiPkV2ZW4gdGhvdWdoIG92aXJ0LWVuZ2luZSBkaWQgbm90IHRy aWVkIGNvbm5lY3QgdG8gc2FtYmE0LCBJIHVzZWQgYW5vdGhlciB1c2VyLiBUaGUgaXNzdWUgaXMg dGhhdCBlbmdpbmUtbWFuYWdlLWRvbWFpbnMgc2FpZCBub3QgZm91bmQgUFRSIGVudHJ5LCBhbHRo b3VnaCBob3N0L25zbG9va3VwL2RpZyBjb21tYW5kIHNheSB0aGUgb3Bwb3NpdGUuIElzIHRoZXJl IGFueSBkZXRhaWw/PGRpdj4KCjxkaXY+PGJyPgo8YnI+Ck9uIDA0LzA0LzIwMTMgMDU6MzYgUE0s IEdpYW5sdWNhIENlY2NoaSB3cm90ZTo8YnI+CjxibG9ja3F1b3RlIGNsYXNzPSJnbWFpbF9xdW90 ZSIgc3R5bGU9Im1hcmdpbjowIDAgMCAuOGV4O2JvcmRlci1sZWZ0OjFweCAjY2NjIHNvbGlkO3Bh ZGRpbmctbGVmdDoxZXgiPgpPbiBUaHUsIEFwciA0LCAyMDEzIGF0IDg6NDggUE0sIENocmlzIE5v ZmZzaW5nZXIgd3JvdGU6PGJyPgo8YmxvY2txdW90ZSBjbGFzcz0iZ21haWxfcXVvdGUiIHN0eWxl PSJtYXJnaW46MCAwIDAgLjhleDtib3JkZXItbGVmdDoxcHggI2NjYyBzb2xpZDtwYWRkaW5nLWxl ZnQ6MWV4Ij4KSSBoYXZlIHN1Y2Nlc3NmdWxseSBnb3R0ZW4gc2FtYmE0IHRvIHdvcmsgd2l0aCBv dmlydCBidXQgSSBjb3VsZCBub3QgdXNlIHRoZSBBZG1pbmlzdHJhdG9yIHVzZXIuPGJyPgo8YnI+ CkkgaGFkIHRvIGNyZWF0ZSBhbm90aGVyIGFkbWluIHVzZXIgdG8uIEdldCBpdCB0byB3b3JrLjxi cj4KQ2hyaXMgTm9mZnNpbmdlcjxicj4KPC9ibG9ja3F1b3RlPgpJdCBpcyBpbnRlbmRlZCB0byBi ZSBzbyBhbmQgSSB0aGluayBpdCBpcyB0aGUgcmlnaHQgdGhpbmcgdG8gc2VwYXJhdGU8YnI+CnJl c3BlY3RpdmUgcm9sZXMuPGJyPgpJIGhhZCB0byBkbyB0aGUgc2FtZSB3aXRoIEZyZWVJUEEuPGJy Pgo8YnI+CkdpYW5sdWNhPGJyPgo8L2Jsb2NrcXVvdGU+Cjxicj4KX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fPHU+PC91Pl9fX19fX19fX19fX19fX19fPGJyPgpVc2VycyBtYWlsaW5nIGxp c3Q8YnI+CjxhIGhyZWY9Im1haWx0bzpVc2Vyc0BvdmlydC5vcmciIHRhcmdldD0iX2JsYW5rIj5V c2Vyc0BvdmlydC5vcmc8L2E+PGJyPgo8YSBocmVmPSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21h aWxtYW4vbGlzdGluZm8vdXNlcnMiIHRhcmdldD0iX2JsYW5rIj5odHRwOi8vbGlzdHMub3ZpcnQu b3JnLzx1PjwvdT5tYWlsbWFuL2xpc3RpbmZvL3VzZXJzPC9hPjxicj4KPC9kaXY+PC9kaXY+PC9i bG9ja3F1b3RlPjwvZGl2Pjxicj48L2Rpdj4KPGJyPl9fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fPGJyPgpVc2VycyBtYWlsaW5nIGxpc3Q8YnI+CjxhIGhyZWY9 Im1haWx0bzpVc2Vyc0BvdmlydC5vcmciPlVzZXJzQG92aXJ0Lm9yZzwvYT48YnI+CjxhIGhyZWY9 Imh0dHA6Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91c2VycyIgdGFyZ2V0PSJf YmxhbmsiPmh0dHA6Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91c2VyczwvYT48 YnI+Cjxicj48L2Jsb2NrcXVvdGU+PC9kaXY+PGJyPjxiciBjbGVhcj0iYWxsIj48ZGl2Pjxicj48 L2Rpdj4tLSA8YnI+Q2hyaXMgTm9mZnNpbmdlcjxicj4KPC9kaXY+Cg== --===============4526034840702038164==-- From rgolan at redhat.com Sun Apr 7 04:57:24 2013 Content-Type: multipart/mixed; boundary="===============5577570654328363670==" MIME-Version: 1.0 From: Roy Golan To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Sun, 07 Apr 2013 11:57:22 +0300 Message-ID: <516134F2.90404@redhat.com> In-Reply-To: 515DCA50.1050003@freedominterface.org --===============5577570654328363670== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable This is a multi-part message in MIME format. --------------000006020408030106050107 Content-Type: text/plain; charset=3DISO-8859-1; format=3Dflowed Content-Transfer-Encoding: 7bit On 04/04/2013 09:45 PM, Eduardo Ramos wrote: > Hi all! > > I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is = > ActiveDirectory complaint. But when I use engine-manage-domains, it = > returns me a strange message: > > [root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd = > -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator = > -interactive > Enter password: > > Error: Authentication Failed. Error in DNS configuration. Please = > verify the oVirt Engine host has a valid reverse DNS (PTR) record.. = > Problematic domain is: getconnection: driver class = > name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: = > url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering = > encrypted passord. = it looks like engine-config have problems opening a db connection. The = DNS reported error is a bug and is shown due to the connection error. you should get that same error if you'll use $ engine.config -a you have some problem connecting to the localhost postgres instance = using the password entered during setup probably. is your postgresql instance up the engine is able to connect to the db? = engine-config is getting the password from the same source where the = engine does. also, a PTR record is no longer needed since openjdk 7 due to a change = in the impl of the krb5 module. > secdomain=3Dencryptdbpasswordexecute: beginning execution of action = > action_get.fetching key=3Ddomainname ver=3Dgeneral > Failure while applying Kerberos configuration. Details: Authentication = > Failed. Error in DNS configuration. Please verify the oVirt Engine = > host has a valid reverse DNS (PTR) record. > > Using host command, I got the following results: > > [root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br > ovirt-dir.gsr.inpe.br has address 150.163.80.125 > > [root(a)ovirt-dir eduardo]# host 150.163.80.125 > 125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br. > > [root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br > _kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br. > > [root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br > samba4.gsr.inpe.br has address 150.163.73.109 > > [root(a)ovirt-dir eduardo]# host 150.163.73.109 > 109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br. > > As you can see, it is everything ok. No DNS problem. > > Someone have any idea? > > Thanks. > > > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users --------------000006020408030106050107 Content-Type: text/html; charset=3DISO-8859-1 Content-Transfer-Encoding: 7bit
On 04/04/2013 09:45 PM, Eduardo Ramos wrote:
Hi all!

I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is ActiveDirectory complaint. But when I use engine-manage-domains, it returns me a strange message:

[root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator -interactive
Enter password:

Error: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic domain is: getconnection: driver class name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering encrypted passord.


it looks like engine-config have problems opening a db connection. The DNS reported error is a bug and is shown due to the connection error.

you should get that same error if you'll use
 $ engine.config -a

you have some problem connecting to the localhost postgres instance using the password entered during setup probably.

is your postgresql instance up the engine is able to connect to the db? engine-config is getting the password from the same source where the engine does.

also, a PTR record is no longer needed since openjdk 7 due to a change in the impl of the krb5 module.


secdomain=3Dencryptdbpasswordexecute: beginning execution of action action_get.fetching key=3Ddomainname ver=3Dgeneral
Failure while applying Kerberos configuration. Details: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.

Using host command, I got the following results:

[root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br
ovirt-dir.gsr.inpe.br has address 150.163.80.125

[root(a)ovirt-dir eduardo]# host 150.163.80.125
125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br
_kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br
samba4.gsr.inpe.br has address 150.163.73.109

[root(a)ovirt-dir eduardo]# host 150.163.73.109
109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br.

As you can see, it is everything ok. No DNS problem.

Someone have any idea?

Thanks.


_______________________________________________
Users mailing list
Use=
rs(a)ovirt.org
http://lists.ovirt.org/mailman/listinfo/users

--------------000006020408030106050107-- --===============5577570654328363670== Content-Type: multipart/alternative MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.bin" VGhpcyBpcyBhIG11bHRpLXBhcnQgbWVzc2FnZSBpbiBNSU1FIGZvcm1hdC4KLS0tLS0tLS0tLS0t LS0wMDAwMDYwMjA0MDgwMzAxMDYwNTAxMDcKQ29udGVudC1UeXBlOiB0ZXh0L3BsYWluOyBjaGFy c2V0PUlTTy04ODU5LTE7IGZvcm1hdD1mbG93ZWQKQ29udGVudC1UcmFuc2Zlci1FbmNvZGluZzog N2JpdAoKT24gMDQvMDQvMjAxMyAwOTo0NSBQTSwgRWR1YXJkbyBSYW1vcyB3cm90ZToKPiBIaSBh bGwhCj4KPiBJJ20gdHJ5aW5nIHRvIGNvbm5lY3QgbXkgb3ZpcnQtZW5naW5lIGluIGEgc2FtYmE0 IHNlcnZlci4gU2FtYmE0IGlzIAo+IEFjdGl2ZURpcmVjdG9yeSBjb21wbGFpbnQuIEJ1dCB3aGVu IEkgdXNlIGVuZ2luZS1tYW5hZ2UtZG9tYWlucywgaXQgCj4gcmV0dXJucyBtZSBhIHN0cmFuZ2Ug bWVzc2FnZToKPgo+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgZW5naW5lLW1hbmFnZS1kb21h aW5zIC1hY3Rpb249YWRkIAo+IC1kb21haW49Z3NyLmlucGUuYnIgLXByb3ZpZGVyPWFjdGl2ZURp cmVjdG9yeSAtdXNlcj1BZG1pbmlzdHJhdG9yIAo+IC1pbnRlcmFjdGl2ZQo+IEVudGVyIHBhc3N3 b3JkOgo+Cj4gRXJyb3I6IEF1dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5TIGNvbmZp Z3VyYXRpb24uIFBsZWFzZSAKPiB2ZXJpZnkgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZh bGlkIHJldmVyc2UgRE5TIChQVFIpIHJlY29yZC4uIAo+IFByb2JsZW1hdGljIGRvbWFpbiBpczog Z2V0Y29ubmVjdGlvbjogZHJpdmVyIGNsYXNzIAo+IG5hbWU9b3JnLnBvc3RncmVzcWwueGEucGd4 YWRhdGFzb3VyY2VnZXRjb25uZWN0aW9uOiAKPiB1cmw9amRiYzpwb3N0Z3Jlc3FsOi8vbG9jYWxo b3N0OjU0MzIvZW5naW5lZ2V0Y29ubmVjdGlvbjogY29uc2lkZXJpbmcgCj4gZW5jcnlwdGVkIHBh c3NvcmQuIAoKCml0IGxvb2tzIGxpa2UgZW5naW5lLWNvbmZpZyBoYXZlIHByb2JsZW1zIG9wZW5p bmcgYSBkYiBjb25uZWN0aW9uLiBUaGUgCkROUyByZXBvcnRlZCBlcnJvciBpcyBhIGJ1ZyBhbmQg aXMgc2hvd24gZHVlIHRvIHRoZSBjb25uZWN0aW9uIGVycm9yLgoKeW91IHNob3VsZCBnZXQgdGhh dCBzYW1lIGVycm9yIGlmIHlvdSdsbCB1c2UKICAkIGVuZ2luZS5jb25maWcgLWEKCnlvdSBoYXZl IHNvbWUgcHJvYmxlbSBjb25uZWN0aW5nIHRvIHRoZSBsb2NhbGhvc3QgcG9zdGdyZXMgaW5zdGFu Y2UgCnVzaW5nIHRoZSBwYXNzd29yZCBlbnRlcmVkIGR1cmluZyBzZXR1cCBwcm9iYWJseS4KCmlz IHlvdXIgcG9zdGdyZXNxbCBpbnN0YW5jZSB1cCB0aGUgZW5naW5lIGlzIGFibGUgdG8gY29ubmVj dCB0byB0aGUgZGI/IAplbmdpbmUtY29uZmlnIGlzIGdldHRpbmcgdGhlIHBhc3N3b3JkIGZyb20g dGhlIHNhbWUgc291cmNlIHdoZXJlIHRoZSAKZW5naW5lIGRvZXMuCgphbHNvLCBhIFBUUiByZWNv cmQgaXMgbm8gbG9uZ2VyIG5lZWRlZCBzaW5jZSBvcGVuamRrIDcgZHVlIHRvIGEgY2hhbmdlIApp biB0aGUgaW1wbCBvZiB0aGUga3JiNSBtb2R1bGUuCgoKPiBzZWNkb21haW49ZW5jcnlwdGRicGFz c3dvcmRleGVjdXRlOiBiZWdpbm5pbmcgZXhlY3V0aW9uIG9mIGFjdGlvbiAKPiBhY3Rpb25fZ2V0 LmZldGNoaW5nIGtleT1kb21haW5uYW1lIHZlcj1nZW5lcmFsCj4gRmFpbHVyZSB3aGlsZSBhcHBs eWluZyBLZXJiZXJvcyBjb25maWd1cmF0aW9uLiBEZXRhaWxzOiBBdXRoZW50aWNhdGlvbiAKPiBG YWlsZWQuIEVycm9yIGluIEROUyBjb25maWd1cmF0aW9uLiBQbGVhc2UgdmVyaWZ5IHRoZSBvVmly dCBFbmdpbmUgCj4gaG9zdCBoYXMgYSB2YWxpZCByZXZlcnNlIEROUyAoUFRSKSByZWNvcmQuCj4K PiBVc2luZyBob3N0IGNvbW1hbmQsIEkgZ290IHRoZSBmb2xsb3dpbmcgcmVzdWx0czoKPgo+IFty b290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCBvdmlydC1kaXIuZ3NyLmlucGUuYnIKPiBvdmly dC1kaXIuZ3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My44MC4xMjUKPgo+IFtyb290QG92 aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAxNTAuMTYzLjgwLjEyNQo+IDEyNS44MC4xNjMuMTUwLmlu LWFkZHIuYXJwYSBkb21haW4gbmFtZSBwb2ludGVyIG92aXJ0LWRpci5nc3IuaW5wZS5ici4KPgo+ IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAtdCBzcnYgX2tlcmJlcm9zLl90Y3AuZ3Ny LmlucGUuYnIKPiBfa2VyYmVyb3MuX3RjcC5nc3IuaW5wZS5iciBoYXMgU1JWIHJlY29yZCAxIDAg ODggc2FtYmE0Lmdzci5pbnBlLmJyLgo+Cj4gW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0 IHNhbWJhNC5nc3IuaW5wZS5icgo+IHNhbWJhNC5nc3IuaW5wZS5iciBoYXMgYWRkcmVzcyAxNTAu MTYzLjczLjEwOQo+Cj4gW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMu MTA5Cj4gMTA5LjczLjE2My4xNTAuaW4tYWRkci5hcnBhIGRvbWFpbiBuYW1lIHBvaW50ZXIgc2Ft YmE0Lmdzci5pbnBlLmJyLgo+Cj4gQXMgeW91IGNhbiBzZWUsIGl0IGlzIGV2ZXJ5dGhpbmcgb2su IE5vIEROUyBwcm9ibGVtLgo+Cj4gU29tZW9uZSBoYXZlIGFueSBpZGVhPwo+Cj4gVGhhbmtzLgo+ Cj4KPiBfX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwo+IFVz ZXJzIG1haWxpbmcgbGlzdAo+IFVzZXJzQG92aXJ0Lm9yZwo+IGh0dHA6Ly9saXN0cy5vdmlydC5v cmcvbWFpbG1hbi9saXN0aW5mby91c2VycwoKCi0tLS0tLS0tLS0tLS0tMDAwMDA2MDIwNDA4MDMw MTA2MDUwMTA3CkNvbnRlbnQtVHlwZTogdGV4dC9odG1sOyBjaGFyc2V0PUlTTy04ODU5LTEKQ29u dGVudC1UcmFuc2Zlci1FbmNvZGluZzogN2JpdAoKPGh0bWw+CiAgPGhlYWQ+CiAgICA8bWV0YSBj b250ZW50PSJ0ZXh0L2h0bWw7IGNoYXJzZXQ9SVNPLTg4NTktMSIKICAgICAgaHR0cC1lcXVpdj0i Q29udGVudC1UeXBlIj4KICA8L2hlYWQ+CiAgPGJvZHkgYmdjb2xvcj0iI0ZGRkZGRiIgdGV4dD0i IzAwMDAwMCI+CiAgICA8ZGl2IGNsYXNzPSJtb3otY2l0ZS1wcmVmaXgiPk9uIDA0LzA0LzIwMTMg MDk6NDUgUE0sIEVkdWFyZG8gUmFtb3MKICAgICAgd3JvdGU6PGJyPgogICAgPC9kaXY+CiAgICA8 YmxvY2txdW90ZSBjaXRlPSJtaWQ6NTE1RENBNTAuMTA1MDAwM0BmcmVlZG9taW50ZXJmYWNlLm9y ZyIKICAgICAgdHlwZT0iY2l0ZSI+CiAgICAgIDxtZXRhIGh0dHAtZXF1aXY9ImNvbnRlbnQtdHlw ZSIgY29udGVudD0idGV4dC9odG1sOwogICAgICAgIGNoYXJzZXQ9SVNPLTg4NTktMSI+CiAgICAg IEhpIGFsbCE8YnI+CiAgICAgIDxicj4KICAgICAgSSdtIHRyeWluZyB0byBjb25uZWN0IG15IG92 aXJ0LWVuZ2luZSBpbiBhIHNhbWJhNCBzZXJ2ZXIuIFNhbWJhNAogICAgICBpcyBBY3RpdmVEaXJl Y3RvcnkgY29tcGxhaW50LiBCdXQgd2hlbiBJIHVzZQogICAgICBlbmdpbmUtbWFuYWdlLWRvbWFp bnMsIGl0IHJldHVybnMgbWUgYSBzdHJhbmdlIG1lc3NhZ2U6PGJyPgogICAgICA8YnI+CiAgICAg IDxzbWFsbD5bcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGVuZ2luZS1tYW5hZ2UtZG9tYWlucyAt YWN0aW9uPWFkZAogICAgICAgIC1kb21haW49Z3NyLmlucGUuYnIgLXByb3ZpZGVyPWFjdGl2ZURp cmVjdG9yeQogICAgICAgIC11c2VyPUFkbWluaXN0cmF0b3IgLWludGVyYWN0aXZlPGJyPgogICAg ICAgIEVudGVyIHBhc3N3b3JkOjxicj4KICAgICAgICA8YnI+CiAgICAgICAgRXJyb3I6IEF1dGhl bnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5TIGNvbmZpZ3VyYXRpb24uIFBsZWFzZQogICAg ICAgIHZlcmlmeSB0aGUgb1ZpcnQgRW5naW5lIGhvc3QgaGFzIGEgdmFsaWQgcmV2ZXJzZSBETlMg KFBUUikKICAgICAgICByZWNvcmQuLiBQcm9ibGVtYXRpYyBkb21haW4gaXM6IGdldGNvbm5lY3Rp b246IGRyaXZlciBjbGFzcwogICAgICAgIG5hbWU9b3JnLnBvc3RncmVzcWwueGEucGd4YWRhdGFz b3VyY2VnZXRjb25uZWN0aW9uOgogICAgICAgIHVybD1qZGJjOnBvc3RncmVzcWw6Ly9sb2NhbGhv c3Q6NTQzMi9lbmdpbmVnZXRjb25uZWN0aW9uOgogICAgICAgIGNvbnNpZGVyaW5nIGVuY3J5cHRl ZCBwYXNzb3JkLiA8L3NtYWxsPjwvYmxvY2txdW90ZT4KICAgIDxicj4KICAgIDxicj4KICAgIGl0 IGxvb2tzIGxpa2UgZW5naW5lLWNvbmZpZyBoYXZlIHByb2JsZW1zIG9wZW5pbmcgYSBkYiBjb25u ZWN0aW9uLgogICAgVGhlIEROUyByZXBvcnRlZCBlcnJvciBpcyBhIGJ1ZyBhbmQgaXMgc2hvd24g ZHVlIHRvIHRoZSBjb25uZWN0aW9uCiAgICBlcnJvci4gPGJyPgogICAgPGJyPgogICAgeW91IHNo b3VsZCBnZXQgdGhhdCBzYW1lIGVycm9yIGlmIHlvdSdsbCB1c2U8YnI+CiAgICAmbmJzcDskIGVu Z2luZS5jb25maWcgLWE8YnI+CiAgICA8YnI+CiAgICB5b3UgaGF2ZSBzb21lIHByb2JsZW0gY29u bmVjdGluZyB0byB0aGUgbG9jYWxob3N0IHBvc3RncmVzIGluc3RhbmNlCiAgICB1c2luZyB0aGUg cGFzc3dvcmQgZW50ZXJlZCBkdXJpbmcgc2V0dXAgcHJvYmFibHkuPGJyPgogICAgPGJyPgogICAg aXMgeW91ciBwb3N0Z3Jlc3FsIGluc3RhbmNlIHVwIHRoZSBlbmdpbmUgaXMgYWJsZSB0byBjb25u ZWN0IHRvIHRoZQogICAgZGI/IGVuZ2luZS1jb25maWcgaXMgZ2V0dGluZyB0aGUgcGFzc3dvcmQg ZnJvbSB0aGUgc2FtZSBzb3VyY2Ugd2hlcmUKICAgIHRoZSBlbmdpbmUgZG9lcy48YnI+CiAgICA8 YnI+CiAgICBhbHNvLCBhIFBUUiByZWNvcmQgaXMgbm8gbG9uZ2VyIG5lZWRlZCBzaW5jZSBvcGVu amRrIDcgZHVlIHRvIGEKICAgIGNoYW5nZSBpbiB0aGUgaW1wbCBvZiB0aGUga3JiNSBtb2R1bGUu PGJyPgogICAgPGJyPgogICAgPGJyPgogICAgPGJsb2NrcXVvdGUgY2l0ZT0ibWlkOjUxNURDQTUw LjEwNTAwMDNAZnJlZWRvbWludGVyZmFjZS5vcmciCiAgICAgIHR5cGU9ImNpdGUiPjxzbWFsbD5z ZWNkb21haW49ZW5jcnlwdGRicGFzc3dvcmRleGVjdXRlOiBiZWdpbm5pbmcKICAgICAgICBleGVj dXRpb24gb2YgYWN0aW9uIGFjdGlvbl9nZXQuZmV0Y2hpbmcga2V5PWRvbWFpbm5hbWUKICAgICAg ICB2ZXI9Z2VuZXJhbDxicj4KICAgICAgICBGYWlsdXJlIHdoaWxlIGFwcGx5aW5nIEtlcmJlcm9z IGNvbmZpZ3VyYXRpb24uIERldGFpbHM6CiAgICAgICAgQXV0aGVudGljYXRpb24gRmFpbGVkLiBF cnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlIHZlcmlmeQogICAgICAgIHRoZSBvVmly dCBFbmdpbmUgaG9zdCBoYXMgYSB2YWxpZCByZXZlcnNlIEROUyAoUFRSKSByZWNvcmQuPGJyPgog ICAgICAgIDxicj4KICAgICAgICA8YmlnPjxiaWc+PHNtYWxsPlVzaW5nIGhvc3QgY29tbWFuZCwg SSBnb3QgdGhlIGZvbGxvd2luZwogICAgICAgICAgICAgIHJlc3VsdHM6PGJyPgogICAgICAgICAg ICAgIDxzbWFsbD48YnI+CiAgICAgICAgICAgICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10j IGhvc3Qgb3ZpcnQtZGlyLmdzci5pbnBlLmJyPGJyPgogICAgICAgICAgICAgICAgb3ZpcnQtZGly Lmdzci5pbnBlLmJyIGhhcyBhZGRyZXNzIDE1MC4xNjMuODAuMTI1PGJyPgogICAgICAgICAgICAg ICAgPGJyPgogICAgICAgICAgICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1 MC4xNjMuODAuMTI1PGJyPgogICAgICAgICAgICAgICAgMTI1LjgwLjE2My4xNTAuaW4tYWRkci5h cnBhIGRvbWFpbiBuYW1lIHBvaW50ZXIKICAgICAgICAgICAgICAgIG92aXJ0LWRpci5nc3IuaW5w ZS5ici48YnI+CiAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICBbcm9vdEBvdmly dC1kaXIgZWR1YXJkb10jIGhvc3QgLXQgc3J2CiAgICAgICAgICAgICAgICBfa2VyYmVyb3MuX3Rj cC5nc3IuaW5wZS5icjxicj4KICAgICAgICAgICAgICAgIF9rZXJiZXJvcy5fdGNwLmdzci5pbnBl LmJyIGhhcyBTUlYgcmVjb3JkIDEgMCA4OAogICAgICAgICAgICAgICAgc2FtYmE0Lmdzci5pbnBl LmJyLjxicj4KICAgICAgICAgICAgICAgIDxicj4KICAgICAgICAgICAgICAgIFtyb290QG92aXJ0 LWRpciBlZHVhcmRvXSMgaG9zdCBzYW1iYTQuZ3NyLmlucGUuYnI8YnI+CiAgICAgICAgICAgICAg ICBzYW1iYTQuZ3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My43My4xMDk8YnI+CiAgICAg ICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10j IGhvc3QgMTUwLjE2My43My4xMDk8YnI+CiAgICAgICAgICAgICAgICAxMDkuNzMuMTYzLjE1MC5p bi1hZGRyLmFycGEgZG9tYWluIG5hbWUgcG9pbnRlcgogICAgICAgICAgICAgICAgc2FtYmE0Lmdz ci5pbnBlLmJyLjxicj4KICAgICAgICAgICAgICAgIDxicj4KICAgICAgICAgICAgICAgIDxiaWc+ QXMgeW91IGNhbiBzZWUsIGl0IGlzIGV2ZXJ5dGhpbmcgb2suIE5vIEROUwogICAgICAgICAgICAg ICAgICBwcm9ibGVtLjxicj4KICAgICAgICAgICAgICAgICAgPGJyPgogICAgICAgICAgICAgICAg ICBTb21lb25lIGhhdmUgYW55IGlkZWE/PGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAg ICAgICAgICAgICAgIFRoYW5rcy48YnI+CiAgICAgICAgICAgICAgICA8L2JpZz48L3NtYWxsPjwv c21hbGw+PC9iaWc+PC9iaWc+PC9zbWFsbD4gPGJyPgogICAgICA8ZmllbGRzZXQgY2xhc3M9Im1p bWVBdHRhY2htZW50SGVhZGVyIj48L2ZpZWxkc2V0PgogICAgICA8YnI+CiAgICAgIDxwcmUgd3Jh cD0iIj5fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpVc2Vy cyBtYWlsaW5nIGxpc3QKPGEgY2xhc3M9Im1vei10eHQtbGluay1hYmJyZXZpYXRlZCIgaHJlZj0i bWFpbHRvOlVzZXJzQG92aXJ0Lm9yZyI+VXNlcnNAb3ZpcnQub3JnPC9hPgo8YSBjbGFzcz0ibW96 LXR4dC1saW5rLWZyZWV0ZXh0IiBocmVmPSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4v bGlzdGluZm8vdXNlcnMiPmh0dHA6Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91 c2VyczwvYT4KPC9wcmU+CiAgICA8L2Jsb2NrcXVvdGU+CiAgICA8YnI+CiAgPC9ib2R5Pgo8L2h0 bWw+CgotLS0tLS0tLS0tLS0tLTAwMDAwNjAyMDQwODAzMDEwNjA1MDEwNy0tCg== --===============5577570654328363670==-- From eduardo at freedominterface.org Tue Apr 9 08:13:06 2013 Content-Type: multipart/mixed; boundary="===============4672475093162107666==" MIME-Version: 1.0 From: Eduardo Ramos To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Tue, 09 Apr 2013 09:12:57 -0300 Message-ID: <516405C9.9080701@freedominterface.org> In-Reply-To: 516134F2.90404@redhat.com --===============4672475093162107666== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable This is a multi-part message in MIME format. --------------040405030001090902060004 Content-Type: text/plain; charset=3DISO-8859-1; format=3Dflowed Content-Transfer-Encoding: 7bit Hi Roy! In fact "engine-config -a" works fine. It shows me the db config = content. By the way, that engine is running ok as well. I just can't get = engine connected to my samba4. Watching postgresql log file, whenever I use engine-manage-domains or = engine-config, the following messages are appended: LOG: connection received: host=3Dlocalhost port=3D33331 LOG: connection authorized: user=3Dengine database=3Dengine LOG: unexpected EOF on client connection But engine-config works fine. I'm using CentOS 6.3 and using yum there = are not update for postgresql or jdbc to update. The same with ovirt-engine. I'm really not understanding why it doesn't works. On 04/07/2013 05:57 AM, Roy Golan wrote: > On 04/04/2013 09:45 PM, Eduardo Ramos wrote: >> Hi all! >> >> I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is = >> ActiveDirectory complaint. But when I use engine-manage-domains, it = >> returns me a strange message: >> >> [root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd = >> -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator = >> -interactive >> Enter password: >> >> Error: Authentication Failed. Error in DNS configuration. Please = >> verify the oVirt Engine host has a valid reverse DNS (PTR) record.. = >> Problematic domain is: getconnection: driver class = >> name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: = >> url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering = >> encrypted passord. = > > > it looks like engine-config have problems opening a db connection. The = > DNS reported error is a bug and is shown due to the connection error. > > you should get that same error if you'll use > $ engine.config -a > > you have some problem connecting to the localhost postgres instance = > using the password entered during setup probably. > > is your postgresql instance up the engine is able to connect to the = > db? engine-config is getting the password from the same source where = > the engine does. > > also, a PTR record is no longer needed since openjdk 7 due to a change = > in the impl of the krb5 module. > > >> secdomain=3Dencryptdbpasswordexecute: beginning execution of action = >> action_get.fetching key=3Ddomainname ver=3Dgeneral >> Failure while applying Kerberos configuration. Details: = >> Authentication Failed. Error in DNS configuration. Please verify the = >> oVirt Engine host has a valid reverse DNS (PTR) record. >> >> Using host command, I got the following results: >> >> [root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br >> ovirt-dir.gsr.inpe.br has address 150.163.80.125 >> >> [root(a)ovirt-dir eduardo]# host 150.163.80.125 >> 125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br. >> >> [root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br >> _kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br. >> >> [root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br >> samba4.gsr.inpe.br has address 150.163.73.109 >> >> [root(a)ovirt-dir eduardo]# host 150.163.73.109 >> 109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br. >> >> As you can see, it is everything ok. No DNS problem. >> >> Someone have any idea? >> >> Thanks. >> >> >> _______________________________________________ >> Users mailing list >> Users(a)ovirt.org >> http://lists.ovirt.org/mailman/listinfo/users > > > > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users --------------040405030001090902060004 Content-Type: text/html; charset=3DISO-8859-1 Content-Transfer-Encoding: 7bit Hi Roy!

In fact "engine-config -a" works fine. It shows me the db config content. By the way, that engine is running ok as well. I just can't get engine connected to my samba4.

Watching postgresql log file, whenever I use engine-manage-domains or engine-config, the following messages are appended:

LOG:  connection received: host=3Dlocalhost port=3D33331
LOG:  connection authorized: user=3Dengine database=3Dengine
LOG:  unexpected EOF on client connection


But engine-config works fine. I'm using CentOS 6.3 and using yum there are not update for postgresql or jdbc to update. The same with ovirt-engine.

I'm really not understanding why it doesn't works.


On 04/07/2013 05:57 AM, Roy Golan wrote:
On 04/04/2013 09:45 PM, Eduardo Ramos wrote:
Hi all!

I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is ActiveDirectory complaint. But when I use engine-manage-domains, it returns me a strange message:

[root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator -interactive
Enter password:

Error: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic domain is: getconnection: driver class name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering encrypted passord.


it looks like engine-config have problems opening a db connection. The DNS reported error is a bug and is shown due to the connection error.

you should get that same error if you'll use
 $ engine.config -a

you have some problem connecting to the localhost postgres instance using the password entered during setup probably.

is your postgresql instance up the engine is able to connect to the db? engine-config is getting the password from the same source where the engine does.

also, a PTR record is no longer needed since openjdk 7 due to a change in the impl of the krb5 module.


secdomain=3Dencryptdbpasswordexecute: beginning execution of action action_get.fetching key=3Ddomainname ver=3Dgeneral
Failure while applying Kerberos configuration. Details: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.

Using host command, I got the following results:

[root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br
ovirt-dir.gsr.inpe.br has address 150.163.80.125

[root(a)ovirt-dir eduardo]# host 150.163.80.125
125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br
_kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br
samba4.gsr.inpe.br has address 150.163.73.109

[root(a)ovirt-dir eduardo]# host 150.163.73.109
109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br.

As you can see, it is everything ok. No DNS problem.

Someone have any idea?

Thanks.


_______________________________________________
Users mailing list
Users(a)ovirt.org
http://lists.ovirt.org/mailman/list=
info/users



_______________________________________________
Users mailing list
Use=
rs(a)ovirt.org
http://lists.ovirt.org/mailman/listinfo/users

--------------040405030001090902060004-- --===============4672475093162107666== Content-Type: multipart/alternative MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.bin" VGhpcyBpcyBhIG11bHRpLXBhcnQgbWVzc2FnZSBpbiBNSU1FIGZvcm1hdC4KLS0tLS0tLS0tLS0t LS0wNDA0MDUwMzAwMDEwOTA5MDIwNjAwMDQKQ29udGVudC1UeXBlOiB0ZXh0L3BsYWluOyBjaGFy c2V0PUlTTy04ODU5LTE7IGZvcm1hdD1mbG93ZWQKQ29udGVudC1UcmFuc2Zlci1FbmNvZGluZzog N2JpdAoKSGkgUm95IQoKSW4gZmFjdCAiZW5naW5lLWNvbmZpZyAtYSIgd29ya3MgZmluZS4gSXQg c2hvd3MgbWUgdGhlIGRiIGNvbmZpZyAKY29udGVudC4gQnkgdGhlIHdheSwgdGhhdCBlbmdpbmUg aXMgcnVubmluZyBvayBhcyB3ZWxsLiBJIGp1c3QgY2FuJ3QgZ2V0IAplbmdpbmUgY29ubmVjdGVk IHRvIG15IHNhbWJhNC4KCldhdGNoaW5nIHBvc3RncmVzcWwgbG9nIGZpbGUsIHdoZW5ldmVyIEkg dXNlIGVuZ2luZS1tYW5hZ2UtZG9tYWlucyBvciAKZW5naW5lLWNvbmZpZywgdGhlIGZvbGxvd2lu ZyBtZXNzYWdlcyBhcmUgYXBwZW5kZWQ6CgpMT0c6ICBjb25uZWN0aW9uIHJlY2VpdmVkOiBob3N0 PWxvY2FsaG9zdCBwb3J0PTMzMzMxCkxPRzogIGNvbm5lY3Rpb24gYXV0aG9yaXplZDogdXNlcj1l bmdpbmUgZGF0YWJhc2U9ZW5naW5lCkxPRzogIHVuZXhwZWN0ZWQgRU9GIG9uIGNsaWVudCBjb25u ZWN0aW9uCgpCdXQgZW5naW5lLWNvbmZpZyB3b3JrcyBmaW5lLiBJJ20gdXNpbmcgQ2VudE9TIDYu MyBhbmQgdXNpbmcgeXVtIHRoZXJlIAphcmUgbm90IHVwZGF0ZSBmb3IgcG9zdGdyZXNxbCBvciBq ZGJjIHRvIHVwZGF0ZS4gVGhlIHNhbWUgd2l0aCBvdmlydC1lbmdpbmUuCgpJJ20gcmVhbGx5IG5v dCB1bmRlcnN0YW5kaW5nIHdoeSBpdCBkb2Vzbid0IHdvcmtzLgoKCk9uIDA0LzA3LzIwMTMgMDU6 NTcgQU0sIFJveSBHb2xhbiB3cm90ZToKPiBPbiAwNC8wNC8yMDEzIDA5OjQ1IFBNLCBFZHVhcmRv IFJhbW9zIHdyb3RlOgo+PiBIaSBhbGwhCj4+Cj4+IEknbSB0cnlpbmcgdG8gY29ubmVjdCBteSBv dmlydC1lbmdpbmUgaW4gYSBzYW1iYTQgc2VydmVyLiBTYW1iYTQgaXMgCj4+IEFjdGl2ZURpcmVj dG9yeSBjb21wbGFpbnQuIEJ1dCB3aGVuIEkgdXNlIGVuZ2luZS1tYW5hZ2UtZG9tYWlucywgaXQg Cj4+IHJldHVybnMgbWUgYSBzdHJhbmdlIG1lc3NhZ2U6Cj4+Cj4+IFtyb290QG92aXJ0LWRpciBl ZHVhcmRvXSMgZW5naW5lLW1hbmFnZS1kb21haW5zIC1hY3Rpb249YWRkIAo+PiAtZG9tYWluPWdz ci5pbnBlLmJyIC1wcm92aWRlcj1hY3RpdmVEaXJlY3RvcnkgLXVzZXI9QWRtaW5pc3RyYXRvciAK Pj4gLWludGVyYWN0aXZlCj4+IEVudGVyIHBhc3N3b3JkOgo+Pgo+PiBFcnJvcjogQXV0aGVudGlj YXRpb24gRmFpbGVkLiBFcnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlIAo+PiB2ZXJp ZnkgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQVFIpIHJl Y29yZC4uIAo+PiBQcm9ibGVtYXRpYyBkb21haW4gaXM6IGdldGNvbm5lY3Rpb246IGRyaXZlciBj bGFzcyAKPj4gbmFtZT1vcmcucG9zdGdyZXNxbC54YS5wZ3hhZGF0YXNvdXJjZWdldGNvbm5lY3Rp b246IAo+PiB1cmw9amRiYzpwb3N0Z3Jlc3FsOi8vbG9jYWxob3N0OjU0MzIvZW5naW5lZ2V0Y29u bmVjdGlvbjogY29uc2lkZXJpbmcgCj4+IGVuY3J5cHRlZCBwYXNzb3JkLiAKPgo+Cj4gaXQgbG9v a3MgbGlrZSBlbmdpbmUtY29uZmlnIGhhdmUgcHJvYmxlbXMgb3BlbmluZyBhIGRiIGNvbm5lY3Rp b24uIFRoZSAKPiBETlMgcmVwb3J0ZWQgZXJyb3IgaXMgYSBidWcgYW5kIGlzIHNob3duIGR1ZSB0 byB0aGUgY29ubmVjdGlvbiBlcnJvci4KPgo+IHlvdSBzaG91bGQgZ2V0IHRoYXQgc2FtZSBlcnJv ciBpZiB5b3UnbGwgdXNlCj4gICQgZW5naW5lLmNvbmZpZyAtYQo+Cj4geW91IGhhdmUgc29tZSBw cm9ibGVtIGNvbm5lY3RpbmcgdG8gdGhlIGxvY2FsaG9zdCBwb3N0Z3JlcyBpbnN0YW5jZSAKPiB1 c2luZyB0aGUgcGFzc3dvcmQgZW50ZXJlZCBkdXJpbmcgc2V0dXAgcHJvYmFibHkuCj4KPiBpcyB5 b3VyIHBvc3RncmVzcWwgaW5zdGFuY2UgdXAgdGhlIGVuZ2luZSBpcyBhYmxlIHRvIGNvbm5lY3Qg dG8gdGhlIAo+IGRiPyBlbmdpbmUtY29uZmlnIGlzIGdldHRpbmcgdGhlIHBhc3N3b3JkIGZyb20g dGhlIHNhbWUgc291cmNlIHdoZXJlIAo+IHRoZSBlbmdpbmUgZG9lcy4KPgo+IGFsc28sIGEgUFRS IHJlY29yZCBpcyBubyBsb25nZXIgbmVlZGVkIHNpbmNlIG9wZW5qZGsgNyBkdWUgdG8gYSBjaGFu Z2UgCj4gaW4gdGhlIGltcGwgb2YgdGhlIGtyYjUgbW9kdWxlLgo+Cj4KPj4gc2VjZG9tYWluPWVu Y3J5cHRkYnBhc3N3b3JkZXhlY3V0ZTogYmVnaW5uaW5nIGV4ZWN1dGlvbiBvZiBhY3Rpb24gCj4+ IGFjdGlvbl9nZXQuZmV0Y2hpbmcga2V5PWRvbWFpbm5hbWUgdmVyPWdlbmVyYWwKPj4gRmFpbHVy ZSB3aGlsZSBhcHBseWluZyBLZXJiZXJvcyBjb25maWd1cmF0aW9uLiBEZXRhaWxzOiAKPj4gQXV0 aGVudGljYXRpb24gRmFpbGVkLiBFcnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlIHZl cmlmeSB0aGUgCj4+IG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQ VFIpIHJlY29yZC4KPj4KPj4gVXNpbmcgaG9zdCBjb21tYW5kLCBJIGdvdCB0aGUgZm9sbG93aW5n IHJlc3VsdHM6Cj4+Cj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCBvdmlydC1kaXIu Z3NyLmlucGUuYnIKPj4gb3ZpcnQtZGlyLmdzci5pbnBlLmJyIGhhcyBhZGRyZXNzIDE1MC4xNjMu ODAuMTI1Cj4+Cj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAxNTAuMTYzLjgwLjEy NQo+PiAxMjUuODAuMTYzLjE1MC5pbi1hZGRyLmFycGEgZG9tYWluIG5hbWUgcG9pbnRlciBvdmly dC1kaXIuZ3NyLmlucGUuYnIuCj4+Cj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAt dCBzcnYgX2tlcmJlcm9zLl90Y3AuZ3NyLmlucGUuYnIKPj4gX2tlcmJlcm9zLl90Y3AuZ3NyLmlu cGUuYnIgaGFzIFNSViByZWNvcmQgMSAwIDg4IHNhbWJhNC5nc3IuaW5wZS5ici4KPj4KPj4gW3Jv b3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IHNhbWJhNC5nc3IuaW5wZS5icgo+PiBzYW1iYTQu Z3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My43My4xMDkKPj4KPj4gW3Jvb3RAb3ZpcnQt ZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMuMTA5Cj4+IDEwOS43My4xNjMuMTUwLmluLWFk ZHIuYXJwYSBkb21haW4gbmFtZSBwb2ludGVyIHNhbWJhNC5nc3IuaW5wZS5ici4KPj4KPj4gQXMg eW91IGNhbiBzZWUsIGl0IGlzIGV2ZXJ5dGhpbmcgb2suIE5vIEROUyBwcm9ibGVtLgo+Pgo+PiBT b21lb25lIGhhdmUgYW55IGlkZWE/Cj4+Cj4+IFRoYW5rcy4KPj4KPj4KPj4gX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18KPj4gVXNlcnMgbWFpbGluZyBsaXN0 Cj4+IFVzZXJzQG92aXJ0Lm9yZwo+PiBodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlz dGluZm8vdXNlcnMKPgo+Cj4KPiBfX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fXwo+IFVzZXJzIG1haWxpbmcgbGlzdAo+IFVzZXJzQG92aXJ0Lm9yZwo+IGh0dHA6 Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91c2VycwoKCi0tLS0tLS0tLS0tLS0t MDQwNDA1MDMwMDAxMDkwOTAyMDYwMDA0CkNvbnRlbnQtVHlwZTogdGV4dC9odG1sOyBjaGFyc2V0 PUlTTy04ODU5LTEKQ29udGVudC1UcmFuc2Zlci1FbmNvZGluZzogN2JpdAoKPGh0bWw+CiAgPGhl YWQ+CiAgICA8bWV0YSBjb250ZW50PSJ0ZXh0L2h0bWw7IGNoYXJzZXQ9SVNPLTg4NTktMSIKICAg ICAgaHR0cC1lcXVpdj0iQ29udGVudC1UeXBlIj4KICA8L2hlYWQ+CiAgPGJvZHkgYmdjb2xvcj0i I0ZGRkZGRiIgdGV4dD0iIzAwMDAwMCI+CiAgICBIaSBSb3khPGJyPgogICAgPGJyPgogICAgSW4g ZmFjdCAiZW5naW5lLWNvbmZpZyAtYSIgd29ya3MgZmluZS4gSXQgc2hvd3MgbWUgdGhlIGRiIGNv bmZpZwogICAgY29udGVudC4gQnkgdGhlIHdheSwgdGhhdCBlbmdpbmUgaXMgcnVubmluZyBvayBh cyB3ZWxsLiBJIGp1c3QgY2FuJ3QKICAgIGdldCBlbmdpbmUgY29ubmVjdGVkIHRvIG15IHNhbWJh NC48YnI+CiAgICA8YnI+CiAgICBXYXRjaGluZyBwb3N0Z3Jlc3FsIGxvZyBmaWxlLCB3aGVuZXZl ciBJIHVzZSBlbmdpbmUtbWFuYWdlLWRvbWFpbnMKICAgIG9yIGVuZ2luZS1jb25maWcsIHRoZSBm b2xsb3dpbmcgbWVzc2FnZXMgYXJlIGFwcGVuZGVkOjxicj4KICAgIDxicj4KICAgIDxzbWFsbD5M T0c6Jm5ic3A7IGNvbm5lY3Rpb24gcmVjZWl2ZWQ6IGhvc3Q9bG9jYWxob3N0IHBvcnQ9MzMzMzE8 YnI+CiAgICAgIExPRzombmJzcDsgY29ubmVjdGlvbiBhdXRob3JpemVkOiB1c2VyPWVuZ2luZSBk YXRhYmFzZT1lbmdpbmU8YnI+CiAgICAgIExPRzombmJzcDsgdW5leHBlY3RlZCBFT0Ygb24gY2xp ZW50IGNvbm5lY3Rpb248L3NtYWxsPjxicj4KICAgIDxicj4KICAgIEJ1dCBlbmdpbmUtY29uZmln IHdvcmtzIGZpbmUuIEknbSB1c2luZyBDZW50T1MgNi4zIGFuZCB1c2luZyB5dW0KICAgIHRoZXJl IGFyZSBub3QgdXBkYXRlIGZvciBwb3N0Z3Jlc3FsIG9yIGpkYmMgdG8gdXBkYXRlLiBUaGUgc2Ft ZSB3aXRoCiAgICBvdmlydC1lbmdpbmUuPGJyPgogICAgPGJyPgogICAgSSdtIHJlYWxseSBub3Qg dW5kZXJzdGFuZGluZyB3aHkgaXQgZG9lc24ndCB3b3Jrcy48YnI+CiAgICA8YnI+CiAgICA8YnI+ CiAgICA8ZGl2IGNsYXNzPSJtb3otY2l0ZS1wcmVmaXgiPk9uIDA0LzA3LzIwMTMgMDU6NTcgQU0s IFJveSBHb2xhbgogICAgICB3cm90ZTo8YnI+CiAgICA8L2Rpdj4KICAgIDxibG9ja3F1b3RlIGNp dGU9Im1pZDo1MTYxMzRGMi45MDQwNEByZWRoYXQuY29tIiB0eXBlPSJjaXRlIj4KICAgICAgPG1l dGEgY29udGVudD0idGV4dC9odG1sOyBjaGFyc2V0PUlTTy04ODU5LTEiCiAgICAgICAgaHR0cC1l cXVpdj0iQ29udGVudC1UeXBlIj4KICAgICAgPGRpdiBjbGFzcz0ibW96LWNpdGUtcHJlZml4Ij5P biAwNC8wNC8yMDEzIDA5OjQ1IFBNLCBFZHVhcmRvIFJhbW9zCiAgICAgICAgd3JvdGU6PGJyPgog ICAgICA8L2Rpdj4KICAgICAgPGJsb2NrcXVvdGUgY2l0ZT0ibWlkOjUxNURDQTUwLjEwNTAwMDNA ZnJlZWRvbWludGVyZmFjZS5vcmciCiAgICAgICAgdHlwZT0iY2l0ZSI+CiAgICAgICAgPG1ldGEg aHR0cC1lcXVpdj0iY29udGVudC10eXBlIiBjb250ZW50PSJ0ZXh0L2h0bWw7CiAgICAgICAgICBj aGFyc2V0PUlTTy04ODU5LTEiPgogICAgICAgIEhpIGFsbCE8YnI+CiAgICAgICAgPGJyPgogICAg ICAgIEknbSB0cnlpbmcgdG8gY29ubmVjdCBteSBvdmlydC1lbmdpbmUgaW4gYSBzYW1iYTQgc2Vy dmVyLiBTYW1iYTQKICAgICAgICBpcyBBY3RpdmVEaXJlY3RvcnkgY29tcGxhaW50LiBCdXQgd2hl biBJIHVzZQogICAgICAgIGVuZ2luZS1tYW5hZ2UtZG9tYWlucywgaXQgcmV0dXJucyBtZSBhIHN0 cmFuZ2UgbWVzc2FnZTo8YnI+CiAgICAgICAgPGJyPgogICAgICAgIDxzbWFsbD5bcm9vdEBvdmly dC1kaXIgZWR1YXJkb10jIGVuZ2luZS1tYW5hZ2UtZG9tYWlucwogICAgICAgICAgLWFjdGlvbj1h ZGQgLWRvbWFpbj1nc3IuaW5wZS5iciAtcHJvdmlkZXI9YWN0aXZlRGlyZWN0b3J5CiAgICAgICAg ICAtdXNlcj1BZG1pbmlzdHJhdG9yIC1pbnRlcmFjdGl2ZTxicj4KICAgICAgICAgIEVudGVyIHBh c3N3b3JkOjxicj4KICAgICAgICAgIDxicj4KICAgICAgICAgIEVycm9yOiBBdXRoZW50aWNhdGlv biBGYWlsZWQuIEVycm9yIGluIEROUyBjb25maWd1cmF0aW9uLgogICAgICAgICAgUGxlYXNlIHZl cmlmeSB0aGUgb1ZpcnQgRW5naW5lIGhvc3QgaGFzIGEgdmFsaWQgcmV2ZXJzZSBETlMKICAgICAg ICAgIChQVFIpIHJlY29yZC4uIFByb2JsZW1hdGljIGRvbWFpbiBpczogZ2V0Y29ubmVjdGlvbjog ZHJpdmVyCiAgICAgICAgICBjbGFzcyBuYW1lPW9yZy5wb3N0Z3Jlc3FsLnhhLnBneGFkYXRhc291 cmNlZ2V0Y29ubmVjdGlvbjoKICAgICAgICAgIHVybD1qZGJjOnBvc3RncmVzcWw6Ly9sb2NhbGhv c3Q6NTQzMi9lbmdpbmVnZXRjb25uZWN0aW9uOgogICAgICAgICAgY29uc2lkZXJpbmcgZW5jcnlw dGVkIHBhc3NvcmQuIDwvc21hbGw+PC9ibG9ja3F1b3RlPgogICAgICA8YnI+CiAgICAgIDxicj4K ICAgICAgaXQgbG9va3MgbGlrZSBlbmdpbmUtY29uZmlnIGhhdmUgcHJvYmxlbXMgb3BlbmluZyBh IGRiIGNvbm5lY3Rpb24uCiAgICAgIFRoZSBETlMgcmVwb3J0ZWQgZXJyb3IgaXMgYSBidWcgYW5k IGlzIHNob3duIGR1ZSB0byB0aGUgY29ubmVjdGlvbgogICAgICBlcnJvci4gPGJyPgogICAgICA8 YnI+CiAgICAgIHlvdSBzaG91bGQgZ2V0IHRoYXQgc2FtZSBlcnJvciBpZiB5b3UnbGwgdXNlPGJy PgogICAgICAmbmJzcDskIGVuZ2luZS5jb25maWcgLWE8YnI+CiAgICAgIDxicj4KICAgICAgeW91 IGhhdmUgc29tZSBwcm9ibGVtIGNvbm5lY3RpbmcgdG8gdGhlIGxvY2FsaG9zdCBwb3N0Z3Jlcwog ICAgICBpbnN0YW5jZSB1c2luZyB0aGUgcGFzc3dvcmQgZW50ZXJlZCBkdXJpbmcgc2V0dXAgcHJv YmFibHkuPGJyPgogICAgICA8YnI+CiAgICAgIGlzIHlvdXIgcG9zdGdyZXNxbCBpbnN0YW5jZSB1 cCB0aGUgZW5naW5lIGlzIGFibGUgdG8gY29ubmVjdCB0bwogICAgICB0aGUgZGI/IGVuZ2luZS1j b25maWcgaXMgZ2V0dGluZyB0aGUgcGFzc3dvcmQgZnJvbSB0aGUgc2FtZSBzb3VyY2UKICAgICAg d2hlcmUgdGhlIGVuZ2luZSBkb2VzLjxicj4KICAgICAgPGJyPgogICAgICBhbHNvLCBhIFBUUiBy ZWNvcmQgaXMgbm8gbG9uZ2VyIG5lZWRlZCBzaW5jZSBvcGVuamRrIDcgZHVlIHRvIGEKICAgICAg Y2hhbmdlIGluIHRoZSBpbXBsIG9mIHRoZSBrcmI1IG1vZHVsZS48YnI+CiAgICAgIDxicj4KICAg ICAgPGJyPgogICAgICA8YmxvY2txdW90ZSBjaXRlPSJtaWQ6NTE1RENBNTAuMTA1MDAwM0BmcmVl ZG9taW50ZXJmYWNlLm9yZyIKICAgICAgICB0eXBlPSJjaXRlIj48c21hbGw+c2VjZG9tYWluPWVu Y3J5cHRkYnBhc3N3b3JkZXhlY3V0ZTogYmVnaW5uaW5nCiAgICAgICAgICBleGVjdXRpb24gb2Yg YWN0aW9uIGFjdGlvbl9nZXQuZmV0Y2hpbmcga2V5PWRvbWFpbm5hbWUKICAgICAgICAgIHZlcj1n ZW5lcmFsPGJyPgogICAgICAgICAgRmFpbHVyZSB3aGlsZSBhcHBseWluZyBLZXJiZXJvcyBjb25m aWd1cmF0aW9uLiBEZXRhaWxzOgogICAgICAgICAgQXV0aGVudGljYXRpb24gRmFpbGVkLiBFcnJv ciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlCiAgICAgICAgICB2ZXJpZnkgdGhlIG9WaXJ0 IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQVFIpCiAgICAgICAgICByZWNv cmQuPGJyPgogICAgICAgICAgPGJyPgogICAgICAgICAgPGJpZz48YmlnPjxzbWFsbD5Vc2luZyBo b3N0IGNvbW1hbmQsIEkgZ290IHRoZSBmb2xsb3dpbmcKICAgICAgICAgICAgICAgIHJlc3VsdHM6 PGJyPgogICAgICAgICAgICAgICAgPHNtYWxsPjxicj4KICAgICAgICAgICAgICAgICAgW3Jvb3RA b3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IG92aXJ0LWRpci5nc3IuaW5wZS5icjxicj4KICAgICAg ICAgICAgICAgICAgb3ZpcnQtZGlyLmdzci5pbnBlLmJyIGhhcyBhZGRyZXNzIDE1MC4xNjMuODAu MTI1PGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICAgIFtyb290QG92 aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAxNTAuMTYzLjgwLjEyNTxicj4KICAgICAgICAgICAgICAg ICAgMTI1LjgwLjE2My4xNTAuaW4tYWRkci5hcnBhIGRvbWFpbiBuYW1lIHBvaW50ZXIKICAgICAg ICAgICAgICAgICAgb3ZpcnQtZGlyLmdzci5pbnBlLmJyLjxicj4KICAgICAgICAgICAgICAgICAg PGJyPgogICAgICAgICAgICAgICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGhvc3QgLXQg c3J2CiAgICAgICAgICAgICAgICAgIF9rZXJiZXJvcy5fdGNwLmdzci5pbnBlLmJyPGJyPgogICAg ICAgICAgICAgICAgICBfa2VyYmVyb3MuX3RjcC5nc3IuaW5wZS5iciBoYXMgU1JWIHJlY29yZCAx IDAgODgKICAgICAgICAgICAgICAgICAgc2FtYmE0Lmdzci5pbnBlLmJyLjxicj4KICAgICAgICAg ICAgICAgICAgPGJyPgogICAgICAgICAgICAgICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10j IGhvc3Qgc2FtYmE0Lmdzci5pbnBlLmJyPGJyPgogICAgICAgICAgICAgICAgICBzYW1iYTQuZ3Ny LmlucGUuYnIgaGFzIGFkZHJlc3MgMTUwLjE2My43My4xMDk8YnI+CiAgICAgICAgICAgICAgICAg IDxicj4KICAgICAgICAgICAgICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1 MC4xNjMuNzMuMTA5PGJyPgogICAgICAgICAgICAgICAgICAxMDkuNzMuMTYzLjE1MC5pbi1hZGRy LmFycGEgZG9tYWluIG5hbWUgcG9pbnRlcgogICAgICAgICAgICAgICAgICBzYW1iYTQuZ3NyLmlu cGUuYnIuPGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICAgIDxiaWc+ QXMgeW91IGNhbiBzZWUsIGl0IGlzIGV2ZXJ5dGhpbmcgb2suIE5vIEROUwogICAgICAgICAgICAg ICAgICAgIHByb2JsZW0uPGJyPgogICAgICAgICAgICAgICAgICAgIDxicj4KICAgICAgICAgICAg ICAgICAgICBTb21lb25lIGhhdmUgYW55IGlkZWE/PGJyPgogICAgICAgICAgICAgICAgICAgIDxi cj4KICAgICAgICAgICAgICAgICAgICBUaGFua3MuPGJyPgogICAgICAgICAgICAgICAgICA8L2Jp Zz48L3NtYWxsPjwvc21hbGw+PC9iaWc+PC9iaWc+PC9zbWFsbD4gPGJyPgogICAgICAgIDxmaWVs ZHNldCBjbGFzcz0ibWltZUF0dGFjaG1lbnRIZWFkZXIiPjwvZmllbGRzZXQ+CiAgICAgICAgPGJy PgogICAgICAgIDxwcmUgd3JhcD0iIj5fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fXwpVc2VycyBtYWlsaW5nIGxpc3QKPGEgbW96LWRvLW5vdC1zZW5kPSJ0cnVl IiBjbGFzcz0ibW96LXR4dC1saW5rLWFiYnJldmlhdGVkIiBocmVmPSJtYWlsdG86VXNlcnNAb3Zp cnQub3JnIj5Vc2Vyc0BvdmlydC5vcmc8L2E+CjxhIG1vei1kby1ub3Qtc2VuZD0idHJ1ZSIgY2xh c3M9Im1vei10eHQtbGluay1mcmVldGV4dCIgaHJlZj0iaHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9t YWlsbWFuL2xpc3RpbmZvL3VzZXJzIj5odHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlz dGluZm8vdXNlcnM8L2E+CjwvcHJlPgogICAgICA8L2Jsb2NrcXVvdGU+CiAgICAgIDxicj4KICAg ICAgPGJyPgogICAgICA8ZmllbGRzZXQgY2xhc3M9Im1pbWVBdHRhY2htZW50SGVhZGVyIj48L2Zp ZWxkc2V0PgogICAgICA8YnI+CiAgICAgIDxwcmUgd3JhcD0iIj5fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fXwpVc2VycyBtYWlsaW5nIGxpc3QKPGEgY2xhc3M9 Im1vei10eHQtbGluay1hYmJyZXZpYXRlZCIgaHJlZj0ibWFpbHRvOlVzZXJzQG92aXJ0Lm9yZyI+ VXNlcnNAb3ZpcnQub3JnPC9hPgo8YSBjbGFzcz0ibW96LXR4dC1saW5rLWZyZWV0ZXh0IiBocmVm PSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnMiPmh0dHA6Ly9s aXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91c2VyczwvYT4KPC9wcmU+CiAgICA8L2Js b2NrcXVvdGU+CiAgICA8YnI+CiAgPC9ib2R5Pgo8L2h0bWw+CgotLS0tLS0tLS0tLS0tLTA0MDQw NTAzMDAwMTA5MDkwMjA2MDAwNC0tCg== --===============4672475093162107666==-- From jj197005 at gmail.com Tue Apr 16 11:17:05 2013 Content-Type: multipart/mixed; boundary="===============6489586438499041192==" MIME-Version: 1.0 From: Juan Jose To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Tue, 16 Apr 2013 17:17:04 +0200 Message-ID: In-Reply-To: 516405C9.9080701@freedominterface.org --===============6489586438499041192== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Hello everybody, Has Someone succefully connected ovirt engine to Samba4 to be able to authenticate user from this kind of server?, Eduardo, have you succeed in your attemp to connect engine to Samba4?, I would like to do the same and engine can authenticate other users. I would like to do this without Windows Active Directory. Many thanks in avanced, Juanjo. On Tue, Apr 9, 2013 at 2:12 PM, Eduardo Ramos wrote: > Hi Roy! > > In fact "engine-config -a" works fine. It shows me the db config content. > By the way, that engine is running ok as well. I just can't get engine > connected to my samba4. > > Watching postgresql log file, whenever I use engine-manage-domains or > engine-config, the following messages are appended: > > LOG: connection received: host=3Dlocalhost port=3D33331 > LOG: connection authorized: user=3Dengine database=3Dengine > LOG: unexpected EOF on client connection > > But engine-config works fine. I'm using CentOS 6.3 and using yum there are > not update for postgresql or jdbc to update. The same with ovirt-engine. > > I'm really not understanding why it doesn't works. > > > > On 04/07/2013 05:57 AM, Roy Golan wrote: > > On 04/04/2013 09:45 PM, Eduardo Ramos wrote: > > Hi all! > > I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is > ActiveDirectory complaint. But when I use engine-manage-domains, it retur= ns > me a strange message: > > [root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd -domain= =3D > gsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator -interactive > Enter password: > > Error: Authentication Failed. Error in DNS configuration. Please verify > the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic > domain is: getconnection: driver class > name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: > url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering > encrypted passord. > > > > it looks like engine-config have problems opening a db connection. The DNS > reported error is a bug and is shown due to the connection error. > > you should get that same error if you'll use > $ engine.config -a > > you have some problem connecting to the localhost postgres instance using > the password entered during setup probably. > > is your postgresql instance up the engine is able to connect to the db? > engine-config is getting the password from the same source where the engi= ne > does. > > also, a PTR record is no longer needed since openjdk 7 due to a change in > the impl of the krb5 module. > > > secdomain=3Dencryptdbpasswordexecute: beginning execution of action > action_get.fetching key=3Ddomainname ver=3Dgeneral > Failure while applying Kerberos configuration. Details: Authentication > Failed. Error in DNS configuration. Please verify the oVirt Engine host h= as > a valid reverse DNS (PTR) record. > > Using host command, I got the following results: > > [root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br > ovirt-dir.gsr.inpe.br has address 150.163.80.125 > > [root(a)ovirt-dir eduardo]# host 150.163.80.125 > 125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br. > > [root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br > _kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br. > > [root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br > samba4.gsr.inpe.br has address 150.163.73.109 > > [root(a)ovirt-dir eduardo]# host 150.163.73.109 > 109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br. > > As you can see, it is everything ok. No DNS problem. > > Someone have any idea? > > Thanks. > > > _______________________________________________ > Users mailing listUsers(a)ovirt.orghttp://lists.ovirt.org/mailman/listinf= o/users > > > > > _______________________________________________ > Users mailing listUsers(a)ovirt.orghttp://lists.ovirt.org/mailman/listinf= o/users > > > > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users > > --===============6489586438499041192== Content-Type: text/html MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.html" PGRpdiBkaXI9Imx0ciI+PGRpdj5IZWxsbyBldmVyeWJvZHksPGJyPjwvZGl2PjxkaXY+PGJyPjwv ZGl2PjxkaXY+SGFzIFNvbWVvbmUgc3VjY2VmdWxseSBjb25uZWN0ZWQgb3ZpcnQgZW5naW5lIHRv IFNhbWJhNCB0byBiZSBhYmxlIHRvIGF1dGhlbnRpY2F0ZSB1c2VyIGZyb20gdGhpcyBraW5kIG9m IHNlcnZlcj8sIEVkdWFyZG8sIGhhdmUgeW91IHN1Y2NlZWQgaW4geW91ciBhdHRlbXAgdG8gY29u bmVjdCBlbmdpbmUgdG8gU2FtYmE0PywgSSB3b3VsZCBsaWtlIHRvIGRvIHRoZSBzYW1lIGFuZCBl bmdpbmUgY2FuIGF1dGhlbnRpY2F0ZSBvdGhlciB1c2Vycy4gSSB3b3VsZCBsaWtlIHRvIGRvIHRo aXMgd2l0aG91dCBXaW5kb3dzIEFjdGl2ZSBEaXJlY3RvcnkuPC9kaXY+CjxkaXY+PGJyPjwvZGl2 PjxkaXY+TWFueSB0aGFua3MgaW4gYXZhbmNlZCw8L2Rpdj48ZGl2Pjxicj48L2Rpdj48ZGl2Pkp1 YW5qby48L2Rpdj48ZGl2Pjxicj48L2Rpdj48L2Rpdj48ZGl2IGNsYXNzPSJnbWFpbF9leHRyYSI+ PGJyPjxicj48ZGl2IGNsYXNzPSJnbWFpbF9xdW90ZSI+T24gVHVlLCBBcHIgOSwgMjAxMyBhdCAy OjEyIFBNLCBFZHVhcmRvIFJhbW9zIDxzcGFuIGRpcj0ibHRyIj4mbHQ7PGEgaHJlZj0ibWFpbHRv OmVkdWFyZG9AZnJlZWRvbWludGVyZmFjZS5vcmciIHRhcmdldD0iX2JsYW5rIj5lZHVhcmRvQGZy ZWVkb21pbnRlcmZhY2Uub3JnPC9hPiZndDs8L3NwYW4+IHdyb3RlOjxicj4KPGJsb2NrcXVvdGUg Y2xhc3M9ImdtYWlsX3F1b3RlIiBzdHlsZT0ibWFyZ2luOjAgMCAwIC44ZXg7Ym9yZGVyLWxlZnQ6 MXB4ICNjY2Mgc29saWQ7cGFkZGluZy1sZWZ0OjFleCI+CiAgCiAgICAKICAKICA8ZGl2IGJnY29s b3I9IiNGRkZGRkYiIHRleHQ9IiMwMDAwMDAiPgogICAgSGkgUm95ITxicj4KICAgIDxicj4KICAg IEluIGZhY3QgJnF1b3Q7ZW5naW5lLWNvbmZpZyAtYSZxdW90OyB3b3JrcyBmaW5lLiBJdCBzaG93 cyBtZSB0aGUgZGIgY29uZmlnCiAgICBjb250ZW50LiBCeSB0aGUgd2F5LCB0aGF0IGVuZ2luZSBp cyBydW5uaW5nIG9rIGFzIHdlbGwuIEkganVzdCBjYW4mIzM5O3QKICAgIGdldCBlbmdpbmUgY29u bmVjdGVkIHRvIG15IHNhbWJhNC48YnI+CiAgICA8YnI+CiAgICBXYXRjaGluZyBwb3N0Z3Jlc3Fs IGxvZyBmaWxlLCB3aGVuZXZlciBJIHVzZSBlbmdpbmUtbWFuYWdlLWRvbWFpbnMKICAgIG9yIGVu Z2luZS1jb25maWcsIHRoZSBmb2xsb3dpbmcgbWVzc2FnZXMgYXJlIGFwcGVuZGVkOjxicj4KICAg IDxicj4KICAgIDxzbWFsbD5MT0c6oCBjb25uZWN0aW9uIHJlY2VpdmVkOiBob3N0PWxvY2FsaG9z dCBwb3J0PTMzMzMxPGJyPgogICAgICBMT0c6oCBjb25uZWN0aW9uIGF1dGhvcml6ZWQ6IHVzZXI9 ZW5naW5lIGRhdGFiYXNlPWVuZ2luZTxicj4KICAgICAgTE9HOqAgdW5leHBlY3RlZCBFT0Ygb24g Y2xpZW50IGNvbm5lY3Rpb248L3NtYWxsPjxicj4KICAgIDxicj4KICAgIEJ1dCBlbmdpbmUtY29u ZmlnIHdvcmtzIGZpbmUuIEkmIzM5O20gdXNpbmcgQ2VudE9TIDYuMyBhbmQgdXNpbmcgeXVtCiAg ICB0aGVyZSBhcmUgbm90IHVwZGF0ZSBmb3IgcG9zdGdyZXNxbCBvciBqZGJjIHRvIHVwZGF0ZS4g VGhlIHNhbWUgd2l0aAogICAgb3ZpcnQtZW5naW5lLjxicj4KICAgIDxicj4KICAgIEkmIzM5O20g cmVhbGx5IG5vdCB1bmRlcnN0YW5kaW5nIHdoeSBpdCBkb2VzbiYjMzk7dCB3b3Jrcy48ZGl2Pjxk aXYgY2xhc3M9Img1Ij48YnI+CiAgICA8YnI+CiAgICA8YnI+CiAgICA8ZGl2Pk9uIDA0LzA3LzIw MTMgMDU6NTcgQU0sIFJveSBHb2xhbgogICAgICB3cm90ZTo8YnI+CiAgICA8L2Rpdj4KICAgIDxi bG9ja3F1b3RlIHR5cGU9ImNpdGUiPgogICAgICAKICAgICAgPGRpdj5PbiAwNC8wNC8yMDEzIDA5 OjQ1IFBNLCBFZHVhcmRvIFJhbW9zCiAgICAgICAgd3JvdGU6PGJyPgogICAgICA8L2Rpdj4KICAg ICAgPGJsb2NrcXVvdGUgdHlwZT0iY2l0ZSI+CiAgICAgICAgCiAgICAgICAgSGkgYWxsITxicj4K ICAgICAgICA8YnI+CiAgICAgICAgSSYjMzk7bSB0cnlpbmcgdG8gY29ubmVjdCBteSBvdmlydC1l bmdpbmUgaW4gYSBzYW1iYTQgc2VydmVyLiBTYW1iYTQKICAgICAgICBpcyBBY3RpdmVEaXJlY3Rv cnkgY29tcGxhaW50LiBCdXQgd2hlbiBJIHVzZQogICAgICAgIGVuZ2luZS1tYW5hZ2UtZG9tYWlu cywgaXQgcmV0dXJucyBtZSBhIHN0cmFuZ2UgbWVzc2FnZTo8YnI+CiAgICAgICAgPGJyPgogICAg ICAgIDxzbWFsbD5bcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGVuZ2luZS1tYW5hZ2UtZG9tYWlu cwogICAgICAgICAgLWFjdGlvbj1hZGQgLWRvbWFpbj08YSBocmVmPSJodHRwOi8vZ3NyLmlucGUu YnIiIHRhcmdldD0iX2JsYW5rIj5nc3IuaW5wZS5icjwvYT4gLXByb3ZpZGVyPWFjdGl2ZURpcmVj dG9yeQogICAgICAgICAgLXVzZXI9QWRtaW5pc3RyYXRvciAtaW50ZXJhY3RpdmU8YnI+CiAgICAg ICAgICBFbnRlciBwYXNzd29yZDo8YnI+CiAgICAgICAgICA8YnI+CiAgICAgICAgICBFcnJvcjog QXV0aGVudGljYXRpb24gRmFpbGVkLiBFcnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4KICAgICAg ICAgIFBsZWFzZSB2ZXJpZnkgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVy c2UgRE5TCiAgICAgICAgICAoUFRSKSByZWNvcmQuLiBQcm9ibGVtYXRpYyBkb21haW4gaXM6IGdl dGNvbm5lY3Rpb246IGRyaXZlcgogICAgICAgICAgY2xhc3MgbmFtZT1vcmcucG9zdGdyZXNxbC54 YS5wZ3hhZGF0YXNvdXJjZWdldGNvbm5lY3Rpb246CiAgICAgICAgICB1cmw9amRiYzpwb3N0Z3Jl c3FsOi8vbG9jYWxob3N0OjU0MzIvZW5naW5lZ2V0Y29ubmVjdGlvbjoKICAgICAgICAgIGNvbnNp ZGVyaW5nIGVuY3J5cHRlZCBwYXNzb3JkLiA8L3NtYWxsPjwvYmxvY2txdW90ZT4KICAgICAgPGJy PgogICAgICA8YnI+CiAgICAgIGl0IGxvb2tzIGxpa2UgZW5naW5lLWNvbmZpZyBoYXZlIHByb2Js ZW1zIG9wZW5pbmcgYSBkYiBjb25uZWN0aW9uLgogICAgICBUaGUgRE5TIHJlcG9ydGVkIGVycm9y IGlzIGEgYnVnIGFuZCBpcyBzaG93biBkdWUgdG8gdGhlIGNvbm5lY3Rpb24KICAgICAgZXJyb3Iu IDxicj4KICAgICAgPGJyPgogICAgICB5b3Ugc2hvdWxkIGdldCB0aGF0IHNhbWUgZXJyb3IgaWYg eW91JiMzOTtsbCB1c2U8YnI+CiAgICAgIKAkIGVuZ2luZS5jb25maWcgLWE8YnI+CiAgICAgIDxi cj4KICAgICAgeW91IGhhdmUgc29tZSBwcm9ibGVtIGNvbm5lY3RpbmcgdG8gdGhlIGxvY2FsaG9z dCBwb3N0Z3JlcwogICAgICBpbnN0YW5jZSB1c2luZyB0aGUgcGFzc3dvcmQgZW50ZXJlZCBkdXJp bmcgc2V0dXAgcHJvYmFibHkuPGJyPgogICAgICA8YnI+CiAgICAgIGlzIHlvdXIgcG9zdGdyZXNx bCBpbnN0YW5jZSB1cCB0aGUgZW5naW5lIGlzIGFibGUgdG8gY29ubmVjdCB0bwogICAgICB0aGUg ZGI/IGVuZ2luZS1jb25maWcgaXMgZ2V0dGluZyB0aGUgcGFzc3dvcmQgZnJvbSB0aGUgc2FtZSBz b3VyY2UKICAgICAgd2hlcmUgdGhlIGVuZ2luZSBkb2VzLjxicj4KICAgICAgPGJyPgogICAgICBh bHNvLCBhIFBUUiByZWNvcmQgaXMgbm8gbG9uZ2VyIG5lZWRlZCBzaW5jZSBvcGVuamRrIDcgZHVl IHRvIGEKICAgICAgY2hhbmdlIGluIHRoZSBpbXBsIG9mIHRoZSBrcmI1IG1vZHVsZS48YnI+CiAg ICAgIDxicj4KICAgICAgPGJyPgogICAgICA8YmxvY2txdW90ZSB0eXBlPSJjaXRlIj48c21hbGw+ c2VjZG9tYWluPWVuY3J5cHRkYnBhc3N3b3JkZXhlY3V0ZTogYmVnaW5uaW5nCiAgICAgICAgICBl eGVjdXRpb24gb2YgYWN0aW9uIGFjdGlvbl9nZXQuZmV0Y2hpbmcga2V5PWRvbWFpbm5hbWUKICAg ICAgICAgIHZlcj1nZW5lcmFsPGJyPgogICAgICAgICAgRmFpbHVyZSB3aGlsZSBhcHBseWluZyBL ZXJiZXJvcyBjb25maWd1cmF0aW9uLiBEZXRhaWxzOgogICAgICAgICAgQXV0aGVudGljYXRpb24g RmFpbGVkLiBFcnJvciBpbiBETlMgY29uZmlndXJhdGlvbi4gUGxlYXNlCiAgICAgICAgICB2ZXJp ZnkgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQVFIpCiAg ICAgICAgICByZWNvcmQuPGJyPgogICAgICAgICAgPGJyPgogICAgICAgICAgPGJpZz48YmlnPjxz bWFsbD5Vc2luZyBob3N0IGNvbW1hbmQsIEkgZ290IHRoZSBmb2xsb3dpbmcKICAgICAgICAgICAg ICAgIHJlc3VsdHM6PGJyPgogICAgICAgICAgICAgICAgPHNtYWxsPjxicj4KICAgICAgICAgICAg ICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDxhIGhyZWY9Imh0dHA6Ly9vdmly dC1kaXIuZ3NyLmlucGUuYnIiIHRhcmdldD0iX2JsYW5rIj5vdmlydC1kaXIuZ3NyLmlucGUuYnI8 L2E+PGJyPgogICAgICAgICAgICAgICAgICA8YSBocmVmPSJodHRwOi8vb3ZpcnQtZGlyLmdzci5p bnBlLmJyIiB0YXJnZXQ9Il9ibGFuayI+b3ZpcnQtZGlyLmdzci5pbnBlLmJyPC9hPiBoYXMgYWRk cmVzcyA8YSBocmVmPSJ0ZWw6MTUwLjE2My44MC4xMjUiIHZhbHVlPSIrMTUwMTYzODAxMjUiIHRh cmdldD0iX2JsYW5rIj4xNTAuMTYzLjgwLjEyNTwvYT48YnI+CiAgICAgICAgICAgICAgICAgIDxi cj4KICAgICAgICAgICAgICAgICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDxhIGhy ZWY9InRlbDoxNTAuMTYzLjgwLjEyNSIgdmFsdWU9IisxNTAxNjM4MDEyNSIgdGFyZ2V0PSJfYmxh bmsiPjE1MC4xNjMuODAuMTI1PC9hPjxicj4KICAgICAgICAgICAgICAgICAgMTI1LjgwLjE2My4x NTAuaW4tYWRkci5hcnBhIGRvbWFpbiBuYW1lIHBvaW50ZXIKICAgICAgICAgICAgICAgICAgPGEg aHJlZj0iaHR0cDovL292aXJ0LWRpci5nc3IuaW5wZS5iciIgdGFyZ2V0PSJfYmxhbmsiPm92aXJ0 LWRpci5nc3IuaW5wZS5icjwvYT4uPGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAg ICAgICAgICAgIFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAtdCBzcnYKICAgICAgICAg ICAgICAgICAgX2tlcmJlcm9zLl88YSBocmVmPSJodHRwOi8vdGNwLmdzci5pbnBlLmJyIiB0YXJn ZXQ9Il9ibGFuayI+dGNwLmdzci5pbnBlLmJyPC9hPjxicj4KICAgICAgICAgICAgICAgICAgX2tl cmJlcm9zLl88YSBocmVmPSJodHRwOi8vdGNwLmdzci5pbnBlLmJyIiB0YXJnZXQ9Il9ibGFuayI+ dGNwLmdzci5pbnBlLmJyPC9hPiBoYXMgU1JWIHJlY29yZCAxIDAgODgKICAgICAgICAgICAgICAg ICAgPGEgaHJlZj0iaHR0cDovL3NhbWJhNC5nc3IuaW5wZS5iciIgdGFyZ2V0PSJfYmxhbmsiPnNh bWJhNC5nc3IuaW5wZS5icjwvYT4uPGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAg ICAgICAgICAgIFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCA8YSBocmVmPSJodHRwOi8v c2FtYmE0Lmdzci5pbnBlLmJyIiB0YXJnZXQ9Il9ibGFuayI+c2FtYmE0Lmdzci5pbnBlLmJyPC9h Pjxicj4KICAgICAgICAgICAgICAgICAgPGEgaHJlZj0iaHR0cDovL3NhbWJhNC5nc3IuaW5wZS5i ciIgdGFyZ2V0PSJfYmxhbmsiPnNhbWJhNC5nc3IuaW5wZS5icjwvYT4gaGFzIGFkZHJlc3MgPGEg aHJlZj0idGVsOjE1MC4xNjMuNzMuMTA5IiB2YWx1ZT0iKzE1MDE2MzczMTA5IiB0YXJnZXQ9Il9i bGFuayI+MTUwLjE2My43My4xMDk8L2E+PGJyPgogICAgICAgICAgICAgICAgICA8YnI+CiAgICAg ICAgICAgICAgICAgIFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCA8YSBocmVmPSJ0ZWw6 MTUwLjE2My43My4xMDkiIHZhbHVlPSIrMTUwMTYzNzMxMDkiIHRhcmdldD0iX2JsYW5rIj4xNTAu MTYzLjczLjEwOTwvYT48YnI+CiAgICAgICAgICAgICAgICAgIDEwOS43My4xNjMuMTUwLmluLWFk ZHIuYXJwYSBkb21haW4gbmFtZSBwb2ludGVyCiAgICAgICAgICAgICAgICAgIDxhIGhyZWY9Imh0 dHA6Ly9zYW1iYTQuZ3NyLmlucGUuYnIiIHRhcmdldD0iX2JsYW5rIj5zYW1iYTQuZ3NyLmlucGUu YnI8L2E+Ljxicj4KICAgICAgICAgICAgICAgICAgPGJyPgogICAgICAgICAgICAgICAgICA8Ymln PkFzIHlvdSBjYW4gc2VlLCBpdCBpcyBldmVyeXRoaW5nIG9rLiBObyBETlMKICAgICAgICAgICAg ICAgICAgICBwcm9ibGVtLjxicj4KICAgICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAg ICAgICAgICAgU29tZW9uZSBoYXZlIGFueSBpZGVhPzxicj4KICAgICAgICAgICAgICAgICAgICA8 YnI+CiAgICAgICAgICAgICAgICAgICAgVGhhbmtzLjxicj4KICAgICAgICAgICAgICAgICAgPC9i aWc+PC9zbWFsbD48L3NtYWxsPjwvYmlnPjwvYmlnPjwvc21hbGw+IDxicj4KICAgICAgICA8Zmll bGRzZXQ+PC9maWVsZHNldD4KICAgICAgICA8YnI+CiAgICAgICAgPHByZT5fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpVc2VycyBtYWlsaW5nIGxpc3QKPGEg aHJlZj0ibWFpbHRvOlVzZXJzQG92aXJ0Lm9yZyIgdGFyZ2V0PSJfYmxhbmsiPlVzZXJzQG92aXJ0 Lm9yZzwvYT4KPGEgaHJlZj0iaHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9tYWlsbWFuL2xpc3RpbmZv L3VzZXJzIiB0YXJnZXQ9Il9ibGFuayI+aHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9tYWlsbWFuL2xp c3RpbmZvL3VzZXJzPC9hPgo8L3ByZT4KICAgICAgPC9ibG9ja3F1b3RlPgogICAgICA8YnI+CiAg ICAgIDxicj4KICAgICAgPGZpZWxkc2V0PjwvZmllbGRzZXQ+CiAgICAgIDxicj4KICAgICAgPHBy ZT5fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fXwpVc2VycyBt YWlsaW5nIGxpc3QKPGEgaHJlZj0ibWFpbHRvOlVzZXJzQG92aXJ0Lm9yZyIgdGFyZ2V0PSJfYmxh bmsiPlVzZXJzQG92aXJ0Lm9yZzwvYT4KPGEgaHJlZj0iaHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9t YWlsbWFuL2xpc3RpbmZvL3VzZXJzIiB0YXJnZXQ9Il9ibGFuayI+aHR0cDovL2xpc3RzLm92aXJ0 Lm9yZy9tYWlsbWFuL2xpc3RpbmZvL3VzZXJzPC9hPgo8L3ByZT4KICAgIDwvYmxvY2txdW90ZT4K ICAgIDxicj4KICA8L2Rpdj48L2Rpdj48L2Rpdj4KCjxicj5fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX19fX19fXzxicj4KVXNlcnMgbWFpbGluZyBsaXN0PGJyPgo8YSBo cmVmPSJtYWlsdG86VXNlcnNAb3ZpcnQub3JnIj5Vc2Vyc0BvdmlydC5vcmc8L2E+PGJyPgo8YSBo cmVmPSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnMiIHRhcmdl dD0iX2JsYW5rIj5odHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnM8 L2E+PGJyPgo8YnI+PC9ibG9ja3F1b3RlPjwvZGl2Pjxicj48L2Rpdj4K --===============6489586438499041192==-- From rgolan at redhat.com Wed Apr 17 06:47:37 2013 Content-Type: multipart/mixed; boundary="===============5097512098328260186==" MIME-Version: 1.0 From: Roy Golan To: users at ovirt.org Subject: Re: [Users] DNS reverse configuration Date: Wed, 17 Apr 2013 13:47:35 +0300 Message-ID: <516E7DC7.8010807@redhat.com> In-Reply-To: 516405C9.9080701@freedominterface.org --===============5097512098328260186== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable This is a multi-part message in MIME format. --------------030706080205060303080104 Content-Type: text/plain; charset=3DISO-8859-1; format=3Dflowed Content-Transfer-Encoding: 7bit On 04/09/2013 03:12 PM, Eduardo Ramos wrote: > Hi Roy! > > In fact "engine-config -a" works fine. It shows me the db config = > content. By the way, that engine is running ok as well. I just can't = > get engine connected to my samba4. > > Watching postgresql log file, whenever I use engine-manage-domains or = > engine-config, the following messages are appended: > > LOG: connection received: host=3Dlocalhost port=3D33331 > LOG: connection authorized: user=3Dengine database=3Dengine > LOG: unexpected EOF on client connection please attach the engine-managed-domains log. just throwing a bone here, could you try another user or just a = different password and see if it fails different? say 123? and BTW Rene has got samba4 working for him. > > But engine-config works fine. I'm using CentOS 6.3 and using yum there = > are not update for postgresql or jdbc to update. The same with = > ovirt-engine. > > I'm really not understanding why it doesn't works. > > > On 04/07/2013 05:57 AM, Roy Golan wrote: >> On 04/04/2013 09:45 PM, Eduardo Ramos wrote: >>> Hi all! >>> >>> I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is = >>> ActiveDirectory complaint. But when I use engine-manage-domains, it = >>> returns me a strange message: >>> >>> [root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd = >>> -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator = >>> -interactive >>> Enter password: >>> >>> Error: Authentication Failed. Error in DNS configuration. Please = >>> verify the oVirt Engine host has a valid reverse DNS (PTR) record.. = >>> Problematic domain is: getconnection: driver class = >>> name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: = >>> url=3Djdbc:postgresql://localhost:5432/enginegetconnection: = >>> considering encrypted passord. = >> >> >> it looks like engine-config have problems opening a db connection. = >> The DNS reported error is a bug and is shown due to the connection = >> error. >> >> you should get that same error if you'll use >> $ engine.config -a >> >> you have some problem connecting to the localhost postgres instance = >> using the password entered during setup probably. >> >> is your postgresql instance up the engine is able to connect to the = >> db? engine-config is getting the password from the same source where = >> the engine does. >> >> also, a PTR record is no longer needed since openjdk 7 due to a = >> change in the impl of the krb5 module. >> >> >>> secdomain=3Dencryptdbpasswordexecute: beginning execution of action = >>> action_get.fetching key=3Ddomainname ver=3Dgeneral >>> Failure while applying Kerberos configuration. Details: = >>> Authentication Failed. Error in DNS configuration. Please verify the = >>> oVirt Engine host has a valid reverse DNS (PTR) record. >>> >>> Using host command, I got the following results: >>> >>> [root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br >>> ovirt-dir.gsr.inpe.br has address 150.163.80.125 >>> >>> [root(a)ovirt-dir eduardo]# host 150.163.80.125 >>> 125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br. >>> >>> [root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br >>> _kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br. >>> >>> [root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br >>> samba4.gsr.inpe.br has address 150.163.73.109 >>> >>> [root(a)ovirt-dir eduardo]# host 150.163.73.109 >>> 109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br. >>> >>> As you can see, it is everything ok. No DNS problem. >>> >>> Someone have any idea? >>> >>> Thanks. >>> >>> >>> _______________________________________________ >>> Users mailing list >>> Users(a)ovirt.org >>> http://lists.ovirt.org/mailman/listinfo/users >> >> >> >> _______________________________________________ >> Users mailing list >> Users(a)ovirt.org >> http://lists.ovirt.org/mailman/listinfo/users > > > > _______________________________________________ > Users mailing list > Users(a)ovirt.org > http://lists.ovirt.org/mailman/listinfo/users --------------030706080205060303080104 Content-Type: text/html; charset=3DISO-8859-1 Content-Transfer-Encoding: 7bit
On 04/09/2013 03:12 PM, Eduardo Ramos wrote:
Hi Roy!

In fact "engine-config -a" works fine. It shows me the db config content. By the way, that engine is running ok as well. I just can't get engine connected to my samba4.

Watching postgresql log file, whenever I use engine-manage-domains or engine-config, the following messages are appended:

LOG:  connection received: host=3Dlocalhost port=3D33331<= br> LOG:  connection authorized: user=3Dengine database=3Dengine LOG:  unexpected EOF on client connection
please attach the engine-managed-domains log.

just throwing a bone here, could you try another user or just a different password and see if it fails different? say 123?

and BTW Rene has got samba4 working for him.

But engine-config works fine. I'm using CentOS 6.3 and using yum there are not update for postgresql or jdbc to update. The same with ovirt-engine.

I'm really not understanding why it doesn't works.


On 04/07/2013 05:57 AM, Roy Golan wrote:
On 04/04/2013 09:45 PM, Eduardo Ramos wrote:
Hi all!

I'm trying to connect my ovirt-engine in a samba4 server. Samba4 is ActiveDirectory complaint. But when I use engine-manage-domains, it returns me a strange message:

[root(a)ovirt-dir eduardo]# engine-manage-domains -action=3Dadd -domain=3Dgsr.inpe.br -provider=3DactiveDirectory -user=3DAdministrator -interactive
Enter password:

Error: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.. Problematic domain is: getconnection: driver class name=3Dorg.postgresql.xa.pgxadatasourcegetconnection: url=3Djdbc:postgresql://localhost:5432/enginegetconnection: considering encrypted passord.


it looks like engine-config have problems opening a db connection. The DNS reported error is a bug and is shown due to the connection error.

you should get that same error if you'll use
 $ engine.config -a

you have some problem connecting to the localhost postgres instance using the password entered during setup probably.

is your postgresql instance up the engine is able to connect to the db? engine-config is getting the password from the same source where the engine does.

also, a PTR record is no longer needed since openjdk 7 due to a change in the impl of the krb5 module.


secdomain=3Dencryptdbpasswordexecute: beginning execution of action action_get.fetching key=3Ddomainname ver=3Dgeneral
Failure while applying Kerberos configuration. Details: Authentication Failed. Error in DNS configuration. Please verify the oVirt Engine host has a valid reverse DNS (PTR) record.

Using host command, I got the following results:

[root(a)ovirt-dir eduardo]# host ovirt-dir.gsr.inpe.br<= br> ovirt-dir.gsr.inpe.br has address 150.163.80.125

[root(a)ovirt-dir eduardo]# host 150.163.80.125
125.80.163.150.in-addr.arpa domain name pointer ovirt-dir.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host -t srv _kerberos._tcp.gsr.inpe.br
_kerberos._tcp.gsr.inpe.br has SRV record 1 0 88 samba4.gsr.inpe.br.

[root(a)ovirt-dir eduardo]# host samba4.gsr.inpe.br
samba4.gsr.inpe.br has address 150.163.73.109

[root(a)ovirt-dir eduardo]# host 150.163.73.109
109.73.163.150.in-addr.arpa domain name pointer samba4.gsr.inpe.br.

As you can see, it is everything ok. No DNS problem.

Someone have any idea?

Thanks.


_______________________________________________
Users mailing list
Users(a)ovirt.org
http://lists.ovirt.org/mailman/list=
info/users



_______________________________________________
Users mailing list
Users(a)ovirt.org
http://lists.ovirt.org/mailman/list=
info/users



_______________________________________________
Users mailing list
Use=
rs(a)ovirt.org
http://lists.ovirt.org/mailman/listinfo/users

--------------030706080205060303080104-- --===============5097512098328260186== Content-Type: multipart/alternative MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="attachment.bin" VGhpcyBpcyBhIG11bHRpLXBhcnQgbWVzc2FnZSBpbiBNSU1FIGZvcm1hdC4KLS0tLS0tLS0tLS0t LS0wMzA3MDYwODAyMDUwNjAzMDMwODAxMDQKQ29udGVudC1UeXBlOiB0ZXh0L3BsYWluOyBjaGFy c2V0PUlTTy04ODU5LTE7IGZvcm1hdD1mbG93ZWQKQ29udGVudC1UcmFuc2Zlci1FbmNvZGluZzog N2JpdAoKT24gMDQvMDkvMjAxMyAwMzoxMiBQTSwgRWR1YXJkbyBSYW1vcyB3cm90ZToKPiBIaSBS b3khCj4KPiBJbiBmYWN0ICJlbmdpbmUtY29uZmlnIC1hIiB3b3JrcyBmaW5lLiBJdCBzaG93cyBt ZSB0aGUgZGIgY29uZmlnIAo+IGNvbnRlbnQuIEJ5IHRoZSB3YXksIHRoYXQgZW5naW5lIGlzIHJ1 bm5pbmcgb2sgYXMgd2VsbC4gSSBqdXN0IGNhbid0IAo+IGdldCBlbmdpbmUgY29ubmVjdGVkIHRv IG15IHNhbWJhNC4KPgo+IFdhdGNoaW5nIHBvc3RncmVzcWwgbG9nIGZpbGUsIHdoZW5ldmVyIEkg dXNlIGVuZ2luZS1tYW5hZ2UtZG9tYWlucyBvciAKPiBlbmdpbmUtY29uZmlnLCB0aGUgZm9sbG93 aW5nIG1lc3NhZ2VzIGFyZSBhcHBlbmRlZDoKPgo+IExPRzogIGNvbm5lY3Rpb24gcmVjZWl2ZWQ6 IGhvc3Q9bG9jYWxob3N0IHBvcnQ9MzMzMzEKPiBMT0c6ICBjb25uZWN0aW9uIGF1dGhvcml6ZWQ6 IHVzZXI9ZW5naW5lIGRhdGFiYXNlPWVuZ2luZQo+IExPRzogIHVuZXhwZWN0ZWQgRU9GIG9uIGNs aWVudCBjb25uZWN0aW9uCnBsZWFzZSBhdHRhY2ggdGhlIGVuZ2luZS1tYW5hZ2VkLWRvbWFpbnMg bG9nLgoKanVzdCB0aHJvd2luZyBhIGJvbmUgaGVyZSwgY291bGQgeW91IHRyeSBhbm90aGVyIHVz ZXIgb3IganVzdCBhIApkaWZmZXJlbnQgcGFzc3dvcmQgYW5kIHNlZSBpZiBpdCBmYWlscyBkaWZm ZXJlbnQ/IHNheSAxMjM/CgphbmQgQlRXIFJlbmUgaGFzIGdvdCBzYW1iYTQgd29ya2luZyBmb3Ig aGltLgo+Cj4gQnV0IGVuZ2luZS1jb25maWcgd29ya3MgZmluZS4gSSdtIHVzaW5nIENlbnRPUyA2 LjMgYW5kIHVzaW5nIHl1bSB0aGVyZSAKPiBhcmUgbm90IHVwZGF0ZSBmb3IgcG9zdGdyZXNxbCBv ciBqZGJjIHRvIHVwZGF0ZS4gVGhlIHNhbWUgd2l0aCAKPiBvdmlydC1lbmdpbmUuCj4KPiBJJ20g cmVhbGx5IG5vdCB1bmRlcnN0YW5kaW5nIHdoeSBpdCBkb2Vzbid0IHdvcmtzLgo+Cj4KPiBPbiAw NC8wNy8yMDEzIDA1OjU3IEFNLCBSb3kgR29sYW4gd3JvdGU6Cj4+IE9uIDA0LzA0LzIwMTMgMDk6 NDUgUE0sIEVkdWFyZG8gUmFtb3Mgd3JvdGU6Cj4+PiBIaSBhbGwhCj4+Pgo+Pj4gSSdtIHRyeWlu ZyB0byBjb25uZWN0IG15IG92aXJ0LWVuZ2luZSBpbiBhIHNhbWJhNCBzZXJ2ZXIuIFNhbWJhNCBp cyAKPj4+IEFjdGl2ZURpcmVjdG9yeSBjb21wbGFpbnQuIEJ1dCB3aGVuIEkgdXNlIGVuZ2luZS1t YW5hZ2UtZG9tYWlucywgaXQgCj4+PiByZXR1cm5zIG1lIGEgc3RyYW5nZSBtZXNzYWdlOgo+Pj4K Pj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgZW5naW5lLW1hbmFnZS1kb21haW5zIC1hY3Rp b249YWRkIAo+Pj4gLWRvbWFpbj1nc3IuaW5wZS5iciAtcHJvdmlkZXI9YWN0aXZlRGlyZWN0b3J5 IC11c2VyPUFkbWluaXN0cmF0b3IgCj4+PiAtaW50ZXJhY3RpdmUKPj4+IEVudGVyIHBhc3N3b3Jk Ogo+Pj4KPj4+IEVycm9yOiBBdXRoZW50aWNhdGlvbiBGYWlsZWQuIEVycm9yIGluIEROUyBjb25m aWd1cmF0aW9uLiBQbGVhc2UgCj4+PiB2ZXJpZnkgdGhlIG9WaXJ0IEVuZ2luZSBob3N0IGhhcyBh IHZhbGlkIHJldmVyc2UgRE5TIChQVFIpIHJlY29yZC4uIAo+Pj4gUHJvYmxlbWF0aWMgZG9tYWlu IGlzOiBnZXRjb25uZWN0aW9uOiBkcml2ZXIgY2xhc3MgCj4+PiBuYW1lPW9yZy5wb3N0Z3Jlc3Fs LnhhLnBneGFkYXRhc291cmNlZ2V0Y29ubmVjdGlvbjogCj4+PiB1cmw9amRiYzpwb3N0Z3Jlc3Fs Oi8vbG9jYWxob3N0OjU0MzIvZW5naW5lZ2V0Y29ubmVjdGlvbjogCj4+PiBjb25zaWRlcmluZyBl bmNyeXB0ZWQgcGFzc29yZC4gCj4+Cj4+Cj4+IGl0IGxvb2tzIGxpa2UgZW5naW5lLWNvbmZpZyBo YXZlIHByb2JsZW1zIG9wZW5pbmcgYSBkYiBjb25uZWN0aW9uLiAKPj4gVGhlIEROUyByZXBvcnRl ZCBlcnJvciBpcyBhIGJ1ZyBhbmQgaXMgc2hvd24gZHVlIHRvIHRoZSBjb25uZWN0aW9uIAo+PiBl cnJvci4KPj4KPj4geW91IHNob3VsZCBnZXQgdGhhdCBzYW1lIGVycm9yIGlmIHlvdSdsbCB1c2UK Pj4gICQgZW5naW5lLmNvbmZpZyAtYQo+Pgo+PiB5b3UgaGF2ZSBzb21lIHByb2JsZW0gY29ubmVj dGluZyB0byB0aGUgbG9jYWxob3N0IHBvc3RncmVzIGluc3RhbmNlIAo+PiB1c2luZyB0aGUgcGFz c3dvcmQgZW50ZXJlZCBkdXJpbmcgc2V0dXAgcHJvYmFibHkuCj4+Cj4+IGlzIHlvdXIgcG9zdGdy ZXNxbCBpbnN0YW5jZSB1cCB0aGUgZW5naW5lIGlzIGFibGUgdG8gY29ubmVjdCB0byB0aGUgCj4+ IGRiPyBlbmdpbmUtY29uZmlnIGlzIGdldHRpbmcgdGhlIHBhc3N3b3JkIGZyb20gdGhlIHNhbWUg c291cmNlIHdoZXJlIAo+PiB0aGUgZW5naW5lIGRvZXMuCj4+Cj4+IGFsc28sIGEgUFRSIHJlY29y ZCBpcyBubyBsb25nZXIgbmVlZGVkIHNpbmNlIG9wZW5qZGsgNyBkdWUgdG8gYSAKPj4gY2hhbmdl IGluIHRoZSBpbXBsIG9mIHRoZSBrcmI1IG1vZHVsZS4KPj4KPj4KPj4+IHNlY2RvbWFpbj1lbmNy eXB0ZGJwYXNzd29yZGV4ZWN1dGU6IGJlZ2lubmluZyBleGVjdXRpb24gb2YgYWN0aW9uIAo+Pj4g YWN0aW9uX2dldC5mZXRjaGluZyBrZXk9ZG9tYWlubmFtZSB2ZXI9Z2VuZXJhbAo+Pj4gRmFpbHVy ZSB3aGlsZSBhcHBseWluZyBLZXJiZXJvcyBjb25maWd1cmF0aW9uLiBEZXRhaWxzOiAKPj4+IEF1 dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5TIGNvbmZpZ3VyYXRpb24uIFBsZWFzZSB2 ZXJpZnkgdGhlIAo+Pj4gb1ZpcnQgRW5naW5lIGhvc3QgaGFzIGEgdmFsaWQgcmV2ZXJzZSBETlMg KFBUUikgcmVjb3JkLgo+Pj4KPj4+IFVzaW5nIGhvc3QgY29tbWFuZCwgSSBnb3QgdGhlIGZvbGxv d2luZyByZXN1bHRzOgo+Pj4KPj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCBvdmly dC1kaXIuZ3NyLmlucGUuYnIKPj4+IG92aXJ0LWRpci5nc3IuaW5wZS5iciBoYXMgYWRkcmVzcyAx NTAuMTYzLjgwLjEyNQo+Pj4KPj4+IFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAxNTAu MTYzLjgwLjEyNQo+Pj4gMTI1LjgwLjE2My4xNTAuaW4tYWRkci5hcnBhIGRvbWFpbiBuYW1lIHBv aW50ZXIgb3ZpcnQtZGlyLmdzci5pbnBlLmJyLgo+Pj4KPj4+IFtyb290QG92aXJ0LWRpciBlZHVh cmRvXSMgaG9zdCAtdCBzcnYgX2tlcmJlcm9zLl90Y3AuZ3NyLmlucGUuYnIKPj4+IF9rZXJiZXJv cy5fdGNwLmdzci5pbnBlLmJyIGhhcyBTUlYgcmVjb3JkIDEgMCA4OCBzYW1iYTQuZ3NyLmlucGUu YnIuCj4+Pgo+Pj4gW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IHNhbWJhNC5nc3IuaW5w ZS5icgo+Pj4gc2FtYmE0Lmdzci5pbnBlLmJyIGhhcyBhZGRyZXNzIDE1MC4xNjMuNzMuMTA5Cj4+ Pgo+Pj4gW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMuMTA5Cj4+PiAx MDkuNzMuMTYzLjE1MC5pbi1hZGRyLmFycGEgZG9tYWluIG5hbWUgcG9pbnRlciBzYW1iYTQuZ3Ny LmlucGUuYnIuCj4+Pgo+Pj4gQXMgeW91IGNhbiBzZWUsIGl0IGlzIGV2ZXJ5dGhpbmcgb2suIE5v IEROUyBwcm9ibGVtLgo+Pj4KPj4+IFNvbWVvbmUgaGF2ZSBhbnkgaWRlYT8KPj4+Cj4+PiBUaGFu a3MuCj4+Pgo+Pj4KPj4+IF9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fCj4+PiBVc2VycyBtYWlsaW5nIGxpc3QKPj4+IFVzZXJzQG92aXJ0Lm9yZwo+Pj4gaHR0 cDovL2xpc3RzLm92aXJ0Lm9yZy9tYWlsbWFuL2xpc3RpbmZvL3VzZXJzCj4+Cj4+Cj4+Cj4+IF9f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fCj4+IFVzZXJzIG1h aWxpbmcgbGlzdAo+PiBVc2Vyc0BvdmlydC5vcmcKPj4gaHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9t YWlsbWFuL2xpc3RpbmZvL3VzZXJzCj4KPgo+Cj4gX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fX18KPiBVc2VycyBtYWlsaW5nIGxpc3QKPiBVc2Vyc0BvdmlydC5v cmcKPiBodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnMKCgotLS0t LS0tLS0tLS0tLTAzMDcwNjA4MDIwNTA2MDMwMzA4MDEwNApDb250ZW50LVR5cGU6IHRleHQvaHRt bDsgY2hhcnNldD1JU08tODg1OS0xCkNvbnRlbnQtVHJhbnNmZXItRW5jb2Rpbmc6IDdiaXQKCjxo dG1sPgogIDxoZWFkPgogICAgPG1ldGEgY29udGVudD0idGV4dC9odG1sOyBjaGFyc2V0PUlTTy04 ODU5LTEiCiAgICAgIGh0dHAtZXF1aXY9IkNvbnRlbnQtVHlwZSI+CiAgPC9oZWFkPgogIDxib2R5 IGJnY29sb3I9IiNGRkZGRkYiIHRleHQ9IiMwMDAwMDAiPgogICAgPGRpdiBjbGFzcz0ibW96LWNp dGUtcHJlZml4Ij5PbiAwNC8wOS8yMDEzIDAzOjEyIFBNLCBFZHVhcmRvIFJhbW9zCiAgICAgIHdy b3RlOjxicj4KICAgIDwvZGl2PgogICAgPGJsb2NrcXVvdGUgY2l0ZT0ibWlkOjUxNjQwNUM5Ljkw ODA3MDFAZnJlZWRvbWludGVyZmFjZS5vcmciCiAgICAgIHR5cGU9ImNpdGUiPgogICAgICA8bWV0 YSBjb250ZW50PSJ0ZXh0L2h0bWw7IGNoYXJzZXQ9SVNPLTg4NTktMSIKICAgICAgICBodHRwLWVx dWl2PSJDb250ZW50LVR5cGUiPgogICAgICBIaSBSb3khPGJyPgogICAgICA8YnI+CiAgICAgIElu IGZhY3QgImVuZ2luZS1jb25maWcgLWEiIHdvcmtzIGZpbmUuIEl0IHNob3dzIG1lIHRoZSBkYiBj b25maWcKICAgICAgY29udGVudC4gQnkgdGhlIHdheSwgdGhhdCBlbmdpbmUgaXMgcnVubmluZyBv ayBhcyB3ZWxsLiBJIGp1c3QKICAgICAgY2FuJ3QgZ2V0IGVuZ2luZSBjb25uZWN0ZWQgdG8gbXkg c2FtYmE0Ljxicj4KICAgICAgPGJyPgogICAgICBXYXRjaGluZyBwb3N0Z3Jlc3FsIGxvZyBmaWxl LCB3aGVuZXZlciBJIHVzZSBlbmdpbmUtbWFuYWdlLWRvbWFpbnMKICAgICAgb3IgZW5naW5lLWNv bmZpZywgdGhlIGZvbGxvd2luZyBtZXNzYWdlcyBhcmUgYXBwZW5kZWQ6PGJyPgogICAgICA8YnI+ CiAgICAgIDxzbWFsbD5MT0c6Jm5ic3A7IGNvbm5lY3Rpb24gcmVjZWl2ZWQ6IGhvc3Q9bG9jYWxo b3N0IHBvcnQ9MzMzMzE8YnI+CiAgICAgICAgTE9HOiZuYnNwOyBjb25uZWN0aW9uIGF1dGhvcml6 ZWQ6IHVzZXI9ZW5naW5lIGRhdGFiYXNlPWVuZ2luZTxicj4KICAgICAgICBMT0c6Jm5ic3A7IHVu ZXhwZWN0ZWQgRU9GIG9uIGNsaWVudCBjb25uZWN0aW9uPC9zbWFsbD48YnI+CiAgICA8L2Jsb2Nr cXVvdGU+CiAgICBwbGVhc2UgYXR0YWNoIHRoZSBlbmdpbmUtbWFuYWdlZC1kb21haW5zIGxvZy4g PGJyPgogICAgPGJyPgogICAganVzdCB0aHJvd2luZyBhIGJvbmUgaGVyZSwgY291bGQgeW91IHRy eSBhbm90aGVyIHVzZXIgb3IganVzdCBhCiAgICBkaWZmZXJlbnQgcGFzc3dvcmQgYW5kIHNlZSBp ZiBpdCBmYWlscyBkaWZmZXJlbnQ/IHNheSAxMjM/IDxicj4KICAgIDxicj4KICAgIGFuZCBCVFcg UmVuZSBoYXMgZ290IHNhbWJhNCB3b3JraW5nIGZvciBoaW0uPGJyPgogICAgPGJsb2NrcXVvdGUg Y2l0ZT0ibWlkOjUxNjQwNUM5LjkwODA3MDFAZnJlZWRvbWludGVyZmFjZS5vcmciCiAgICAgIHR5 cGU9ImNpdGUiPiA8YnI+CiAgICAgIEJ1dCBlbmdpbmUtY29uZmlnIHdvcmtzIGZpbmUuIEknbSB1 c2luZyBDZW50T1MgNi4zIGFuZCB1c2luZyB5dW0KICAgICAgdGhlcmUgYXJlIG5vdCB1cGRhdGUg Zm9yIHBvc3RncmVzcWwgb3IgamRiYyB0byB1cGRhdGUuIFRoZSBzYW1lCiAgICAgIHdpdGggb3Zp cnQtZW5naW5lLjxicj4KICAgICAgPGJyPgogICAgICBJJ20gcmVhbGx5IG5vdCB1bmRlcnN0YW5k aW5nIHdoeSBpdCBkb2Vzbid0IHdvcmtzLjxicj4KICAgICAgPGJyPgogICAgICA8YnI+CiAgICAg IDxkaXYgY2xhc3M9Im1vei1jaXRlLXByZWZpeCI+T24gMDQvMDcvMjAxMyAwNTo1NyBBTSwgUm95 IEdvbGFuCiAgICAgICAgd3JvdGU6PGJyPgogICAgICA8L2Rpdj4KICAgICAgPGJsb2NrcXVvdGUg Y2l0ZT0ibWlkOjUxNjEzNEYyLjkwNDA0QHJlZGhhdC5jb20iIHR5cGU9ImNpdGUiPgogICAgICAg IDxtZXRhIGNvbnRlbnQ9InRleHQvaHRtbDsgY2hhcnNldD1JU08tODg1OS0xIgogICAgICAgICAg aHR0cC1lcXVpdj0iQ29udGVudC1UeXBlIj4KICAgICAgICA8ZGl2IGNsYXNzPSJtb3otY2l0ZS1w cmVmaXgiPk9uIDA0LzA0LzIwMTMgMDk6NDUgUE0sIEVkdWFyZG8KICAgICAgICAgIFJhbW9zIHdy b3RlOjxicj4KICAgICAgICA8L2Rpdj4KICAgICAgICA8YmxvY2txdW90ZSBjaXRlPSJtaWQ6NTE1 RENBNTAuMTA1MDAwM0BmcmVlZG9taW50ZXJmYWNlLm9yZyIKICAgICAgICAgIHR5cGU9ImNpdGUi PgogICAgICAgICAgPG1ldGEgaHR0cC1lcXVpdj0iY29udGVudC10eXBlIiBjb250ZW50PSJ0ZXh0 L2h0bWw7CiAgICAgICAgICAgIGNoYXJzZXQ9SVNPLTg4NTktMSI+CiAgICAgICAgICBIaSBhbGwh PGJyPgogICAgICAgICAgPGJyPgogICAgICAgICAgSSdtIHRyeWluZyB0byBjb25uZWN0IG15IG92 aXJ0LWVuZ2luZSBpbiBhIHNhbWJhNCBzZXJ2ZXIuCiAgICAgICAgICBTYW1iYTQgaXMgQWN0aXZl RGlyZWN0b3J5IGNvbXBsYWludC4gQnV0IHdoZW4gSSB1c2UKICAgICAgICAgIGVuZ2luZS1tYW5h Z2UtZG9tYWlucywgaXQgcmV0dXJucyBtZSBhIHN0cmFuZ2UgbWVzc2FnZTo8YnI+CiAgICAgICAg ICA8YnI+CiAgICAgICAgICA8c21hbGw+W3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBlbmdpbmUt bWFuYWdlLWRvbWFpbnMKICAgICAgICAgICAgLWFjdGlvbj1hZGQgLWRvbWFpbj1nc3IuaW5wZS5i ciAtcHJvdmlkZXI9YWN0aXZlRGlyZWN0b3J5CiAgICAgICAgICAgIC11c2VyPUFkbWluaXN0cmF0 b3IgLWludGVyYWN0aXZlPGJyPgogICAgICAgICAgICBFbnRlciBwYXNzd29yZDo8YnI+CiAgICAg ICAgICAgIDxicj4KICAgICAgICAgICAgRXJyb3I6IEF1dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJy b3IgaW4gRE5TIGNvbmZpZ3VyYXRpb24uCiAgICAgICAgICAgIFBsZWFzZSB2ZXJpZnkgdGhlIG9W aXJ0IEVuZ2luZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TCiAgICAgICAgICAgIChQVFIp IHJlY29yZC4uIFByb2JsZW1hdGljIGRvbWFpbiBpczogZ2V0Y29ubmVjdGlvbjogZHJpdmVyCiAg ICAgICAgICAgIGNsYXNzIG5hbWU9b3JnLnBvc3RncmVzcWwueGEucGd4YWRhdGFzb3VyY2VnZXRj b25uZWN0aW9uOgogICAgICAgICAgICB1cmw9amRiYzpwb3N0Z3Jlc3FsOi8vbG9jYWxob3N0OjU0 MzIvZW5naW5lZ2V0Y29ubmVjdGlvbjoKICAgICAgICAgICAgY29uc2lkZXJpbmcgZW5jcnlwdGVk IHBhc3NvcmQuIDwvc21hbGw+PC9ibG9ja3F1b3RlPgogICAgICAgIDxicj4KICAgICAgICA8YnI+ CiAgICAgICAgaXQgbG9va3MgbGlrZSBlbmdpbmUtY29uZmlnIGhhdmUgcHJvYmxlbXMgb3Blbmlu ZyBhIGRiCiAgICAgICAgY29ubmVjdGlvbi4gVGhlIEROUyByZXBvcnRlZCBlcnJvciBpcyBhIGJ1 ZyBhbmQgaXMgc2hvd24gZHVlIHRvCiAgICAgICAgdGhlIGNvbm5lY3Rpb24gZXJyb3IuIDxicj4K ICAgICAgICA8YnI+CiAgICAgICAgeW91IHNob3VsZCBnZXQgdGhhdCBzYW1lIGVycm9yIGlmIHlv dSdsbCB1c2U8YnI+CiAgICAgICAgJm5ic3A7JCBlbmdpbmUuY29uZmlnIC1hPGJyPgogICAgICAg IDxicj4KICAgICAgICB5b3UgaGF2ZSBzb21lIHByb2JsZW0gY29ubmVjdGluZyB0byB0aGUgbG9j YWxob3N0IHBvc3RncmVzCiAgICAgICAgaW5zdGFuY2UgdXNpbmcgdGhlIHBhc3N3b3JkIGVudGVy ZWQgZHVyaW5nIHNldHVwIHByb2JhYmx5Ljxicj4KICAgICAgICA8YnI+CiAgICAgICAgaXMgeW91 ciBwb3N0Z3Jlc3FsIGluc3RhbmNlIHVwIHRoZSBlbmdpbmUgaXMgYWJsZSB0byBjb25uZWN0IHRv CiAgICAgICAgdGhlIGRiPyBlbmdpbmUtY29uZmlnIGlzIGdldHRpbmcgdGhlIHBhc3N3b3JkIGZy b20gdGhlIHNhbWUKICAgICAgICBzb3VyY2Ugd2hlcmUgdGhlIGVuZ2luZSBkb2VzLjxicj4KICAg ICAgICA8YnI+CiAgICAgICAgYWxzbywgYSBQVFIgcmVjb3JkIGlzIG5vIGxvbmdlciBuZWVkZWQg c2luY2Ugb3BlbmpkayA3IGR1ZSB0byBhCiAgICAgICAgY2hhbmdlIGluIHRoZSBpbXBsIG9mIHRo ZSBrcmI1IG1vZHVsZS48YnI+CiAgICAgICAgPGJyPgogICAgICAgIDxicj4KICAgICAgICA8Ymxv Y2txdW90ZSBjaXRlPSJtaWQ6NTE1RENBNTAuMTA1MDAwM0BmcmVlZG9taW50ZXJmYWNlLm9yZyIK ICAgICAgICAgIHR5cGU9ImNpdGUiPjxzbWFsbD5zZWNkb21haW49ZW5jcnlwdGRicGFzc3dvcmRl eGVjdXRlOgogICAgICAgICAgICBiZWdpbm5pbmcgZXhlY3V0aW9uIG9mIGFjdGlvbiBhY3Rpb25f Z2V0LmZldGNoaW5nCiAgICAgICAgICAgIGtleT1kb21haW5uYW1lIHZlcj1nZW5lcmFsPGJyPgog ICAgICAgICAgICBGYWlsdXJlIHdoaWxlIGFwcGx5aW5nIEtlcmJlcm9zIGNvbmZpZ3VyYXRpb24u IERldGFpbHM6CiAgICAgICAgICAgIEF1dGhlbnRpY2F0aW9uIEZhaWxlZC4gRXJyb3IgaW4gRE5T IGNvbmZpZ3VyYXRpb24uIFBsZWFzZQogICAgICAgICAgICB2ZXJpZnkgdGhlIG9WaXJ0IEVuZ2lu ZSBob3N0IGhhcyBhIHZhbGlkIHJldmVyc2UgRE5TIChQVFIpCiAgICAgICAgICAgIHJlY29yZC48 YnI+CiAgICAgICAgICAgIDxicj4KICAgICAgICAgICAgPGJpZz48YmlnPjxzbWFsbD5Vc2luZyBo b3N0IGNvbW1hbmQsIEkgZ290IHRoZSBmb2xsb3dpbmcKICAgICAgICAgICAgICAgICAgcmVzdWx0 czo8YnI+CiAgICAgICAgICAgICAgICAgIDxzbWFsbD48YnI+CiAgICAgICAgICAgICAgICAgICAg W3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IG92aXJ0LWRpci5nc3IuaW5wZS5icjxicj4K ICAgICAgICAgICAgICAgICAgICBvdmlydC1kaXIuZ3NyLmlucGUuYnIgaGFzIGFkZHJlc3MgMTUw LjE2My44MC4xMjU8YnI+CiAgICAgICAgICAgICAgICAgICAgPGJyPgogICAgICAgICAgICAgICAg ICAgIFtyb290QG92aXJ0LWRpciBlZHVhcmRvXSMgaG9zdCAxNTAuMTYzLjgwLjEyNTxicj4KICAg ICAgICAgICAgICAgICAgICAxMjUuODAuMTYzLjE1MC5pbi1hZGRyLmFycGEgZG9tYWluIG5hbWUg cG9pbnRlcgogICAgICAgICAgICAgICAgICAgIG92aXJ0LWRpci5nc3IuaW5wZS5ici48YnI+CiAg ICAgICAgICAgICAgICAgICAgPGJyPgogICAgICAgICAgICAgICAgICAgIFtyb290QG92aXJ0LWRp ciBlZHVhcmRvXSMgaG9zdCAtdCBzcnYKICAgICAgICAgICAgICAgICAgICBfa2VyYmVyb3MuX3Rj cC5nc3IuaW5wZS5icjxicj4KICAgICAgICAgICAgICAgICAgICBfa2VyYmVyb3MuX3RjcC5nc3Iu aW5wZS5iciBoYXMgU1JWIHJlY29yZCAxIDAgODgKICAgICAgICAgICAgICAgICAgICBzYW1iYTQu Z3NyLmlucGUuYnIuPGJyPgogICAgICAgICAgICAgICAgICAgIDxicj4KICAgICAgICAgICAgICAg ICAgICBbcm9vdEBvdmlydC1kaXIgZWR1YXJkb10jIGhvc3Qgc2FtYmE0Lmdzci5pbnBlLmJyPGJy PgogICAgICAgICAgICAgICAgICAgIHNhbWJhNC5nc3IuaW5wZS5iciBoYXMgYWRkcmVzcyAxNTAu MTYzLjczLjEwOTxicj4KICAgICAgICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICAg ICAgW3Jvb3RAb3ZpcnQtZGlyIGVkdWFyZG9dIyBob3N0IDE1MC4xNjMuNzMuMTA5PGJyPgogICAg ICAgICAgICAgICAgICAgIDEwOS43My4xNjMuMTUwLmluLWFkZHIuYXJwYSBkb21haW4gbmFtZSBw b2ludGVyCiAgICAgICAgICAgICAgICAgICAgc2FtYmE0Lmdzci5pbnBlLmJyLjxicj4KICAgICAg ICAgICAgICAgICAgICA8YnI+CiAgICAgICAgICAgICAgICAgICAgPGJpZz5BcyB5b3UgY2FuIHNl ZSwgaXQgaXMgZXZlcnl0aGluZyBvay4gTm8gRE5TCiAgICAgICAgICAgICAgICAgICAgICBwcm9i bGVtLjxicj4KICAgICAgICAgICAgICAgICAgICAgIDxicj4KICAgICAgICAgICAgICAgICAgICAg IFNvbWVvbmUgaGF2ZSBhbnkgaWRlYT88YnI+CiAgICAgICAgICAgICAgICAgICAgICA8YnI+CiAg ICAgICAgICAgICAgICAgICAgICBUaGFua3MuPGJyPgogICAgICAgICAgICAgICAgICAgIDwvYmln Pjwvc21hbGw+PC9zbWFsbD48L2JpZz48L2JpZz48L3NtYWxsPiA8YnI+CiAgICAgICAgICA8Zmll bGRzZXQgY2xhc3M9Im1pbWVBdHRhY2htZW50SGVhZGVyIj48L2ZpZWxkc2V0PgogICAgICAgICAg PGJyPgogICAgICAgICAgPHByZSB3cmFwPSIiPl9fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fX19fX19fX19fClVzZXJzIG1haWxpbmcgbGlzdAo8YSBtb3otZG8tbm90LXNlbmQ9 InRydWUiIGNsYXNzPSJtb3otdHh0LWxpbmstYWJicmV2aWF0ZWQiIGhyZWY9Im1haWx0bzpVc2Vy c0BvdmlydC5vcmciPlVzZXJzQG92aXJ0Lm9yZzwvYT4KPGEgbW96LWRvLW5vdC1zZW5kPSJ0cnVl IiBjbGFzcz0ibW96LXR4dC1saW5rLWZyZWV0ZXh0IiBocmVmPSJodHRwOi8vbGlzdHMub3ZpcnQu b3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnMiPmh0dHA6Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1h bi9saXN0aW5mby91c2VyczwvYT4KPC9wcmU+CiAgICAgICAgPC9ibG9ja3F1b3RlPgogICAgICAg IDxicj4KICAgICAgICA8YnI+CiAgICAgICAgPGZpZWxkc2V0IGNsYXNzPSJtaW1lQXR0YWNobWVu dEhlYWRlciI+PC9maWVsZHNldD4KICAgICAgICA8YnI+CiAgICAgICAgPHByZSB3cmFwPSIiPl9f X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fClVzZXJzIG1haWxp bmcgbGlzdAo8YSBtb3otZG8tbm90LXNlbmQ9InRydWUiIGNsYXNzPSJtb3otdHh0LWxpbmstYWJi cmV2aWF0ZWQiIGhyZWY9Im1haWx0bzpVc2Vyc0BvdmlydC5vcmciPlVzZXJzQG92aXJ0Lm9yZzwv YT4KPGEgbW96LWRvLW5vdC1zZW5kPSJ0cnVlIiBjbGFzcz0ibW96LXR4dC1saW5rLWZyZWV0ZXh0 IiBocmVmPSJodHRwOi8vbGlzdHMub3ZpcnQub3JnL21haWxtYW4vbGlzdGluZm8vdXNlcnMiPmh0 dHA6Ly9saXN0cy5vdmlydC5vcmcvbWFpbG1hbi9saXN0aW5mby91c2VyczwvYT4KPC9wcmU+CiAg ICAgIDwvYmxvY2txdW90ZT4KICAgICAgPGJyPgogICAgICA8YnI+CiAgICAgIDxmaWVsZHNldCBj bGFzcz0ibWltZUF0dGFjaG1lbnRIZWFkZXIiPjwvZmllbGRzZXQ+CiAgICAgIDxicj4KICAgICAg PHByZSB3cmFwPSIiPl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fClVzZXJzIG1haWxpbmcgbGlzdAo8YSBjbGFzcz0ibW96LXR4dC1saW5rLWFiYnJldmlhdGVk IiBocmVmPSJtYWlsdG86VXNlcnNAb3ZpcnQub3JnIj5Vc2Vyc0BvdmlydC5vcmc8L2E+CjxhIGNs YXNzPSJtb3otdHh0LWxpbmstZnJlZXRleHQiIGhyZWY9Imh0dHA6Ly9saXN0cy5vdmlydC5vcmcv bWFpbG1hbi9saXN0aW5mby91c2VycyI+aHR0cDovL2xpc3RzLm92aXJ0Lm9yZy9tYWlsbWFuL2xp c3RpbmZvL3VzZXJzPC9hPgo8L3ByZT4KICAgIDwvYmxvY2txdW90ZT4KICAgIDxicj4KICA8L2Jv ZHk+CjwvaHRtbD4KCi0tLS0tLS0tLS0tLS0tMDMwNzA2MDgwMjA1MDYwMzAzMDgwMTA0LS0K --===============5097512098328260186==--