I built a brand new install today using docker. I followed all of my notes that worked the first time I did this 2 months. I'm using the community openxpki-config directory. selinux and firewall are disabled. It is version 3.14 of the openxpki-server.
After docker-compose up (see attached log) I get to the website (on port 8443) and am prompted for the login type. If I select anonymous, I get kicked immediately back. If I do a testing user, I'm prompted for the login, but none of the predefined users works. I tried changing a couple of their passwords to make sure and that didn't help either. I noticed that a couple of the auth yaml files changed since I installed a couple of months ago.. so the community config has changed since then. If I shell into the server container, I find this in the catchall log 2021/09/14 01:12:50 openxpki.auth.INFO <http://openxpki.auth.info/> Login successful (user: Anonymous, role: Anonymous) [pid=10|sid=+34U] 2021/09/14 01:12:52 openxpki.auth.INFO <http://openxpki.auth.info/> Login successful (user: Anonymous, role: Anonymous) [pid=10|sid=N68A] docker-compose up log Creating network "openxpki-docker_default" with the default driver Creating volume "openxpki-docker_openxpkidb" with default driver Creating volume "openxpki-docker_openxpkisocket" with default driver Creating volume "openxpki-docker_openxpkidbsocket" with default driver Creating volume "openxpki-docker_openxpkilog" with default driver Creating openxpki-docker_db_1 ... done Creating openxpki-docker_openxpki-server_1 ... done Creating openxpki-docker_openxpki-client_1 ... done Attaching to openxpki-docker_db_1, openxpki-docker_openxpki-server_1, openxpki-docker_openxpki-client_1 db_1 | 2021-09-14 01:11:59+00:00 [Note] [Entrypoint]: Entrypoint script for MariaDB Server 1:10.6.4+maria~focal started. db_1 | 2021-09-14 01:11:59+00:00 [Note] [Entrypoint]: Switching to dedicated user 'mysql' db_1 | 2021-09-14 01:11:59+00:00 [Note] [Entrypoint]: Entrypoint script for MariaDB Server 1:10.6.4+maria~focal started. db_1 | 2021-09-14 01:11:59+00:00 [Note] [Entrypoint]: Initializing database files db_1 | 2021-09-14 1:11:59 0 [Warning] 'default-authentication-plugin' is MySQL 5.6 / 5.7 compatible option. To be implemented in later versions. db_1 | 2021-09-14 1:11:59 0 [Warning] You need to use --log-bin to make --expire-logs-days or --binlog-expire-logs-seconds work. openxpki-server_1 | Starting OpenXPKI Community Edition v3.14.0 openxpki-client_1 | AH00558: apache2: Could not reliably determine the server's fully qualified domain name, using 172.20.0.4. Set the 'ServerName' directive globally to suppress this message db_1 | db_1 | db_1 | PLEASE REMEMBER TO SET A PASSWORD FOR THE MariaDB root USER ! db_1 | To do so, start the server, then issue the following command: db_1 | db_1 | '/usr/bin/mysql_secure_installation' db_1 | db_1 | which will also give you the option of removing the test db_1 | databases and anonymous user created by default. This is db_1 | strongly recommended for production servers. db_1 | db_1 | See the MariaDB Knowledgebase at https://mariadb.com/kb or the db_1 | MySQL manual for more instructions. db_1 | db_1 | Please report any problems at https://mariadb.org/jira db_1 | db_1 | The latest information about MariaDB is available at https://mariadb.org/. db_1 | You can find additional information about the MySQL part at: db_1 | https://dev.mysql.com db_1 | Consider joining MariaDB's strong and vibrant community: db_1 | https://mariadb.org/get-involved/ db_1 | db_1 | 2021-09-14 01:12:00+00:00 [Note] [Entrypoint]: Database files initialized db_1 | 2021-09-14 01:12:00+00:00 [Note] [Entrypoint]: Starting temporary server db_1 | 2021-09-14 01:12:00+00:00 [Note] [Entrypoint]: Waiting for server startup db_1 | 2021-09-14 1:12:00 0 [Note] mysqld (server 10.6.4-MariaDB-1:10.6.4+maria~focal) starting as process 97 ... db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Compressed tables use zlib 1.2.11 db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Number of pools: 1 db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Using crc32 + pclmulqdq instructions db_1 | 2021-09-14 1:12:00 0 [Note] mysqld: O_TMPFILE is not supported on /tmp (disabling future attempts) db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Using Linux native AIO db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Initializing buffer pool, total size = 134217728, chunk size = 134217728 db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Completed initialization of buffer pool db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: 128 rollback segments are active. db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Creating shared tablespace for temporary tables db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Setting file './ibtmp1' size to 12 MB. Physically writing the file full; Please wait ... db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: File './ibtmp1' size is now 12 MB. db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: 10.6.4 started; log sequence number 41361; transaction id 14 db_1 | 2021-09-14 1:12:00 0 [Note] Plugin 'FEEDBACK' is disabled. db_1 | 2021-09-14 1:12:00 0 [Warning] 'default-authentication-plugin' is MySQL 5.6 / 5.7 compatible option. To be implemented in later versions. db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Loading buffer pool(s) from /var/lib/mysql/ib_buffer_pool db_1 | 2021-09-14 1:12:00 0 [Warning] You need to use --log-bin to make --expire-logs-days or --binlog-expire-logs-seconds work. db_1 | 2021-09-14 1:12:00 0 [Warning] 'user' entry 'root@9d9a38899e38' ignored in --skip-name-resolve mode. db_1 | 2021-09-14 1:12:00 0 [Warning] 'proxies_priv' entry '@% root@9d9a38899e38' ignored in --skip-name-resolve mode. db_1 | 2021-09-14 1:12:00 0 [Note] InnoDB: Buffer pool(s) load completed at 210914 1:12:00 db_1 | 2021-09-14 1:12:00 0 [Note] mysqld: ready for connections. db_1 | Version: '10.6.4-MariaDB-1:10.6.4+maria~focal' socket: '/run/mysqld/mysqld.sock' port: 0 mariadb.org binary distribution db_1 | 2021-09-14 1:12:01 3 [Warning] Access denied for user 'openxpki'@'localhost' (using password: YES) openxpki-server_1 | Database not ready - retries left 5 - sleep for 15 db_1 | 2021-09-14 01:12:01+00:00 [Note] [Entrypoint]: Temporary server started. db_1 | Warning: Unable to load '/usr/share/zoneinfo/leap-seconds.list' as time zone. Skipping it. db_1 | Warning: Unable to load '/usr/share/zoneinfo/leapseconds' as time zone. Skipping it. db_1 | Warning: Unable to load '/usr/share/zoneinfo/tzdata.zi' as time zone. Skipping it. db_1 | 2021-09-14 1:12:04 6 [Warning] 'proxies_priv' entry '@% root@9d9a38899e38' ignored in --skip-name-resolve mode. db_1 | 2021-09-14 01:12:04+00:00 [Note] [Entrypoint]: Creating database openxpki db_1 | 2021-09-14 01:12:04+00:00 [Note] [Entrypoint]: Creating user openxpki db_1 | 2021-09-14 01:12:04+00:00 [Note] [Entrypoint]: Giving user openxpki access to schema openxpki db_1 | db_1 | 2021-09-14 01:12:04+00:00 [Note] [Entrypoint]: /usr/local/bin/docker-entrypoint.sh: running /docker-entrypoint-initdb.d/schema-mariadb.sql db_1 | db_1 | db_1 | 2021-09-14 01:12:05+00:00 [Note] [Entrypoint]: Stopping temporary server db_1 | 2021-09-14 1:12:05 0 [Note] mysqld (initiated by: root[root] @ localhost []): Normal shutdown db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: FTS optimize thread exiting. db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: Starting shutdown... db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: Dumping buffer pool(s) to /var/lib/mysql/ib_buffer_pool db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: Buffer pool(s) dump completed at 210914 1:12:05 db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: Removed temporary tablespace data file: "./ibtmp1" db_1 | 2021-09-14 1:12:05 0 [Note] InnoDB: Shutdown completed; log sequence number 283514; transaction id 258 db_1 | 2021-09-14 1:12:05 0 [Note] mysqld: Shutdown complete db_1 | db_1 | 2021-09-14 01:12:06+00:00 [Note] [Entrypoint]: Temporary server stopped db_1 | db_1 | 2021-09-14 01:12:06+00:00 [Note] [Entrypoint]: MariaDB init process done. Ready for start up. db_1 | db_1 | 2021-09-14 1:12:06 0 [Note] mysqld (server 10.6.4-MariaDB-1:10.6.4+maria~focal) starting as process 1 ... db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Compressed tables use zlib 1.2.11 db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Number of pools: 1 db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Using crc32 + pclmulqdq instructions db_1 | 2021-09-14 1:12:06 0 [Note] mysqld: O_TMPFILE is not supported on /tmp (disabling future attempts) db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Using Linux native AIO db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Initializing buffer pool, total size = 134217728, chunk size = 134217728 db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Completed initialization of buffer pool db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: 128 rollback segments are active. db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Creating shared tablespace for temporary tables db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Setting file './ibtmp1' size to 12 MB. Physically writing the file full; Please wait ... db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: File './ibtmp1' size is now 12 MB. db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: 10.6.4 started; log sequence number 283514; transaction id 259 db_1 | 2021-09-14 1:12:06 0 [Note] Plugin 'FEEDBACK' is disabled. db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Loading buffer pool(s) from /var/lib/mysql/ib_buffer_pool db_1 | 2021-09-14 1:12:06 0 [Warning] 'default-authentication-plugin' is MySQL 5.6 / 5.7 compatible option. To be implemented in later versions. db_1 | 2021-09-14 1:12:06 0 [Warning] You need to use --log-bin to make --expire-logs-days or --binlog-expire-logs-seconds work. db_1 | 2021-09-14 1:12:06 0 [Note] Server socket created on IP: '0.0.0.0'. db_1 | 2021-09-14 1:12:06 0 [Note] Server socket created on IP: '::'. db_1 | 2021-09-14 1:12:06 0 [Warning] 'proxies_priv' entry '@% root@9d9a38899e38' ignored in --skip-name-resolve mode. db_1 | 2021-09-14 1:12:06 0 [Note] mysqld: ready for connections. db_1 | Version: '10.6.4-MariaDB-1:10.6.4+maria~focal' socket: '/run/mysqld/mysqld.sock' port: 3306 mariadb.org binary distribution db_1 | 2021-09-14 1:12:06 0 [Note] InnoDB: Buffer pool(s) load completed at 210914 1:12:06 openxpki-server_1 | Too late to run CHECK block at /usr/share/perl5/IO/Prompt.pm line 321. openxpki-server_1 | 2021/09/14-01:12:18 OpenXPKI::Server (type Net::Server::Fork -> MultiType -> Net::Server::Fork) starting! pid(1) openxpki-server_1 | Binding to UNIX socket file "/var/openxpki/openxpki.socket" openxpki-server_1 | Group Not Defined. Defaulting to EGID '0' openxpki-server_1 | User Not Defined. Defaulting to EUID '0' openxpki-server_1 | Setting gid to "102" openxpki-server_1 | Setting uid to "101"
_______________________________________________ OpenXPKI-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openxpki-users
