Login | Register
My pages Projects Community openCollabNet

Discussions > users > current : cadmin create channel error

Project highlights: Stable Version: 1.6.1, Development Version: 1.7.6

current
Discussion topic

Hide all messages in topic

All messages in topic

Re: Re: Re: Re: Re: current : cadmin create channel error

Reply

Author theslack
Full name Jack Neely
Date 2007-03-21 07:29:33 PDT
Message 1) I don't really recal on the old 1.6 branch. That was a while ago.
Although, both the GUI and TUI should work there.

2) You can add any RPMs you like to the directories that make up your
channel in Current. All you need to do is re-run cadmin scan.

Jack

On 3/21/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
>
>
>
> Hi Jack . I seems that I succeeded to stabilize current server to work . So
> far with Sqlite option only . But it works .
> Now I've been dealing with building tree infrastructure for few RHEL clients
> . I predict there will be some questions indeed . At the moment two
> questions :
>
> 1 .When I register the client against current server the only option for
> that is to run up2date --register --nox command . The problem here is that
> registration cannot be done via GUI .Am I right ?
>
>
> 2. If it is possible to update current server with RPMs can be received from
> RHEL between updates ? I'm asking that since I used to build a channel for
> specific RHEL update . How can we add kernel updated version to the
> current's repository for example ? Simple copy does not help .
>
> for instance kernel version from update 4 for RHEL 4 is 2.6.9-42.EL
> whereas the latest version from errata is kernel-2.6.9-42.0.3.EL.i686.rpm ?
>
>
>
> Thanks . Vladimir
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use by
> the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> ********************​********************​********************​********************​***

RE: Re: Re: Re: Re: current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-21 03:57:51 PDT
Message Hi Jack . I seems that I succeeded to stabilize current server to work
. So far with Sqlite option only . But it works .
Now I've been dealing with building tree infrastructure for few RHEL
clients . I predict there will be some questions indeed . At the moment
two questions :

1 .When I register the client against current server the only option for
that is to run up2date --register --nox command . The problem here is
that registration cannot be done via GUI .Am I right ?

 
2. If it is possible to update current server with RPMs can be received
from RHEL between updates ? I'm asking that since I used to build a
channel for specific RHEL update . How can we add kernel updated
version to the current's repository for example ? Simple copy does not
help .

   for instance kernel version from update 4 for RHEL 4 is 2.6.9-42.EL
whereas the latest version from errata is
kernel-2.6.9-42.0.3.EL.i686.rpm ?

 

Thanks . Vladimir

********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments

RE: Re: Re: Re: Re: current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-20 14:18:51 PDT
Message Hi Jack . Thanks for support . So far I switched to Sqlite option
and it worked . I'll inspect MYsql option later :

 Now it looks like current server is running and ready for requests .
I've managed to register RHEL ES 4.0 update2 client already . And I have
to mention that registration requires specific definition for the
client :

  For example adding the channel in the way as below is wrong -

  cadmin create_channel --name "RHEL ES 4.4" --label 4.4 --arch i386
--release 4.4 --description "RHEL 4 update4"

The correct method is follow :

cadmin create_channel --name "RH4ES" --label RH4ES --arch i386
--release 4ES --description "4ES running on i686-redhat-linux"

This data is taken from /etc/sysconfig/rhn/systemid file .

   But ... when I launched on the client side up2date --install command
I've got an error :

up2date --update
There was a fatal error communicating with the server. The message was:
Not Found

 Please check /var/log/current.log file from this up2date --install
session .I used fake user for the registration .

Any ideas ?

   thanks . Vladimir .



  

-----Original Message-----
From: Jack Neely [mailto:jjneely at gmail dot com <mailto:jjneely@g​mail.com> ]
Sent: Tuesday, March 20, 2007 3:56 PM
To: users at current dot tigris dot org
Subject: Re: Re: Re: Re: current : cadmin create channel error

Is MySQL configured properly to allow the apache user to connect as
bob@localhost?

Jack

On 3/20/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
>
>
> Ok , you were right with certificates - I've checked the md5 sums
> and they were different .Fixed .Thanks .
> Now situation has improved indeed although again I receive an error
> from the current when try to build a channel :
>
> The last line of cadmin create_channel output is :
>
> OpenSSL.SSL.SysCallError: (104, 'Connection reset by peer')
>
> When I inspect the /var/log/current.log file I see the follow :
>
>
> Mar 20 10:26:18 Current v1.6.1 starting up Mar 20 10:26:18 Could not
> get DB connection!
> Mar 20 10:26:18 Error initializing data base! Current will not
> function
>
> But MYSQL daemon is running , up2date database was created and bob
> user has been granted permissions as in docs .
> My /etc/current/current.conf looks like :
>
> og_file = /var/log/current.log
> log_level = 4
> apache_config_file = /etc/httpd/conf.d/cu​rrent.httpd.conf
> access_type = user
> access_arg = apache
> current_dir = /export/current/www
> # The 'db' is which backend we're using # db_type=pysqlite db_type =
> mysql # db_user and db_pass should be obvious db_user = bob db_pass =
> # db_name is the name of the database - what oracle calls a 'SID'
> db_name = up2date
> db_host = localhost
> .........
>
> By the way what permissions are to be set for all current critical
files ?
> I noticed that even log file has to be configured in special way .
>
> Thanks again . Vladimir .
>
> -----Original Message-----
> From: Jack Neely [mailto:jjneely at gmail dot com <mailto:jjneely@g​mail.com>
]
> Sent: Monday, March 19, 2007 4:09 PM
> To: users at current dot tigris dot org
> Subject: Re: Re: Re: current : cadmin create channel error
>
> That only works in 1.7.x...
>
> The problem here is that 1.6 uses thel up2date python code directly to
> do cadmin's cummunication to the Current server. Vladimir, looks like
> the CA cert that your up2date configuration points to is not the CA
> cert on your apache server. There are docs for creating the SSL
> certifcates on the website.
>
> Jack
>
> On 3/19/07, Jared Greenwald <greenwaldjared@g​mail.com> wrote:
> > try something like this:
> >
> > cadmin -s http://localhost.XMLRPC <http://localhost.XMLRPC>
create_channel ...
> >
> >
> > -Jared
> >
> > On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
> > >
> > >
> > > Neither cadmin nor up2date commands do not understand -s option
.
> > > up2date config file is done as required .
> > >
> > > cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4
--arch
> i386
> > --release 4.4 --description "RHEL 4 update4"
> > > usage: cadmin [options]
> > >
> > > cadmin: error: no such option: -s
> > >
> > > Thanks . Vlad .
> > >
> > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com
<mailto:greenwald​jared at gmail dot com> ]
> > > Sent: Monday, March 19, 2007 3:17 PM
> > > To: users at current dot tigris dot org
> > > Subject: Re: Re: current : cadmin create channel error
> > >
> > >
> > >
> > > Anywhere on the command-line. I usually specify it first. The
> > > python
> > command-line option processing is extremely flexible.
> > >
> > > Also, I forgot to mention, the server address should include the
> > > path to
> > the XMLRPC, something like " http://localhost/XMLRPC
<http://localhost/XMLRPC> ".
> > >
> > > Hope that helps...
> > >
> > > -Jared
> > >
> > >
> > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > >
> > > >
> > > > Thanks for response .
> > > > Sorry , where it is to be specified ?
> > > >
> > > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com
<mailto:greenwald​jared at gmail dot com> ]
> > > > Sent: Monday, March 19, 2007 3:08 PM
> > > > To: users at current dot tigris dot org
> > > > Subject: Re: current : cadmin create channel error
> > > >
> > > >
> > > >
> > > > You must specify a server with either "-s" or "--server".
> > > >
> > > > -Jared
> > > >
> > > >
> > > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > > >
> > > > >
> > > > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4
> > > > > update 4
> > .After I configured current.conf ,mysql , current.httpd.conf , ssl
> > certificates files and copied them to their places I get an error
> > when run cadmin create_channel step :
> > > > >
> > > > > [root@current4 ~]# cadmin create_channel --name "RHEL ES
4.4"
> > --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
> > > > > Traceback (most recent call last):
> > > > > File "/usr/sbin/cadmin", line 131, in ?
> > > > > main()
> > > > > .
> > > > > (here are numbers of output lines ).
> > > > > .
> > > > > .
> > > > > sent = self._connection.send(data)
> > > > > OpenSSL.SSL.Error: [('SSL routines',
> > > > > 'SSL3_GET_SERVER_CERTIFICATE',
> > 'certificate verify failed')]
> > > > >
> > > > > Also when I try to register the server against itself there
> > > > > is as
> > error on SSL as well :
> > > > >
> > > > > strace -o /tmp/log1 up2date --register --nox There was an SSL
> > > > > error: [('SSL routines',
> > 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > > > A common cause of this error is the system time being
incorrect.
> > Verify that the time on this system is correct.
> > > > >
> > > > > Although ntpd is running .
> > > > > File /etc/sysconfig/rhn/up2date point to the current server
> > > > > in FQDN
> > way .
> > > > > Ports 80 and 443 are open .
> > > > >
> > > > > Also I verified the certificate with : openssl s_client
> > > > > -connect
> > current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
> > > > >
> > > > > Verify return code: 18 (self signed certificate) output .
> > > > >
> > > > > What can go wrong here ? Thank you for assistance .
> > > > >
> > > > > Yours ,
> > > > > Vladimir Berezovski
> >
> .*******************​********************​********************​**********
> > **************
> > > > > This email message and any attachments thereto are intended
> > > > > only for
> > use by the addressee(s) named above, and may contain legally
> > privileged and/or confidential information. If the reader of this
> > message is not the intended recipient, or the employee or agent
> > responsible to deliver it to the intended recipient, you are hereby
> > notified that any dissemination, distribution or copying of this
> > communication is strictly prohibited. If you have received this
> > communication in error, please immediately notify the
> > postmaster at nds dot com
> and destroy the original message.
> > > > >
> >
> ********************​********************​********************​**********
> > *************
> > > > >
> >
> --------------------​--------------------​--------------------​---------
> > > > > To unsubscribe, e-mail:
> > users-unsubscribe@cu​rrent.tigris.org
> > > > > For additional commands, e-mail: users-help at current dot tigris dot org
> > > > >
> > > > >
> > > >
> > > >
> >
> ********************​********************​********************​**********
> > *************
> > > > This email message and any attachments thereto are intended only
> > > > for use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is
> > not the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that
> > any dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in
> > error, please immediately notify the postmaster at nds dot com and destroy
> > the original
> message.
> > > >
> >
> ********************​********************​********************​**********
> > *************
> > >
> > >
> >
> ********************​********************​********************​**********
> > *************
> > > This email message and any attachments thereto are intended only
> > > for use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is
> > not the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that
> > any dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in
> > error, please immediately notify the postmaster at nds dot com and destroy
> > the original
> message.
> > >
> >
> ********************​********************​********************​**********
> > *************
> >
> >
>
> --------------------​--------------------​--------------------​---------
> To unsubscribe, e-mail:
> users-unsubscribe@cu​rrent.tigris.org
> For additional commands, e-mail: users-help at current dot tigris dot org
>
>
>
> ********************​********************​********************​**********
> ************* This email message and any attachments thereto are
> intended only for use by the addressee(s) named above, and may contain
> legally privileged and/or confidential information. If the reader of
> this message is not the intended recipient, or the employee or agent
> responsible to deliver it to the intended recipient, you are hereby
> notified that any dissemination, distribution or copying of this
> communication is strictly prohibited. If you have received this
> communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> ********************​********************​********************​**********
> *************

--------------------​--------------------​--------------------​---------
To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
For additional commands, e-mail: users-help at current dot tigris dot org



********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments

Re: Re: Re: Re: current : cadmin create channel error

Reply

Author theslack
Full name Jack Neely
Date 2007-03-20 06:56:06 PDT
Message Is MySQL configured properly to allow the apache user to connect as
bob@localhost?

Jack

On 3/20/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
>
>
> Ok , you were right with certificates - I've checked the md5 sums and
> they were different .Fixed .Thanks .
> Now situation has improved indeed although again I receive an error from the
> current when try to build a channel :
>
> The last line of cadmin create_channel output is :
>
> OpenSSL.SSL.SysCallError: (104, 'Connection reset by peer')
>
> When I inspect the /var/log/current.log file I see the follow :
>
>
> Mar 20 10:26:18 Current v1.6.1 starting up
> Mar 20 10:26:18 Could not get DB connection!
> Mar 20 10:26:18 Error initializing data base! Current will not function
>
> But MYSQL daemon is running , up2date database was created and bob user
> has been granted permissions as in docs .
> My /etc/current/current.conf looks like :
>
> og_file = /var/log/current.log
> log_level = 4
> apache_config_file = /etc/httpd/conf.d/cu​rrent.httpd.conf
> access_type = user
> access_arg = apache
> current_dir = /export/current/www
> # The 'db' is which backend we're using
> # db_type=pysqlite
> db_type = mysql
> # db_user and db_pass should be obvious
> db_user = bob
> db_pass =
> # db_name is the name of the database - what oracle calls a 'SID'
> db_name = up2date
> db_host = localhost
> .........
>
> By the way what permissions are to be set for all current critical files ?
> I noticed that even log file has to be configured in special way .
>
> Thanks again . Vladimir .
>
> -----Original Message-----
> From: Jack Neely [mailto:jjneely at gmail dot com]
> Sent: Monday, March 19, 2007 4:09 PM
> To: users at current dot tigris dot org
> Subject: Re: Re: Re: current : cadmin create channel error
>
> That only works in 1.7.x...
>
> The problem here is that 1.6 uses thel up2date python code directly to do
> cadmin's cummunication to the Current server. Vladimir, looks like the CA
> cert that your up2date configuration points to is not the CA cert on your
> apache server. There are docs for creating the SSL certifcates on the
> website.
>
> Jack
>
> On 3/19/07, Jared Greenwald <greenwaldjared@g​mail.com> wrote:
> > try something like this:
> >
> > cadmin -s http://localhost.XMLRPC create_channel ...
> >
> >
> > -Jared
> >
> > On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
> > >
> > >
> > > Neither cadmin nor up2date commands do not understand -s option .
> > > up2date config file is done as required .
> > >
> > > cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4 --arch
> i386
> > --release 4.4 --description "RHEL 4 update4"
> > > usage: cadmin [options]
> > >
> > > cadmin: error: no such option: -s
> > >
> > > Thanks . Vlad .
> > >
> > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > > Sent: Monday, March 19, 2007 3:17 PM
> > > To: users at current dot tigris dot org
> > > Subject: Re: Re: current : cadmin create channel error
> > >
> > >
> > >
> > > Anywhere on the command-line. I usually specify it first. The
> > > python
> > command-line option processing is extremely flexible.
> > >
> > > Also, I forgot to mention, the server address should include the
> > > path to
> > the XMLRPC, something like " http://localhost/XMLRPC".
> > >
> > > Hope that helps...
> > >
> > > -Jared
> > >
> > >
> > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > >
> > > >
> > > > Thanks for response .
> > > > Sorry , where it is to be specified ?
> > > >
> > > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > > > Sent: Monday, March 19, 2007 3:08 PM
> > > > To: users at current dot tigris dot org
> > > > Subject: Re: current : cadmin create channel error
> > > >
> > > >
> > > >
> > > > You must specify a server with either "-s" or "--server".
> > > >
> > > > -Jared
> > > >
> > > >
> > > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > > >
> > > > >
> > > > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4
> > > > > update 4
> > .After I configured current.conf ,mysql , current.httpd.conf , ssl
> > certificates files and copied them to their places I get an error when
> > run cadmin create_channel step :
> > > > >
> > > > > [root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4"
> > --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
> > > > > Traceback (most recent call last):
> > > > > File "/usr/sbin/cadmin", line 131, in ?
> > > > > main()
> > > > > .
> > > > > (here are numbers of output lines ).
> > > > > .
> > > > > .
> > > > > sent = self._connection.send(data)
> > > > > OpenSSL.SSL.Error: [('SSL routines',
> > > > > 'SSL3_GET_SERVER_CERTIFICATE',
> > 'certificate verify failed')]
> > > > >
> > > > > Also when I try to register the server against itself there is
> > > > > as
> > error on SSL as well :
> > > > >
> > > > > strace -o /tmp/log1 up2date --register --nox There was an SSL
> > > > > error: [('SSL routines',
> > 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > > > A common cause of this error is the system time being incorrect.
> > Verify that the time on this system is correct.
> > > > >
> > > > > Although ntpd is running .
> > > > > File /etc/sysconfig/rhn/up2date point to the current server in
> > > > > FQDN
> > way .
> > > > > Ports 80 and 443 are open .
> > > > >
> > > > > Also I verified the certificate with : openssl s_client
> > > > > -connect
> > current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
> > > > >
> > > > > Verify return code: 18 (self signed certificate) output .
> > > > >
> > > > > What can go wrong here ? Thank you for assistance .
> > > > >
> > > > > Yours ,
> > > > > Vladimir Berezovski
> >
> .*******************​********************​********************​**********
> > **************
> > > > > This email message and any attachments thereto are intended only
> > > > > for
> > use by the addressee(s) named above, and may contain legally
> > privileged and/or confidential information. If the reader of this
> > message is not the intended recipient, or the employee or agent
> > responsible to deliver it to the intended recipient, you are hereby
> > notified that any dissemination, distribution or copying of this
> > communication is strictly prohibited. If you have received this
> > communication in error, please immediately notify the postmaster at nds dot com
> and destroy the original message.
> > > > >
> >
> ********************​********************​********************​**********
> > *************
> > > > >
> >
> --------------------​--------------------​--------------------​---------
> > > > > To unsubscribe, e-mail:
> > users-unsubscribe@cu​rrent.tigris.org
> > > > > For additional commands, e-mail: users-help at current dot tigris dot org
> > > > >
> > > > >
> > > >
> > > >
> >
> ********************​********************​********************​**********
> > *************
> > > > This email message and any attachments thereto are intended only
> > > > for use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is not
> > the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that any
> > dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in error,
> > please immediately notify the postmaster at nds dot com and destroy the original
> message.
> > > >
> >
> ********************​********************​********************​**********
> > *************
> > >
> > >
> >
> ********************​********************​********************​**********
> > *************
> > > This email message and any attachments thereto are intended only for
> > > use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is not
> > the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that any
> > dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in error,
> > please immediately notify the postmaster at nds dot com and destroy the original
> message.
> > >
> >
> ********************​********************​********************​**********
> > *************
> >
> >
>
> --------------------​--------------------​--------------------​---------
> To unsubscribe, e-mail:
> users-unsubscribe@cu​rrent.tigris.org
> For additional commands, e-mail: users-help at current dot tigris dot org
>
>
>
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use by
> the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> ********************​********************​********************​********************​***

Re: Re: Re: Re: current : cadmin create channel error

Reply

Author Jared Greenwald <greenwaldjared at gmail dot com>
Full name Jared Greenwald <greenwaldjared at gmail dot com>
Date 2007-03-20 05:22:45 PDT
Message Did you run the cinstall commands to initialize the db?

On 3/20/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
> Ok , you were right with certificates - I've checked the md5 sums and
> they were different .Fixed .Thanks .
> Now situation has improved indeed although again I receive an error from
> the current when try to build a channel :
>
> The last line of *cadmin create_channel* output is :
>
> OpenSSL.SSL.SysCallError: (104, 'Connection reset by peer')
>
> When I inspect the /var/log/current.log file I see the follow :
>
>
> Mar 20 10:26:18 Current v1.6.1 starting up
> Mar 20 10:26:18 Could not get DB connection!
> Mar 20 10:26:18 Error initializing data base! Current will not function
>
> But MYSQL daemon is running , up2date database was created and bob user
> has been granted permissions as in docs .
> My /etc/current/current.conf looks like :
>
> og_file = /var/log/current.log
> log_level = 4
> apache_config_file = /etc/httpd/conf.d/cu​rrent.httpd.conf
> access_type = user
> access_arg = apache
> current_dir = /export/current/www
> # The 'db' is which backend we're using
> # db_type=pysqlite
> db_type = mysql
> # db_user and db_pass should be obvious
> db_user = bob
> db_pass =
> # db_name is the name of the database - what oracle calls a 'SID'
> db_name = up2date
> db_host = localhost
> .........
>
> By the way what permissions are to be set for all current critical files
> ? I noticed that even log file has to be configured in special way .
>
> Thanks again . Vladimir .
>
> -----Original Message-----
> From: Jack Neely [mailto:jjneely at gmail dot com <jjneely at gmail dot com>]
> Sent: Monday, March 19, 2007 4:09 PM
> To: users at current dot tigris dot org
> Subject: Re: Re: Re: current : cadmin create channel error
>
> That only works in 1.7.x...
>
> The problem here is that 1.6 uses thel up2date python code directly to do
> cadmin's cummunication to the Current server. Vladimir, looks like the CA
> cert that your up2date configuration points to is not the CA cert on your
> apache server. There are docs for creating the SSL certifcates on the
> website.
>
> Jack
>
> On 3/19/07, Jared Greenwald <greenwaldjared@g​mail.com> wrote:
> > try something like this:
> >
> > cadmin -s http://localhost.XMLRPC create_channel ...
> >
> >
> > -Jared
> >
> > On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
> > >
> > >
> > > Neither cadmin nor up2date commands do not understand -s option .
> > > up2date config file is done as required .
> > >
> > > cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4 --arch
> i386
> > --release 4.4 --description "RHEL 4 update4"
> > > usage: cadmin [options]
> > >
> > > cadmin: error: no such option: -s
> > >
> > > Thanks . Vlad .
> > >
> > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com<gree​nwaldjared at gmail dot com​>
> ]
> > > Sent: Monday, March 19, 2007 3:17 PM
> > > To: users at current dot tigris dot org
> > > Subject: Re: Re: current : cadmin create channel error
> > >
> > >
> > >
> > > Anywhere on the command-line. I usually specify it first. The
> > > python
> > command-line option processing is extremely flexible.
> > >
> > > Also, I forgot to mention, the server address should include the
> > > path to
> > the XMLRPC, something like " http://localhost/XMLRPC".
> > >
> > > Hope that helps...
> > >
> > > -Jared
> > >
> > >
> > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > >
> > > >
> > > > Thanks for response .
> > > > Sorry , where it is to be specified ?
> > > >
> > > > ____________________​____________
> > From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com<gree​nwaldjared at gmail dot com​>
> ]
> > > > Sent: Monday, March 19, 2007 3:08 PM
> > > > To: users at current dot tigris dot org
> > > > Subject: Re: current : cadmin create channel error
> > > >
> > > >
> > > >
> > > > You must specify a server with either "-s" or "--server".
> > > >
> > > > -Jared
> > > >
> > > >
> > > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > > >
> > > > >
> > > > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4
> > > > > update 4
> > .After I configured current.conf ,mysql , current.httpd.conf , ssl
> > certificates files and copied them to their places I get an error when
> > run cadmin create_channel step :
> > > > >
> > > > > [root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4"
> > --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
> > > > > Traceback (most recent call last):
> > > > > File "/usr/sbin/cadmin", line 131, in ?
> > > > > main()
> > > > > .
> > > > > (here are numbers of output lines ).
> > > > > .
> > > > > .
> > > > > sent = self._connection.send(data)
> > > > > OpenSSL.SSL.Error: [('SSL routines',
> > > > > 'SSL3_GET_SERVER_CERTIFICATE',
> > 'certificate verify failed')]
> > > > >
> > > > > Also when I try to register the server against itself there is
> > > > > as
> > error on SSL as well :
> > > > >
> > > > > strace -o /tmp/log1 up2date --register --nox There was an SSL
> > > > > error: [('SSL routines',
> > 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > > > A common cause of this error is the system time being incorrect.
> > Verify that the time on this system is correct.
> > > > >
> > > > > Although ntpd is running .
> > > > > File /etc/sysconfig/rhn/up2date point to the current server in
> > > > > FQDN
> > way .
> > > > > Ports 80 and 443 are open .
> > > > >
> > > > > Also I verified the certificate with : openssl s_client
> > > > > -connect
> > current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
> > > > >
> > > > > Verify return code: 18 (self signed certificate) output .
> > > > >
> > > > > What can go wrong here ? Thank you for assistance .
> > > > >
> > > > > Yours ,
> > > > > Vladimir Berezovski
> > .*******************​********************​********************​**********
> > **************
> > > > > This email message and any attachments thereto are intended only
> > > > > for
> > use by the addressee(s) named above, and may contain legally
> > privileged and/or confidential information. If the reader of this
> > message is not the intended recipient, or the employee or agent
> > responsible to deliver it to the intended recipient, you are hereby
> > notified that any dissemination, distribution or copying of this
> > communication is strictly prohibited. If you have received this
> > communication in error, please immediately notify the postmaster at nds dot comand destroy the original message.
> > > > >
> > ********************​********************​********************​**********
> > *************
> > > > >
> > --------------------​--------------------​--------------------​---------
> > > > > To unsubscribe, e-mail:
> > users-unsubscribe@cu​rrent.tigris.org
> > > > > For additional commands, e-mail: users-help at current dot tigris dot org
> > > > >
> > > > >
> > > >
> > > >
> > ********************​********************​********************​**********
> > *************
> > > > This email message and any attachments thereto are intended only
> > > > for use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is not
> > the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that any
> > dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in error,
> > please immediately notify the postmaster at nds dot com and destroy the
> original message.
> > > >
> > ********************​********************​********************​**********
> > *************
> > >
> > >
> > ********************​********************​********************​**********
> > *************
> > > This email message and any attachments thereto are intended only for
> > > use
> > by the addressee(s) named above, and may contain legally privileged
> > and/or confidential information. If the reader of this message is not
> > the intended recipient, or the employee or agent responsible to
> > deliver it to the intended recipient, you are hereby notified that any
> > dissemination, distribution or copying of this communication is
> > strictly prohibited. If you have received this communication in error,
> > please immediately notify the postmaster at nds dot com and destroy the
> original message.
> > >
> > ********************​********************​********************​**********
> > *************
> >
> >
>
> --------------------​--------------------​--------------------​---------
> To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
> For additional commands, e-mail: users-help at current dot tigris dot org
>
>
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
>
> ********************​********************​********************​********************​***
>
Attachments

RE: Re: Re: Re: current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-20 01:38:57 PDT
Message Ok , you were right with certificates - I've checked the md5 sums and
they were different .Fixed .Thanks .
Now situation has improved indeed although again I receive an error from
the current when try to build a channel :

The last line of cadmin create_channel output is :

OpenSSL.SSL.SysCallError: (104, 'Connection reset by peer')

When I inspect the /var/log/current.log file I see the follow :


Mar 20 10:26:18 Current v1.6.1 starting up
Mar 20 10:26:18 Could not get DB connection!
Mar 20 10:26:18 Error initializing data base! Current will not function

 
But MYSQL daemon is running , up2date database was created and bob
user has been granted permissions as in docs .
 My /etc/current/current.conf looks like :
 
og_file = /var/log/current.log
log_level = 4
apache_config_file = /etc/httpd/conf.d/cu​rrent.httpd.conf
access_type = user
access_arg = apache
current_dir = /export/current/www
# The 'db' is which backend we're using
# db_type=pysqlite
db_type = mysql
# db_user and db_pass should be obvious
db_user = bob
db_pass =
# db_name is the name of the database - what oracle calls a 'SID'
db_name = up2date
db_host = localhost
 .........
  
  By the way what permissions are to be set for all current critical
files ? I noticed that even log file has to be configured in special way
.

    Thanks again . Vladimir .

-----Original Message-----
From: Jack Neely [mailto:jjneely at gmail dot com]
Sent: Monday, March 19, 2007 4:09 PM
To: users at current dot tigris dot org
Subject: Re: Re: Re: current : cadmin create channel error

That only works in 1.7.x...

The problem here is that 1.6 uses thel up2date python code directly to
do cadmin's cummunication to the Current server. Vladimir, looks like
the CA cert that your up2date configuration points to is not the CA cert
on your apache server. There are docs for creating the SSL certifcates
on the website.

Jack

On 3/19/07, Jared Greenwald <greenwaldjared@g​mail.com> wrote:
> try something like this:
>
> cadmin -s http://localhost.XMLRPC create_channel ...
>
>
> -Jared
>
> On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
> >
> >
> > Neither cadmin nor up2date commands do not understand -s option .
> > up2date config file is done as required .
> >
> > cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4
--arch i386
> --release 4.4 --description "RHEL 4 update4"
> > usage: cadmin [options]
> >
> > cadmin: error: no such option: -s
> >
> > Thanks . Vlad .
> >
> > ____________________​____________
> From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > Sent: Monday, March 19, 2007 3:17 PM
> > To: users at current dot tigris dot org
> > Subject: Re: Re: current : cadmin create channel error
> >
> >
> >
> > Anywhere on the command-line. I usually specify it first. The
> > python
> command-line option processing is extremely flexible.
> >
> > Also, I forgot to mention, the server address should include the
> > path to
> the XMLRPC, something like " http://localhost/XMLRPC".
> >
> > Hope that helps...
> >
> > -Jared
> >
> >
> > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > >
> > >
> > > Thanks for response .
> > > Sorry , where it is to be specified ?
> > >
> > > ____________________​____________
> From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > > Sent: Monday, March 19, 2007 3:08 PM
> > > To: users at current dot tigris dot org
> > > Subject: Re: current : cadmin create channel error
> > >
> > >
> > >
> > > You must specify a server with either "-s" or "--server".
> > >
> > > -Jared
> > >
> > >
> > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > >
> > > >
> > > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4
> > > > update 4
> .After I configured current.conf ,mysql , current.httpd.conf , ssl
> certificates files and copied them to their places I get an error when
> run cadmin create_channel step :
> > > >
> > > > [root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4"
> --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
> > > > Traceback (most recent call last):
> > > > File "/usr/sbin/cadmin", line 131, in ?
> > > > main()
> > > > .
> > > > (here are numbers of output lines ).
> > > > .
> > > > .
> > > > sent = self._connection.send(data)
> > > > OpenSSL.SSL.Error: [('SSL routines',
> > > > 'SSL3_GET_SERVER_CERTIFICATE',
> 'certificate verify failed')]
> > > >
> > > > Also when I try to register the server against itself there is
> > > > as
> error on SSL as well :
> > > >
> > > > strace -o /tmp/log1 up2date --register --nox There was an SSL
> > > > error: [('SSL routines',
> 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > > A common cause of this error is the system time being incorrect.
> Verify that the time on this system is correct.
> > > >
> > > > Although ntpd is running .
> > > > File /etc/sysconfig/rhn/up2date point to the current server in
> > > > FQDN
> way .
> > > > Ports 80 and 443 are open .
> > > >
> > > > Also I verified the certificate with : openssl s_client
> > > > -connect
> current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
> > > >
> > > > Verify return code: 18 (self signed certificate) output .
> > > >
> > > > What can go wrong here ? Thank you for assistance .
> > > >
> > > > Yours ,
> > > > Vladimir Berezovski
> .*******************​********************​********************​**********
> **************
> > > > This email message and any attachments thereto are intended only
> > > > for
> use by the addressee(s) named above, and may contain legally
> privileged and/or confidential information. If the reader of this
> message is not the intended recipient, or the employee or agent
> responsible to deliver it to the intended recipient, you are hereby
> notified that any dissemination, distribution or copying of this
> communication is strictly prohibited. If you have received this
> communication in error, please immediately notify the
postmaster at nds dot com and destroy the original message.
> > > >
> ********************​********************​********************​**********
> *************
> > > >
> --------------------​--------------------​--------------------​---------
> > > > To unsubscribe, e-mail:
> users-unsubscribe@cu​rrent.tigris.org
> > > > For additional commands, e-mail: users-help at current dot tigris dot org
> > > >
> > > >
> > >
> > >
> ********************​********************​********************​**********
> *************
> > > This email message and any attachments thereto are intended only
> > > for use
> by the addressee(s) named above, and may contain legally privileged
> and/or confidential information. If the reader of this message is not
> the intended recipient, or the employee or agent responsible to
> deliver it to the intended recipient, you are hereby notified that any
> dissemination, distribution or copying of this communication is
> strictly prohibited. If you have received this communication in error,
> please immediately notify the postmaster at nds dot com and destroy the
original message.
> > >
> ********************​********************​********************​**********
> *************
> >
> >
> ********************​********************​********************​**********
> *************
> > This email message and any attachments thereto are intended only for
> > use
> by the addressee(s) named above, and may contain legally privileged
> and/or confidential information. If the reader of this message is not
> the intended recipient, or the employee or agent responsible to
> deliver it to the intended recipient, you are hereby notified that any
> dissemination, distribution or copying of this communication is
> strictly prohibited. If you have received this communication in error,
> please immediately notify the postmaster at nds dot com and destroy the
original message.
> >
> ********************​********************​********************​**********
> *************
>
>

--------------------​--------------------​--------------------​---------
To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
For additional commands, e-mail: users-help at current dot tigris dot org



********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments

Re: Re: Re: current : cadmin create channel error

Reply

Author theslack
Full name Jack Neely
Date 2007-03-19 07:09:03 PDT
Message That only works in 1.7.x...

The problem here is that 1.6 uses thel up2date python code directly to
do cadmin's cummunication to the Current server. Vladimir, looks like
the CA cert that your up2date configuration points to is not the CA
cert on your apache server. There are docs for creating the SSL
certifcates on the website.

Jack

On 3/19/07, Jared Greenwald <greenwaldjared@g​mail.com> wrote:
> try something like this:
>
> cadmin -s http://localhost.XMLRPC create_channel ...
>
>
> -Jared
>
> On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
> >
> >
> > Neither cadmin nor up2date commands do not understand -s option .
> > up2date config file is done as required .
> >
> > cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4 --arch i386
> --release 4.4 --description "RHEL 4 update4"
> > usage: cadmin [options]
> >
> > cadmin: error: no such option: -s
> >
> > Thanks . Vlad .
> >
> > ____________________​____________
> From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > Sent: Monday, March 19, 2007 3:17 PM
> > To: users at current dot tigris dot org
> > Subject: Re: Re: current : cadmin create channel error
> >
> >
> >
> > Anywhere on the command-line. I usually specify it first. The python
> command-line option processing is extremely flexible.
> >
> > Also, I forgot to mention, the server address should include the path to
> the XMLRPC, something like " http://localhost/XMLRPC".
> >
> > Hope that helps...
> >
> > -Jared
> >
> >
> > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > >
> > >
> > > Thanks for response .
> > > Sorry , where it is to be specified ?
> > >
> > > ____________________​____________
> From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > > Sent: Monday, March 19, 2007 3:08 PM
> > > To: users at current dot tigris dot org
> > > Subject: Re: current : cadmin create channel error
> > >
> > >
> > >
> > > You must specify a server with either "-s" or "--server".
> > >
> > > -Jared
> > >
> > >
> > > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > > >
> > > >
> > > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4 update 4
> .After I configured current.conf ,mysql , current.httpd.conf , ssl
> certificates files and copied them to their places I get an error when run
> cadmin create_channel step :
> > > >
> > > > [root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4"
> --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
> > > > Traceback (most recent call last):
> > > > File "/usr/sbin/cadmin", line 131, in ?
> > > > main()
> > > > .
> > > > (here are numbers of output lines ).
> > > > .
> > > > .
> > > > sent = self._connection.send(data)
> > > > OpenSSL.SSL.Error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
> 'certificate verify failed')]
> > > >
> > > > Also when I try to register the server against itself there is as
> error on SSL as well :
> > > >
> > > > strace -o /tmp/log1 up2date --register --nox
> > > > There was an SSL error: [('SSL routines',
> 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > > A common cause of this error is the system time being incorrect.
> Verify that the time on this system is correct.
> > > >
> > > > Although ntpd is running .
> > > > File /etc/sysconfig/rhn/up2date point to the current server in FQDN
> way .
> > > > Ports 80 and 443 are open .
> > > >
> > > > Also I verified the certificate with : openssl s_client -connect
> current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
> > > >
> > > > Verify return code: 18 (self signed certificate) output .
> > > >
> > > > What can go wrong here ? Thank you for assistance .
> > > >
> > > > Yours ,
> > > > Vladimir Berezovski
> .*******************​********************​********************​********************​****
> > > > This email message and any attachments thereto are intended only for
> use by the addressee(s) named above, and may contain legally privileged
> and/or confidential information. If the reader of this message is not the
> intended recipient, or the employee or agent responsible to deliver it to
> the intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> > > >
> ********************​********************​********************​********************​***
> > > >
> --------------------​--------------------​--------------------​---------
> > > > To unsubscribe, e-mail:
> users-unsubscribe@cu​rrent.tigris.org
> > > > For additional commands, e-mail: users-help at current dot tigris dot org
> > > >
> > > >
> > >
> > >
> ********************​********************​********************​********************​***
> > > This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> > >
> ********************​********************​********************​********************​***
> >
> >
> ********************​********************​********************​********************​***
> > This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
> >
> ********************​********************​********************​********************​***
>
>

Re: Re: Re: current : cadmin create channel error

Reply

Author Jared Greenwald <greenwaldjared at gmail dot com>
Full name Jared Greenwald <greenwaldjared at gmail dot com>
Date 2007-03-19 06:44:23 PDT
Message try something like this:

cadmin -s http://localhost.XMLRPC create_channel ...

-Jared

On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
> Neither cadmin nor up2date commands do not understand *-s* option .
> up2date config file is done as required .
>
> cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4 --arch i386
> --release 4.4 --description "RHEL 4 update4"
> usage: cadmin [options]
>
> cadmin: error: no such option: -s
>
> Thanks . Vlad .
>
> ------------------------------
> *From:* Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> *Sent:* Monday, March 19, 2007 3:17 PM
> *To:* users at current dot tigris dot org
> *Subject:* Re: Re: current : cadmin create channel error
>
> Anywhere on the command-line. I usually specify it first. The python
> command-line option processing is extremely flexible.
>
> Also, I forgot to mention, the server address should include the path to
> the XMLRPC, something like " http://localhost/XMLRPC".
>
> Hope that helps...
>
> -Jared
>
> On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> >
> > Thanks for response .
> > Sorry , where it is to be specified ?
> >
> > ------------------------------
> > *From:* Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> > *Sent:* Monday, March 19, 2007 3:08 PM
> > *To:* users at current dot tigris dot org
> > *Subject:* Re: current : cadmin create channel error
> >
> > You must specify a server with either "-s" or "--server".
> >
> > -Jared
> >
> > On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> > >
> > > Hi , I've been trying to launch Current 1.6 on RHEL ES 4 update 4
> > > .After I configured current.conf ,mysql , current.httpd.conf , ssl
> > > certificates files and copied them to their places I get an error when
> > > run cadmin create_channel step :
> > >
> > > [root@current4 ~]# *cadmin create_channel --name "RHEL ES 4.4"
> > > --label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4*"
> > > Traceback (most recent call last):
> > > File "/usr/sbin/cadmin", line 131, in ?
> > > main()
> > > .
> > > (here are numbers of output lines ).
> > > .
> > > .
> > > sent = self._connection.send(data)
> > > *OpenSSL.SSL.Error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
> > > 'certificate verify failed')]*
> > >
> > > Also when I try to register the server against itself there is as
> > > error on SSL as well :
> > >
> > > *strace -o /tmp/log1 up2date --register --nox
> > > *There was an SSL error: [('SSL routines',
> > > 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > > A common cause of this error is the system time being incorrect.
> > > Verify that the time on this system is correct.
> > >
> > > Although ntpd is running .
> > > File /etc/sysconfig/rhn/up2date point to the current server in FQDN
> > > way .
> > > Ports 80 and 443 are open .
> > >
> > > Also I verified the certificate with : *openssl s_client -connect
> > > current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :*
> > > **
> > > Verify return code: 18 (self signed certificate) output .
> > >
> > > What can go wrong here ? Thank you for assistance .
> > >
> > > *Yours ,*
> > > * Vladimir Berezovski .*
> > >
> > > ********************​********************​********************​********************​***
> > > This email message and any attachments thereto are intended only for
> > > use by the addressee(s) named above, and may contain legally privileged
> > > and/or confidential information. If the reader of this message is not the
> > > intended recipient, or the employee or agent responsible to deliver it to
> > > the intended recipient, you are hereby notified that any dissemination,
> > > distribution or copying of this communication is strictly prohibited. If you
> > > have received this communication in error, please immediately notify the
> > > postmaster at nds dot com and destroy the original message.
> > > ********************​********************​********************​********************​***
> > >
> > >
> > > --------------------​--------------------​--------------------​---------
> > > To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
> > > For additional commands, e-mail: users-help at current dot tigris dot org
> > >
> > >
> >
> > ********************​********************​********************​********************​***
> > This email message and any attachments thereto are intended only for use
> > by the addressee(s) named above, and may contain legally privileged and/or
> > confidential information. If the reader of this message is not the intended
> > recipient, or the employee or agent responsible to deliver it to the
> > intended recipient, you are hereby notified that any dissemination,
> > distribution or copying of this communication is strictly prohibited. If you
> > have received this communication in error, please immediately notify the
> > postmaster at nds dot com and destroy the original message.
> > ********************​********************​********************​********************​***
> >
> >
>
>
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
>
> ********************​********************​********************​********************​***
>
Attachments

RE: Re: Re: current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-19 06:29:12 PDT
Message Neither cadmin nor up2date commands do not understand -s option .
up2date config file is done as required .
 
cadmin create_channel -s --name "RHEL ES 4.4" --label 4.4 --arch
i386 --release 4.4 --description "RHEL 4 update4"
usage: cadmin [options]
 
cadmin: error: no such option: -s
 
  Thanks . Vlad .

____________________​____________

From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
Sent: Monday, March 19, 2007 3:17 PM
To: users at current dot tigris dot org
Subject: Re: Re: current : cadmin create channel error


Anywhere on the command-line. I usually specify it first. The python
command-line option processing is extremely flexible.

Also, I forgot to mention, the server address should include the path to
the XMLRPC, something like " http://localhost/XMLRPC".

Hope that helps...

-Jared


On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com
<mailto:Vberezovs​ki at nds dot com> > wrote:

    Thanks for response .
    Sorry , where it is to be specified ?

____________________​____________

    From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
    Sent: Monday, March 19, 2007 3:08 PM
    To: users at current dot tigris dot org
    Subject: Re: current : cadmin create channel error
    
    
    
    You must specify a server with either "-s" or "--server".
    
    -Jared
    
    
    On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com
<mailto:Vberezovs​ki at nds dot com> > wrote:

          Hi , I've been trying to launch Current 1.6 on RHEL ES
4 update 4 .After I configured current.conf ,mysql , current.httpd.conf
, ssl certificates files and copied them to their places I get an error
when run cadmin create_channel step :
         
        [root@current4 ~]# cadmin create_channel --name "RHEL
ES 4.4" --label 4.4 --arch i386 --release 4.4 --description "RHEL 4
update4"
        Traceback (most recent call last):
          File "/usr/sbin/cadmin", line 131, in ?
            main()
        .
         (here are numbers of output lines ).
        .
        .
            sent = self._connection.send(data)
        OpenSSL.SSL.Error: [('SSL routines',
'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
         
        Also when I try to register the server against itself
there is as error on SSL as well :
         
        strace -o /tmp/log1 up2date --register --nox
        There was an SSL error: [('SSL routines',
'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
        A common cause of this error is the system time being
incorrect. Verify that the time on this system is correct.
         
         Although ntpd is running .
         File /etc/sysconfig/rhn/up2date point to the current
server in FQDN way .
         Ports 80 and 443 are open .
         
         Also I verified the certificate with : openssl s_client
-connect current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and
got :
         
         Verify return code: 18 (self signed certificate) output
.
         
        What can go wrong here ? Thank you for assistance .
         
        Yours ,
            Vladimir Berezovski .
    
********************​********************​********************​************
***********
        This email message and any attachments thereto are
intended only for use by the addressee(s) named above, and may contain
legally privileged and/or confidential information. If the reader of
this message is not the intended recipient, or the employee or agent
responsible to deliver it to the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
communication in error, please immediately notify the postmaster at nds dot com
and destroy the original message.
    
********************​********************​********************​************
***********

    
--------------------​--------------------​--------------------​---------
        To unsubscribe, e-mail:
users-unsubscribe@cu​rrent.tigris.org
        For additional commands, e-mail:
users-help at current dot tigris dot org
        
        


    
********************​********************​********************​************
***********
    This email message and any attachments thereto are intended only
for use by the addressee(s) named above, and may contain legally
privileged and/or confidential information. If the reader of this
message is not the intended recipient, or the employee or agent
responsible to deliver it to the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
communication in error, please immediately notify the postmaster at nds dot com
and destroy the original message.
    
********************​********************​********************​************
***********


********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments

Re: Re: current : cadmin create channel error

Reply

Author Jared Greenwald <greenwaldjared at gmail dot com>
Full name Jared Greenwald <greenwaldjared at gmail dot com>
Date 2007-03-19 06:16:36 PDT
Message Anywhere on the command-line. I usually specify it first. The python
command-line option processing is extremely flexible.

Also, I forgot to mention, the server address should include the path to the
XMLRPC, something like "http://localhost/XMLRPC".

Hope that helps...

-Jared

On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
> Thanks for response .
> Sorry , where it is to be specified ?
>
> ------------------------------
> *From:* Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
> *Sent:* Monday, March 19, 2007 3:08 PM
> *To:* users at current dot tigris dot org
> *Subject:* Re: current : cadmin create channel error
>
> You must specify a server with either "-s" or "--server".
>
> -Jared
>
> On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com> wrote:
> >
> > Hi , I've been trying to launch Current 1.6 on RHEL ES 4 update 4
> > .After I configured current.conf ,mysql , current.httpd.conf , ssl
> > certificates files and copied them to their places I get an error when
> > run cadmin create_channel step :
> >
> > [root@current4 ~]# *cadmin create_channel --name "RHEL ES 4.4" --label
> > 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4*"
> > Traceback (most recent call last):
> > File "/usr/sbin/cadmin", line 131, in ?
> > main()
> > .
> > (here are numbers of output lines ).
> > .
> > .
> > sent = self._connection.send(data)
> > *OpenSSL.SSL.Error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
> > 'certificate verify failed')]*
> >
> > Also when I try to register the server against itself there is as error
> > on SSL as well :
> >
> > *strace -o /tmp/log1 up2date --register --nox
> > *There was an SSL error: [('SSL routines',
> > 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
> > A common cause of this error is the system time being incorrect. Verify
> > that the time on this system is correct.
> >
> > Although ntpd is running .
> > File /etc/sysconfig/rhn/up2date point to the current server in FQDN way
> > .
> > Ports 80 and 443 are open .
> >
> > Also I verified the certificate with : *openssl s_client -connect
> > current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :*
> > **
> > Verify return code: 18 (self signed certificate) output .
> >
> > What can go wrong here ? Thank you for assistance .
> >
> > *Yours ,*
> > * Vladimir Berezovski .*
> >
> > ********************​********************​********************​********************​***
> > This email message and any attachments thereto are intended only for use
> > by the addressee(s) named above, and may contain legally privileged and/or
> > confidential information. If the reader of this message is not the intended
> > recipient, or the employee or agent responsible to deliver it to the
> > intended recipient, you are hereby notified that any dissemination,
> > distribution or copying of this communication is strictly prohibited. If you
> > have received this communication in error, please immediately notify the
> > postmaster at nds dot com and destroy the original message.
> > ********************​********************​********************​********************​***
> >
> >
> > --------------------​--------------------​--------------------​---------
> > To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
> > For additional commands, e-mail: users-help at current dot tigris dot org
> >
> >
>
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
>
> ********************​********************​********************​********************​***
>
Attachments

RE: Re: current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-19 06:14:00 PDT
Message Thanks for response .
Sorry , where it is to be specified ?

____________________​____________

From: Jared Greenwald [mailto:greenwaldjar​ed at gmail dot com]
Sent: Monday, March 19, 2007 3:08 PM
To: users at current dot tigris dot org
Subject: Re: current : cadmin create channel error


You must specify a server with either "-s" or "--server".

-Jared


On 3/19/07, Berezovski, Vladimir < Vberezovski at nds dot com
<mailto:Vberezovs​ki at nds dot com> > wrote:

      Hi , I've been trying to launch Current 1.6 on RHEL ES 4
update 4 .After I configured current.conf ,mysql , current.httpd.conf ,
ssl certificates files and copied them to their places I get an error
when run cadmin create_channel step :
     
    [root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4"
--label 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
    Traceback (most recent call last):
      File "/usr/sbin/cadmin", line 131, in ?
        main()
    .
     (here are numbers of output lines ).
    .
    .
        sent = self._connection.send(data)
    OpenSSL.SSL.Error: [('SSL routines',
'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
     
    Also when I try to register the server against itself there is
as error on SSL as well :
     
    strace -o /tmp/log1 up2date --register --nox
    There was an SSL error: [('SSL routines',
'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]
    A common cause of this error is the system time being incorrect.
Verify that the time on this system is correct.
     
     Although ntpd is running .
     File /etc/sysconfig/rhn/up2date point to the current server in
FQDN way .
     Ports 80 and 443 are open .
     
     Also I verified the certificate with : openssl s_client
-connect current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and
got :
     
     Verify return code: 18 (self signed certificate) output .
     
    What can go wrong here ? Thank you for assistance .
     
    Yours ,
        Vladimir Berezovski .
    
********************​********************​********************​************
***********
    This email message and any attachments thereto are intended only
for use by the addressee(s) named above, and may contain legally
privileged and/or confidential information. If the reader of this
message is not the intended recipient, or the employee or agent
responsible to deliver it to the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
communication in error, please immediately notify the postmaster at nds dot com
and destroy the original message.
    
********************​********************​********************​************
***********

    
--------------------​--------------------​--------------------​---------
    To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
    For additional commands, e-mail: users-help at current dot tigris dot org
    
    


********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments

Re: current : cadmin create channel error

Reply

Author Jared Greenwald <greenwaldjared at gmail dot com>
Full name Jared Greenwald <greenwaldjared at gmail dot com>
Date 2007-03-19 06:08:25 PDT
Message You must specify a server with either "-s" or "--server".

-Jared

On 3/19/07, Berezovski, Vladimir <Vberezovski at nds dot com> wrote:
>
> Hi , I've been trying to launch Current 1.6 on RHEL ES 4 update 4
> .After I configured current.conf ,mysql , current.httpd.conf , ssl
> certificates files and copied them to their places I get an error when run
> cadmin create_channel step :
>
> [root@current4 ~]# *cadmin create_channel --name "RHEL ES 4.4" --label
> 4.4 --arch i386 --release 4.4 --description "RHEL 4 update4*"
> Traceback (most recent call last):
> File "/usr/sbin/cadmin", line 131, in ?
> main()
> .
> (here are numbers of output lines ).
> .
> .
> sent = self._connection.send(data)
> *OpenSSL.SSL.Error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
> 'certificate verify failed')]*
>
> Also when I try to register the server against itself there is as error
> on SSL as well :
>
> *strace -o /tmp/log1 up2date --register --nox
> *There was an SSL error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
> 'certificate verify failed')]
> A common cause of this error is the system time being incorrect. Verify
> that the time on this system is correct.
>
> Although ntpd is running .
> File /etc/sysconfig/rhn/up2date point to the current server in FQDN way .
> Ports 80 and 443 are open .
>
> Also I verified the certificate with : *openssl s_client -connect
> current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :*
> **
> Verify return code: 18 (self signed certificate) output .
>
> What can go wrong here ? Thank you for assistance .
>
> *Yours ,*
> * Vladimir Berezovski .*
>
> ********************​********************​********************​********************​***
> This email message and any attachments thereto are intended only for use
> by the addressee(s) named above, and may contain legally privileged and/or
> confidential information. If the reader of this message is not the intended
> recipient, or the employee or agent responsible to deliver it to the
> intended recipient, you are hereby notified that any dissemination,
> distribution or copying of this communication is strictly prohibited. If you
> have received this communication in error, please immediately notify the
> postmaster at nds dot com and destroy the original message.
>
> ********************​********************​********************​********************​***
>
> --------------------​--------------------​--------------------​---------
> To unsubscribe, e-mail: users-unsubscribe@cu​rrent.tigris.org
> For additional commands, e-mail: users-help at current dot tigris dot org
>
>
Attachments

current : cadmin create channel error

Reply

Author "Berezovski, Vladimir" <Vberezovski at nds dot com>
Full name "Berezovski, Vladimir" <Vberezovski at nds dot com>
Date 2007-03-19 05:58:09 PDT
Message Hi , I've been trying to launch Current 1.6 on RHEL ES 4 update 4
.After I configured current.conf ,mysql , current.httpd.conf , ssl
certificates files and copied them to their places I get an error when
run cadmin create_channel step :
 
[root@current4 ~]# cadmin create_channel --name "RHEL ES 4.4" --label
4.4 --arch i386 --release 4.4 --description "RHEL 4 update4"
Traceback (most recent call last):
  File "/usr/sbin/cadmin", line 131, in ?
    main()
.
 (here are numbers of output lines ).
.
.
    sent = self._connection.send(data)
OpenSSL.SSL.Error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
'certificate verify failed')]
 
Also when I try to register the server against itself there is as error
on SSL as well :
 
strace -o /tmp/log1 up2date --register --nox
There was an SSL error: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE',
'certificate verify failed')]
A common cause of this error is the system time being incorrect. Verify
that the time on this system is correct.
 
 Although ntpd is running .
 File /etc/sysconfig/rhn/up2date point to the current server in FQDN way
.
 Ports 80 and 443 are open .
 
 Also I verified the certificate with : openssl s_client -connect
current4:443 -CAfile /usr/share/rhn/RHNS-CA-CERT command and got :
 
 Verify return code: 18 (self signed certificate) output .
 
What can go wrong here ? Thank you for assistance .
 
Yours ,
    Vladimir Berezovski .
********************​********************​********************​********************​***
This email message and any attachments thereto are intended only for use by the addressee(s) named above, and may contain legally privileged and/or confidential information. If the reader of this message is not the intended recipient, or the employee or agent responsible to deliver it to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this communication in error, please immediately notify the postmaster at nds dot com and destroy the original message.
********************​********************​********************​********************​***
Attachments
Messages per page: