[External]RE: Install script failing

Christopher Bland chris at fdu.edu
Wed May 11 14:36:20 UTC 2022


Hi Gary & Rod,

Thanks for the feedback.

Gary - I only installed Java 11

# alternatives --config java

There is 1 program that provides 'java'.

  Selection    Command
-----------------------------------------------
*+ 1           java-11-openjdk.x86_64 (/usr/lib/jvm/java-11-openjdk-11.0.14.1.1-2.el8_5.x86_64/bin/java)

Enter to keep the current selection[+], or type selection number:

Rod – The first time I tried to run the install I used CLI options for many of the questions

./install.sh -Didp.keystore.password=PASSWORD -Didp.sealer.password= PASSWORD -Didp.entityID=https://server/idp/shibboleth -Didp.host.name=hostname

I have subsequently done multiple re-installs after removing the unpacked directory (rm -Rf /opt/shibboleth-id*) not using the CLI options but keep getting the same results.  I even tried v4.2.0 and got the same results.

Any idea where my initial CLI options would be stored since I am not getting prompted with the questions after I completely remove everything under /opt?

-Chris



From: users <users-bounces at shibboleth.net> on behalf of Rod Widdowson <rdw at steadingsoftware.com>
Date: Wednesday, May 11, 2022 at 5:15 AM
To: 'Shib Users' <users at shibboleth.net>
Subject: [External]RE: Install script failing
> I am trying to do a fresh install of IDP v4.2.1 on a RHEL 8 server with Java 11.

This doesn't look like a fresh install to me:

> install:
> Source (Distribution) Directory (press <enter> to accept default): [/opt/shibboleth-identity-provider-4.2.1] ?
>
> Installation Directory: [/opt/shibboleth-idp] ?
>
> INFO  - Including auto-located properties in /opt/shibboleth-idp/conf/c14n/subject-c14n.properties

In a fresh install you should have a whole dialog between these two lines:


> [/home/rdw/tmp/shibboleth-identity-provider-4.2.1/bin$ ./install.sh
> Buildfile: /home/rdw/tmp/shibboleth-identity-provider-4.2.1/bin/build.xml
>
> install:
> Source (Distribution) Directory (press <enter> to accept default): [/home/rdw/tmp/shibboleth-identity-provider-4.2.1] ?
>
> Installation Directory: [/opt/shibboleth-idp] ?
> /home/rdw/idp
> New Install.  Version: 4.2.1
> Host Name: [10.0.0.105] ?
>
> Creating idp-signing, CN = 10.0.0.105 URI = https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2F10.0.0.105%2Fidp%2Fshibboleth&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=wTFEE%2FMGpoNOujrJeoU0ic%2Bb2qSOzQUYS7oiqrDgJr8%3D&reserved=0, keySize=3072
> Creating idp-encryption, CN = 10.0.0.105 URI = https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2F10.0.0.105%2Fidp%2Fshibboleth&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=wTFEE%2FMGpoNOujrJeoU0ic%2Bb2qSOzQUYS7oiqrDgJr8%3D&reserved=0, keySize=3072
> Backchannel PKCS12 Password:
> Re-enter password:
> Creating backchannel keystore, CN = 10.0.0.105 URI = https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2F10.0.0.105%2Fidp%2Fshibboleth&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=wTFEE%2FMGpoNOujrJeoU0ic%2Bb2qSOzQUYS7oiqrDgJr8%3D&reserved=0, keySize=3072
> Cookie Encryption Key Password:
> Re-enter password:
> Creating backchannel keystore, CN = 10.0.0.105 URI = https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2F10.0.0.105%2Fidp%2Fshibboleth&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=wTFEE%2FMGpoNOujrJeoU0ic%2Bb2qSOzQUYS7oiqrDgJr8%3D&reserved=0, keySize=3072
> INFO  - No existing versioning property, initializing...
> SAML EntityID: [https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2F10.0.0.105%2Fidp%2Fshibboleth&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=wTFEE%2FMGpoNOujrJeoU0ic%2Bb2qSOzQUYS7oiqrDgJr8%3D&reserved=0] ?
>
> Attribute Scope: [0.0.105] ?
>
> INFO  - Including auto-located properties in /home/rdw/idp/conf/admin/admin.properties
>

So it would seem that /opt/shibboleth-idp has the relics of a previous install.  Remove it entirely before you start.

Also, and this may be where the subsequent confusion lies - run the install(or the update) from inside the unpacked distribution.
If you run from within your distribution things are going to get very weird.

Rod

--
For Consortium Member technical support, see https://nam02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fshibboleth.atlassian.net%2Fwiki%2Fx%2FZYEpPw&data=05%7C01%7Cchris%40fdu.edu%7C249692a8853d4a76a8ec08da332e59f7%7C3224fad94bcc4d47ae9886ea3c6b3b13%7C0%7C0%7C637878573210824592%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=RQUmqDjAcxvg%2Fi6QNDk5vz%2BfwumHIJlYi034bCtOiGQ%3D&reserved=0
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20220511/348f6277/attachment.htm>


More information about the users mailing list