EJBCA安装打印信息2

来源:互联网 发布:淘宝助手 编辑:程序博客网 时间:2024/05/17 06:24

ejbca:init:
[echo]
[echo] ——————- CA Properties —————-
[echo] ca.name : ManagementCA
[echo] ca.dn : CN=ManagementCA,O=EJBCA,C=CN
[echo] ca.tokentype : soft
[echo] ca.keytype : RSA
[echo] ca.keyspec : 2048
[echo] ca.signaturealgorithm : SHA256WithRSA
[echo] ca.validity : 3650
[echo] ca.policy : null
[echo] ca.tokenproperties : ${ca.tokenproperties}
[echo] httpsserver.hostname : localhost
[echo] httpsserver.dn : CN=localhost,O=EJBCA Sample,C=SE
[echo] superadmin.cn : SuperAdmin
[echo] superadmin.dn : CN=SuperAdmin
[echo] superadmin.batch : true
[echo] appserver.home : /usr/local/jboss-as-7.1.1.Final/
[echo]

ejbca:install:

ejbca:initCA:
[echo] Initializing CA with ‘ManagementCA’ ‘CN=ManagementCA,O=EJBCA,C=CN’ ‘soft’ “<” ca.tokenpassword hidden> ‘2048’ ‘RSA’ ‘3650’ ‘null’ ‘SHA256WithRSA’ -superadmincn ‘SuperAdmin’…
[java] De-obfuscation not possible due to weak crypto policy.
[java] WARNING!
[java] WARNING: Using exportable strength crypto!
[java] WARNING!
[java] The Unlimited Strength Crypto policy files have not been installed. EJBCA may not function correctly using exportable crypto.
[java] Please install the Unlimited Strength Crypto policy files as documented in the Installation guide.
[java] Sleeping 10 seconds…
[java]
[java] Initializing CA
[java] Generating rootCA keystore:
[java] CA Type:x509
[java] CA name: ManagementCA
[java] SuperAdmin CN: SuperAdmin
[java] DN: CN=ManagementCA,O=EJBCA,C=CN
[java] CA token type: soft
[java] CA token password: hidden
[java] Keytype: RSA
[java] Keyspec: 2048
[java] Validity (days): 3650
[java] Policy ID: null
[java] Signature alg: SHA256WithRSA
[java] Certificate profile: ROOTCA
[java] CA token properties: {}
[java] Signed by: Self signed
[java] Initalizing authorization module with caid=-171269347 and superadmin CN ‘SuperAdmin’.
[java] Creating CA…
[java] CAId for created CA: -171269347
[java] Created and published initial CRL.
[java] CA initialized
[java] Note that any open browser sessions must be restarted to interact with this CA.

ejbca:adminweb:
[java] De-obfuscation not possible due to weak crypto policy.
[java] Using certificate profile: SERVER, with id: 9
[java] Trying to add end entity:
[java] Username: tomcat
[java] Password:
[java] DN: CN=localhost,O=EJBCA Sample,C=SE
[java] CA Name: ManagementCA
[java] SubjectAltName: dnsName=localhost,IPAddress=127.0.0.1
[java] Email: null
[java] Type: 1
[java] Token: JKS
[java] Certificate profile: 9
[java] End entity profile: 1
[java] User ‘tomcat’ has been added.
[java] Note: If batch processing should be possible, also use ‘ra setclearpwd tomcat ’.
[java] Setting clear text password for user tomcat
[echo] batch tomcat
[java] Generating keys in directory /usr/local/ejbca_ce_6_5.0.5/p12.
[java] Loading configuration from defaults.
[java] Generating RSA keys of size 2048 for tomcat.
[java] Created Keystore for ‘tomcat’.
[java] New user generated successfully - tomcat.
[java] De-obfuscation not possible due to weak crypto policy.
[java] Using certificate profile: ENDUSER, with id: 1
[java] Trying to add end entity:
[java] Username: superadmin
[java] Password:
[java] DN: CN=SuperAdmin
[java] CA Name: ManagementCA
[java] SubjectAltName: null
[java] Email: null
[java] Type: 1
[java] Token: P12
[java] Certificate profile: 1
[java] End entity profile: 1
[java] User ‘superadmin’ has been added.
[java] Note: If batch processing should be possible, also use ‘ra setclearpwd superadmin ’.
[java] Setting clear text password for user superadmin

ejbca:batchsuperadmin:
[echo] batch superadmin
[java] Generating keys in directory /usr/local/ejbca_ce_6_5.0.5/p12.
[java] Loading configuration from defaults.
[java] Generating RSA keys of size 2048 for superadmin.
[java] Created Keystore for ‘superadmin’.
[java] New user generated successfully - superadmin.

ejbca:deploytrustprompt:
[input] skipping input as property java.trustpassword has already been set.

ejbca:javatruststore:
[input] skipping input as property ca.name has already been set.
[echo] Getting root certificate in DER format…
[echo] ca getcacert “ManagementCA” /tmp/rootca.der -der
[java] Wrote CA certificate to ‘/tmp/rootca.der’ using DER encoding.
[echo] Adding to or creating keystore: /usr/local/ejbca_ce_6_5.0.5/p12/truststore.jks

ejbca:javatruststore-removeold:
[exec] 证书已添加到密钥库中
[exec] [正在存储/usr/local/ejbca_ce_6_5.0.5/p12/truststore.jks]
[delete] Deleting: /tmp/rootca.der

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:check:
[echo] Using appserver.home : /usr/local/jboss-as-7.1.1.Final/

jee:assert-runJBoss7:
[echo] Checking if JBoss is up and running…
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…

jboss:reload:
[echo] Waiting (up to 240 seconds in total) for the application server to become ready for the next step…

jee:web-configureJBoss7:
[echo] Setting-up web configuration for JBoss 7 (ejbca must be deployed).

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:check:
[echo] Using appserver.home : /usr/local/jboss-as-7.1.1.Final/

jee:assert-runJBoss7:
[echo] Checking if JBoss is up and running…
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…

jee:web-configureJBoss7Web:
[echo] Setting-up web configuration for JBoss 7 (ejbca must be deployed).
[exec] Result: 1

customejbca.message:

appserver.error.message:

jee:web-configureJBoss7Cleanup:
[echo] Cleaning-up web configuration for JBoss 7 (ejbca must be deployed).
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[exec] Result: 1
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…
[echo] /interfaces=/interface=http:add(inet-address=”0.0.0.0”)
[exec] {“outcome” => “success”}
[echo] /interfaces=/interface=httpspub:add(inet-address=”0.0.0.0”)
[exec] {“outcome” => “success”}
[echo] /interfaces=/interface=httpspriv:add(inet-address=”0.0.0.0”)
[exec] {“outcome” => “success”}
[echo] /socket-binding-group=standard-sockets/socket-binding=http:add(port=”8080”,interface=”http”)
[exec] {“outcome” => “success”}
[echo] /subsystem=web/connector=http:add(protocol=HTTP/1.1, scheme=http, socket-binding=http)
[exec] {“outcome” => “success”}
[echo] /subsystem=web/connector=http:write-attribute(name=redirect-port, value=”8443”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /system-property=org.apache.tomcat.util.buf.UDecoder.ALLOW_ENCODED_SLASH:add(value=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /system-property=org.apache.catalina.connector.CoyoteAdapter.ALLOW_BACKSLASH:add(value=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /system-property=org.apache.catalina.connector.URI_ENCODING:add(value=”UTF-8”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /system-property=org.apache.catalina.connector.USE_BODY_ENCODING_FOR_QUERY_STRING:add(value=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /subsystem=webservices:write-attribute(name=wsdl-host, value=jbossws.undefined.host)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=webservices:write-attribute(name=modify-wsdl-address, value=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…
[echo] :reload
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:check:
[echo] Using appserver.home : /usr/local/jboss-as-7.1.1.Final/

jee:web-configureJBoss7SSL:
[echo] Setting-up SSL web configuration for JBoss 7.
[exec] Result: 1
[echo] /socket-binding-group=standard-sockets/socket-binding=httpspriv:add(port=”8443”,interface=”httpspriv”)
[exec] {“outcome” => “success”}
[echo] /subsystem=web/connector=httpspriv:add(protocol=HTTP/1.1, scheme=https, socket-binding=httpspriv, secure=true)
[exec] {“outcome” => “success”}
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:add(key-alias=”localhost”)
[exec] {“outcome” => “success”}
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:write-attribute(name=password, value=”serverpwd”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:write-attribute(name=certificate-key-file, value=”/usr/local/jboss-as-7.1.1.Final//standalone/configuration/keystore/keystore.jks”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:write-attribute(name=verify-client, value=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:write-attribute(name=ca-certificate-password, value=”changeit”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=web/connector=httpspriv/ssl=configuration:write-attribute(name=ca-certificate-file, value=”/usr/local/jboss-as-7.1.1.Final//standalone/configuration/keystore/truststore.jks”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /socket-binding-group=standard-sockets/socket-binding=httpspub:add(port=”8442”,interface=”httpspub”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /subsystem=web/connector=httpspub:add(protocol=HTTP/1.1, scheme=https, socket-binding=httpspub, secure=true)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /subsystem=web/connector=httpspub/ssl=configuration:add(key-alias=”localhost”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] /subsystem=web/connector=httpspub/ssl=configuration:write-attribute(name=password, value=”serverpwd”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] /subsystem=web/connector=httpspub/ssl=configuration:write-attribute(name=certificate-key-file, value=”/usr/local/jboss-as-7.1.1.Final//standalone/configuration/keystore/keystore.jks”)
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {
[exec] “operation-requires-reload” => true,
[exec] “process-state” => “reload-required”
[exec] }
[exec] }
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…
[echo] :reload
[exec] {
[exec] “outcome” => “success”,
[exec] “response-headers” => {“process-state” => “reload-required”}
[exec] }
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…
[exec] Result: 1
[exec] Result: 1
[echo] Waiting (up to 30 seconds in total) for the application server to become ready for the next step…

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:check:
[echo] Using appserver.home : /usr/local/jboss-as-7.1.1.Final/

jee:deployear:
[copy] Copying 1 file to /usr/local/jboss-as-7.1.1.Final/standalone/deployments

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

notifyDeploymentScannerJBoss7:

notifyDeploymentScanner:

jee:web-configure:

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:check:
[echo] Using appserver.home : /usr/local/jboss-as-7.1.1.Final/

jee:keystore:
[echo] Using JBoss deploy directory /usr/local/jboss-as-7.1.1.Final//standalone/deployments
[copy] Copying 1 file to /usr/local/jboss-as-7.1.1.Final/standalone/configuration/keystore

customejbca.message:

appserver.error.message:

set-paths-jboss7:

set-paths:

jee:deploytruststore:
[copy] Copying 1 file to /usr/local/jboss-as-7.1.1.Final/standalone/configuration/keystore

BUILD SUCCESSFUL
Total time: 2 minutes 55 seconds