Événements de désignation d'un nouvel administrateur

Événements de désignation d'un nouvel administrateur trouvés dans le journal d'audit.

Champs d'événement

Les journaux d'audit Access Gateway comprennent des informations sur les événements suivants :

Champ

Description

HORODATAGE

Date et heure système actuelles

NOM D'HÔTE

Nom d'hôte de l'événement de génération de nœud

APPLICATION

Au choix :

  • ACCESS_GATEWAY
  • OAG
  • OAG_MONITOR
  • ou un service spécifique comme la vérification de la connexion, le journal, etc.

SOUS-PROCESSUS

Au choix :

  • ApplicationService
  • ACCESS
  • ADMIN_CONSOLE
  • EBS_SSOAGENT
  • HOST_IP_CHECK
  • MONITOR
  • SCRIPT
  • SERVICE
  • TrustedOriginUpdateScheduler
  • WEB_CONSOLE
  • Ou un service spécifique tel que check_connection

COMPOSANT

Composant du sous-processus, par exemple :

  • AUTHN
  • AUTHZ
  • CLUSTER MANAGER ADMIN
  • ERREUR
  • IdP
  • INFORMATION
  • KRB5
  • LOG_DOWNLOAD_STATUS
  • LOG_PREPARE_OPERATION
  • LOG_PREPARE_STATUS
  • NGINX
  • SYSTEM
  • TRUSTED_DOMAINS

SUB-COMPONENT

Sous-composant du processus tel que :

  • ALERTE
  • EBS_SSOAGENT
  • HOST
  • INFORMATION
  • LOCAL
  • NETCAT
  • NOMINATION
  • POLICY
  • SESSION
  • STARTUP/SHUTDOWN

LOG_LEVEL

Niveau de journalisation, parmi les suivants : TRACE, DEBUG, INFO, WARN, ERROR ou FATAL.

ÉVÉNEMENT

Type d'événement

STRUCTURED_DATA

Données relatives à l'événement survenu.

MESSAGE

Message lisible.

Événements de désignation d'un nouvel administrateur

Événements enregistrés lorsque la désignation d'un nouvel administrateur est effectuée.

Désignation - Démarrage

Description : événements générés lorsque la désignation commence sur le nœud administrateur .

Messages :

  • OAG Version - 2020.8.3, Cluster Manager Version - 2020.1.5.20200803.174755

    Starting authorized nomination process

  • OAG Version - 2020.6.3, Cluster Manager Version - 2020.1.5.20200803.174755
  • Nomination.authKey envoyée au nœud administrateur : existingadmin[. domaine.tld]

Exemples :

  • 2020-08-05T18:40:23.711-07:00 nodeB OAG ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Mgmt console Event [USER="oag-mgmt"] OAG Version - 2020.6.3, Cluster Manager Version - 2020.1.5.20200803.174755
  • 2020-08-05T18:40:23.711-07:00 nodeB OAG ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Mgmt console Event [USER="oag-mgmt"] Starting authorized nomination process - OAG Version - 2020.6.3, Cluster Manager Version - 2020.1.5.20200803.174755
  • 2020-08-05T18:40:23.905-07:00 nodeB ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Send auth key to admin node [USER="oag-mgmt"] Sent nomination.authKey to admin node - existingadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oag-mgmt.

Action corrective :

S.O.

Désignation - initiée

Description : événements générés lorsque la désignation commence sur le nœud administrateur .

Messages :

Started nomination process with args: adminNode - [DNS name of existing admin ],

nominatedNode - [DNS name of nominated worker],

accessGatewayHostname - gw-admin.[domain.tld]

Exemples :

2020-08-04T14:28:48.376-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Arguments [USER="root"] Started nomination process with args: adminNode - oag.nodeA.com,nominatedNode - oag.nodeC.com, accessGatewayHostname - gw-admin.[domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Les nœuds de travail n'utilisent pas la bonne version

Description : un ou plusieurs nœuds ne disposent pas de la version de fonctionnalité requise.

Messages :

Incompatible node list - [worker.[domain.tld]...] Update worker nodes to version - 2020.8.3 or higher.

Exemples :

2020-08-04T14:28:48.380-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION ERROR Determine Version Compatibility [USER="root"] Incompatible Node List - oag.nodeB.com,oag.nodeD.com. Update worker nodes to version - 2020.8.3 or higher

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

Mettez à jour les nœuds de travail identifiés vers la version 2020.8.3 ou ultérieure, puis relancez le processus de désignation.

Désignation - Nœud de travail nommé dissocié du cluster

Description : événements générés lorsque le nœud de travail nommé a été dissocié du cluster avant de devenir le nouveau nœud administrateur .

Messages :

  • Removed nominated admin node - existingadmin[.domain.tld] from HA configuration files
  • Failed to remove nominated admin node - existingadmin[.domain.tld] from HA configuration files.

Exemples :

  • 2020-08-04T14:28:48.380-05:00 existingadmin.[.domain.tld] ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION ERROR Remove nominated node from HA [USER="root"] Removed nominated admin node - name[.domain.tld] from HA configuration files.
  • 2020-08-04T14:28:48.380-05:00 existingadmin.[domain.tld] ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION ERROR Remove nominated node from HA [USER="root"] Failed to remove nominated admin node - name[.domain.tld] from HA configuration files.

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

Aucune action requise : si l'opération échoue, le nœud administrateur revient à son état initial. Le nœud désigné est également ramené à son état pré-désignation.

Désignation - nœud désigné cloné

Description : événements générés lorsque la configuration actuelle a été transférée vers le nœud de travail désigné.

Messages :

  • Transferred HA configuration files from current admin node - worker[.domain.tld].
  • Failed to transfer HA configuration files from current admin node - worker[.domain.tld].

Exemples :

  • 2020-08-04T14:27:42.345-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Copy HA configs [USER="root"] Transferred HA configuration files from current admin node - worker[.domain.tld].
  • 2020-08-04T14:27:42.345-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Copy HA configs [USER="root"] Failed to transfer HA configuration files from current admin node - worker[.domain.tld].

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oag-mgmt.

Action corrective :

Aucune action requise : si le processus échoue, le nœud de travail désigné revient à son état initial.

Désignation - Échange de clés

Description : événements générés lorsque les clés requises sont échangées entre administrateur existant et administrateur désigné.

Messages :

Backup of ssh keys completed for nominated node - newadmin.[domain.tld].

Exemples :

2020-08-04T14:27:42.362-05:00 newadmin[.domain.tld] ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Backup SSH Keys [USER="root"] Backup of ssh keys completed for nominated node - worker.[domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oag-mgmt.

Désignation - Échange de clés

Description : événements générés lorsque les clés requises sont synchronisées entre administrateur et nœuds de travail.

Messages :

  • Synced known_hosts and authorized_keys of current admin node - worker[.domain.tld] with all worker nodes.
  • Failed to sync known_hosts and authorized_keys of current admin node - oag.nodeA.com with all worker nodes.

Exemples :

  • 2020-08-04T14:27:43.823-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Sync keys [USER="root"] Synced known_hosts and authorized_keys of current admin node - worker[.domain.tld] with all worker nodes
  • 2020-08-04T14:27:43.823-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Sync keys [USER="root"] Failed to sync known_hosts and authorized_keys of current admin node - worker[.domain.tld] with all worker nodes

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

Aucune action requise : si l'opération échoue, le nœud de travail désigné revient à son état initial.

Désignation - Mettre à jour la configuration de la haute disponibilité des nœuds de travail

Description : événements générés lors de l'échange de la configuration de la haute disponibilité entre administrateur désigné et nœuds de travail.

Messages :

  • Prepared HA config file - /tmp/nolock.update_ha_configs.f76c8aea-073b-4241-8960-536fb26573d5.json for worker node - workerX[.domain.tld].
  • Sent nolock.update_ha_configs.f76c8aea-073b-4241-8960-536fb26573d5.json file to worker node - workerX[.domain.tld].
  • Prepared HA config file - /tmp/nolock.update_ha_configs.01880ce6-6ac3-4dd9-ac14-934a301490f3.json for worker node - workerX.[domain.tld]
  • Sent nolock.update_ha_configs.01880ce6-6ac3-4dd9-ac14-934a301490f3.json file to worker node - workerX.[.domain.tld]

Exemples :

  • 2020-08-04T14:27:43.883-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Prep HA config for worker node [USER="root"] Prepared HA config file - /tmp/nolock.update_ha_configs.f76c8aea-073b-4241-8960-536fb26573d5.json for worker node - workerX[.domain.tld]
  • 2020-08-04T14:27:44.086-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Send HA config to worker node [USER="root"] Sent nolock.update_ha_configs.f76c8aea-073b-4241-8960-536fb26573d5.json file to worker node - workerX[.domain.tld].
  • 2020-08-04T14:27:44.107-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Prep HA config for worker node [USER="root"] Prepared HA config file - /tmp/nolock.update_ha_configs.01880ce6-6ac3-4dd9-ac14-934a301490f3.json for worker node - workerX[.domain.tld]
  • 2020-08-04T14:27:44.307-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Send HA config to worker node [USER="root"] Sent nolock.update_ha_configs.01880ce6-6ac3-4dd9-ac14-934a301490f3.json file to worker node - workerX[.domain.tld].
  • 2020-08-04T14:27:44.307-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Send HA config to worker node [USER="root"] Failed to send nolock.update_ha_configs.01880ce6-6ac3-4dd9-ac14-934a301490f3.json file to worker node - workerX[.domain.tld].

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

Aucune action requise : si l'opération échoue, le nœud de travail désigné et les nœuds de travail affectés reviennent à leur état d'origine.

Désignation - Mettre à jour la configuration de la haute disponibilité des nœuds de travail

Description : événements générés lorsque les travailleurs accusent réception d'une nouvelle configuration de la haute disponibilité.

Messages :

  • Received - 0/2 acknowledgements so far
  • Received acknowledgment for Worker node - workerX[.domain.tld] with updated Admin Node - newadmin[.domain.tld]
  • Received - 2/2 acknowledgements so far
  • Newly nominated admin node - newadmin[.domain.tld] has been acknowledged by all worker nodes
  • Received acknowledgment 1/2 acknowledgements so far

Exemples :

  • 2020-08-04T14:27:44.346-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Received acknowledgment [USER="root"] Received - 0/2 acknowledgements so far
  • 8-04T14:27:54.383-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Received acknowledgment [USER="root"] Received acknowledgment for Worker node - workerX.[domain.tld] with updated Admin Node - newadmin[.domain.tld]
  • 2020-08-04T14:27:54.428-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Received acknowledgment [USER="root"] Received - 2/2 acknowledgements so far
  • 2020-08-04T14:28:04.448-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Received acknowledgment [USER="root"] Newly nominated admin node - oag.nodeC.com has been acknowledged by all worker nodes
  • 2020-08-04T14:28:04.448-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Received acknowledgment [USER="root"] Received acknowledgment 1/2 acknowledgements so far

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oag-mgmt.

Action corrective :

Contactez le support pour déterminer pourquoi le nœud de travail spécifique n'a pas renvoyé l'accusé de réception.

Désignation - Repasser un administrateur existant en autonome

Description : événement généré à l'achèvement de la désignation lorsque l'administrateur existant devient un nœud autonome.

Messages :

Reset HA configs of older admin node - oldadmin[.domain.tld]

Exemples :

2020-08-04T14:28:04.806-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Reset admin node HA setup [USER="root"] Reset HA configs of older admin node - oag.nodeA.com

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Confirmation de la réinitialisation

Description : événement généré pour confirmer la réinitialisation d'un administrateur existant en autonome.

Messages :

  • Admin nomination process completed successfully for new admin node - existingadmin[.domain.tld].
  • Reset HA configs for admin node - existingadmin[.domain.tld]

Exemples :

  • 2020-08-04T14:28:04.818-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Nomination completed [USER="root"] Admin nomination process completed successfully for new admin node - oldamin[.domain.tld].
  • 2020-08-04T14:28:04.818-05:00 oag.nodeC.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Nomination completed [USER="root"] Admin nomination process completed successfully for new admin node - oldamin[.domain.tld].

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Code d'autorisation incorrect

Description : événement généré lorsque l'utilisateur administrateur saisit incorrectement le code d'autorisation de la nouvelle désignation.

Messages :

  • Authorization token is correct.
  • Authorization token is incorrect.
  • Initiating nomination process on Nominated node - newadmin[.domain.tld].
  • Sent nolock.start_admin_nomination.json to nominated node - oag.nodeC.com

Exemples :

  • 2020-08-06T12:15:23.136-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Auth Token Verification [USER="oag-mgmt"] Authorization token is correct
  • 2020-08-06T12:13:49.224-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION ERROR Auth Token Verification [USER="oag-mgmt"] Authorization token is incorrect
  • 2020-08-06T12:15:23.148-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Initiate nomination [USER="oag-mgmt"] Initiating nomination process on Nominated node - newadmin[.domain.tld].
  • 2020-08-06T12:15:23.423-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER ADMIN NOMINATION INFO Initiate nomination [USER="oag-mgmt"] Sent nolock.start_admin_nomination.json to nominated node - oag.nodeC.com

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oag-mgmt.

Action corrective :

Saisissez à nouveau le code correct.

Désignation - Un administrateur existant passe en mode maintenance

Description : événement généré lorsque l'administrateur existant passe en mode maintenance.

Messages :

Started Admin Node Nomination App on admin node - existingadmin.[domain.tld]

Exemples :

2020-08-06T13:06:41.872-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Started Admin Node Nomination App [USER="oagha"] Started Admin Node Nomination App on admin node - existingadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Un administrateur existant quitte le mode maintenance

Description : événement généré lorsqu'un administrateur quitte le mode maintenance.

Messages :

  • Activated Admin App for admin node - existingadmin[.domain.tld].
  • Removed Admin Node Nomination Mode App for admin node - existingadmin[.domain.tld].
  • Reset process completed for admin node - existingadmin[.domain.tld].

Exemples :

  • 2020-08-06T13:08:05.086-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Activate Admin App [USER="oagha"] Activated Admin App for admin node - existingadmin[.domain.tld]
  • 2020-08-06T13:08:05.105-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Removed Nomination Mode App [USER="oagha"] Removed Admin Node Nomination Mode App for admin node - existingadmin[.domain.tld]
  • 2020-08-06T13:08:05.118-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Reset process completed [USER="oagha"] Reset process completed for admin node - existingadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours oagha.

Action corrective :

S.O.

Désignation - Sauvegarde déclenchée sur un un nœud administrateur existant

Description : événement généré lorsqu'une sauvegarde est effectuée sur un administrateur existant.

Messages :

sudo ...

Exemples :

2020-08-06T13:06:42.000-05:00 existingadmin[.domain.tld] sudo oagha : TTY=unknown ; PWD=/opt/oag/configs/ha/configs.install ; USER=root ; COMMAND=/opt/oag/scripts/oag_backup.sh

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation : clés publiques et privées transférées vers le nouvel administrateur.

Description : les clés publiques et privées générées par l'événement sont transférées vers un nouvel administrateur.

Messages :

  • Copied private key of oagha user from node - existingadmin[.domain.tld to nominated node - newadmin[.domain.tld].
  • Copied public key oagha user from node - existingadmin[.domain.tld] to nominated node - existingadmin[.domain.tld].

Exemples :

  • 2020-08-06T13:07:43.331-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Copy user private key [USER="oagha"] Copied private key of oagha user from node - existingadmin[.domain.tld] to nominated node - newadmin.[domain.tld]
  • 2020-08-06T13:07:43.515-05:00 oag.nodeA.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE ADMIN INFO Copy user public key [USER="oagha"] Copied public key oagha user from node - existing.[domain.tld] to nominated node - newadmin.[domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Mises à jour des clés des nœuds de travail

Description : événement généré lorsqu'une clé est écrite sur un nœud de travail

Messages :

Public host keys of nominated admin node - workerX[.domain.tld] has been added to known_hosts file of worker node - newadmin[.domain.tld]

Exemples :

2020-08-06T13:07:43.228-05:00 oag.nodeB.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE WORKER INFO Update keys [USER="root"] Public host keys of nominated admin node - workerX.[domain.tld] has been added to known_hosts file of worker node - newadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Mises à jour de la configuration des nœuds de travail

Description : événement généré lorsque les clés d'un nœud de travail sont mises à jour

Messages :

Public host keys of nominated admin node - workerX[.domain.tld] has been added to known_hosts file of worker node - newadmin[.domain.tld]

Exemples :

2020-08-06T13:07:44.505-05:00 oag.nodeB.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE WORKER INFO Update HA Config [USER="root"] Updated HA config file - /opt/oag/configs/events/config/ha_configuration.config with nominated admin node as - newadmin[.domain.tld] and worker nodes as - workerX[.domain.tld], workerY[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Accusés de réception

Description : événement généré lorsque les désignations sont reconnues.

Messages :

  • Prepared acknowledgment file - /tmp/f76c8aea-073b-4241-8960-536fb26573d5.ack.prep.
  • Sent acknowledgment file - /tmp/f76c8aea-073b-4241-8960-536fb26573d5.ack.prep to nominated admin node - newadmin[.domain.tld]

Exemples :

  • 2020-08-06T13:07:44.520-05:00 oag.nodeB.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE WORKER INFO Prepare Ack file [USER="root"] Prepared acknowledgment file - /tmp/f76c8aea-073b-4241-8960-536fb26573d5.ack.prep
  • 2020-08-06T13:07:44.734-05:00 oag.nodeB.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE WORKER INFO Sent Ack file [USER="root"] Sent acknowledgment file - /tmp/f76c8aea-073b-4241-8960-536fb26573d5.ack.prep to nominated admin node - newadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Désignation - Désignation réussie

Description : événement généré lorsqu'une désignation se termine avec succès.

Messages :

Admin nomination process completed successfully on worker node - newadmin[.domain.tld].

Exemples :

2020-08-06T13:07:44.746-05:00 oag.nodeB.com ADMIN_CONSOLE CLUSTER MANAGER UPDATE WORKER INFO Sent Ack file [USER="root"] Admin nomination process completed successfully on worker node - newadmin[.domain.tld]

Données structurées

USER - Utilisateur effectuant des actions de désignation, toujours racine.

Action corrective :

S.O.

Rubriques connexes