//����JFIF��� "" $(4,$&1'-=-157:::#+?D?8C49:7 7%%77777777777777777777777777777777777777777777777777����"����H !1AQ"2aq�B�#R���3b�$Cr�4Ss�����%�Tt&c����$!1AQ"a#2B��?� ��}X����uAo)��8��^�� IƟ�������`v�U�p��9�jY0Ǧw)��E���허2jU`S���EK����w��5]kS������no���!�]���:?j�c����غV7�/��9N+�{����t����#��8zd/��3���F/��=����ź�3��GN����quV��"��/��4:�{���z�%��ۣ�I�'����D@%��8���8^�f}VV��)S_2��e��d�^Mx����"����͟?�U��C6�2��Q�%чm��O͓ ��cq���0r��ŖJ���Õ��_S��ݶ��'�|�G.��q�D��U�����]nP�����%�EF���>˲E�"���d�&�'�f2�s6�H��]�4�w�� I�S˶4�VbaQ+9]X��t�N���x:M0J�Nx�ϙ��⟟"{nr���;|{%�vo�z-wc,�*|���k��}�����-m�5��5o����4�W9ؓ���w�߱�Y�zk�� �.�=��/o�ϡȴ^9���ҧʹa�m��t��QԬZ��]4�?����e���g��jr�Q������}�+)Ml��eE�]��M�P���En������!�`IK2R�UEwVIoͷ�c��p�;����l�ś��e7������΄uN �;����rПV�������8�|��e��9Y-���V_�G���.)X����Ԣ�Ov�<;��_"ڜ�]����ߙ�Er���݊�'K���{Ku��B��J�}K�I��}�2�4|�"�v)/�ʻo�5�����)�������6-Tj����d7�.C�]�Q&lU�,�Yk1�P�4�~U�K�Z�s|�$kX��6��+������屷CU�q��+N�(������j��l���G�rp�G&UB�3#k�39�q�f���g�7�O�8�K�i���m(AJO�O~����C#e`i���0w�Ħ��ij����$�cW�h���<��d�t������Qߺ���"���NO�tG+Z�Ǫ]b�5%�]��v5��$���)�u|q�Z�柡�����s-rۖ�u$MKڎC��mN��_��V'����/�1���u,�2���1�����p��vlc>қ���eN���n��ֺ�|���b�kl��=�l�ǷN�O���ʣl���z���*]��»v���Ȏ��[�)�j�[�fs[]:s��#m6Qt6���*�Q+�������`�};ß�j[F_��jc��v���`����r�#��w���}�|k<�ڞ��/�r53N���8>��Kh����q�_��-��_��??��@���e�n�ſE�ܥ�D�YAE�o+ޟd�}IcY7+t{=ɩ��>�}i�����J�fx�z��VdSz��ᔢ���]Q^C�J�ի��ice���itM�M�5��hڦg'�)�^ ��et#ۯ���"ÿ�fF�->4i���ؤ��2ݷ����6�#�p6�����^-R̫gE�T�j^I���.��k���ӽ�U�p~D9[��:/>��h>�������g�J��|�ۿؘ>m�l���9�jMK���=�+�*2�i=�0�RiͶۗV���{�����"�u]I�H`��9���J_˹���K��ƼK$�X�-�|=v�e/� �������bjx���w����.�9i�%NqV��J��c�F��Y����K�cT�t�O��,�F�;%��6��7��vYb�8֝qq��0���t�U�t�=���D�����va��wsS���~����~Edzr���^F�-v��{c�++ݔ�|9��Iy � �#�nO�����av��OY��=3690��T���c�����r������i�lwa����˓m�$��?�箵S��6��U��� c(��.���~R���7s�u���M��h�q��cM��On�Ko��c���*ȣȩE����d���'��J��ܜk��*�_�q�}%�M��/�7c�����.|;���trddbsd���������cJ�ev�8�5̤�i�W�� �Ę� 8C#.�딖�e$��s��k80���^��J众2���)N�m~|Id��j�����_�� O+6���ǻ��#�(�M�Iz�4Qo��:օ��Y�,�:�q]�̌"��lK�}�{F]��ζ���)���h���>�ʶ� ^�u�e�7�8_G#���rq��v�$���wk�k�[���Q ��c��+վ����+ĸZΝ��F��B���]V�zo���iJRke&�Kg�o����m_7W�ef_7,�o�����sJɽE%��lzB��t>m��R�������s�)v8'��P��0ֲt����rOg4�p_2`��GlhY�ڦD��F/ӚK�m��t�m'P�2�k��qU7��6���5fJ���Y:�y؊.ox���%�8�V�_ִ̌ܞjp��q��w��ЮQ�;�i�U�cNo�O��o�ٸc�Y w�*��4soӵk�q�f�$��?�-��jy�~0�{�>�?Da�L��8�X�L��/�ɞ����o+'�8� {ʸx���գj���#Dy���)wk̘����e��۩+%����}���~;ڼ���5�xek|y-%�ڱ-ʜe:��EE���S��cÚ5z|r'��&�I�&���яF��*��F�7�|�[n�RF��=��(��4�ۖ�@.� �n7@x��x:N��^�8��B<�m�F&�W�=�mt�/�ex����%�Ռm3+2n�����o�;LՅf�w��,So��H�C�ȕ��n���lis&�{&��1��P�<�Ҝ�]>g%u��/���ny6&��d������R�{�?8��U_����Q6��Z߯�-��oh.��N�R��]}� qi6��~H�(����j���7*uF&l&��o8�t���s�]/P�89��:j�W*��$�w���Ӌ�F�x�ps��CJ�i.�������7N ���q4�W�U����_}�7����*M��#�qW�iص��n����k'4ݍ��l���*t^����c�<'d�:��~�͗�e�n�FQR������z�9��v��~������d��d�o�TZ��̚����k7��X���(����w�UswO̙fո�ҁ���Օ[�$��IAI>W���W~Ī��EѢ�Noe�u�t�Yߑ-��E�ix�ι��p�x�q{F�ny�f�R�r�j��q�����U��]>�����wPU�8�)Y-�7W�b�q㛋w:�7�����ܣ]�.����j�%K�:����y�4���] %����9�$���I�%��p�����T(�����V��q�i��Y�ٓ���4y�~5���S/�X��TDZ�M2lȪ��;� ��S��~���K�x�:��(�Mn0�'����;���-{*�qV��&�|W<�rί���7���������� �f;�*Qo�r�4�1�*�/�����3��S+֔a�{��R{�s=�l�Y�m�N����9Fn�&��o�'��}Vi��(� ?*q�V���5��ѼC�Ns��M��饏z��ߴ�$�����^������O6�9��@ ,�$y���|���j�E�;g�W/u|M?3+ZՕ��N������86�����յ��w%|���QO����㏏��S��E#�ddsg�l�+Scl�3�~�~C��ԕQ���ľ�?5�_z���߿t����11�OĶ0�>�oB9E/S����OSk��+�b�&�Yn>���$�����툧�e��g�) �"�!�܉(1 �uB���o�J)��/�t���/��,:�=�7M+1ܺ��#�Cm�S���^Nz� 6[�������u&]+|Dfj:uZ5��-Z�^�Tj����Mtm>���c��ȳ ��N��dT��_,M�#E�x;�pt۴�ͮ�#!���N �iK�l�!�z����Pծ�~$��1����Si��O}�H�I��&g ����Bf����)b��%K�o�̧kum���En�ص��;V�?j>nlt�OM�Vۆ�l�>.W�u��eY��a�w2�+�q���K�,?u��Hiqq�SM�}�~��gu�3����x��bc��W�S���y�/X�c�{%�sZ�]uaU�M;���7�:�����c��b����5�G�9�7'�7�þյW�,�;$ܛ����y�V����j�l��y�7S���;�o���6��g�f��.T�г�[7/�i1��Z^r�E� cUF'�P����1-�?���%���u&����q����{fw�~�27���ޡ ��^w$��?S�w��P[�=R3�Y�7��3� 4��x(K�k�&�r��L�ȫ���MKn�:R�j��c����I?3��Al`�v��ض���[��POĖ�SY�u�j�j6��v��+�-�[x��ҵ��=�~��zNN>�ɲQ�/u�u����f�����o*��e�6�l�����;31붏�.�>�w6=7#7�dFD�c����%�ƶ��T��bd;�2/�=?A�s�r! ~ZS�S~I"���9�y]�Hn�,�Ċ�J7�S��}c��K�"am�Cg3�y��P=�RQ�ɤ�W��}t�;-{F+v�+R���ɔ�ڎ�B?����º������{�SV�묖��k�ۏ�mK~%.��Q;�O�fE�f�_�Y�/�F�-�V���-�M���d�D��)m.Z��Ս��8�Y*��h��[���g�/�6yd���m�Cc[��rdf���ʾ䖗g��d���$^֍�^ʅѻ��L�|<[��݉�����߯�Ri�JU��o���'�;�œN?B� sm�S��ܹk���س,����m���RE��^�ѣl�J&��.�ċ�YO���:������fZ'H�CѯU[��ʩ���1f������f����4S-٥�Y�xT��IGLi��ыr� }L)ed�ׂ�*���l��|�ٚuox�ӿ�nWk�Tb�b���V�mz���T_���'�"x�����5��V�ި������xo1���ج^�F��q6��Sd3����w�s'/ڞ���6�m������?��}�1�O�sR�G�ݝ�+�,�~��ڬ%^��p��1�e�f��5�c���25��v��q~��﹉���ă�������[r�-��e��q]����� ����8+/E���S�j��}?��m����U�E.�x�����Y�K�3"oƔ������^��Y9I��]�I� ޑ"�� &��*4.�J�â�}����ټQb��X��K���J���nc�g�`�+�ri���ܭ��_�'��Bֽ�p����%�b�X�'�7cB�}��W�P������m�|���z�H�ָLJ�h��j���~E>i~���Z�$����297���|�_h���yΕ&�s��}���ZϷ *�j�]:����v.H��K<�SP�8�`�Pƣ)r� �,�}�8W�k[Ar�H��gn=о7:����J]T�T�P>�O���O���j J_��K�y���B���Ԥ��r�m�嬷ȫ�r{�ݙ5R�(FR�Ъ�6���q�}KLm�R�'��e��ޖ��z�6���[Y�ތe�����s�Y��YL5T��r�7�s^�r��ؙ����V�컬��j5<�W����hڥ>d��?yk'�����b���S �}�k�r�a�^ߚ�RH�)�[sg.f��L��M����u�=��v��J�Q]rVkZ����u��o�N���}#G�?y�����jO�%|i��2���f����K��o���Ӱღ�C P_Ϳ6Zr�{���e/m����$i����}9 G��2���')�Y�G����9K�Y>�|����1�ӫ��+�v+i;hQ�@˿L�ӭ���n��˖ ��7�c�k>���Vr�.D0)�h�C����<�˄��4�"0[eԬݭ����e+l�����2s�3s�s��o���X��]��1r��]+�VK� vI��;�mZ'��)�R�6�e5=��/�i���@�]��H�^����Z۬��՝�E�����W.�jƆ���f��{8�m�X�MV���~�_̝���������z^VR}T�6���3}�}�k��3��+k���3�:j�1P��h�l�p��i�{�欍BȽ�}6���w7�3G�t�UZv>4eUj$� xz�$���$�D�/����߇�ߟ�I�"uk��̜�������aƪ���*�ke��/F:d�һ_P������E1������ݡ��k�p(��5��ʏ-ɮ����{Y�llԧ�g�!ܝ �g]i�-�um�εŸxOê^=�P�R##X�e�M��y%�2���L~���Hm ����ݙ2t��_�ƶ�z��7��'Z���4T�<��"�AM��-��&xa�C]�a���5.h�uQ۫�$c�M�μ|h;.�J�.�o�߸���sE�-�z�U{d]��;��|��YLS�MvSE�n�eNK�r�1�B[]�Ne��on�Nߪ$4̘�FPr�k��x�ޱ=�0l����r7Q�%�=�$K�Q�;0r*�XK�dGۃ*�]w-��np�ᬶ���t��t��4�>�D�c�[Ou�o3/����)-��W��Ҵ�xs7��1��e�Ԥm�*ٖ웗H''�.C���nmy�]��݊K���r������a[9)Y�#��2�U���6d7���t�f����.[R.��Gd�E>#���O�_�.+-K����`�{����Ko�nR_��Õ����M/)?�:F��,�Xo�1�ƽ�Rmz�8���C�]l��D��%�(��x�+�d�2��Ah�+����C�CLJ��!���D�65x�����ȼ���v)������Nr����p�*�[Y���ُfL*���PyVΚ��u���W�A�� K��4h�yY��dw��ih���NI�y������#u��b�?4���NDϐ��'�4� :n��F�e(�o��%ve@�@x�l����-k%��Qƭ�RP����&��kεMŪ���-���Ys2�u]�����T!}�8��*���T�Qn��Z}v �=~�mԧ�yD�M���&����8�K�����>��2�|�Bn�u��gܷ��.wvCs���̼�5F^���ubE�S�7ݢ�M&4�Ź�-~m�Kx1�(����(s��r�!M5�u��y��q)�oy|���a��)ˣ����,�A?w"�T�휳2��F}P�R�-<�2��%`�~�4Z�5�W"�(U����S�kG��p�T�(�~Q�����j>ɰ쏳��Ǔ��S��K�Kx'��s��]�nE�f������'.�i�ݙL>�M�oƹ��k�������7ݭ�[.�г��6�lk<;?)#E��]�xF����U�7�'���>vF%���R��;t:��Җ��s�}N�S�B���W�X���=Y8��ث�}�~G��)S�^^�ƽwR[)/Fm�-ڞ��T����K~�˓��Z���]U�;R��Q�=��M��/"�N�ԝP[��-Y9�t_��8�V�+}P������?U�e{M�/�O�&��W��W�K�v�c#�r���'���KM'��p���[±v�tpRC�/W|7�K�2�����������R��f������m;lj��m�%�Z]�^T�����[�6������}6i�TC� }L[u�x��g7�(�Z}���.���S�R���I)jҞ��zȶ�쳢�o�Y����R��w$�ŷ"J�ǭw{u'RtaF{;�3�h�HB���RP����(�*�Z�Q]�y;�;k٥�nWbG��Kv�-V?��ND�Ҟ�k�d��9����@���z�LJ�}K��c��9�C*�?�V-��*[�*�۸�-�0��.���|ߗ���Z�K��#��%�_O�FGF�$k�C��$[�����NNJ�7Yn[k~Xzc�+Sʲ������uh�s�w�^��^4+�n�El�b�Ʈ��K�D���,�}YLV��=�i���=|���p|��_�=b5��m�ȵ(~,�em�����#Xƥ��.���s���V��o��Ea��W�X�c�.l��Y�� u��G�m'��;'*�ӆ���}��|˯�U���fQB���v�o}���/"zw� + qv�Mr���Q[��[��Ad�U���2ٽ��CG�gjؖ�S~Ev����%���9���"��>���$�_2�Sߚ%ѽ��7jX���(�t��#21�r{��̬F����]b�(��)?r��[�Rı)W�[O��/�6��]���X�L��9����v��uLh-�Ȃ9"'7���f���!Փ���䮿B�f}��[la��g�֧��]?P����c#D��9�������E��mf�K7��o*�}��)��+�n�!]qIo�^��FrNVNo�!Eƃ�d�#��OP�?�%ۋ�(m�P��u�����93�ۣ�{��}��2�&�����$�%�c��Z߯�L��ҚY��)�;���Uaf�Զ�d,���*'�6��_?B:R�~��}�^̬�~m�J+v�C}Ѩe�"MY+�mi�����:���s��쥸�;�i��J�e��Y��vBd�deK���|��#5��/m��z�����R]F2J���H��U��U ���)��/S�{���I�����c���$�=: W)>�}��@��0��#URs�R�����=w"��L{�+���ɞ��)�d������|������*qq�2�>��[�nƨDۋ�-�G���[6��½��J���|��������{��Ѿ��4��M��w��y������G���-�ΣZe�{ug>�2�|�'zΤ�2%�x�Ց��*<�<�eu���SO�{T�H�l���o"�T��,ۏfD�E+{&�]v����}��Վ�r��I�|�>�Q�̥T��'��)u�L�����kj�n(z�F-J�O�R}w��n�~F�V5�z�q�2���m�'��^�VS��=7Y^�R��df����eO���)>�E�p�X붚�w����*�r�����*����w˿^������kڴ��{��J��;K�۔���������sR�Ŷ�U]p�zn@dx���6[+y�e�H[�_m������_/��I�&�m��v|M����5&&�-G"v۴�^�{v��g�8���Y�(K�_�~�h��0e�� �Ax��f����r�z�ڬk��h�S/V�y�1ϯ��d�W�3�'��}�{���'V-:����MW(V�/ͷ�*�E�7s����Em������E��W�}�b��Ur����'�k,P�{9?B֫� #[u��N�r����B��,�wo�^{f�d�F(5tRf�.2J����-/:����~� t�0�M"�d_/����c^��32�*�q]yLl���^2�[ݥ�Z�c�*v��tm2��13r'�tSuM-Խ#o�/H�F�������+��2�VEpmǦޟS�?�R������s+�t���:��uG8��n,����Ԛ��f,���hY8�S��X�*��rK�f���>����+c��p��r��u����ɬ=D���Mr��X�gϸ:�~���ɲ ~]�'�5��'�k��Elw�=ڞ��AG&�')�G�9R_���̝1K��;nP�g�&������T(ի[^J�ҟ"qo��Ӹ���.��W}3mF�>��'$��<���U����6�-�~?��x?�B����~{����^�xk��pv-v�l����ߣ�e���빹�j���(�ښsuu6��l�H��(�q��o��aY���t���?�x��8}Ie����� �'����@��b��%�T�ݲ����y�g�V.+O���9/W��4Ms�C�����M��u����F��jYz���G.�{�d���s�.��k�(��>���G~��K�?ni-�=R� r�����}�r���� ?�s�̥���%���l��5Ϛ�9I�N6~��۩�R�ĢW��N�ʾ�E�[��|�nb���.H���Y��קW�k��r�1�ҺշM��N�Dp)�^¸��R���:���w��;�u����1����������12�]��T�/��U�iʹ�d��%���2OC����2�K*r���5�S]g�凫5�� U��Q��.ȫ� �/i91nj��F�k��Q�x�uJ1rn�%���XDžy�?��s˗�վ�uMGƋ�/�m���^�J*��Rs����F�)��)u�F,'l�{=����|�nF�m9:�N%�����u#���t��nXE���-�>e�2Y0�Pũ��������jU��ȨEŭ��|����'��eʹ[��o{��Ց������ms��%CG�g��/}t���|sn�����zr�vm��g�}cÊ94��P��v����g��'<���u�7M�Q�W=fح��ϗd�n����D���|�u�r��-�s����v�,icr�U.ej鷪e�; �+#"�o��w�戾!ȱf�:��S��K�dN>L�}ّ��g�궮Ա������ߢO��^f.��W�����-���sT���]��M���˔��ې��е<^Н�'�Ku�Nn<�FL|Nk��w6_Vl�8��*Kж^ x�s�uW�5���1�-�ᅱ�Fz�ƉT��-k�Y����/9�����w��z�Dޯ/��X�lW)�g�yp�ǚ�j�D�����ɨ~�{ݤ��H�Ci�m�.��[>�rq���E�_Uر��x�/>��|�L6�4%��aj;��fx����ӱ���F���(�K��֓���J��9�՞� �-K>�I�_5En���n��´���&�=O��c%�������o���̟��IJ�ZF$۲��5�I���9Wݚ� �n.��WTu����Ѳ��ӏ[��4�U�/9.���2z��X�5������j���3ĎEsM����q������4�%����9.d�[7�јc9e�N�����a+s�j��E';%��s�#�ɤ`�ףS<��E?�����U�u-_)�j��d���l���/��,��A��}Ω#��q�!�y���*q���r+�V��e��~��}�P���A)No�Kv���Þ�8�[���&3�}��ު=�m�:S��ɥ茍;'PɎ>=�WI쫢.M�v:�����j/��[3���:�rTF_��zt:�.��z%u�d��W%�]xܮVz$�Vŗ�4�9�[^�y.խ�N���~��M�&m�x�+w���G�<��e��캙C�J�Y����*��勱�����o������Q��7$��F�e�Zb��E�[��)J�3j_ �D6d��n�k�y�[s���3z���:���b�K�2�7���.�m��c�JK��-��yG��#�<��o��|Ö�~�� �4���^�O�c�'}�����ap���V&2S��[�X}�����L�3�8F뱩�ص�]q_�E�m�רeٛ�(�u�s����s��sg���[�.�i�,'�h�����p�捗�u;0�x�Kތ_�/�5�Ἵ�#N|�]���O�{O��th��{��f��Kn� ='N�K���%]��ܕ�u�bda�Q�[]U�v�,�v���||*����������<�:c���_XƦ���W3�/�o�����֚_uIF��$����Kx�K&~�#H^o̒Ѯ�'�]��pgq�?ژ��-"90��9����-�����Y��`��ٱck_�Ķ�Z���˶��dz�lk���{���㼷�^���Zw�����K�x}Wg�i��Ųq�>�R�~_4KC[ʻ:v>�0�3߶�v����9x�����-�Mȧ$�c��:l������r�C��Wje����g�%��ֹ�_�Nh�՝���Qɏ���j�^�ϛ�r���^.>��W�h��l��E�5�y���ֵ6�W^�确]*���г����c��&�^��NI��[�����oCDn.�ߑ!�����,m&M_/�'�M�n��$�s�r^��8��|�uSZ���Z1�|L��V<�(���z�q����x����m���ٚZƏ%��.��Ԁ���s^2�𱸒���O#&�,�s��[�mײ9��k���ޖ�C���oS���q&��俙�q�x�P��.��N�]2�U�ǎ�sM2�����i�N.���f����� �r�[��m��cQ��Z�mF�ُ�E{��������#����[TbҔ*s��f�a�S��r���n�^���8�N<����_�'M��arJ6���E�����Q���ғ�|�F[S'[��~q~k��m����n[�_�x?B� �f��5��Q����١�X�=�g(�����~[��Cx}�G�O�ĺ�o��'e)����~���dq(Ot`�����s�N=��~���h�����e�u�:���:�m��'�C�jj�>~5���V����柙c�y�QD%u��q�E��c{[l��^U�O�]b����~e�Ŧ�ۑ'��W3���&�'2��V��.^��D�%��GS�6���wY���NO�$���. �O+�^�ŵG�~haE��s����^=1���*��b�I����C���zFF��4����O�#�,�Wu3허e�k�B���I'tWM��ߩ�OG��3i�������F���z��{rg���e�M�9g� r] ���i��3gk�&u�1r��/��1��k��Vg�R�-ɿu�������F����.�^���;��<��b�����&+˺�x�9B+e�00�W���7�H�af5SQ���x��Ka?X�����IԔz$�܇ȫ&�,��l�y�kȟ�8��Ʀ�B�q����7���G�����oo!���j2"6:��*�uE6�v�{7�U��S�*r�����Se�5|Ll 11a��o&�%�cAľƣTV������<�k���K��>�3��;�?3��큦b�N��̂�r�4��ovMkڞ�}���[:,IV��G�<};*�-�2"���,�>��K��%�bK2�Ƨ[���w��!)�ˤ���;���d?4%�Ul2������ږe�c4�����#��ō������Iw�^R_/TFX�+�����*���F��M[F��|�a�'��������ߚ2S�I�M�eVGn� �~�&���Y��Ym(?��ԛ���]�������,=�|с�G�����4y�j�k"Q�^��~���ԗ^�c��,�q���q����rg��^-����:�U�c[E���8�>��>k�|��n��S�.����.��LBI��c���>3�i��|��ZE����Z��X��A���qm� nuOm<;�� ��X~�mrK�=~� Ʊr���SN<��U!F����W���S��/|���t?K)zd���} ,��C"��ov���x?b�բ�s3�mX3桭�X����֖�˦��k�Fdd����h��g}��$gg�S�o�5��j��L�*N�����dJi�s��$���� �E�����Q������v=0Hxzy��W��~F�T�_��Ƶ�ccg�,<���l7R�O�?S~״�i�6v���/��k�|�̪�.�IIE���]��4��n�,��I��N�U�LϛN=a9t��������Jp������.�]���62�v�ՙ�'�I�d�i�c;Iбo�R�4�|��;��)-����1�卍���뾉)�5�d�뱉�`U����'�R�]۔���l�6s���@��c���h���H)R�t�,w�>&=_�V���������(��%�����k���q+_�÷�O������'�����[_�[Uڽ�v� F� ���$���Ξ9n����5EN���/4�Yy/%*���}�� .����jΔ`�V_6�VͲo���hzfOg�ޯzpj}y�}�v:3��4�WH��;+x�7�ӻu<��ݦ�"�mJ���/�=>�e�o�D֣c�4��k�X�W��-��[��}٬6�;t[N�a�_�� _�5���i5˗�s�ٴ�]+e�����;�Joj�㼶ۙy�Lumo��5�&�F�)F�������� {�(s�m�����_M����>g������z��cr�)�����K�U�̠��Ħ=�����VDd�'��h�;-aŤ�9�����K�ٰ�q��Q�ܫ�ަ���azM�p����4�b���k9 ��U��X.ͮ�]�Ke�S���5Uq[�¹X�0��ɦ6]r����o���Fj��ʧ2���6�/��C6�eQ���E5�K��Ӱ�msFnIz&`�z��팡-��ٯ��.i������xy�ك?����c�2��/��/�z6��������M���4W[�]��_"?���Õ[�?���������Vf�vӳ�q]���I5(�d��|�Mʝ�z���cC*�m�N�>�B2�g�D���+�����><��e�:G�h%U�kW%zJ8���k�_���ˠ=KF�R�����f��w�{sŖ�^��q�/��{�v����[����Ω��}�g�L�j�T[�t�_ޕg6G~���r��k���k�M�cS�R��K�բ����5��4���?SAû����O��1��o%[>��5�/R�~C�io��N���dN�ʛć���h���>�f����6�H8c�/��<�1xd��[ŦC�E��k.�9"��ej?�w&O6^�ژ��R[v��rQ���.�z����㎩��f6:V�8���}����h�i����2�z��~���s�-�w�]+|I9s�_C~>-�S&����9Z�FVL�f�7�-d'���p��ՠp�����l�����J#�mm��؎�s(�?Ʋ?�/A�%_�����s��X�uGN���nR�}_dq>1ʍ�|У��3���]�N�X�YZ��ʷ/&ܛ彖��L�S? 6��]"_�t�5�q��P�5�K�q]�^m�����91�j��W���暹U�����6-5WU������澦M�������0˵��f�2��Ӫ�Ǯ.P~���?� �_nE�J�TcT���ei��)ٳrۣ�%x����%g���s��}7���l9'�t�b���~d���X��st�#� r�?��}W���eaq��>=�+��t�����o)7،��E*�v�n�������e_��,�NF�x�c��i�v��z����]t�M˼���?Oԝ2��Z�r�λ�s-�ĺ��Eton��I�I��f�m��/��9^�[�^�E���B�U��jOn�r�6vI��&�l�]%���0"��)2���䒶-+R��*��z�yX���<�> -���X�9G����Uo^�xY�Q8ι��vi�xٔa�t)�hv}ьո�VU�~��t��������K�,�=�_w����L����L�a?T���YIo�]$`N6c��bi��?#7;M�R�t����<�.��~Q�-��m�o�����b�\g���5���췍�������� ڌ��_?�8nf���J�N�/Y�͢n3���?�_�s�ϩ����{H�i�ְ�Po'yS?���?_�j���ߡ�Wi5q? MW�Ȳ)�����8�a]�l����Lˏ-�-b[TX�lΫRy;�o�5�뜾$H�W.m��m?����շG���[Ƀ�� ���se�o5Q�}���Le����%�*�،«~�u�U{��R$t����^����%�!�w��eX��:G(�'6WupTS&����~�8�������=����j��o?2�������_PϖE�[n��f�6�Tٯ;�G��L��W�)NM�[��o*�j�%.g�b����|��䭹n���o���O�X����:�1�R�)UT�j���7�4˓]D���_�bʝk����zN�I.��9|�^G`Ke��Q���{m��O���jX��/sR�������7�e�vd�g�i7�����q�m�}ތW�&��4�=~���|�YY)�?��7����O�j�}xXkF×4c.l����?�����i|�b�[�5�Ή5�j-�[�Y����z���<���茲�Z$�������Ff&o��;g�Erǩ��ݦ̪/q[&[�/��9u�u���z�i;��������P��S^�_/?������]=�ΕqK~�ӛ����5'N��M�����[�m�_Ϲc'[����oӯE�#g���߂�v�v�GNRo϶�o5Ǩ[�ɉto�v��2��~i<7�i�SȜ�N(G���5����+/�����ٛ�����MTܣ�ukj��鷣/$�1˒!�Mxr��ߤ����s1Z�����uM�Q�Ȍ^�]c$C��X�r�j�����#��N/��˦�Ķ��9���]N�zê5�z�i����;�W,v��!ŧ�D�6z��ğ7�uR5��^�MW}��>igl2���U2�nX��o{}_��������w�]&���vt�e�Z��3�MEEe/ ����2s㗼S�_���bIղ���T�I}�|�[Y��e�/���c]*�̪9u/����Dm�yNxS�D������g�i����`�Z?�.R�F�j����۪���'�~�.�[K�Vb����o��濡�t�o?E�#����[��.�^�y���=��q4���F8ڎ����/���GX.�Y��W!��Z�.��ѕt��t:�?gYYy�U����%��U�w~r����i��>���ȦK��h�g,5�/=�>V��?T�rN�4aW��O�,oӕ���7��-����S���R����i�*"�dܽ�p����u��aV�����QÞ��d-�#J���2Nr�:#�``ѧ�W��R��-�F�?��I-��T��-cO�T�2pr?þ�ז�g�E�I�j���~L9�%�E�MoџU��ؙt8_�eY�ΧW�j�U����}e9y9z/��#��TT-����2��d��L���t3H=���ڼ��cKb'���"�uIٓ'���[�[��߱F~�2]�r�%C�]�^V�����CL��jm���[�cJNr�y�f��}ջ�.[DE�oRՒ��b'>f�Vy���_�c��6�[�K4N�a5>���{ɳ�aw/Uj��.�Զ_K���~���?I�e�J�7�O��Q���x�3�I����gFc���*ج���Ɋǽ-���o��3�Ӭp� �/� ]7V�*���EN�����ܜ[�r/���tO�JΉ���w*ʨ*��J��F�N^.WZe��L�g�U����w��Ki/�M9y8��d�����kOᛊ�H�x�GĶM��*&��#��h��/��U�|�6����D��(�uFyE�5�hYxi�S�EV��m�^D|,ۿC�j�;���<�*��o��uO�kYp�Δ����2{x�-���L�] !k2��ا#I���M���'a7:��M}M1��Y儭�M�n�k�[��/�;����4��U�wk����k�ɫ%����a��ɔo��X�V�V$���m;2Z4i�9:>�����Yů=� ?[��{�t���6,~!���c�`Un��+�dW.g����K��yI�B]��l�+�3�k�ض����(��M�Z�}�>�k����C�~閹l[ů��]VNt�Ƹr몮X�+�U�>�v'��n�v�{y7�s[�г��̭9C�tv���t�%� G�qT��8=�wa���(��������6��Rd柮YWv��^F�d�^�+緉,+=-^��S"�k:N�V�u o�[�_TIѝ�椯�b�F���/G�㿏�dΙ?�T�}�K�������-�T�)W>�s?3M�)V�*����,�;P��,}B u{r��Dex�ڥVFf�w}��47���w}]Դ1d�m��k1��V%/���'T�:���F���ǒ�_TEe[�l���/�l��/�ٯ��c{����Ƀ�[~��`���z�j��⾥r��}V�ܪ{M8�Qv��]$m�U]�8J2�Mngc�xY?�鑞����.9H��jx�S����y.��fS(�|�]��M����gcK�2$(���jR��Q��3��X��O����|<��f�����:J�q�4�&� �fw��|�$��N� )A8�ת99�������mF�NM��*��Dϒ� ��No�I��a9i9�y�?���:�D⻧�߇��7ɧ�����]�������mu��"�-˥5/w̨��_��� �7�DK��[�'�[�2�"��(�%���xzT�*���G�T���"�+<,�yX���.�l����EJr�fo�?��.4�N;l�����>jm�Z�ߣ5���FdB��3�r��,t,./S�]Q{tm���5l��ӕ�����T�~��A� �[��fv7���Iہc��:�� ��ΪN7I]������2(|�o�$��NLW�"��#��~�Dͭ���=v-�Mv{��-lqn{�I3x�n��'��6��.���=�DƟ���ܖަ�~deQV;k�����2�E��i[�b����Ӵ�1_�]����O��h��Zl朠��&�t�3x��k���ei+c'�ZԪ���'�h����K�梿�X����@��cTԫ����#e�m���Iz6e��^i?���8�� ���N��Bc̆�����f����+M��ׇd��C�]��Y���Sd��%��lώ8��-c7��eι/�}��_c�on�/n���o��핍~[WN�R�e�X�Mo��+اn�����?#Ͷ-A����U�FN1V4�!��y���,��{��1��a����$S�﹑�;�Ǚr����"�__��[o�)�� �x��k�}7E�I/�r��iw�ؙ��7�m�R���}�`��|yr�E�Vdo��/B���#uٳi�NQK�Q�kᑑ^d���@��/=ˑɒ�7�����68fsuo�r9=7�ף��ܹ�ճ��p��M�r��-�$1uy���SOZ���N?đrqզ9F� q��=��.!������T��?ػ b��f{¯���q=�$��^�:�!�E�S�߿���� ���FuO���S,8�e��^��U��וS�^h�F����4���BQƺȪw�-��k�F��39�������@X�0��6� F�v=��Q��^��|�ƞ�5}�2tnmG��_��|�����Λ(��|%]��(�-5�>��Kȁ�N���$�=6����l��q).�����1����2� V6m�$ׇl���Oc�ҫܸ� �K{�;ľ>+���Q�?R��x�-K���eu u���������M����y$��i B}G���*���h�$���Q �-��W[�-&��a�"�[i��}~E�k�$�<�~�c{Mff�S� �e�S.��#�^�lMiy�t�ު]���9��S{u��4� {D���FޅS����ź}��R �]���R$y����<��b��;M�5Z�զ`ߕ7��Pm~���Þ�5�C��c"�:���^��D�٧/��d�ݽ��gQ�q�;X��C^��t��F�����|��_�=�p� �[N/���FG�-�K���*�m����0�h�ǯ��Mq�"�QE�6G�R2��EE/��/֨�}V���W��C/3g����8�[�_�#�K�(�sW]����L����eu���L��|�m�-Ml���R�)�ؼ]��|�W��3������x3K�Ϣ�f[W5��cNOvV����������I��N�n�yB�����s���>;r����/P���̙��3n��i�XM�t;����&���!rxw���ZFm�Q"wL�{^۔K&/g�r:�m=���2%�5���������bwE��"��^��e[��$���ɟPi!������U_r����d����S2��d�?=�[!(I�.�r����C� �Q�ZEim�%����}|���Ym�zZ_����ά�<ۡL���QM|��`ybP�����ȏ�}��?�]E�u[`��k�ҫ�g�F��b�~F}Q��8N��P>5���l�ӳ^-�K�%�Q}�$���sx7S�v�n������f�T����Ƹ�|K�zd'_ⰽ�ח�$4���L��Y?q�y32�t� ��j���2�e�� ������Ȝr���J�{mب�h�ۍ��U�U'p�#8�y'ѝ�=�i���+Tĩo7WYyČ�k��L�5؝�M��=�%��"����N�t�}���eXW�)N.~s��v5pɮ s�SQ[���+-�/�}�kVk�'FEɩ�9S�������E&����T�=��&��緵� -���-��t��f��.9Ѳ4�_##�_�ɱ�T�����F����V���؞~��Y�Td�d���S������&s=䟚F��b�1.���_�5���}����~g���M���'p�#,�Uh�s-�-�X�G�w��t�����Թ�Ti��7M:G���Y�K5�'^���W���?��C��>_�G�q��/�S��&d|��k�_g�O� ӊi�Je��H�U G�_Ê�g#),�}�-�:��5�>V��1��em�q}��t}�q?m��e�K����U�:��Bq��JeiP�ɗ#$�sI}��Z生��ƫ�����oo�=�V=pV�cU���g�"%����w��E��m�叡���v��Id����hr���Ȕ����~F]p�58�_�.���,�O�|�'�Ɇ^L��!c��6OWӷ������{x������9�?����F�p�?ceO�u�T�+�Uɵݹ&��gx9���i퓃sx��GI������m}�_3�Ī�r#:�ԣ��?4ב�c[����jö�#��B7K�ʌWNo)�=+c�� �}Yv�P{�lv^�r+��<�i�}���l��k�&ߧY5��Z�ƍ���m�Ŗ���N��Y�9KM�I���d�GOR>�5Vx��x�_���:~=�̌���Q����}CTy+�Wh����鸚f$101뢊�F[#--��Y��i��@����l��)W8��/�E��>�8n��l�j/kt�O��ľ�����,��q*�[s�E��[�]:?�ZeQ����v��Ŕ�ɺ|�j(��Wx����,LW=:�S��?κ��q%8���1c)���jJvO�DLi�W,{96vr�-2��}-��E�H��,����}�%�3k��#l5�g����l~x�_���_W Sڎ �8Y��JQ�vA�=Q���IW��ju��6-��X�9�$�k�WЩ�CI�4�U��W������d��'&O�/C�f���=�P���i�/�#+>���n���$���K�Y�st܅�y4ʷ�D���^~%�~m�yj�,�s_4�Q�}��C����ή;S�W�����:�h=�Ff�{����.��B/in�ȇ���o���=�-�T���O��Y�2}h�l��K}�������.m7-z�?���,f-�/^����b�Q����W��s/���_͔/3I�n��[�6���M;l� �y�gؼ!W���UË_�)D���9����Y�L�4�����_��>f�}ϵ3h�V5����Oѣ��(�l�8�?L�4蹥���������[��-��Э=��7�V{���&�ʢP�������ʼ���*�3�c���Mz>���u��4�@�[�oM���� g�K����S[jy��"����L��ھz�ɵ�f�x)����GE���`ֿ.=k�J>/iˢ[��j�-�qץQ���C B@�o�����V��(��ʯ������G���?B�����ܻ�I���>�=K-��]���.���(�vO�E�.�5�=�/���P��f��^&�$��c�aY�����9{��3�މ�%�Y�O�����xZ�~�6�Z�;�������;�ԗ.�NJ�zş/�YϖĜ%ѿO��^���t�Y$��ν��4|e}2�ɶ��U9A��h˺�L�r�Im%�J�.�|I�]��k�G��|<��j��P��3,�9Uq�7��i�>�DzUk�4'(��T9߱^!z�-:�mW^������ <= �<�^�2�*;����Se���q(��6ª��s��H����f��5ʸO���{��Il�r~G����u�JY^k�5X�_���y���;��5�'�59O@�ƣ�̶>��p�����n��COvN��wX���4�o�����U��Uf����]Џe%�MV�9�X��m�9���]�x�'Q�=���82z�)c�/~1���~�L�S���ow�>�ﺍ�ƻ��U�q���������l~�Sqo����羘s�k���}V�j�G7���1�kY��ؽ��]b��4qnM�ӡ��; �w@̇I��L㿗�����[4�3)]�=�v*)EH���'��a��ҎT�k������x���uXG���K�& Z��I����R���(M8?�:�i�x�Jp��-�d��mck��pu*%N^-7E����3<��uc�>�����='��ce���E�&�'�;��_��J'��M�w��Y9�+�d9����+>���!���e��������_Sn|���VX� �-��TZ�u]��Ģ���/�6�ck�r��/ޗ��/���z��[y.N�:*k�$ �}Yǭ�}GU�m�^-��%d�m�;K��_#c��t�B���[ss�g2�:8r�z���-�VE|���T�w��.�}w9NEP�Gn���oCe�8�/&3�qT�}MJ̙M���ۗ~��哳�,-�WI�_�Bs����h�+~�͛vN����{�Z�����dYK�ݲ�k�����r%�+lo�*r�e�-ه?�:vYqF��fC�s�q�M���XR�ķ{y�q�g�r�x�.�o��Ǔ��x�d���ڗ_Z�C9�W������o��mX|Km��V��_%U�J�ܷr���$��drȳ���L��~Mo�K����yY�L���i�c�J�q�<�1$�U�u�ٯTד374s�<���������ĕ96�춉r9�� ��p��������Gc�9�=�p�^�:)ZJb�&��V�ӝ��Xٽ 0�/���X�& ۳�*_ԙ���Ə.5�J����6<����$��$��6����B0��d�����_��d?h�q���d>X�Ce-� wO�@p�g:�.>$�.Ϣ~L��|,{-ɪ2��.u�/Ds-[ُiVIW��K����5�M#F��ܭ3?x�����.)�ۣ�,�w���J)�Ȳڣ-�#��fbdq&�T�ͧ�8�����Q�,�YqQ�)�/�R��?�k��˔��[��p�_�+�og��z����P��[��6�r��^��o���}�����_��k�T�}J�i��J;���<�ivE������H8�wI�@�MO�P�ʊ�#��+��$��
![]() Server : Apache System : Linux vpshost1491.publiccloud.com.br 4.4.79-grsec-1.lc.x86_64 #1 SMP Wed Aug 2 14:18:21 -03 2017 x86_64 User : aloic1 ( 10003) PHP Version : 8.0.14 Disable Function : apache_child_terminate,dl,escapeshellarg,escapeshellcmd,exec,link,mail,openlog,passthru,pcntl_alarm,pcntl_exec,pcntl_fork,pcntl_get_last_error,pcntl_getpriority,pcntl_setpriority,pcntl_signal,pcntl_signal_dispatch,pcntl_sigprocmask,pcntl_sigtimedwait,pcntl_sigwaitinfo,pcntl_strerror,pcntl_wait,pcntl_waitpid,pcntl_wexitstatus,pcntl_wifexited,pcntl_wifsignaled,pcntl_wifstopped,pcntl_wstopsig,pcntl_wtermsig,php_check_syntax,php_strip_whitespace,popen,proc_close,proc_open,shell_exec,symlink,system Directory : /var/ |
01-INICIO Loaded plugins: fastestmirror Cleaning repos: base extras updates Cleaning up list of fastest mirrors Other repos take up 59 M of disk space (use --verbose for details) 01-FIM 02-INICIO Loaded plugins: fastestmirror Determining fastest mirrors Resolving Dependencies --> Running transaction check ---> Package dbus.x86_64 1:1.10.24-13.el7_6 will be updated ---> Package dbus.x86_64 1:1.10.24-14.el7_8 will be an update ---> Package dbus-libs.x86_64 1:1.10.24-13.el7_6 will be updated ---> Package dbus-libs.x86_64 1:1.10.24-14.el7_8 will be an update ---> Package grub2.x86_64 1:2.02-0.81.el7.centos will be updated ---> Package grub2.x86_64 1:2.02-0.86.el7.centos will be an update ---> Package grub2-common.noarch 1:2.02-0.81.el7.centos will be updated ---> Package grub2-common.noarch 1:2.02-0.86.el7.centos will be an update ---> Package grub2-pc.x86_64 1:2.02-0.81.el7.centos will be updated ---> Package grub2-pc.x86_64 1:2.02-0.86.el7.centos will be an update ---> Package grub2-pc-modules.noarch 1:2.02-0.81.el7.centos will be updated ---> Package grub2-pc-modules.noarch 1:2.02-0.86.el7.centos will be an update ---> Package grub2-tools.x86_64 1:2.02-0.81.el7.centos will be updated ---> Package grub2-tools.x86_64 1:2.02-0.86.el7.centos will be an update ---> Package grub2-tools-extra.x86_64 1:2.02-0.81.el7.centos will be updated ---> Package grub2-tools-extra.x86_64 1:2.02-0.86.el7.centos will be an update ---> Package grub2-tools-minimal.x86_64 1:2.02-0.81.el7.centos will be updated ---> Package grub2-tools-minimal.x86_64 1:2.02-0.86.el7.centos will be an update ---> Package kernel.x86_64 0:3.10.0-1127.18.2.el7 will be installed ---> Package kernel-tools.x86_64 0:3.10.0-1127.13.1.el7 will be updated ---> Package kernel-tools.x86_64 0:3.10.0-1127.18.2.el7 will be an update ---> Package kernel-tools-libs.x86_64 0:3.10.0-1127.13.1.el7 will be updated ---> Package kernel-tools-libs.x86_64 0:3.10.0-1127.18.2.el7 will be an update ---> Package libgudev1.x86_64 0:219-73.el7_8.6 will be updated ---> Package libgudev1.x86_64 0:219-73.el7_8.8 will be an update ---> Package python-perf.x86_64 0:3.10.0-1127.13.1.el7 will be updated ---> Package python-perf.x86_64 0:3.10.0-1127.18.2.el7 will be an update ---> Package selinux-policy.noarch 0:3.13.1-266.el7 will be updated ---> Package selinux-policy.noarch 0:3.13.1-266.el7_8.1 will be an update ---> Package selinux-policy-targeted.noarch 0:3.13.1-266.el7 will be updated ---> Package selinux-policy-targeted.noarch 0:3.13.1-266.el7_8.1 will be an update ---> Package systemd.x86_64 0:219-73.el7_8.6 will be updated ---> Package systemd.x86_64 0:219-73.el7_8.8 will be an update ---> Package systemd-libs.x86_64 0:219-73.el7_8.6 will be updated ---> Package systemd-libs.x86_64 0:219-73.el7_8.8 will be an update ---> Package systemd-sysv.x86_64 0:219-73.el7_8.6 will be updated ---> Package systemd-sysv.x86_64 0:219-73.el7_8.8 will be an update --> Finished Dependency Resolution Dependencies Resolved ================================================================================ Package Arch Version Repository Size ================================================================================ Installing: kernel x86_64 3.10.0-1127.18.2.el7 updates 50 M Updating: dbus x86_64 1:1.10.24-14.el7_8 updates 245 k dbus-libs x86_64 1:1.10.24-14.el7_8 updates 169 k grub2 x86_64 1:2.02-0.86.el7.centos updates 32 k grub2-common noarch 1:2.02-0.86.el7.centos updates 729 k grub2-pc x86_64 1:2.02-0.86.el7.centos updates 32 k grub2-pc-modules noarch 1:2.02-0.86.el7.centos updates 850 k grub2-tools x86_64 1:2.02-0.86.el7.centos updates 1.8 M grub2-tools-extra x86_64 1:2.02-0.86.el7.centos updates 1.0 M grub2-tools-minimal x86_64 1:2.02-0.86.el7.centos updates 174 k kernel-tools x86_64 3.10.0-1127.18.2.el7 updates 8.1 M kernel-tools-libs x86_64 3.10.0-1127.18.2.el7 updates 8.0 M libgudev1 x86_64 219-73.el7_8.8 updates 107 k python-perf x86_64 3.10.0-1127.18.2.el7 updates 8.1 M selinux-policy noarch 3.13.1-266.el7_8.1 updates 497 k selinux-policy-targeted noarch 3.13.1-266.el7_8.1 updates 7.0 M systemd x86_64 219-73.el7_8.8 updates 5.1 M systemd-libs x86_64 219-73.el7_8.8 updates 416 k systemd-sysv x86_64 219-73.el7_8.8 updates 94 k Transaction Summary ================================================================================ Install 1 Package Upgrade 18 Packages Total download size: 92 M Downloading packages: Delta RPMs disabled because /usr/bin/applydeltarpm not installed. -------------------------------------------------------------------------------- Total 87 MB/s | 92 MB 00:01 Running transaction check Running transaction test Transaction test succeeded Running transaction Updating : 1:grub2-common-2.02-0.86.el7.centos.noarch 1/37 Updating : systemd-libs-219-73.el7_8.8.x86_64 2/37 Updating : 1:grub2-tools-minimal-2.02-0.86.el7.centos.x86_64 3/37 Updating : 1:grub2-tools-2.02-0.86.el7.centos.x86_64 4/37 Updating : 1:grub2-tools-extra-2.02-0.86.el7.centos.x86_64 5/37 Updating : 1:dbus-libs-1.10.24-14.el7_8.x86_64 6/37 Updating : systemd-219-73.el7_8.8.x86_64 7/37 Updating : 1:dbus-1.10.24-14.el7_8.x86_64 8/37 Updating : 1:grub2-pc-modules-2.02-0.86.el7.centos.noarch 9/37 Updating : 1:grub2-pc-2.02-0.86.el7.centos.x86_64 10/37 Updating : selinux-policy-3.13.1-266.el7_8.1.noarch 11/37 Updating : kernel-tools-libs-3.10.0-1127.18.2.el7.x86_64 12/37 Updating : kernel-tools-3.10.0-1127.18.2.el7.x86_64 13/37 Updating : selinux-policy-targeted-3.13.1-266.el7_8.1.noarch 14/37 Updating : 1:grub2-2.02-0.86.el7.centos.x86_64 15/37 Updating : systemd-sysv-219-73.el7_8.8.x86_64 16/37 Updating : libgudev1-219-73.el7_8.8.x86_64 17/37 Updating : python-perf-3.10.0-1127.18.2.el7.x86_64 18/37 Installing : kernel-3.10.0-1127.18.2.el7.x86_64 19/37 Cleanup : selinux-policy-targeted-3.13.1-266.el7.noarch 20/37 Cleanup : systemd-sysv-219-73.el7_8.6.x86_64 21/37 Cleanup : 1:grub2-2.02-0.81.el7.centos.x86_64 22/37 Cleanup : 1:grub2-pc-2.02-0.81.el7.centos.x86_64 23/37 Cleanup : 1:grub2-tools-extra-2.02-0.81.el7.centos.x86_64 24/37 Cleanup : 1:grub2-tools-2.02-0.81.el7.centos.x86_64 25/37 Cleanup : 1:dbus-1.10.24-13.el7_6.x86_64 26/37 Cleanup : systemd-219-73.el7_8.6.x86_64 27/37 Cleanup : 1:grub2-pc-modules-2.02-0.81.el7.centos.noarch 28/37 Cleanup : 1:dbus-libs-1.10.24-13.el7_6.x86_64 29/37 Cleanup : 1:grub2-tools-minimal-2.02-0.81.el7.centos.x86_64 30/37 Cleanup : kernel-tools-3.10.0-1127.13.1.el7.x86_64 31/37 Cleanup : libgudev1-219-73.el7_8.6.x86_64 32/37 Cleanup : 1:grub2-common-2.02-0.81.el7.centos.noarch 33/37 Cleanup : selinux-policy-3.13.1-266.el7.noarch 34/37 Cleanup : systemd-libs-219-73.el7_8.6.x86_64 35/37 Cleanup : kernel-tools-libs-3.10.0-1127.13.1.el7.x86_64 36/37 Cleanup : python-perf-3.10.0-1127.13.1.el7.x86_64 37/37 Verifying : kernel-3.10.0-1127.18.2.el7.x86_64 1/37 Verifying : 1:dbus-libs-1.10.24-14.el7_8.x86_64 2/37 Verifying : kernel-tools-libs-3.10.0-1127.18.2.el7.x86_64 3/37 Verifying : python-perf-3.10.0-1127.18.2.el7.x86_64 4/37 Verifying : 1:grub2-2.02-0.86.el7.centos.x86_64 5/37 Verifying : systemd-219-73.el7_8.8.x86_64 6/37 Verifying : systemd-libs-219-73.el7_8.8.x86_64 7/37 Verifying : selinux-policy-3.13.1-266.el7_8.1.noarch 8/37 Verifying : 1:grub2-common-2.02-0.86.el7.centos.noarch 9/37 Verifying : systemd-sysv-219-73.el7_8.8.x86_64 10/37 Verifying : 1:dbus-1.10.24-14.el7_8.x86_64 11/37 Verifying : libgudev1-219-73.el7_8.8.x86_64 12/37 Verifying : 1:grub2-tools-2.02-0.86.el7.centos.x86_64 13/37 Verifying : 1:grub2-tools-minimal-2.02-0.86.el7.centos.x86_64 14/37 Verifying : kernel-tools-3.10.0-1127.18.2.el7.x86_64 15/37 Verifying : 1:grub2-tools-extra-2.02-0.86.el7.centos.x86_64 16/37 Verifying : selinux-policy-targeted-3.13.1-266.el7_8.1.noarch 17/37 Verifying : 1:grub2-pc-2.02-0.86.el7.centos.x86_64 18/37 Verifying : 1:grub2-pc-modules-2.02-0.86.el7.centos.noarch 19/37 Verifying : 1:grub2-2.02-0.81.el7.centos.x86_64 20/37 Verifying : 1:grub2-tools-2.02-0.81.el7.centos.x86_64 21/37 Verifying : 1:grub2-common-2.02-0.81.el7.centos.noarch 22/37 Verifying : systemd-libs-219-73.el7_8.6.x86_64 23/37 Verifying : python-perf-3.10.0-1127.13.1.el7.x86_64 24/37 Verifying : kernel-tools-libs-3.10.0-1127.13.1.el7.x86_64 25/37 Verifying : systemd-sysv-219-73.el7_8.6.x86_64 26/37 Verifying : systemd-219-73.el7_8.6.x86_64 27/37 Verifying : 1:grub2-pc-2.02-0.81.el7.centos.x86_64 28/37 Verifying : libgudev1-219-73.el7_8.6.x86_64 29/37 Verifying : selinux-policy-3.13.1-266.el7.noarch 30/37 Verifying : 1:dbus-libs-1.10.24-13.el7_6.x86_64 31/37 Verifying : 1:dbus-1.10.24-13.el7_6.x86_64 32/37 Verifying : 1:grub2-pc-modules-2.02-0.81.el7.centos.noarch 33/37 Verifying : selinux-policy-targeted-3.13.1-266.el7.noarch 34/37 Verifying : kernel-tools-3.10.0-1127.13.1.el7.x86_64 35/37 Verifying : 1:grub2-tools-extra-2.02-0.81.el7.centos.x86_64 36/37 Verifying : 1:grub2-tools-minimal-2.02-0.81.el7.centos.x86_64 37/37 Installed: kernel.x86_64 0:3.10.0-1127.18.2.el7 Updated: dbus.x86_64 1:1.10.24-14.el7_8 dbus-libs.x86_64 1:1.10.24-14.el7_8 grub2.x86_64 1:2.02-0.86.el7.centos grub2-common.noarch 1:2.02-0.86.el7.centos grub2-pc.x86_64 1:2.02-0.86.el7.centos grub2-pc-modules.noarch 1:2.02-0.86.el7.centos grub2-tools.x86_64 1:2.02-0.86.el7.centos grub2-tools-extra.x86_64 1:2.02-0.86.el7.centos grub2-tools-minimal.x86_64 1:2.02-0.86.el7.centos kernel-tools.x86_64 0:3.10.0-1127.18.2.el7 kernel-tools-libs.x86_64 0:3.10.0-1127.18.2.el7 libgudev1.x86_64 0:219-73.el7_8.8 python-perf.x86_64 0:3.10.0-1127.18.2.el7 selinux-policy.noarch 0:3.13.1-266.el7_8.1 selinux-policy-targeted.noarch 0:3.13.1-266.el7_8.1 systemd.x86_64 0:219-73.el7_8.8 systemd-libs.x86_64 0:219-73.el7_8.8 systemd-sysv.x86_64 0:219-73.el7_8.8 Complete! 02-FIM 03-INICIO Loaded plugins: fastestmirror Loading mirror speeds from cached hostfile Resolving Dependencies --> Running transaction check ---> Package chrony.x86_64 0:3.4-1.el7 will be installed --> Processing Dependency: libseccomp.so.2()(64bit) for package: chrony-3.4-1.el7.x86_64 --> Running transaction check ---> Package libseccomp.x86_64 0:2.3.1-4.el7 will be installed --> Finished Dependency Resolution Dependencies Resolved ================================================================================ Package Arch Version Repository Size ================================================================================ Installing: chrony x86_64 3.4-1.el7 base 251 k Installing for dependencies: libseccomp x86_64 2.3.1-4.el7 base 56 k Transaction Summary ================================================================================ Install 1 Package (+1 Dependent package) Total download size: 307 k Installed size: 788 k Downloading packages: -------------------------------------------------------------------------------- Total 3.2 MB/s | 307 kB 00:00 Running transaction check Running transaction test Transaction test succeeded Running transaction Installing : libseccomp-2.3.1-4.el7.x86_64 1/2 Installing : chrony-3.4-1.el7.x86_64 2/2 Verifying : libseccomp-2.3.1-4.el7.x86_64 1/2 Verifying : chrony-3.4-1.el7.x86_64 2/2 Installed: chrony.x86_64 0:3.4-1.el7 Dependency Installed: libseccomp.x86_64 0:2.3.1-4.el7 Complete! 03-FIM 04-INICIO 04-FIM 05-INICIO 2020-08-03T15:24:02Z chronyd version 3.4 starting (+CMDMON +NTP +REFCLOCK +RTC +PRIVDROP +SCFILTER +SIGND +ASYNCDNS +SECHASH +IPV6 +DEBUG) 2020-08-03T15:24:06Z System clock wrong by 1.147373 seconds (step) 2020-08-03T15:24:07Z chronyd exiting 05-FIM 06-INICIO 2020-08-03T15:24:07Z chronyd version 3.4 starting (+CMDMON +NTP +REFCLOCK +RTC +PRIVDROP +SCFILTER +SIGND +ASYNCDNS +SECHASH +IPV6 +DEBUG) 2020-08-03T15:24:12Z System clock wrong by -0.000191 seconds (step) 2020-08-03T15:24:12Z chronyd exiting 06-FIM 07-INICIO 2020-08-03T15:24:12Z chronyd version 3.4 starting (+CMDMON +NTP +REFCLOCK +RTC +PRIVDROP +SCFILTER +SIGND +ASYNCDNS +SECHASH +IPV6 +DEBUG) 2020-08-03T15:24:16Z System clock wrong by 0.000099 seconds (step) 2020-08-03T15:24:16Z chronyd exiting 07-FIM 08-INICIO 08-FIM 09-INICIO 09-FIM 10-INICIO 11-INICIO Loaded plugins: fastestmirror Cleaning repos: base extras puppet updates Cleaning up list of fastest mirrors Other repos take up 59 M of disk space (use --verbose for details) 11-FIM 12-INICIO Loaded plugins: fastestmirror Determining fastest mirrors Resolving Dependencies --> Running transaction check ---> Package puppet-agent.x86_64 0:5.5.21-1.el7 will be installed --> Finished Dependency Resolution Dependencies Resolved ================================================================================ Package Arch Version Repository Size ================================================================================ Installing: puppet-agent x86_64 5.5.21-1.el7 puppet 22 M Transaction Summary ================================================================================ Install 1 Package Total download size: 22 M Installed size: 22 M Downloading packages: Running transaction check Running transaction test Transaction test succeeded Running transaction Installing : puppet-agent-5.5.21-1.el7.x86_64 1/1 Verifying : puppet-agent-5.5.21-1.el7.x86_64 1/1 Installed: puppet-agent.x86_64 0:5.5.21-1.el7 Complete! 12-FIM 13-INICIO [0;32mInfo: Creating a new SSL key for vpshost1491.publiccloud.com.br[0m [0;32mInfo: Caching certificate for ca[0m [0;32mInfo: csr_attributes file loading from /etc/puppetlabs/puppet/csr_attributes.yaml[0m [0;32mInfo: Creating a new SSL certificate request for vpshost1491.publiccloud.com.br[0m [0;32mInfo: Certificate Request fingerprint (SHA256): 88:D6:95:DC:8C:C8:8E:13:CC:0D:2D:F9:7F:3E:CD:94:BB:C5:16:61:E8:67:7E:3A:44:69:E0:C0:9D:4F:27:AF[0m [0;32mInfo: Caching certificate for vpshost1491.publiccloud.com.br[0m [0;32mInfo: Caching certificate_revocation_list for ca[0m [0;32mInfo: Caching certificate for ca[0m [mNotice: Local environment: 'production' doesn't match server specified node environment 'vpshosting_production', switching agent to 'vpshosting_production'.[0m [0;32mInfo: Retrieving pluginfacts[0m [0;32mInfo: Retrieving plugin[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/apt_reboot_required.rb]/ensure: defined content as '{md5}e7dbcd3849c380cdd08dbc866079c211'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/apt_update_last_success.rb]/ensure: defined content as '{md5}f259aac4abdf82c1c6f13e0031bf551a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/apt_updates.rb]/ensure: defined content as '{md5}11be6c6ace6c11cef55127564ecc6d91'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/descriptions.rb]/ensure: defined content as '{md5}8a29a9fa0dc6ff992b7ca75f6f738d68'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/facter_dot_d.rb]/ensure: defined content as '{md5}9f65108ecd7b8c5ce9c90ab4cd9d45be'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/package_provider.rb]/ensure: defined content as '{md5}12d57e65f9b90c13e7808c347fbdc0b0'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/pe_version.rb]/ensure: defined content as '{md5}245bb8ea121e8a55e1a38668cc480530'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/prefix.rb]/ensure: defined content as '{md5}3cff73996481d9d9f27eef631c2074db'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/puppet_settings.rb]/ensure: defined content as '{md5}d86bacf2b962a4744b701868cda31729'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/resolv.rb]/ensure: defined content as '{md5}549211644e6ab432aaad83fd0618c4ae'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/root_home.rb]/ensure: defined content as '{md5}b384092f0470b9e2177edaf546de2ec1'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/selinux_semanage_is_python3.rb]/ensure: defined content as '{md5}84d6ff3cfe403bafebf986a6b8a077b7'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/service_provider.rb]/ensure: defined content as '{md5}66cc42526eae631e306b397391f1f01c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/ssh_client_version.rb]/ensure: defined content as '{md5}b0f981a3f0b0ccad6838a737e7ec82a5'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/ssh_server_version.rb]/ensure: defined content as '{md5}921d6179e8a9672b80de94e16eb98689'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/sudoversion.rb]/ensure: defined content as '{md5}cefb8147bf0921b372212c8d959687d8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/systemd.rb]/ensure: defined content as '{md5}097bfc197ee80791b7fc5ffbedc68fad'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/users.rb]/ensure: defined content as '{md5}9a75b018f6ebe11025452cdac9f33b10'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/util]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/facter/util/puppet_settings.rb]/ensure: defined content as '{md5}f69007bcc02031cd772fa7f2dffa3c0c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/deprecation.rb]/ensure: defined content as '{md5}705115a036e0235840db59cf9f4c17fe'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/fact.rb]/ensure: defined content as '{md5}5879006198f1f4106acfe13422087d56'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_a.rb]/ensure: defined content as '{md5}5a61d6a34ef45d7a5490455f334ef48a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_absolute_path.rb]/ensure: defined content as '{md5}0806756fc12b1fc752d1b54e81b15832'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_array.rb]/ensure: defined content as '{md5}4d5c8d6af4e481ebb42f73b6504685c8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_bool.rb]/ensure: defined content as '{md5}9ae803c605c5ed057508c6501ef1a47f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_float.rb]/ensure: defined content as '{md5}ebe18dc0096233fcd555423761fc29f2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_ip_address.rb]/ensure: defined content as '{md5}ab9a1c6172db59cc15023f220853e2f2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_ipv4_address.rb]/ensure: defined content as '{md5}dec325b5911ce409b16c643697a13822'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_ipv6_address.rb]/ensure: defined content as '{md5}f4864fee72c42bd3e40914768fb10f8e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_numeric.rb]/ensure: defined content as '{md5}970d785070eaa02bcac3e0589a8d5e7f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/is_string.rb]/ensure: defined content as '{md5}5aa459896fda1782f74752a1d324f048'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/length.rb]/ensure: defined content as '{md5}3320c90f7685178c11937174fcf3119c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/lwbase]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/lwbase/branch_environment.rb]/ensure: defined content as '{md5}836c14022fe109fb9dde7776d6150d16'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/seeded_rand_string.rb]/ensure: defined content as '{md5}24e657c88e9b2a4a77a6cf1310758568'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/sprintf_hash.rb]/ensure: defined content as '{md5}19bee19c55865e3240be3567741ba347'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/to_json.rb]/ensure: defined content as '{md5}bb6893a3e9eb6c48064c5a3c0bd4a41a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/to_json_pretty.rb]/ensure: defined content as '{md5}61ff20121b4c09987eadf3242b6231cf'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/to_yaml.rb]/ensure: defined content as '{md5}0358dfd97b9a051e15046c6842b327be'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/translate.rb]/ensure: defined content as '{md5}12716869ae42de67e58eadcb726db854'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/type_of.rb]/ensure: defined content as '{md5}4ee9c082047c08b8b1a82bc0bef8fd78'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_absolute_path.rb]/ensure: defined content as '{md5}556b0e3de450f03d724747d7d3825309'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_array.rb]/ensure: defined content as '{md5}efe329c6c8f65fce1ae2560fa5751530'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_bool.rb]/ensure: defined content as '{md5}5516a0f2efb48eeb4460fc713c6f9521'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_hash.rb]/ensure: defined content as '{md5}ce99bea6e1ee4da1a67b53b3ce06ce96'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_integer.rb]/ensure: defined content as '{md5}c028b299f194c221002ba442077e9209'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_ip_address.rb]/ensure: defined content as '{md5}278f3e0ea96b4b31e7b85c13887079b6'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_ipv4_address.rb]/ensure: defined content as '{md5}bd015492af1f3c4bef7ac780ae1c7e61'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_ipv6_address.rb]/ensure: defined content as '{md5}5144a327b6850ed5b7fb26fa37113353'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_legacy.rb]/ensure: defined content as '{md5}789bdef436873b6fcc8205c6d2270e43'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_numeric.rb]/ensure: defined content as '{md5}2bd2733f44749e0e56940ceaf5d8e2f8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_re.rb]/ensure: defined content as '{md5}12c3412a7383b1d258dba5d4307e9464'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_slength.rb]/ensure: defined content as '{md5}1fc441736085bd0b5c7862f5dc9f839a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/functions/validate_string.rb]/ensure: defined content as '{md5}c0fe867d3b5f8fbcaa3641f0f393a669'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/abs.rb]/ensure: defined content as '{md5}f36ef597641f56b400bf5425f329b52c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/any2array.rb]/ensure: defined content as '{md5}bb45c181f51b6cb124de9ab44ff74ae5'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/any2bool.rb]/ensure: defined content as '{md5}12535df795966eadcf27e05413c691cc'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/assert_private.rb]/ensure: defined content as '{md5}c61884d43ebdb5ee5a5aa1507165084a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/base64.rb]/ensure: defined content as '{md5}5c044321bc37fecd54e06a0ec5a067ba'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/basename.rb]/ensure: defined content as '{md5}6b0dc955024352c8007d175f900dba36'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/bool2num.rb]/ensure: defined content as '{md5}0d0a75d743e099eafada405f57ead3ea'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/bool2str.rb]/ensure: defined content as '{md5}ab45ec6cbcd35194d478c2da0527ab74'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/camelcase.rb]/ensure: defined content as '{md5}b46cd7766f7f500142fedaae6e81eb47'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/capitalize.rb]/ensure: defined content as '{md5}45d3ba2d02056b5dd0bc7f69ab046817'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/ceiling.rb]/ensure: defined content as '{md5}7cc2fba2933190774468035d24778f51'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/chomp.rb]/ensure: defined content as '{md5}393c7ea2399b531b1528cbbac6948f3c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/chop.rb]/ensure: defined content as '{md5}b8d88826795cf13f803f264ce42e1cdf'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/clamp.rb]/ensure: defined content as '{md5}5c2c8f3f048ed1afd0c34c0eb475b076'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/concat.rb]/ensure: defined content as '{md5}107cf03fb8343dbf20f69bd4a07a7bb1'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/convert_base.rb]/ensure: defined content as '{md5}a34a1172f158c4780f6387df082aade0'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/count.rb]/ensure: defined content as '{md5}b3bcfa1fc10df6f2635c10804cfb567c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/create_ini_settings.rb]/ensure: defined content as '{md5}ca8352ebba5d87f3e78afcfc18dcc4ef'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/deep_merge.rb]/ensure: defined content as '{md5}fae771cff4fc1d6c639bea1672e05c9c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/defined_with_params.rb]/ensure: defined content as '{md5}0e2a92b10efb6c502df6a52f35cf7983'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/delete.rb]/ensure: defined content as '{md5}875f64cf060e00bb6f187875a4bc5e88'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/delete_at.rb]/ensure: defined content as '{md5}d909ad4779276559cb05b09193b047e0'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/delete_regex.rb]/ensure: defined content as '{md5}509b6526b9dea21321c6d7a0f2de591a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/delete_undef_values.rb]/ensure: defined content as '{md5}01e6547fcd9ff93bb5294be3c0761a49'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/delete_values.rb]/ensure: defined content as '{md5}7cc9f122bc7ddfb6359146cd68e5f27a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/deprecation.rb]/ensure: defined content as '{md5}9f935fec2f9f0d01394292eb6f21bd7d'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/difference.rb]/ensure: defined content as '{md5}419c1179460a2878d99b577dfb41977d'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/dig.rb]/ensure: defined content as '{md5}d315de1659a037430fea9623bff323a6'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/dig44.rb]/ensure: defined content as '{md5}433ae008eed28fa3f99dbdd64926bfd8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/dirname.rb]/ensure: defined content as '{md5}eaafc8268d35709f8d460a48e918ee4c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/dos2unix.rb]/ensure: defined content as '{md5}ab2f9f280c616be55f58903948e226a2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/downcase.rb]/ensure: defined content as '{md5}384d5ad77ac70bd199fcd63fa31ede38'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/empty.rb]/ensure: defined content as '{md5}455ab7360e7d15f78ff8f359e6da432a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/enclose_ipv6.rb]/ensure: defined content as '{md5}89c728eb11f71ed9390664bad9732328'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/ensure_packages.rb]/ensure: defined content as '{md5}a0b4bdc14613d4b8c396b4e02a1aa33d'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/ensure_resource.rb]/ensure: defined content as '{md5}2915c77baa0d45531912613dd1cac902'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/ensure_resources.rb]/ensure: defined content as '{md5}805d56e894c9dcca2595464fa87a7c56'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/flatten.rb]/ensure: defined content as '{md5}8558874ff069ba6cbaecac47c4836ca9'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/floor.rb]/ensure: defined content as '{md5}1fdd8c7a0d1350c4e67578209cbfd937'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/fqdn_rand_string.rb]/ensure: defined content as '{md5}731365381b6a28a196e108329e16c6c2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/fqdn_rotate.rb]/ensure: defined content as '{md5}3925369078084f98f9b527d25cc9e4d2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/fqdn_uuid.rb]/ensure: defined content as '{md5}adbd60dbcc561c8586567a6e58abec82'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/get_module_path.rb]/ensure: defined content as '{md5}91b47019658cb4f438a8f96c6e12213b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/getparam.rb]/ensure: defined content as '{md5}b8f4a75c6e0d9732c5f937bd35b00923'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/getvar.rb]/ensure: defined content as '{md5}60ee5451005017bd3234113354f68765'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/glob.rb]/ensure: defined content as '{md5}f8177554be6da357b0822edaa7eb8d14'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/grep.rb]/ensure: defined content as '{md5}f8a965a28326f7cde962a13d8273d617'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/has_interface_with.rb]/ensure: defined content as '{md5}422015811c5b7c0656b83eaea3b8fdcc'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/has_ip_address.rb]/ensure: defined content as '{md5}fc76c9a87145560f58a4ae9a6d9df444'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/has_ip_network.rb]/ensure: defined content as '{md5}b1bb1868e6fef95f8ae840d420ab0816'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/has_key.rb]/ensure: defined content as '{md5}2831eb02496ac82c790e49d4538bd983'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/hash.rb]/ensure: defined content as '{md5}a986ba1253550e868d61e777dbda0890'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/intersection.rb]/ensure: defined content as '{md5}6436444eb8585ee71cfd5bd1e0802026'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/ipaddresses.rb]/ensure: defined content as '{md5}de0061c7694a4f6cae834cc6a3802b04'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_absolute_path.rb]/ensure: defined content as '{md5}268600b66670a29690be009d45013d42'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_array.rb]/ensure: defined content as '{md5}0e425e55c8ce9cc5e327d53d114391ba'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_bool.rb]/ensure: defined content as '{md5}4e021a5143c2c98b31344acceda5fbe2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_domain_name.rb]/ensure: defined content as '{md5}1abf04d1d57de6f7f630045c0efe5e4c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_email_address.rb]/ensure: defined content as '{md5}d11c644fa1bd73f8e1d36c4f9e67272e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_float.rb]/ensure: defined content as '{md5}b95a00f15242e3f26a5cf129db7d31e5'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_function_available.rb]/ensure: defined content as '{md5}3bb60da5789493da017f84d48ac46f08'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_hash.rb]/ensure: defined content as '{md5}3f74a7e9b6e47b834c4ad58939c27eab'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_integer.rb]/ensure: defined content as '{md5}e3480725fccac1c7eba28162dc62393d'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_ip_address.rb]/ensure: defined content as '{md5}3616dacf58febcd4944945d3c2647efe'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_ipv4_address.rb]/ensure: defined content as '{md5}7930d25d23d92f0e5cb81f93315cea16'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_ipv6_address.rb]/ensure: defined content as '{md5}c206564af3a738e504afca2284497d3c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_mac_address.rb]/ensure: defined content as '{md5}b75e440d5594b879b70cf034fc52cd51'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_numeric.rb]/ensure: defined content as '{md5}4bd1a47192ce4040810819789fbf3147'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/is_string.rb]/ensure: defined content as '{md5}cf06fecd6147bea77d406a189b649f81'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/join.rb]/ensure: defined content as '{md5}338cfe4797a5b41d34d0dcdceb4cff2f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/join_keys_to_values.rb]/ensure: defined content as '{md5}86e4211f195c4c9d92c5e3806789a561'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/keys.rb]/ensure: defined content as '{md5}1702d1c00a24ca4e9ba6a4f36c4ec808'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/load_module_metadata.rb]/ensure: defined content as '{md5}4972bafc84e5b7ce4a00cbee21aece18'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/loadjson.rb]/ensure: defined content as '{md5}442e1250912a44965637782998776ef6'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/loadyaml.rb]/ensure: defined content as '{md5}8ad8f48f3649b39bdeca825a61d68e9e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/lstrip.rb]/ensure: defined content as '{md5}078230c59baa5ebb433d1ddc2ebd808b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/max.rb]/ensure: defined content as '{md5}c9acf0c8bd3902ec613844fac4eb0201'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/member.rb]/ensure: defined content as '{md5}ddd3572cb73353e4cfd95bcea423030b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/merge.rb]/ensure: defined content as '{md5}fecd4133ce85334adf93332fdc9f65f1'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/min.rb]/ensure: defined content as '{md5}9016deb88938647bd52faf8cdea6f83c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/num2bool.rb]/ensure: defined content as '{md5}60e725ab19cffcd745a0b904a7a59d6b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/parsejson.rb]/ensure: defined content as '{md5}fee0dc33cd6e18b0d9a5fe8befb66cd2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/parseyaml.rb]/ensure: defined content as '{md5}f4b67d011970c1799bc6fb36a3caf1f2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/pick.rb]/ensure: defined content as '{md5}502384aedc46dd5987fe31c494f48e61'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/pick_default.rb]/ensure: defined content as '{md5}acf85e30452afb8a1811a4ca8557f188'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/prefix.rb]/ensure: defined content as '{md5}6912509e79ebdff5f9b4e7d630442157'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/private.rb]/ensure: defined content as '{md5}a1f44a1c32da00aa14f474f4f303be87'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/pry.rb]/ensure: defined content as '{md5}970544bf6308b7b6902b936063a45109'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/pw_hash.rb]/ensure: defined content as '{md5}07fea662493e5b2ffcf37dbb4c4e74b9'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/range.rb]/ensure: defined content as '{md5}38f7ebcf5a66954f9127756d32291534'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/regexpescape.rb]/ensure: defined content as '{md5}d7d22f987d616f2b5ec9d967f1528f53'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/reject.rb]/ensure: defined content as '{md5}9847dac360af182c4880dece7b4bc034'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/reverse.rb]/ensure: defined content as '{md5}2d1045255bbe50fc6d4cd97ad4a6eec3'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/round.rb]/ensure: defined content as '{md5}aaf276b15f731cf44da7a69621cd3b96'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/rstrip.rb]/ensure: defined content as '{md5}1be3bf1eff074c784e980cda2c146683'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/seeded_rand.rb]/ensure: defined content as '{md5}4f45ef0723411ff8281aaf093f0fabc2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/shell_escape.rb]/ensure: defined content as '{md5}6e51793b8483eb6bfc4be98b438fd47e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/shell_join.rb]/ensure: defined content as '{md5}4fbe23ff73932f65db696f106517887e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/shell_split.rb]/ensure: defined content as '{md5}cb851119ee167ccb12930c53e94333cc'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/shuffle.rb]/ensure: defined content as '{md5}6b16497151e961fbdb6e00ec70d6bbe9'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/size.rb]/ensure: defined content as '{md5}e3a0aa89c776b592ed24c1dd27773e33'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/sort.rb]/ensure: defined content as '{md5}ea24d1e27954b6ee69d30f3fce391b65'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/squeeze.rb]/ensure: defined content as '{md5}e42e1d5ec9a23443d14ff07512fd695f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/str2bool.rb]/ensure: defined content as '{md5}9fac94e3e949b2a4406ac2d22510b06e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/str2saltedsha512.rb]/ensure: defined content as '{md5}d4443e8985b4ce6f6e925c6f46d8456c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/strftime.rb]/ensure: defined content as '{md5}d17fc58b649eb6b7315752b853cd7f3b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/strip.rb]/ensure: defined content as '{md5}011469a450ae484f199c09f55f3ab809'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/suffix.rb]/ensure: defined content as '{md5}1893244c6bb354a6b1093f65041c643c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/swapcase.rb]/ensure: defined content as '{md5}d1a53787b35ae9a5a643c49f4e0975a8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/time.rb]/ensure: defined content as '{md5}4a0ec2a06a1361dbf3cd11a07aa57a71'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/to_bytes.rb]/ensure: defined content as '{md5}55a65ad70ea78983e7c1d6d565094c1f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/try_get_value.rb]/ensure: defined content as '{md5}b039b960b07a21b935baf6c78fb94612'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/type.rb]/ensure: defined content as '{md5}3115a269dc87e6cdb586d6cf4c2b0529'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/type3x.rb]/ensure: defined content as '{md5}7a72502f0291c66b0e4ce76e33e481c7'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/union.rb]/ensure: defined content as '{md5}690e5c15a1e7b95ab4b90ee18eb48f81'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/unique.rb]/ensure: defined content as '{md5}e448da2c183c0e19bd6e64bc423a749f'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/unix2dos.rb]/ensure: defined content as '{md5}0aa6e66d1c47ca0bb417e248b01f6f1b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/upcase.rb]/ensure: defined content as '{md5}55ef15d383673d44a1848833a46cfd11'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/uriescape.rb]/ensure: defined content as '{md5}f2facfe201658a65a7e81199cdd1bef7'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_absolute_path.rb]/ensure: defined content as '{md5}892faf0e74b99b11190ec7fc4b78a893'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_array.rb]/ensure: defined content as '{md5}9518be91bab77e56be711d1498d119b9'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_augeas.rb]/ensure: defined content as '{md5}c5bbf1bc42b7ea024e48ab12b46f55e9'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_bool.rb]/ensure: defined content as '{md5}bea67f1a0f5fc23ee8b632000cfa63db'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_cmd.rb]/ensure: defined content as '{md5}dbb22e68eca3f6be63fb49b465b1d611'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_domain_name.rb]/ensure: defined content as '{md5}04f4b1d0be9a8a12d278f0b044f78427'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_email_address.rb]/ensure: defined content as '{md5}6dc01f14c43fdff19106a2388d01b51a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_hash.rb]/ensure: defined content as '{md5}80f7cfb430818e1497d3b12769d8f9c4'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_integer.rb]/ensure: defined content as '{md5}edb176a717c4af6cd50d2d26e4da149d'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_ip_address.rb]/ensure: defined content as '{md5}55d0f019803d687bf95bcc64e8751ba5'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_ipv4_address.rb]/ensure: defined content as '{md5}94843b876cc92414b29223f7ac3cc3b6'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_ipv6_address.rb]/ensure: defined content as '{md5}6c10396f466f64a6f897d1be4291dd4a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_numeric.rb]/ensure: defined content as '{md5}092cce5ed9d3a73319c48cdf9a2a822e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_re.rb]/ensure: defined content as '{md5}df6a2cc342dad63d008ef257fde9038a'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_slength.rb]/ensure: defined content as '{md5}b20959e080f36bf320eacb472d125741'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_string.rb]/ensure: defined content as '{md5}0239e1697134605a6385ff8c9bdc066b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/validate_x509_rsa_key_pair.rb]/ensure: defined content as '{md5}b16e5ebaeb497e1639c7bf78d61c2b45'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/values.rb]/ensure: defined content as '{md5}793ec0d600822461829eda4abcd89f9c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/values_at.rb]/ensure: defined content as '{md5}d03bb02de4bf80ecd1846a4e6dc99ce8'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/parser/functions/zip.rb]/ensure: defined content as '{md5}aef1ee868716d07b01e605ae6c4741cc'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/apt_key]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/apt_key/apt_key.rb]/ensure: defined content as '{md5}ef3a893338f628f974bb59c36c7756c7'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/file_line]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/file_line/ruby.rb]/ensure: defined content as '{md5}06dd4b2bd0037fcdc8382fcd4214dda3'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/ini_setting]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/ini_setting/ruby.rb]/ensure: defined content as '{md5}5c36c1173bb15ebf8ec03190834a7aa2'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/ini_subsetting]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/ini_subsetting/ruby.rb]/ensure: defined content as '{md5}d7ffb252b4d81ecd417ec7d5380c32e7'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_fcontext]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_fcontext/semanage.rb]/ensure: defined content as '{md5}263a1de4a2242aeee45b68a80342097b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_fcontext_equivalence]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_fcontext_equivalence/semanage.rb]/ensure: defined content as '{md5}f0294958ede29b3db60ca47dc24e46da'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_permissive]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_permissive/semanage.rb]/ensure: defined content as '{md5}e167ab7582c96d69d6199f1134e38e09'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_port]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/provider/selinux_port/semanage.rb]/ensure: defined content as '{md5}590c3688e245e3204ccfb33aa1cb684e'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/anchor.rb]/ensure: defined content as '{md5}95867e600863019b08990277c4254cac'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/apt_key.rb]/ensure: defined content as '{md5}16b9fc7bbea65c1cd626b65cf3ea7167'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/concat_file.rb]/ensure: defined content as '{md5}d927a992f7ea2ae9995e1952af29976c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/concat_fragment.rb]/ensure: defined content as '{md5}d2fa2e2d2b0f4bb998024dbc5db53019'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/file_line.rb]/ensure: defined content as '{md5}208655541a332e54e2d9abac0e328d33'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/ini_setting.rb]/ensure: defined content as '{md5}cc3c75a942671252f603b30a89fa2d3b'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/ini_subsetting.rb]/ensure: defined content as '{md5}3c0c4a76d242c1030e96609fce75f981'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/selinux_fcontext.rb]/ensure: defined content as '{md5}3046307677267f918c53d5dc5fe7beea'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/selinux_fcontext_equivalence.rb]/ensure: defined content as '{md5}8021630cba612db8ad5d24259c8eda25'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/selinux_permissive.rb]/ensure: defined content as '{md5}faccaf09d9fdce427968c27123d97d27'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/type/selinux_port.rb]/ensure: defined content as '{md5}2a58ec4bb2339e960e0cdd9957f97c14'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util/external_iterator.rb]/ensure: defined content as '{md5}aeeaae87574c2d2b895a186b3b03b67c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util/ini_file]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util/ini_file.rb]/ensure: defined content as '{md5}c36bab2590dc834d90fdaa12209e32bf'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util/ini_file/section.rb]/ensure: defined content as '{md5}28eecbff12038405b868ebc5763e87a6'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet/util/setting_value.rb]/ensure: defined content as '{md5}13ffa9f47a8aa6d0d26f9dfd4f717d49'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet_x]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet_x/voxpupuli]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet_x/voxpupuli/selinux]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/lib/puppet_x/voxpupuli/selinux/semanage_ports.py]/ensure: defined content as '{md5}c6fda62aa0e769afc2e580c7742aa62f'[0m [0;32mInfo: Retrieving locales[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/locales/ja]/ensure: created[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/locales/ja/puppetlabs-apt.po]/ensure: defined content as '{md5}2ba4d5f45b3cccb958b78322f03e4de4'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/locales/ja/puppetlabs-ntp.po]/ensure: defined content as '{md5}7265ff57e178feb7a65835f7cf271e2c'[0m [mNotice: /File[/opt/puppetlabs/puppet/cache/locales/ja/puppetlabs-stdlib.po]/ensure: defined content as '{md5}805e5d893d2025ad57da8ec0614a6753'[0m [0;32mInfo: Loading facts[0m [0;32mInfo: Caching catalog for vpshost1491.publiccloud.com.br[0m [0;32mInfo: Applying configuration version '1596467731'[0m [mNotice: /Stage[main]/Lwbase::Puppet/Ini_setting[puppet agent environment]/ensure: created[0m [0;32mInfo: /Stage[main]/Lwbase::Puppet/Ini_setting[puppet agent environment]: Scheduling refresh of Service[puppet][0m [mNotice: /Stage[main]/Lwbase::Puppet/Ini_setting[runinternal configuration]/ensure: created[0m [0;32mInfo: /Stage[main]/Lwbase::Puppet/Ini_setting[runinternal configuration]: Scheduling refresh of Service[puppet][0m [mNotice: /Stage[main]/Lwbase::Puppet/Ini_setting[splay enabled]/ensure: created[0m [0;32mInfo: /Stage[main]/Lwbase::Puppet/Ini_setting[splay enabled]: Scheduling refresh of Service[puppet][0m [mNotice: /Stage[main]/Lwbase::Puppet/Ini_setting[puppet cli color disabled]/ensure: created[0m [0;32mInfo: /Stage[main]/Lwbase::Puppet/Ini_setting[puppet cli color disabled]: Scheduling refresh of Service[puppet][0m [mNotice: /Stage[main]/Lwbase::Puppet/Service[puppet]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Lwbase::Puppet/Service[puppet]: Unscheduling refresh on Service[puppet][0m [mNotice: /Stage[main]/Lwbase::Users/Group[_sysadms]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[root]/password: changed [redacted] to [redacted][0m [mNotice: /Stage[main]/Lwbase::Locaweb/File[/etc/locaweb]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/File[/home/.sysadms]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_adriaparecido]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_adriaparecido]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_alafigueredo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_alafigueredo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_aleoliveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_aleoliveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_alepontes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_alepontes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_andrelop]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_andrelop]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_anery]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_anery]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_apjovanini]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_apjovanini]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_atadeu]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_atadeu]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_brodrigues]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_brodrigues]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dacosta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dacosta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dalves]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dalves]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dbrito]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dbrito]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dbsouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dbsouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dgomes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dgomes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dolivieri]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dolivieri]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_dtomaz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dtomaz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_eclima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_eclima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_ecorte]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_ecorte]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_elibranco]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_elibranco]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_enascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_enascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_eoliveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_eoliveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_erisouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_erisouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_faalmeida]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_faalmeida]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_felpereira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_felpereira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_fernanda]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_fernanda]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_fmsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_fmsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_fnascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_fnascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_frasantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_frasantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_gabaguiar]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gabaguiar]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_gfernandes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gfernandes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_gsoares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gsoares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_gsrezende]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gsrezende]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_gviana]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gviana]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_hgscosta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_hgscosta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_hsilveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_hsilveira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_igoaguiar]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_igoaguiar]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jcarmo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jcarmo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jflima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jflima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jlcerqueira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jlcerqueira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jlopes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jlopes]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jovidal]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jovidal]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jscruz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jscruz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_jtakano]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jtakano]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_kalima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_kalima]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_lassis]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lassis]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_lmoreira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lmoreira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_lpalves]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lpalves]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_lsaraujo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lsaraujo]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_lthomaz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lthomaz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_luhenrique]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_luhenrique]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_luizsouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_luizsouza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_mafranco]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mafranco]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_masantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_masantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_mdomiciano]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mdomiciano]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_mlisboa]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mlisboa]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_mpeixoto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mpeixoto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_mrodrigues]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mrodrigues]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_msjunior]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_msjunior]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_okuta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_okuta]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rafhuller]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rafhuller]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_raugusto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_raugusto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rbarreto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rbarreto]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rbsoares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rbsoares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rcfilho]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rcfilho]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rhalmeida]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rhalmeida]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rmarra]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rmarra]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_rsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_samnascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_samnascimento]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_saparecido]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_saparecido]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_tferreira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_tferreira]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_thakruger]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_thakruger]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_thiagobeppu]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_thiagobeppu]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_tlinhares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_tlinhares]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vasantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vasantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vaxsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vaxsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vinhenrique]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vinhenrique]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vinkruger]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vinkruger]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vqueiroz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vqueiroz]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_vribeiro]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vribeiro]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_wdias]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wdias]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_wfreitas]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wfreitas]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_willcovre]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_willcovre]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_wsantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wsantos]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/User[_wsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wsilva]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_alepontes@nibbler]/ensure: created[0m [0;32mInfo: Computing checksum on file /root/.ssh/authorized_keys[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_andrelop@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_anery@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_apjovanini@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_atadeu@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dalves@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dbsouza@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_dolivieri@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_eclima@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_enascimento@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_eoliveira@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_fernanda@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gabaguiar@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_gsoares@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_hsilveira@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jcarmo@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jlcerqueira@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jlopes@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jscruz@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_jtakano@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_lassis@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_luioliveira@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_mpeixoto@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_msjunior@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_okuta@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rhalmeida@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_rsilva@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_tferreira@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_thiagobeppu@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_tlinhares@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_vqueiroz@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wdias@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wfreitas@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wsantos@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Users/Ssh_authorized_key[_wsilva@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Resolv_conf/File[/etc/resolv.conf]/content: --- /etc/resolv.conf 2020-08-03 12:20:53.378000000 -0300 +++ /tmp/puppet-file20200803-7604-78mntx 2020-08-03 12:27:11.011865635 -0300 @@ -1,8 +1,5 @@ -# Your system has been configured with 'manage-resolv-conf' set to true. -# As a result, cloud-init has written this file with configuration data -# that it has been provided. Cloud-init, by default, will write this file -# a single time (PER_ONCE). +# File managed by puppet +search locaweb.com.br nameserver 186.202.26.26 nameserver 186.202.27.27 -options rotate timeout:10 [0m [0;32mInfo: Computing checksum on file /etc/resolv.conf[0m [0;32mInfo: /Stage[main]/Resolv_conf/File[/etc/resolv.conf]: Filebucketed /etc/resolv.conf to puppet with sum 10576d9c4c946d5437aba128302b03f6[0m [mNotice: /Stage[main]/Resolv_conf/File[/etc/resolv.conf]/content: content changed '{md5}10576d9c4c946d5437aba128302b03f6' to '{md5}ba01d4d4bdd0e4ba12439a95e41f742e'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[base-debuginfo]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[base-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[updates-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[extras-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[centosplus-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.0.1406-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.0.1406-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.0.1406-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.0.1406-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.0.1406-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.1.1503-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.1.1503-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.1.1503-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.1.1503-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.1.1503-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.2.1511-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.2.1511-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.2.1511-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.2.1511-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.2.1511-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.3.1611-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.3.1611-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.3.1611-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.3.1611-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.3.1611-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.4.1708-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.4.1708-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.4.1708-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.4.1708-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.4.1708-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.5.1804-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.5.1804-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.5.1804-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.5.1804-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.5.1804-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.6.1810-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.6.1810-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.6.1810-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.6.1810-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.6.1810-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.7.1908-base]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.7.1908-updates]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.7.1908-extras]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.7.1908-centosplus]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[C7.7.1908-fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[fasttrack]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[epel-testing]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[epel-testing-debuginfo]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[epel-testing-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[webtatic-archive]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[webtatic-archive-debuginfo]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[webtatic-archive-source]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[cr]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[c7-media]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[centos-kernel]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[centos-kernel-experimental]/ensure: removed[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[base]/descr: descr changed 'CentOS-$releasever - Base' to 'CentOS-$releasever - base'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[base]/enabled: defined 'enabled' as '1'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[base]/gpgkey: gpgkey changed 'file:///etc/pki/rpm-gpg/RPM-GPG-KEY-CentOS-7' to 'http://centos.mirror.locaweb.com.br/RPM-GPG-KEY-CentOS-$releasever'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[updates]/descr: descr changed 'CentOS-$releasever - Updates' to 'CentOS-$releasever - updates'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[updates]/baseurl: baseurl changed 'http://mirror-centos.locaweb.com.br/$releasever/updates/$basearch/' to 'http://centos.mirror.locaweb.com.br/$releasever/updates/$basearch/'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[updates]/enabled: defined 'enabled' as '1'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[updates]/gpgkey: gpgkey changed 'file:///etc/pki/rpm-gpg/RPM-GPG-KEY-CentOS-7' to 'http://centos.mirror.locaweb.com.br/RPM-GPG-KEY-CentOS-$releasever'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[extras]/descr: descr changed 'CentOS-$releasever - Extras' to 'CentOS-$releasever - extras'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[extras]/baseurl: baseurl changed 'http://mirror-centos.locaweb.com.br/$releasever/extras/$basearch/' to 'http://centos.mirror.locaweb.com.br/$releasever/extras/$basearch/'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[extras]/enabled: defined 'enabled' as '1'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[extras]/gpgkey: gpgkey changed 'file:///etc/pki/rpm-gpg/RPM-GPG-KEY-CentOS-7' to 'http://centos.mirror.locaweb.com.br/RPM-GPG-KEY-CentOS-$releasever'[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[centosplus]/ensure: created[0m [0;32mInfo: Yumrepo[centosplus](provider=inifile): changing mode of /etc/yum.repos.d/centosplus.repo from 600 to 644[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[core]/ensure: created[0m [0;32mInfo: Yumrepo[core](provider=inifile): changing mode of /etc/yum.repos.d/core.repo from 600 to 644[0m [mNotice: /Stage[main]/Lwbase::Repos::Redhat/Yumrepo[core-noarch]/ensure: created[0m [0;32mInfo: Yumrepo[core-noarch](provider=inifile): changing mode of /etc/yum.repos.d/core-noarch.repo from 600 to 644[0m [mNotice: Telegraf without database, please set the key lwbase::monitoring::telegrafdb in your hiera data[0m [mNotice: /Stage[main]/Lwbase::Monitoring::Telegraf/Notify[Telegraf without database, please set the key lwbase::monitoring::telegrafdb in your hiera data]/message: defined 'message' as 'Telegraf without database, please set the key lwbase::monitoring::telegrafdb in your hiera data'[0m [mNotice: /Stage[main]/Lwbase::Monitoring::Checkmk/File[/etc/locaweb/monitoring]/ensure: created[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/bin/cmk-agent]/ensure: defined content as '{md5}f45b4d5cc1cd9415ea53223e105ccbaa'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/bin/run-cmk-agent]/ensure: defined content as '{md5}d9950177d7e4f66cf904bfbb47d8aef5'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/bin/cmk-locaweb-plugins]/ensure: defined content as '{md5}7e1c8792a0e2192c7234c336d523971c'[0m [mNotice: /Stage[main]/Lwbackup::Monitoring/File[/etc/locaweb/monitoring/backup.yaml]/ensure: defined content as '{md5}ecf689ded1f687aad2edf311b32a508a'[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Repo/Yumrepo[bacula-enterprise]/ensure: created[0m [0;32mInfo: Yumrepo[bacula-enterprise](provider=inifile): changing mode of /etc/yum.repos.d/bacula-enterprise.repo from 600 to 644[0m [mNotice: /Stage[main]/Lwbase::Lwnessususer/User[_ntirtza]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Lwnessususer/Ssh_authorized_key[_ntirtza@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Vaultcert/File[/etc/ssh/trusted-user-ca-keys.pem]/ensure: defined content as '{md5}e4657a633c535484f2b7708ea375ec4c'[0m [mNotice: /Stage[main]/Lwbase::Sec::Consultinguser/User[_carmel]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Sec::Consultinguser/Ssh_authorized_key[_carmel@nibbler]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Base/Service[avahi-daemon]/ensure: ensure changed 'running' to 'stopped'[0m [mNotice: /Stage[main]/Profile::Webserver::Base/Service[kdump]/ensure: ensure changed 'running' to 'stopped'[0m [mNotice: /Stage[main]/Profile::Webserver::Base/File[/etc/default/locaweb/description/apache2]/ensure: defined content as '{md5}d41d8cd98f00b204e9800998ecf8427e'[0m [mNotice: /Stage[main]/Sudo/File[/etc/sudoers]/content: --- /etc/sudoers 2019-11-27 15:38:22.000000000 -0300 +++ /tmp/puppet-file20200803-7604-3bgkn5 2020-08-03 12:27:12.076865635 -0300 @@ -1,3 +1,5 @@ +# file managed by puppet (unless config_file_replace=false) +# ## Sudoers allows particular users to run various commands as ## the root user, without needing the root password. ## @@ -49,8 +51,8 @@ # Defaults specification -# -# Refuse to run if unable to disable echo on the tty. +# Refuse to run if unable to disable echo on the tty. This setting should also be +# changed in order to be able to use sudo without a tty. See requiretty above. # Defaults !visiblepw @@ -62,15 +64,6 @@ # env_reset is disabled or HOME is present in the env_keep list. # Defaults always_set_home -Defaults match_group_by_gid - -# Prior to version 1.8.15, groups listed in sudoers that were not -# found in the system group database were passed to the group -# plugin, if any. Starting with 1.8.15, only groups of the form -# %:group are resolved via the group plugin by default. -# We enable always_query_group_plugin to restore old behavior. -# Disable this option for new behavior. -Defaults always_query_group_plugin Defaults env_reset Defaults env_keep = "COLORS DISPLAY HOSTNAME HISTSIZE KDEDIR LS_COLORS" @@ -79,13 +72,14 @@ Defaults env_keep += "LC_MONETARY LC_NAME LC_NUMERIC LC_PAPER LC_TELEPHONE" Defaults env_keep += "LC_TIME LC_ALL LANGUAGE LINGUAS _XKB_CHARSET XAUTHORITY" + # # Adding HOME to env_keep may enable a user to run unrestricted # commands via sudo. # # Defaults env_keep += "HOME" -Defaults secure_path = /sbin:/bin:/usr/sbin:/usr/bin +Defaults secure_path = /usr/local/bin:/sbin:/bin:/usr/sbin:/usr/bin:/opt/puppetlabs/bin ## Next comes the main part: which users can run what software on ## which machines (the sudoers file can be shared between multiple [0m [0;32mInfo: Computing checksum on file /etc/sudoers[0m [0;32mInfo: /Stage[main]/Sudo/File[/etc/sudoers]: Filebucketed /etc/sudoers to puppet with sum 1b134d95a4618029ff962a63b021e1ca[0m [mNotice: /Stage[main]/Sudo/File[/etc/sudoers]/content: content changed '{md5}1b134d95a4618029ff962a63b021e1ca' to '{md5}5cb7f6f75e524ebbe6cec66712819aaf'[0m [mNotice: /Stage[main]/Sudo/File[/etc/sudoers.d]/mode: mode changed '0750' to '0550'[0m [mNotice: /Stage[main]/Lwbase::Sudoroot/File[/etc/sudoers.d/99_lwsudorootusers]/ensure: defined content as '{md5}88c3c43a3edca9d460751b0e37ee5312'[0m [mNotice: /Stage[main]/Lwbase::Sec::Consultinguser/File[/etc/sudoers.d/pcommands]/ensure: defined content as '{md5}d8bae0786d85c7161b5fc21d828eaa25'[0m [mNotice: /Stage[main]/Profile::Webserver::Cronjobs/File[/etc/cron.d/up2date_scheduling]/ensure: defined content as '{md5}8e6bf0df9889a92cd2b8f42b761621be'[0m [mNotice: /Stage[main]/Profile::Webserver::Repos/Yumrepo[locaweb-linux]/ensure: created[0m [0;32mInfo: Yumrepo[locaweb-linux](provider=inifile): changing mode of /etc/yum.repos.d/locaweb-linux.repo from 600 to 644[0m [mNotice: /Stage[main]/Profile::Webserver::Repos/Yumrepo[locaweb-linux-noarch]/ensure: created[0m [0;32mInfo: Yumrepo[locaweb-linux-noarch](provider=inifile): changing mode of /etc/yum.repos.d/locaweb-linux-noarch.repo from 600 to 644[0m [mNotice: /Stage[main]/Profile::Webserver::Repos/Yumrepo[locaweb-security]/ensure: created[0m [0;32mInfo: Yumrepo[locaweb-security](provider=inifile): changing mode of /etc/yum.repos.d/locaweb-security.repo from 600 to 644[0m [mNotice: /Stage[main]/Profile::Webserver::Repos/Yumrepo[locaweb-security-noarch]/ensure: created[0m [0;32mInfo: Yumrepo[locaweb-security-noarch](provider=inifile): changing mode of /etc/yum.repos.d/locaweb-security-noarch.repo from 600 to 644[0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/systemd/system/varnish.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/systemd/system/varnish.service.d/varnish.conf]/ensure: defined content as '{md5}9355a7b0fba019f28361f1005a1de237'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/systemd/system/varnish.service.d/varnish.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Mail/File[/etc/dovecot.conf]/ensure: defined content as '{md5}5e2751fc2b2cf78aaa1874c0d6f58713'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Mail/File[/etc/dovecot.conf]: Scheduling refresh of Service[dovecot][0m [mNotice: /Stage[main]/Profile::Webserver::Mail/File[/etc/postfix/main.cf]/content: --- /etc/postfix/main.cf 2020-04-01 01:08:17.000000000 -0300 +++ /tmp/puppet-file20200803-7604-y0z0cb 2020-08-03 12:27:12.257865635 -0300 @@ -1,679 +1,41 @@ -# Global Postfix configuration file. This file lists only a subset -# of all parameters. For the syntax, and for a complete parameter -# list, see the postconf(5) manual page (command: "man 5 postconf"). -# -# For common configuration examples, see BASIC_CONFIGURATION_README -# and STANDARD_CONFIGURATION_README. To find these documents, use -# the command "postconf html_directory readme_directory", or go to -# http://www.postfix.org/. -# -# For best results, change no more than 2-3 parameters at a time, -# and test if Postfix still works after every change. - -# SOFT BOUNCE -# -# The soft_bounce parameter provides a limited safety net for -# testing. When soft_bounce is enabled, mail will remain queued that -# would otherwise bounce. This parameter disables locally-generated -# bounces, and prevents the SMTP server from rejecting mail permanently -# (by changing 5xx replies into 4xx replies). However, soft_bounce -# is no cure for address rewriting mistakes or mail routing mistakes. -# -#soft_bounce = no - -# LOCAL PATHNAME INFORMATION -# -# The queue_directory specifies the location of the Postfix queue. -# This is also the root directory of Postfix daemons that run chrooted. -# See the files in examples/chroot-setup for setting up Postfix chroot -# environments on different UNIX systems. -# queue_directory = /var/spool/postfix - -# The command_directory parameter specifies the location of all -# postXXX commands. -# command_directory = /usr/sbin - -# The daemon_directory parameter specifies the location of all Postfix -# daemon programs (i.e. programs listed in the master.cf file). This -# directory must be owned by root. -# daemon_directory = /usr/libexec/postfix - -# The data_directory parameter specifies the location of Postfix-writable -# data files (caches, random numbers). This directory must be owned -# by the mail_owner account (see below). -# -data_directory = /var/lib/postfix - -# QUEUE AND PROCESS OWNERSHIP -# -# The mail_owner parameter specifies the owner of the Postfix queue -# and of most Postfix daemon processes. Specify the name of a user -# account THAT DOES NOT SHARE ITS USER OR GROUP ID WITH OTHER ACCOUNTS -# AND THAT OWNS NO OTHER FILES OR PROCESSES ON THE SYSTEM. In -# particular, don't specify nobody or daemon. PLEASE USE A DEDICATED -# USER. -# mail_owner = postfix -# The default_privs parameter specifies the default rights used by -# the local delivery agent for delivery to external file or command. -# These rights are used in the absence of a recipient user context. -# DO NOT SPECIFY A PRIVILEGED USER OR THE POSTFIX OWNER. -# -#default_privs = nobody - -# INTERNET HOST AND DOMAIN NAMES -# -# The myhostname parameter specifies the internet hostname of this -# mail system. The default is to use the fully-qualified domain name -# from gethostname(). $myhostname is used as a default value for many -# other configuration parameters. -# -#myhostname = host.domain.tld -#myhostname = virtual.domain.tld - -# The mydomain parameter specifies the local internet domain name. -# The default is to use $myhostname minus the first component. -# $mydomain is used as a default value for many other configuration -# parameters. -# -#mydomain = domain.tld - -# SENDING MAIL -# -# The myorigin parameter specifies the domain that locally-posted -# mail appears to come from. The default is to append $myhostname, -# which is fine for small sites. If you run a domain with multiple -# machines, you should (1) change this to $mydomain and (2) set up -# a domain-wide alias database that aliases each user to -# user@that.users.mailhost. -# -# For the sake of consistency between sender and recipient addresses, -# myorigin also specifies the default domain name that is appended -# to recipient addresses that have no @domain part. -# -#myorigin = $myhostname -#myorigin = $mydomain - -# RECEIVING MAIL - -# The inet_interfaces parameter specifies the network interface -# addresses that this mail system receives mail on. By default, -# the software claims all active interfaces on the machine. The -# parameter also controls delivery of mail to user@[ip.address]. -# -# See also the proxy_interfaces parameter, for network addresses that -# are forwarded to us via a proxy or network address translator. -# -# Note: you need to stop/start Postfix when this parameter changes. -# -#inet_interfaces = all -#inet_interfaces = $myhostname -#inet_interfaces = $myhostname, localhost -inet_interfaces = localhost - -# Enable IPv4, and IPv6 if supported -inet_protocols = all +mydomain = locaweb.com.br +myorigin = $myhostname -# The proxy_interfaces parameter specifies the network interface -# addresses that this mail system receives mail on by way of a -# proxy or network address translation unit. This setting extends -# the address list specified with the inet_interfaces parameter. -# -# You must specify your proxy/NAT addresses when your system is a -# backup MX host for other domains, otherwise mail delivery loops -# will happen when the primary MX host is down. -# -#proxy_interfaces = -#proxy_interfaces = 1.2.3.4 - -# The mydestination parameter specifies the list of domains that this -# machine considers itself the final destination for. -# -# These domains are routed to the delivery agent specified with the -# local_transport parameter setting. By default, that is the UNIX -# compatible delivery agent that lookups all recipients in /etc/passwd -# and /etc/aliases or their equivalent. -# -# The default is $myhostname + localhost.$mydomain. On a mail domain -# gateway, you should also include $mydomain. -# -# Do not specify the names of virtual domains - those domains are -# specified elsewhere (see VIRTUAL_README). -# -# Do not specify the names of domains that this machine is backup MX -# host for. Specify those names via the relay_domains settings for -# the SMTP server, or use permit_mx_backup if you are lazy (see -# STANDARD_CONFIGURATION_README). -# -# The local machine is always the final destination for mail addressed -# to user@[the.net.work.address] of an interface that the mail system -# receives mail on (see the inet_interfaces parameter). -# -# Specify a list of host or domain names, /file/name or type:table -# patterns, separated by commas and/or whitespace. A /file/name -# pattern is replaced by its contents; a type:table is matched when -# a name matches a lookup key (the right-hand side is ignored). -# Continue long lines by starting the next line with whitespace. -# -# See also below, section "REJECTING MAIL FOR UNKNOWN LOCAL USERS". -# +inet_interfaces = all mydestination = $myhostname, localhost.$mydomain, localhost -#mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain -#mydestination = $myhostname, localhost.$mydomain, localhost, $mydomain, -# mail.$mydomain, www.$mydomain, ftp.$mydomain - -# REJECTING MAIL FOR UNKNOWN LOCAL USERS -# -# The local_recipient_maps parameter specifies optional lookup tables -# with all names or addresses of users that are local with respect -# to $mydestination, $inet_interfaces or $proxy_interfaces. -# -# If this parameter is defined, then the SMTP server will reject -# mail for unknown local users. This parameter is defined by default. -# -# To turn off local recipient checking in the SMTP server, specify -# local_recipient_maps = (i.e. empty). -# -# The default setting assumes that you use the default Postfix local -# delivery agent for local delivery. You need to update the -# local_recipient_maps setting if: -# -# - You define $mydestination domain recipients in files other than -# /etc/passwd, /etc/aliases, or the $virtual_alias_maps files. -# For example, you define $mydestination domain recipients in -# the $virtual_mailbox_maps files. -# -# - You redefine the local delivery agent in master.cf. -# -# - You redefine the "local_transport" setting in main.cf. -# -# - You use the "luser_relay", "mailbox_transport", or "fallback_transport" -# feature of the Postfix local delivery agent (see local(8)). -# -# Details are described in the LOCAL_RECIPIENT_README file. -# -# Beware: if the Postfix SMTP server runs chrooted, you probably have -# to access the passwd file via the proxymap service, in order to -# overcome chroot restrictions. The alternative, having a copy of -# the system passwd file in the chroot jail is just not practical. -# -# The right-hand side of the lookup tables is conveniently ignored. -# In the left-hand side, specify a bare username, an @domain.tld -# wild-card, or specify a user@domain.tld address. -# -#local_recipient_maps = unix:passwd.byname $alias_maps -#local_recipient_maps = proxy:unix:passwd.byname $alias_maps -#local_recipient_maps = - -# The unknown_local_recipient_reject_code specifies the SMTP server -# response code when a recipient domain matches $mydestination or -# ${proxy,inet}_interfaces, while $local_recipient_maps is non-empty -# and the recipient address or address local-part is not found. -# -# The default setting is 550 (reject mail) but it is safer to start -# with 450 (try again later) until you are certain that your -# local_recipient_maps settings are OK. -# unknown_local_recipient_reject_code = 550 - -# TRUST AND RELAY CONTROL - -# The mynetworks parameter specifies the list of "trusted" SMTP -# clients that have more privileges than "strangers". -# -# In particular, "trusted" SMTP clients are allowed to relay mail -# through Postfix. See the smtpd_recipient_restrictions parameter -# in postconf(5). -# -# You can specify the list of "trusted" network addresses by hand -# or you can let Postfix do it for you (which is the default). -# -# By default (mynetworks_style = subnet), Postfix "trusts" SMTP -# clients in the same IP subnetworks as the local machine. -# On Linux, this does works correctly only with interfaces specified -# with the "ifconfig" command. -# -# Specify "mynetworks_style = class" when Postfix should "trust" SMTP -# clients in the same IP class A/B/C networks as the local machine. -# Don't do this with a dialup site - it would cause Postfix to "trust" -# your entire provider's network. Instead, specify an explicit -# mynetworks list by hand, as described below. -# -# Specify "mynetworks_style = host" when Postfix should "trust" -# only the local machine. -# -#mynetworks_style = class -#mynetworks_style = subnet -#mynetworks_style = host - -# Alternatively, you can specify the mynetworks list by hand, in -# which case Postfix ignores the mynetworks_style setting. -# -# Specify an explicit list of network/netmask patterns, where the -# mask specifies the number of bits in the network part of a host -# address. -# -# You can also specify the absolute pathname of a pattern file instead -# of listing the patterns here. Specify type:table for table-based lookups -# (the value on the table right-hand side is not used). -# -#mynetworks = 168.100.189.0/28, 127.0.0.0/8 -#mynetworks = $config_directory/mynetworks -#mynetworks = hash:/etc/postfix/network_table - -# The relay_domains parameter restricts what destinations this system will -# relay mail to. See the smtpd_recipient_restrictions description in -# postconf(5) for detailed information. -# -# By default, Postfix relays mail -# - from "trusted" clients (IP address matches $mynetworks) to any destination, -# - from "untrusted" clients to destinations that match $relay_domains or -# subdomains thereof, except addresses with sender-specified routing. -# The default relay_domains value is $mydestination. -# -# In addition to the above, the Postfix SMTP server by default accepts mail -# that Postfix is final destination for: -# - destinations that match $inet_interfaces or $proxy_interfaces, -# - destinations that match $mydestination -# - destinations that match $virtual_alias_domains, -# - destinations that match $virtual_mailbox_domains. -# These destinations do not need to be listed in $relay_domains. -# -# Specify a list of hosts or domains, /file/name patterns or type:name -# lookup tables, separated by commas and/or whitespace. Continue -# long lines by starting the next line with whitespace. A file name -# is replaced by its contents; a type:name table is matched when a -# (parent) domain appears as lookup key. -# -# NOTE: Postfix will not automatically forward mail for domains that -# list this system as their primary or backup MX host. See the -# permit_mx_backup restriction description in postconf(5). -# -#relay_domains = $mydestination - -# INTERNET OR INTRANET - -# The relayhost parameter specifies the default host to send mail to -# when no entry is matched in the optional transport(5) table. When -# no relayhost is given, mail is routed directly to the destination. -# -# On an intranet, specify the organizational domain name. If your -# internal DNS uses no MX records, specify the name of the intranet -# gateway host instead. -# -# In the case of SMTP, specify a domain, host, host:port, [host]:port, -# [address] or [address]:port; the form [host] turns off MX lookups. -# -# If you're connected via UUCP, see also the default_transport parameter. -# -#relayhost = $mydomain -#relayhost = [gateway.my.domain] -#relayhost = [mailserver.isp.tld] -#relayhost = uucphost -#relayhost = [an.ip.add.ress] - -# REJECTING UNKNOWN RELAY USERS -# -# The relay_recipient_maps parameter specifies optional lookup tables -# with all addresses in the domains that match $relay_domains. -# -# If this parameter is defined, then the SMTP server will reject -# mail for unknown relay users. This feature is off by default. -# -# The right-hand side of the lookup tables is conveniently ignored. -# In the left-hand side, specify an @domain.tld wild-card, or specify -# a user@domain.tld address. -# -#relay_recipient_maps = hash:/etc/postfix/relay_recipients - -# INPUT RATE CONTROL -# -# The in_flow_delay configuration parameter implements mail input -# flow control. This feature is turned on by default, although it -# still needs further development (it's disabled on SCO UNIX due -# to an SCO bug). -# -# A Postfix process will pause for $in_flow_delay seconds before -# accepting a new message, when the message arrival rate exceeds the -# message delivery rate. With the default 100 SMTP server process -# limit, this limits the mail inflow to 100 messages a second more -# than the number of messages delivered per second. -# -# Specify 0 to disable the feature. Valid delays are 0..10. -# -#in_flow_delay = 1s - -# ADDRESS REWRITING -# -# The ADDRESS_REWRITING_README document gives information about -# address masquerading or other forms of address rewriting including -# username->Firstname.Lastname mapping. - -# ADDRESS REDIRECTION (VIRTUAL DOMAIN) -# -# The VIRTUAL_README document gives information about the many forms -# of domain hosting that Postfix supports. - -# "USER HAS MOVED" BOUNCE MESSAGES -# -# See the discussion in the ADDRESS_REWRITING_README document. - -# TRANSPORT MAP -# -# See the discussion in the ADDRESS_REWRITING_README document. - -# ALIAS DATABASE -# -# The alias_maps parameter specifies the list of alias databases used -# by the local delivery agent. The default list is system dependent. -# -# On systems with NIS, the default is to search the local alias -# database, then the NIS alias database. See aliases(5) for syntax -# details. -# -# If you change the alias database, run "postalias /etc/aliases" (or -# wherever your system stores the mail alias file), or simply run -# "newaliases" to build the necessary DBM or DB file. -# -# It will take a minute or so before changes become visible. Use -# "postfix reload" to eliminate the delay. -# -#alias_maps = dbm:/etc/aliases +mynetworks = 127.0.0.1 201.76.47.54 200.234.197.137 200.234.197.145 200.234.197.148 +relayhost = 186.202.9.66 alias_maps = hash:/etc/aliases -#alias_maps = hash:/etc/aliases, nis:mail.aliases -#alias_maps = netinfo:/aliases - -# The alias_database parameter specifies the alias database(s) that -# are built with "newaliases" or "sendmail -bi". This is a separate -# configuration parameter, because alias_maps (see above) may specify -# tables that are not necessarily all under control by Postfix. -# -#alias_database = dbm:/etc/aliases -#alias_database = dbm:/etc/mail/aliases alias_database = hash:/etc/aliases -#alias_database = hash:/etc/aliases, hash:/opt/majordomo/aliases - -# ADDRESS EXTENSIONS (e.g., user+foo) -# -# The recipient_delimiter parameter specifies the separator between -# user names and address extensions (user+foo). See canonical(5), -# local(8), relocated(5) and virtual(5) for the effects this has on -# aliases, canonical, virtual, relocated and .forward file lookups. -# Basically, the software tries user+foo and .forward+foo before -# trying user and .forward. -# -#recipient_delimiter = + - -# DELIVERY TO MAILBOX -# -# The home_mailbox parameter specifies the optional pathname of a -# mailbox file relative to a user's home directory. The default -# mailbox file is /var/spool/mail/user or /var/mail/user. Specify -# "Maildir/" for qmail-style delivery (the / is required). -# -#home_mailbox = Mailbox -#home_mailbox = Maildir/ - -# The mail_spool_directory parameter specifies the directory where -# UNIX-style mailboxes are kept. The default setting depends on the -# system type. -# -#mail_spool_directory = /var/mail -#mail_spool_directory = /var/spool/mail - -# The mailbox_command parameter specifies the optional external -# command to use instead of mailbox delivery. The command is run as -# the recipient with proper HOME, SHELL and LOGNAME environment settings. -# Exception: delivery for root is done as $default_user. -# -# Other environment variables of interest: USER (recipient username), -# EXTENSION (address extension), DOMAIN (domain part of address), -# and LOCAL (the address localpart). -# -# Unlike other Postfix configuration parameters, the mailbox_command -# parameter is not subjected to $parameter substitutions. This is to -# make it easier to specify shell syntax (see example below). -# -# Avoid shell meta characters because they will force Postfix to run -# an expensive shell process. Procmail alone is expensive enough. -# -# IF YOU USE THIS TO DELIVER MAIL SYSTEM-WIDE, YOU MUST SET UP AN -# ALIAS THAT FORWARDS MAIL FOR ROOT TO A REAL USER. -# -#mailbox_command = /some/where/procmail -#mailbox_command = /some/where/procmail -a "$EXTENSION" - -# The mailbox_transport specifies the optional transport in master.cf -# to use after processing aliases and .forward files. This parameter -# has precedence over the mailbox_command, fallback_transport and -# luser_relay parameters. -# -# Specify a string of the form transport:nexthop, where transport is -# the name of a mail delivery transport defined in master.cf. The -# :nexthop part is optional. For more details see the sample transport -# configuration file. -# -# NOTE: if you use this feature for accounts not in the UNIX password -# file, then you must update the "local_recipient_maps" setting in -# the main.cf file, otherwise the SMTP server will reject mail for -# non-UNIX accounts with "User unknown in local recipient table". -# -# Cyrus IMAP over LMTP. Specify ``lmtpunix cmd="lmtpd" -# listen="/var/imap/socket/lmtp" prefork=0'' in cyrus.conf. -#mailbox_transport = lmtp:unix:/var/lib/imap/socket/lmtp - -# If using the cyrus-imapd IMAP server deliver local mail to the IMAP -# server using LMTP (Local Mail Transport Protocol), this is prefered -# over the older cyrus deliver program by setting the -# mailbox_transport as below: -# -# mailbox_transport = lmtp:unix:/var/lib/imap/socket/lmtp -# -# The efficiency of LMTP delivery for cyrus-imapd can be enhanced via -# these settings. -# -# local_destination_recipient_limit = 300 -# local_destination_concurrency_limit = 5 -# -# Of course you should adjust these settings as appropriate for the -# capacity of the hardware you are using. The recipient limit setting -# can be used to take advantage of the single instance message store -# capability of Cyrus. The concurrency limit can be used to control -# how many simultaneous LMTP sessions will be permitted to the Cyrus -# message store. -# -# Cyrus IMAP via command line. Uncomment the "cyrus...pipe" and -# subsequent line in master.cf. -#mailbox_transport = cyrus - -# The fallback_transport specifies the optional transport in master.cf -# to use for recipients that are not found in the UNIX passwd database. -# This parameter has precedence over the luser_relay parameter. -# -# Specify a string of the form transport:nexthop, where transport is -# the name of a mail delivery transport defined in master.cf. The -# :nexthop part is optional. For more details see the sample transport -# configuration file. -# -# NOTE: if you use this feature for accounts not in the UNIX password -# file, then you must update the "local_recipient_maps" setting in -# the main.cf file, otherwise the SMTP server will reject mail for -# non-UNIX accounts with "User unknown in local recipient table". -# -#fallback_transport = lmtp:unix:/var/lib/imap/socket/lmtp -#fallback_transport = - -# The luser_relay parameter specifies an optional destination address -# for unknown recipients. By default, mail for unknown@$mydestination, -# unknown@[$inet_interfaces] or unknown@[$proxy_interfaces] is returned -# as undeliverable. -# -# The following expansions are done on luser_relay: $user (recipient -# username), $shell (recipient shell), $home (recipient home directory), -# $recipient (full recipient address), $extension (recipient address -# extension), $domain (recipient domain), $local (entire recipient -# localpart), $recipient_delimiter. Specify ${name?value} or -# ${name:value} to expand value only when $name does (does not) exist. -# -# luser_relay works only for the default Postfix local delivery agent. -# -# NOTE: if you use this feature for accounts not in the UNIX password -# file, then you must specify "local_recipient_maps =" (i.e. empty) in -# the main.cf file, otherwise the SMTP server will reject mail for -# non-UNIX accounts with "User unknown in local recipient table". -# -#luser_relay = $user@other.host -#luser_relay = $local@other.host -#luser_relay = admin+$local - -# JUNK MAIL CONTROLS -# -# The controls listed here are only a very small subset. The file -# SMTPD_ACCESS_README provides an overview. - -# The header_checks parameter specifies an optional table with patterns -# that each logical message header is matched against, including -# headers that span multiple physical lines. -# -# By default, these patterns also apply to MIME headers and to the -# headers of attached messages. With older Postfix versions, MIME and -# attached message headers were treated as body text. -# -# For details, see "man header_checks". -# #header_checks = regexp:/etc/postfix/header_checks -# FAST ETRN SERVICE -# -# Postfix maintains per-destination logfiles with information about -# deferred mail, so that mail can be flushed quickly with the SMTP -# "ETRN domain.tld" command, or by executing "sendmail -qRdomain.tld". -# See the ETRN_README document for a detailed description. -# -# The fast_flush_domains parameter controls what destinations are -# eligible for this service. By default, they are all domains that -# this server is willing to relay mail to. -# -#fast_flush_domains = $relay_domains - -# SHOW SOFTWARE VERSION OR NOT -# -# The smtpd_banner parameter specifies the text that follows the 220 -# code in the SMTP server's greeting banner. Some people like to see -# the mail version advertised. By default, Postfix shows no version. -# -# You MUST specify $myhostname at the start of the text. That is an -# RFC requirement. Postfix itself does not care. -# -#smtpd_banner = $myhostname ESMTP $mail_name -#smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) - -# PARALLEL DELIVERY TO THE SAME DESTINATION -# -# How many parallel deliveries to the same user or domain? With local -# delivery, it does not make sense to do massively parallel delivery -# to the same user, because mailbox updates must happen sequentially, -# and expensive pipelines in .forward files can cause disasters when -# too many are run at the same time. With SMTP deliveries, 10 -# simultaneous connections to the same domain could be sufficient to -# raise eyebrows. -# -# Each message delivery transport has its XXX_destination_concurrency_limit -# parameter. The default is $default_destination_concurrency_limit for -# most delivery transports. For the local delivery agent the default is 2. - -#local_destination_concurrency_limit = 2 -#default_destination_concurrency_limit = 20 - -# DEBUGGING CONTROL -# -# The debug_peer_level parameter specifies the increment in verbose -# logging level when an SMTP client or server host name or address -# matches a pattern in the debug_peer_list parameter. -# -debug_peer_level = 2 - -# The debug_peer_list parameter specifies an optional list of domain -# or network patterns, /file/name patterns or type:name tables. When -# an SMTP client or server host name or address matches a pattern, -# increase the verbose logging level by the amount specified in the -# debug_peer_level parameter. -# -#debug_peer_list = 127.0.0.1 -#debug_peer_list = some.domain - -# The debugger_command specifies the external command that is executed -# when a Postfix daemon program is run with the -D option. -# -# Use "command .. & sleep 5" so that the debugger can attach before -# the process marches on. If you use an X-based debugger, be sure to -# set up your XAUTHORITY environment variable before starting Postfix. -# debugger_command = - PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin - ddd $daemon_directory/$process_name $process_id & sleep 5 - -# If you can't use X, use this to capture the call stack when a -# daemon crashes. The result is in a file in the configuration -# directory, and is named after the process name and the process ID. -# -# debugger_command = -# PATH=/bin:/usr/bin:/usr/local/bin; export PATH; (echo cont; -# echo where) | gdb $daemon_directory/$process_name $process_id 2>&1 -# >$config_directory/$process_name.$process_id.log & sleep 5 -# -# Another possibility is to run gdb under a detached screen session. -# To attach to the screen sesssion, su root and run "screen -r -# <id_string>" where <id_string> uniquely matches one of the detached -# sessions (from "screen -list"). -# -# debugger_command = -# PATH=/bin:/usr/bin:/sbin:/usr/sbin; export PATH; screen -# -dmS $process_name gdb $daemon_directory/$process_name -# $process_id & sleep 1 + PATH=/bin:/usr/bin:/usr/local/bin:/usr/X11R6/bin + xxgdb $daemon_directory/$process_name $process_id & sleep 5 -# INSTALL-TIME CONFIGURATION INFORMATION -# -# The following parameters are used when installing a new Postfix version. -# -# sendmail_path: The full pathname of the Postfix sendmail command. -# This is the Sendmail-compatible mail posting interface. -# sendmail_path = /usr/sbin/sendmail.postfix - -# newaliases_path: The full pathname of the Postfix newaliases command. -# This is the Sendmail-compatible command to build alias databases. -# newaliases_path = /usr/bin/newaliases.postfix - -# mailq_path: The full pathname of the Postfix mailq command. This -# is the Sendmail-compatible mail queue listing command. -# mailq_path = /usr/bin/mailq.postfix - -# setgid_group: The group for mail submission and queue management -# commands. This must be a group name with a numerical group ID that -# is not shared with other accounts, not even with the Postfix account. -# setgid_group = postdrop - -# html_directory: The location of the Postfix HTML documentation. -# html_directory = no - -# manpage_directory: The location of the Postfix on-line manual pages. -# manpage_directory = /usr/share/man -# sample_directory: The location of the Postfix sample configuration files. -# This parameter is obsolete as of Postfix 2.1. -# -sample_directory = /usr/share/doc/postfix-2.10.1/samples - -# readme_directory: The location of the Postfix README files. -# -readme_directory = /usr/share/doc/postfix-2.10.1/README_FILES +data_directory = /var/lib/postfix +smtpd_sasl_type = dovecot +smtpd_sasl_path = private/auth +smtpd_sasl_auth_enable = yes +broken_sasl_auth_clients = yes +smtpd_sasl_local_domain = +smtpd_sasl_security_options = noanonymous +smtpd_sasl_authenticated_header = yes +smtp_bind_address = 186.202.13.103 + +smtpd_sender_restrictions = + reject_unknown_sender_domain, + permit_mynetworks \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/postfix/main.cf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Mail/File[/etc/postfix/main.cf]: Filebucketed /etc/postfix/main.cf to puppet with sum 2d19eeddbcb5a178b097ccb878fc070d[0m [mNotice: /Stage[main]/Profile::Webserver::Mail/File[/etc/postfix/main.cf]/content: content changed '{md5}2d19eeddbcb5a178b097ccb878fc070d' to '{md5}6e490e69dd9539927d921cb0277a5627'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Mail/File[/etc/postfix/main.cf]: Scheduling refresh of Service[postfix][0m [1;31mError: Systemd start for receiver failed! journalctl log for receiver: -- No entries -- [0m [1;31mError: /Stage[main]/Profile::Webserver::Api/Service[receiver]/ensure: change from 'stopped' to 'running' failed: Systemd start for receiver failed! journalctl log for receiver: -- No entries -- [0m [mNotice: Augeas[eth0_zone](provider=augeas): --- /etc/sysconfig/network-scripts/ifcfg-eth0 2020-08-03 12:20:51.984000000 -0300 +++ /etc/sysconfig/network-scripts/ifcfg-eth0.augnew 2020-08-03 12:27:13.231865635 -0300 @@ -19,3 +19,4 @@ PEERROUTES=yes IPV6_PEERDNS=yes IPV6_PEERROUTES=yes +ZONE=access [0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/Augeas[eth0_zone]/returns: executed successfully[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/zones/access.xml]/ensure: defined content as '{md5}664bc24e70fecd8b66d59a7ef7bf0b4d'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/zones/access.xml]: Scheduling refresh of Service[firewalld][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/zones/storage.xml]/ensure: defined content as '{md5}0b334a389eb09bb06f1468034596d79e'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/zones/storage.xml]: Scheduling refresh of Service[firewalld][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/firewalld.conf]/content: --- /etc/firewalld/firewalld.conf 2020-04-07 11:37:15.000000000 -0300 +++ /tmp/puppet-file20200803-7604-s8s5qh 2020-08-03 12:27:13.466865635 -0300 @@ -3,10 +3,10 @@ # default zone # The default zone used if an empty zone string is used. # Default: public -DefaultZone=public +DefaultZone=access # Minimal mark -# Marks up to this minimum are free for use for example in the direct +# Marks up to this minimum are free for use for example in the direct # interface. If more free marks are needed, increase the minimum # Default: 100 MinimalMark=100 @@ -26,44 +26,8 @@ # IPv6_rpfilter # Performs a reverse path filter test on a packet for IPv6. If a reply to the -# packet would be sent via the same interface that the packet arrived on, the +# packet would be sent via the same interface that the packet arrived on, the # packet will match and be accepted, otherwise dropped. # The rp_filter for IPv4 is controlled using sysctl. # Default: yes -IPv6_rpfilter=yes - -# IndividualCalls -# Do not use combined -restore calls, but individual calls. This increases the -# time that is needed to apply changes and to start the daemon, but is good for -# debugging. -# Default: no -IndividualCalls=no - -# LogDenied -# Add logging rules right before reject and drop rules in the INPUT, FORWARD -# and OUTPUT chains for the default rules and also final reject and drop rules -# in zones. Possible values are: all, unicast, broadcast, multicast and off. -# Default: off -LogDenied=off - -# AutomaticHelpers -# For the secure use of iptables and connection tracking helpers it is -# recommended to turn AutomaticHelpers off. But this might have side effects on -# other services using the netfilter helpers as the sysctl setting in -# /proc/sys/net/netfilter/nf_conntrack_helper will be changed. -# With the system setting, the default value set in the kernel or with sysctl -# will be used. Possible values are: yes, no and system. -# Default: system -AutomaticHelpers=system - -# AllowZoneDrifting -# Older versions of firewalld had undocumented behavior known as "zone -# drifting". This allowed packets to ingress multiple zones - this is a -# violation of zone based firewalls. However, some users rely on this behavior -# to have a "catch-all" zone, e.g. the default zone. You can enable this if you -# desire such behavior. It's disabled by default for security reasons. -# Note: If "yes" packets will only drift from source based zones to interface -# based zones (including the default zone). Packets never drift from interface -# based zones to other interfaces based zones (including the default zone). -# Possible values; "yes", "no". Defaults to "yes". -AllowZoneDrifting=yes +IPv6_rpfilter=yes \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/firewalld/firewalld.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/firewalld.conf]: Filebucketed /etc/firewalld/firewalld.conf to puppet with sum 9e7ab33a06146d7100cef21b9720ac8b[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/firewalld.conf]/content: content changed '{md5}9e7ab33a06146d7100cef21b9720ac8b' to '{md5}635b1c41e548065abc3c0e0132dac3fc'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Firewalld/File[/etc/firewalld/firewalld.conf]: Scheduling refresh of Service[firewalld][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Firewalld/Service[firewalld]: Triggered 'refresh' from 3 events[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Repos/Yumrepo[ct-banco]/ensure: created[0m [0;32mInfo: Yumrepo[ct-banco](provider=inifile): changing mode of /etc/yum.repos.d/ct-banco.repo from 600 to 644[0m [mNotice: /Stage[main]/Lwbase::Packages::Redhat/Package[ntp]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Packages::Redhat/Package[xinetd]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Packages::Redhat/Package[OpenIPMI]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Packages::Redhat/Package[pam_radius]/ensure: created[0m [mNotice: /Stage[main]/Lwbase::Packages::Redhat/Package[sysstat]/ensure: created[0m [mNotice: /Stage[main]/Telegraf::Install/Package[telegraf]/ensure: created[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]/content: --- /etc/telegraf/telegraf.conf 2018-06-05 16:22:11.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1ytiiyk 2020-08-03 12:27:30.934865635 -0300 @@ -1,3406 +1,43 @@ # Telegraf Configuration # -# Telegraf is entirely plugin driven. All metrics are gathered from the -# declared inputs, and sent to the declared outputs. +# THIS FILE IS MANAGED BY PUPPET # -# Plugins must be declared in here to be active. -# To deactivate a plugin, comment out the name and any variables. -# -# Use 'telegraf -config telegraf.conf -test' to see what metrics a config -# file would generate. -# -# Environment variables can be used anywhere in this config file, simply prepend -# them with $. For strings the variable must be within quotes (ie, "$STR_VAR"), -# for numbers and booleans they should be plain (ie, $INT_VAR, $BOOL_VAR) - - -# Global tags can be specified here in key="value" format. [global_tags] - # dc = "us-east-1" # will tag all metrics with dc=us-east-1 - # rack = "1a" - ## Environment variables can be used as tags, and throughout the config file - # user = "$USER" - -# Configuration for telegraf agent [agent] - ## Default data collection interval for all inputs - interval = "10s" - ## Rounds collection interval to 'interval' - ## ie, if interval="10s" then always collect on :00, :10, :20, etc. + hostname = "vpshost1491" + omit_hostname = false + interval = "5m" round_interval = true - - ## Telegraf will send metrics to outputs in batches of at most - ## metric_batch_size metrics. - ## This controls the size of writes that Telegraf sends to output plugins. metric_batch_size = 1000 - - ## For failed writes, telegraf will cache metric_buffer_limit metrics for each - ## output, and will flush this buffer on a successful write. Oldest metrics - ## are dropped first when this buffer fills. - ## This buffer only fills when writes fail to output plugin(s). metric_buffer_limit = 10000 - - ## Collection jitter is used to jitter the collection by a random amount. - ## Each plugin will sleep for a random time within jitter before collecting. - ## This can be used to avoid many plugins querying things like sysfs at the - ## same time, which can have a measurable effect on the system. collection_jitter = "0s" - - ## Default flushing interval for all outputs. You shouldn't set this below - ## interval. Maximum flush_interval will be flush_interval + flush_jitter flush_interval = "10s" - ## Jitter the flush interval by a random amount. This is primarily to avoid - ## large write spikes for users running a large number of telegraf instances. - ## ie, a jitter of 5s and interval 10s means flushes will happen every 10-15s flush_jitter = "0s" - - ## By default or when set to "0s", precision will be set to the same - ## timestamp order as the collection interval, with the maximum being 1s. - ## ie, when interval = "10s", precision will be "1s" - ## when interval = "250ms", precision will be "1ms" - ## Precision will NOT be used for service inputs. It is up to each individual - ## service input to set the timestamp at the appropriate precision. - ## Valid time units are "ns", "us" (or "µs"), "ms", "s". - precision = "" - - ## Logging configuration: - ## Run telegraf with debug log messages. + logfile = "" debug = false - ## Run telegraf in quiet mode (error log messages only). quiet = false - ## Specify the log file name. The empty string means to log to stderr. - logfile = "" - - ## Override default hostname, if empty use os.Hostname() - hostname = "" - ## If set to true, do no set the "host" tag in the telegraf agent. - omit_hostname = false - - -############################################################################### -# OUTPUT PLUGINS # -############################################################################### - -# Configuration for sending metrics to InfluxDB -[[outputs.influxdb]] - ## The full HTTP or UDP URL for your InfluxDB instance. - ## - ## Multiple URLs can be specified for a single cluster, only ONE of the - ## urls will be written to each interval. - # urls = ["unix:///var/run/influxdb.sock"] - # urls = ["udp://127.0.0.1:8089"] - # urls = ["http://127.0.0.1:8086"] - - ## The target database for metrics; will be created as needed. - # database = "telegraf" - ## If true, no CREATE DATABASE queries will be sent. Set to true when using - ## Telegraf with a user without permissions to create databases or when the - ## database already exists. - # skip_database_creation = false - - ## Name of existing retention policy to write to. Empty string writes to - ## the default retention policy. - # retention_policy = "" - - ## Write consistency (clusters only), can be: "any", "one", "quorum", "all" - # write_consistency = "any" - - ## Timeout for HTTP messages. - # timeout = "5s" - - ## HTTP Basic Auth - # username = "telegraf" - # password = "metricsmetricsmetricsmetrics" - - ## HTTP User-Agent - # user_agent = "telegraf" - - ## UDP payload size is the maximum packet size to send. - # udp_payload = 512 - - ## Optional SSL Config - # ssl_ca = "/etc/telegraf/ca.pem" - # ssl_cert = "/etc/telegraf/cert.pem" - # ssl_key = "/etc/telegraf/key.pem" - ## Use SSL but skip chain & host verification - # insecure_skip_verify = false - - ## HTTP Proxy override, if unset values the standard proxy environment - ## variables are consulted to determine which proxy, if any, should be used. - # http_proxy = "http://corporate.proxy:3128" - - ## Additional HTTP headers - # http_headers = {"X-Special-Header" = "Special-Value"} - - ## HTTP Content-Encoding for write request body, can be set to "gzip" to - ## compress body or "identity" to apply no encoding. - # content_encoding = "identity" - - ## When true, Telegraf will output unsigned integers as unsigned values, - ## i.e.: "42u". You will need a version of InfluxDB supporting unsigned - ## integer values. Enabling this option will result in field type errors if - ## existing data has been written. - # influx_uint_support = false - - -# # Configuration for Amon Server to send metrics to. -# [[outputs.amon]] -# ## Amon Server Key -# server_key = "my-server-key" # required. -# -# ## Amon Instance URL -# amon_instance = "https://youramoninstance" # required -# -# ## Connection timeout. -# # timeout = "5s" - - -# # Configuration for the AMQP server to send metrics to -# [[outputs.amqp]] -# ## AMQP url -# url = "amqp://localhost:5672/influxdb" -# ## AMQP exchange -# exchange = "telegraf" -# ## Auth method. PLAIN and EXTERNAL are supported -# ## Using EXTERNAL requires enabling the rabbitmq_auth_mechanism_ssl plugin as -# ## described here: https://www.rabbitmq.com/plugins.html -# # auth_method = "PLAIN" -# ## Telegraf tag to use as a routing key -# ## ie, if this tag exists, its value will be used as the routing key -# routing_tag = "host" -# ## Delivery Mode controls if a published message is persistent -# ## Valid options are "transient" and "persistent". default: "transient" -# delivery_mode = "transient" -# -# ## InfluxDB retention policy -# # retention_policy = "default" -# ## InfluxDB database -# # database = "telegraf" # -# ## Write timeout, formatted as a string. If not provided, will default -# ## to 5s. 0s means no timeout (not recommended). -# # timeout = "5s" +# OUTPUTS: # -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" - - -# # Configuration for AWS CloudWatch output. -# [[outputs.cloudwatch]] -# ## Amazon REGION -# region = "us-east-1" -# -# ## Amazon Credentials -# ## Credentials are loaded in the following order -# ## 1) Assumed credentials via STS if role_arn is specified -# ## 2) explicit credentials from 'access_key' and 'secret_key' -# ## 3) shared profile from 'profile' -# ## 4) environment variables -# ## 5) shared credentials file -# ## 6) EC2 Instance Profile -# #access_key = "" -# #secret_key = "" -# #token = "" -# #role_arn = "" -# #profile = "" -# #shared_credential_file = "" -# -# ## Namespace for the CloudWatch MetricDatums -# namespace = "InfluxData/Telegraf" - - -# # Configuration for CrateDB to send metrics to. -# [[outputs.cratedb]] -# # A github.com/jackc/pgx connection string. -# # See https://godoc.org/github.com/jackc/pgx#ParseDSN -# url = "postgres://user:password@localhost/schema?sslmode=disable" -# # Timeout for all CrateDB queries. -# timeout = "5s" -# # Name of the table to store metrics in. -# table = "metrics" -# # If true, and the metrics table does not exist, create it automatically. -# table_create = true - - -# # Configuration for DataDog API to send metrics to. -# [[outputs.datadog]] -# ## Datadog API key -# apikey = "my-secret-key" # required. -# -# ## Connection timeout. -# # timeout = "5s" - - -# # Send metrics to nowhere at all -# [[outputs.discard]] -# # no configuration - - -# # Configuration for Elasticsearch to send metrics to. -# [[outputs.elasticsearch]] -# ## The full HTTP endpoint URL for your Elasticsearch instance -# ## Multiple urls can be specified as part of the same cluster, -# ## this means that only ONE of the urls will be written to each interval. -# urls = [ "http://node1.es.example.com:9200" ] # required. -# ## Elasticsearch client timeout, defaults to "5s" if not set. -# timeout = "5s" -# ## Set to true to ask Elasticsearch a list of all cluster nodes, -# ## thus it is not necessary to list all nodes in the urls config option. -# enable_sniffer = false -# ## Set the interval to check if the Elasticsearch nodes are available -# ## Setting to "0s" will disable the health check (not recommended in production) -# health_check_interval = "10s" -# ## HTTP basic authentication details (eg. when using Shield) -# # username = "telegraf" -# # password = "mypassword" -# -# ## Index Config -# ## The target index for metrics (Elasticsearch will create if it not exists). -# ## You can use the date specifiers below to create indexes per time frame. -# ## The metric timestamp will be used to decide the destination index name -# # %Y - year (2016) -# # %y - last two digits of year (00..99) -# # %m - month (01..12) -# # %d - day of month (e.g., 01) -# # %H - hour (00..23) -# # %V - week of the year (ISO week) (01..53) -# ## Additionally, you can specify a tag name using the notation {{tag_name}} -# ## which will be used as part of the index name. If the tag does not exist, -# ## the default tag value will be used. -# # index_name = "telegraf-{{host}}-%Y.%m.%d" -# # default_tag_value = "none" -# index_name = "telegraf-%Y.%m.%d" # required. -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Template Config -# ## Set to true if you want telegraf to manage its index template. -# ## If enabled it will create a recommended index template for telegraf indexes -# manage_template = true -# ## The template name used for telegraf indexes -# template_name = "telegraf" -# ## Set to true if you want telegraf to overwrite an existing template -# overwrite_template = false - - -# # Send telegraf metrics to file(s) -# [[outputs.file]] -# ## Files to write to, "stdout" is a specially handled file. -# files = ["stdout", "/tmp/metrics.out"] -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" - - -# # Configuration for Graphite server to send metrics to -# [[outputs.graphite]] -# ## TCP endpoint for your graphite instance. -# ## If multiple endpoints are configured, output will be load balanced. -# ## Only one of the endpoints will be written to with each iteration. -# servers = ["localhost:2003"] -# ## Prefix metrics name -# prefix = "" -# ## Graphite output template -# ## see https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# template = "host.tags.measurement.field" -# ## timeout in seconds for the write connection to graphite -# timeout = 2 -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Send telegraf metrics to graylog(s) -# [[outputs.graylog]] -# ## UDP endpoint for your graylog instance. -# servers = ["127.0.0.1:12201", "192.168.1.1:12201"] - - -# # Configuration for sending metrics to an Instrumental project -# [[outputs.instrumental]] -# ## Project API Token (required) -# api_token = "API Token" # required -# ## Prefix the metrics with a given name -# prefix = "" -# ## Stats output template (Graphite formatting) -# ## see https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md#graphite -# template = "host.tags.measurement.field" -# ## Timeout in seconds to connect -# timeout = "2s" -# ## Display Communcation to Instrumental -# debug = false - - -# # Configuration for the Kafka server to send metrics to -# [[outputs.kafka]] -# ## URLs of kafka brokers -# brokers = ["localhost:9092"] -# ## Kafka topic for producer messages -# topic = "telegraf" -# -# ## Optional topic suffix configuration. -# ## If the section is omitted, no suffix is used. -# ## Following topic suffix methods are supported: -# ## measurement - suffix equals to separator + measurement's name -# ## tags - suffix equals to separator + specified tags' values -# ## interleaved with separator -# -# ## Suffix equals to "_" + measurement name -# # [outputs.kafka.topic_suffix] -# # method = "measurement" -# # separator = "_" -# -# ## Suffix equals to "__" + measurement's "foo" tag value. -# ## If there's no such a tag, suffix equals to an empty string -# # [outputs.kafka.topic_suffix] -# # method = "tags" -# # keys = ["foo"] -# # separator = "__" -# -# ## Suffix equals to "_" + measurement's "foo" and "bar" -# ## tag values, separated by "_". If there is no such tags, -# ## their values treated as empty strings. -# # [outputs.kafka.topic_suffix] -# # method = "tags" -# # keys = ["foo", "bar"] -# # separator = "_" -# -# ## Telegraf tag to use as a routing key -# ## ie, if this tag exists, its value will be used as the routing key -# routing_tag = "host" -# -# ## CompressionCodec represents the various compression codecs recognized by -# ## Kafka in messages. -# ## 0 : No compression -# ## 1 : Gzip compression -# ## 2 : Snappy compression -# # compression_codec = 0 -# -# ## RequiredAcks is used in Produce Requests to tell the broker how many -# ## replica acknowledgements it must see before responding -# ## 0 : the producer never waits for an acknowledgement from the broker. -# ## This option provides the lowest latency but the weakest durability -# ## guarantees (some data will be lost when a server fails). -# ## 1 : the producer gets an acknowledgement after the leader replica has -# ## received the data. This option provides better durability as the -# ## client waits until the server acknowledges the request as successful -# ## (only messages that were written to the now-dead leader but not yet -# ## replicated will be lost). -# ## -1: the producer gets an acknowledgement after all in-sync replicas have -# ## received the data. This option provides the best durability, we -# ## guarantee that no messages will be lost as long as at least one in -# ## sync replica remains. -# # required_acks = -1 -# -# ## The maximum number of times to retry sending a metric before failing -# ## until the next flush. -# # max_retry = 3 -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Optional SASL Config -# # sasl_username = "kafka" -# # sasl_password = "secret" -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# # data_format = "influx" - - -# # Configuration for the AWS Kinesis output. -# [[outputs.kinesis]] -# ## Amazon REGION of kinesis endpoint. -# region = "ap-southeast-2" -# -# ## Amazon Credentials -# ## Credentials are loaded in the following order -# ## 1) Assumed credentials via STS if role_arn is specified -# ## 2) explicit credentials from 'access_key' and 'secret_key' -# ## 3) shared profile from 'profile' -# ## 4) environment variables -# ## 5) shared credentials file -# ## 6) EC2 Instance Profile -# #access_key = "" -# #secret_key = "" -# #token = "" -# #role_arn = "" -# #profile = "" -# #shared_credential_file = "" -# -# ## Kinesis StreamName must exist prior to starting telegraf. -# streamname = "StreamName" -# ## DEPRECATED: PartitionKey as used for sharding data. -# partitionkey = "PartitionKey" -# ## DEPRECATED: If set the paritionKey will be a random UUID on every put. -# ## This allows for scaling across multiple shards in a stream. -# ## This will cause issues with ordering. -# use_random_partitionkey = false -# ## The partition key can be calculated using one of several methods: -# ## -# ## Use a static value for all writes: -# # [outputs.kinesis.partition] -# # method = "static" -# # key = "howdy" -# # -# ## Use a random partition key on each write: -# # [outputs.kinesis.partition] -# # method = "random" -# # -# ## Use the measurement name as the partition key: -# # [outputs.kinesis.partition] -# # method = "measurement" -# # -# ## Use the value of a tag for all writes, if the tag is not set the empty -# ## string will be used: -# # [outputs.kinesis.partition] -# # method = "tag" -# # key = "host" -# -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" -# -# ## debug will show upstream aws messages. -# debug = false - - -# # Configuration for Librato API to send metrics to. -# [[outputs.librato]] -# ## Librator API Docs -# ## http://dev.librato.com/v1/metrics-authentication -# ## Librato API user -# api_user = "telegraf@influxdb.com" # required. -# ## Librato API token -# api_token = "my-secret-token" # required. -# ## Debug -# # debug = false -# ## Connection timeout. -# # timeout = "5s" -# ## Output source Template (same as graphite buckets) -# ## see https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md#graphite -# ## This template is used in librato's source (not metric's name) -# template = "host" -# - - -# # Configuration for MQTT server to send metrics to -# [[outputs.mqtt]] -# servers = ["localhost:1883"] # required. -# -# ## MQTT outputs send metrics to this topic format -# ## "<topic_prefix>/<hostname>/<pluginname>/" -# ## ex: prefix/web01.example.com/mem -# topic_prefix = "telegraf" -# -# ## username and password to connect MQTT server. -# # username = "telegraf" -# # password = "metricsmetricsmetricsmetrics" -# -# ## Timeout for write operations. default: 5s -# # timeout = "5s" -# -# ## client ID, if not set a random ID is generated -# # client_id = "" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" - - -# # Send telegraf measurements to NATS -# [[outputs.nats]] -# ## URLs of NATS servers -# servers = ["nats://localhost:4222"] -# ## Optional credentials -# # username = "" -# # password = "" -# ## NATS subject for producer messages -# subject = "telegraf" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" - - -# # Send telegraf measurements to NSQD -# [[outputs.nsq]] -# ## Location of nsqd instance listening on TCP -# server = "localhost:4150" -# ## NSQ topic for producer messages -# topic = "telegraf" -# -# ## Data format to output. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_OUTPUT.md -# data_format = "influx" - - -# # Configuration for OpenTSDB server to send metrics to -# [[outputs.opentsdb]] -# ## prefix for metrics keys -# prefix = "my.specific.prefix." -# -# ## DNS name of the OpenTSDB server -# ## Using "opentsdb.example.com" or "tcp://opentsdb.example.com" will use the -# ## telnet API. "http://opentsdb.example.com" will use the Http API. -# host = "opentsdb.example.com" -# -# ## Port of the OpenTSDB server -# port = 4242 -# -# ## Number of data points to send to OpenTSDB in Http requests. -# ## Not used with telnet API. -# httpBatchSize = 50 -# -# ## Debug true - Prints OpenTSDB communication -# debug = false -# -# ## Separator separates measurement name from field -# separator = "_" - - -# # Configuration for the Prometheus client to spawn -# [[outputs.prometheus_client]] -# ## Address to listen on -# # listen = ":9273" -# -# ## Use TLS -# #tls_cert = "/etc/ssl/telegraf.crt" -# #tls_key = "/etc/ssl/telegraf.key" -# -# ## Use http basic authentication -# #basic_username = "Foo" -# #basic_password = "Bar" -# -# ## Interval to expire metrics and not deliver to prometheus, 0 == no expiration -# # expiration_interval = "60s" -# -# ## Collectors to enable, valid entries are "gocollector" and "process". -# ## If unset, both are enabled. -# collectors_exclude = ["gocollector", "process"] -# -# # Send string metrics as Prometheus labels. -# # Unless set to false all string metrics will be sent as labels. -# string_as_label = true - - -# # Configuration for the Riemann server to send metrics to -# [[outputs.riemann]] -# ## The full TCP or UDP URL of the Riemann server -# url = "tcp://localhost:5555" -# -# ## Riemann event TTL, floating-point time in seconds. -# ## Defines how long that an event is considered valid for in Riemann -# # ttl = 30.0 -# -# ## Separator to use between measurement and field name in Riemann service name -# ## This does not have any effect if 'measurement_as_attribute' is set to 'true' -# separator = "/" -# -# ## Set measurement name as Riemann attribute 'measurement', instead of prepending it to the Riemann service name -# # measurement_as_attribute = false -# -# ## Send string metrics as Riemann event states. -# ## Unless enabled all string metrics will be ignored -# # string_as_state = false -# -# ## A list of tag keys whose values get sent as Riemann tags. -# ## If empty, all Telegraf tag values will be sent as tags -# # tag_keys = ["telegraf","custom_tag"] -# -# ## Additional Riemann tags to send. -# # tags = ["telegraf-output"] -# -# ## Description for Riemann event -# # description_text = "metrics collected from telegraf" -# -# ## Riemann client write timeout, defaults to "5s" if not set. -# # timeout = "5s" - - -# # Configuration for the Riemann server to send metrics to -# [[outputs.riemann_legacy]] -# ## URL of server -# url = "localhost:5555" -# ## transport protocol to use either tcp or udp -# transport = "tcp" -# ## separator to use between input name and field name in Riemann service name -# separator = " " - - -# # Generic socket writer capable of handling multiple socket types. -# [[outputs.socket_writer]] -# ## URL to connect to -# # address = "tcp://127.0.0.1:8094" -# # address = "tcp://example.com:http" -# # address = "tcp4://127.0.0.1:8094" -# # address = "tcp6://127.0.0.1:8094" -# # address = "tcp6://[2001:db8::1]:8094" -# # address = "udp://127.0.0.1:8094" -# # address = "udp4://127.0.0.1:8094" -# # address = "udp6://127.0.0.1:8094" -# # address = "unix:///tmp/telegraf.sock" -# # address = "unixgram:///tmp/telegraf.sock" -# -# ## Period between keep alive probes. -# ## Only applies to TCP sockets. -# ## 0 disables keep alive probes. -# ## Defaults to the OS configuration. -# # keep_alive_period = "5m" -# -# ## Data format to generate. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# # data_format = "influx" - - -# # Configuration for Wavefront server to send metrics to -# [[outputs.wavefront]] -# ## DNS name of the wavefront proxy server -# host = "wavefront.example.com" -# -# ## Port that the Wavefront proxy server listens on -# port = 2878 -# -# ## prefix for metrics keys -# #prefix = "my.specific.prefix." -# -# ## whether to use "value" for name of simple fields -# #simple_fields = false -# -# ## character to use between metric and field name. defaults to . (dot) -# #metric_separator = "." -# -# ## Convert metric name paths to use metricSeperator character -# ## When true (default) will convert all _ (underscore) chartacters in final metric name -# #convert_paths = true -# -# ## Use Regex to sanitize metric and tag names from invalid characters -# ## Regex is more thorough, but significantly slower -# #use_regex = false -# -# ## point tags to use as the source name for Wavefront (if none found, host will be used) -# #source_override = ["hostname", "agent_host", "node_host"] -# -# ## whether to convert boolean values to numeric values, with false -> 0.0 and true -> 1.0. default true -# #convert_bool = true -# -# ## Define a mapping, namespaced by metric prefix, from string values to numeric values -# ## The example below maps "green" -> 1.0, "yellow" -> 0.5, "red" -> 0.0 for -# ## any metrics beginning with "elasticsearch" -# #[[outputs.wavefront.string_to_number.elasticsearch]] -# # green = 1.0 -# # yellow = 0.5 -# # red = 0.0 - - - -############################################################################### -# PROCESSOR PLUGINS # -############################################################################### - -# # Apply metric modifications using override semantics. -# [[processors.override]] -# ## All modifications on inputs and aggregators can be overridden: -# # name_override = "new_name" -# # name_prefix = "new_name_prefix" -# # name_suffix = "new_name_suffix" -# -# ## Tags to be added (all values must be strings) -# # [processors.override.tags] -# # additional_tag = "tag_value" - - -# # Print all metrics that pass through this filter. -# [[processors.printer]] - - - -############################################################################### -# AGGREGATOR PLUGINS # -############################################################################### - -# # Keep the aggregate basicstats of each metric passing through. -# [[aggregators.basicstats]] -# ## General Aggregator Arguments: -# ## The period on which to flush & clear the aggregator. -# period = "30s" -# ## If true, the original metric will be dropped by the -# ## aggregator and will not get sent to the output plugins. -# drop_original = false - +[[outputs.influxdb]] + database = "" + namedrop = [""] + password = "c86758816b744bb7f2772b0ef7b53bd5" + urls = ["http://influxdb.apps.lwmon.com.br"] + user_agent = "telegraf" + username = "monitoring" -# # Create aggregate histograms. -# [[aggregators.histogram]] -# ## The period in which to flush the aggregator. -# period = "30s" -# -# ## If true, the original metric will be dropped by the -# ## aggregator and will not get sent to the output plugins. -# drop_original = false # -# ## Example config that aggregates all fields of the metric. -# # [[aggregators.histogram.config]] -# # ## The set of buckets. -# # buckets = [0.0, 15.6, 34.5, 49.1, 71.5, 80.5, 94.5, 100.0] -# # ## The name of metric. -# # measurement_name = "cpu" +# INPUTS: # -# ## Example config that aggregates only specific fields of the metric. -# # [[aggregators.histogram.config]] -# # ## The set of buckets. -# # buckets = [0.0, 10.0, 20.0, 30.0, 40.0, 50.0, 60.0, 70.0, 80.0, 90.0, 100.0] -# # ## The name of metric. -# # measurement_name = "diskio" -# # ## The concrete fields of metric -# # fields = ["io_time", "read_time", "write_time"] - - -# # Keep the aggregate min/max of each metric passing through. -# [[aggregators.minmax]] -# ## General Aggregator Arguments: -# ## The period on which to flush & clear the aggregator. -# period = "30s" -# ## If true, the original metric will be dropped by the -# ## aggregator and will not get sent to the output plugins. -# drop_original = false - - - -############################################################################### -# INPUT PLUGINS # -############################################################################### - -# Read metrics about cpu usage [[inputs.cpu]] - ## Whether to report per-cpu stats or not percpu = true - ## Whether to report total system cpu stats or not totalcpu = true - ## If true, collect raw CPU time metrics. - collect_cpu_time = false - ## If true, compute and report the sum of all non-idle CPU states. - report_active = false - - -# Read metrics about disk usage by mount point [[inputs.disk]] - ## By default stats will be gathered for all mount points. - ## Set mount_points will restrict the stats to only the specified mount points. - # mount_points = ["/"] - - ## Ignore mount points by filesystem type. - ignore_fs = ["tmpfs", "devtmpfs", "devfs"] - - -# Read metrics about disk IO by device [[inputs.diskio]] - ## By default, telegraf will gather stats for all devices including - ## disk partitions. - ## Setting devices will restrict the stats to the specified devices. - # devices = ["sda", "sdb", "vd*"] - ## Uncomment the following line if you need disk serial numbers. - # skip_serial_number = false - # - ## On systems which support it, device metadata can be added in the form of - ## tags. - ## Currently only Linux is supported via udev properties. You can view - ## available properties for a device by running: - ## 'udevadm info -q property -n /dev/sda' - # device_tags = ["ID_FS_TYPE", "ID_FS_USAGE"] - # - ## Using the same metadata source as device_tags, you can also customize the - ## name of the device via templates. - ## The 'name_templates' parameter is a list of templates to try and apply to - ## the device. The template may contain variables in the form of '$PROPERTY' or - ## '${PROPERTY}'. The first template which does not contain any variables not - ## present for the device is used as the device name tag. - ## The typical use case is for LVM volumes, to get the VG/LV name instead of - ## the near-meaningless DM-0 name. - # name_templates = ["$ID_FS_LABEL","$DM_VG_NAME/$DM_LV_NAME"] - - -# Get kernel statistics from /proc/stat -[[inputs.kernel]] - # no configuration - - -# Read metrics about memory usage [[inputs.mem]] - # no configuration - - -# Get the number of processes and group them by status -[[inputs.processes]] - # no configuration - - -# Read metrics about swap memory usage +[[inputs.net]] [[inputs.swap]] - # no configuration - - -# Read metrics about system load & uptime [[inputs.system]] - # no configuration - - -# # Read stats from aerospike server(s) -# [[inputs.aerospike]] -# ## Aerospike servers to connect to (with port) -# ## This plugin will query all namespaces the aerospike -# ## server has configured and get stats for them. -# servers = ["localhost:3000"] - - -# # Read Apache status information (mod_status) -# [[inputs.apache]] -# ## An array of URLs to gather from, must be directed at the machine -# ## readable version of the mod_status page including the auto query string. -# ## Default is "http://localhost/server-status?auto". -# urls = ["http://localhost/server-status?auto"] -# -# ## Credentials for basic HTTP authentication. -# # username = "myuser" -# # password = "mypassword" -# -# ## Maximum time to receive response. -# # response_timeout = "5s" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read metrics of bcache from stats_total and dirty_data -# [[inputs.bcache]] -# ## Bcache sets path -# ## If not specified, then default is: -# bcachePath = "/sys/fs/bcache" -# -# ## By default, telegraf gather stats for all bcache devices -# ## Setting devices will restrict the stats to the specified -# ## bcache devices. -# bcacheDevs = ["bcache0"] - - -# # Collect bond interface status, slaves statuses and failures count -# [[inputs.bond]] -# ## Sets 'proc' directory path -# ## If not specified, then default is /proc -# # host_proc = "/proc" -# -# ## By default, telegraf gather stats for all bond interfaces -# ## Setting interfaces will restrict the stats to the specified -# ## bond interfaces. -# # bond_interfaces = ["bond0"] - - -# # Read Cassandra metrics through Jolokia -# [[inputs.cassandra]] -# # This is the context root used to compose the jolokia url -# context = "/jolokia/read" -# ## List of cassandra servers exposing jolokia read service -# servers = ["myuser:mypassword@10.10.10.1:8778","10.10.10.2:8778",":8778"] -# ## List of metrics collected on above servers -# ## Each metric consists of a jmx path. -# ## This will collect all heap memory usage metrics from the jvm and -# ## ReadLatency metrics for all keyspaces and tables. -# ## "type=Table" in the query works with Cassandra3.0. Older versions might -# ## need to use "type=ColumnFamily" -# metrics = [ -# "/java.lang:type=Memory/HeapMemoryUsage", -# "/org.apache.cassandra.metrics:type=Table,keyspace=*,scope=*,name=ReadLatency" -# ] - - -# # Collects performance metrics from the MON and OSD nodes in a Ceph storage cluster. -# [[inputs.ceph]] -# ## This is the recommended interval to poll. Too frequent and you will lose -# ## data points due to timeouts during rebalancing and recovery -# interval = '1m' -# -# ## All configuration values are optional, defaults are shown below -# -# ## location of ceph binary -# ceph_binary = "/usr/bin/ceph" -# -# ## directory in which to look for socket files -# socket_dir = "/var/run/ceph" -# -# ## prefix of MON and OSD socket files, used to determine socket type -# mon_prefix = "ceph-mon" -# osd_prefix = "ceph-osd" -# -# ## suffix used to identify socket files -# socket_suffix = "asok" -# -# ## Ceph user to authenticate as -# ceph_user = "client.admin" -# -# ## Ceph configuration to use to locate the cluster -# ceph_config = "/etc/ceph/ceph.conf" -# -# ## Whether to gather statistics via the admin socket -# gather_admin_socket_stats = true -# -# ## Whether to gather statistics via ceph commands -# gather_cluster_stats = false - - -# # Read specific statistics per cgroup -# [[inputs.cgroup]] -# ## Directories in which to look for files, globs are supported. -# ## Consider restricting paths to the set of cgroups you really -# ## want to monitor if you have a large number of cgroups, to avoid -# ## any cardinality issues. -# # paths = [ -# # "/cgroup/memory", -# # "/cgroup/memory/child1", -# # "/cgroup/memory/child2/*", -# # ] -# ## cgroup stat fields, as file names, globs are supported. -# ## these file names are appended to each path from above. -# # files = ["memory.*usage*", "memory.limit_in_bytes"] - - -# # Get standard chrony metrics, requires chronyc executable. -# [[inputs.chrony]] -# ## If true, chronyc tries to perform a DNS lookup for the time server. -# # dns_lookup = false - - -# # Pull Metric Statistics from Amazon CloudWatch -# [[inputs.cloudwatch]] -# ## Amazon Region -# region = "us-east-1" -# -# ## Amazon Credentials -# ## Credentials are loaded in the following order -# ## 1) Assumed credentials via STS if role_arn is specified -# ## 2) explicit credentials from 'access_key' and 'secret_key' -# ## 3) shared profile from 'profile' -# ## 4) environment variables -# ## 5) shared credentials file -# ## 6) EC2 Instance Profile -# #access_key = "" -# #secret_key = "" -# #token = "" -# #role_arn = "" -# #profile = "" -# #shared_credential_file = "" -# -# # The minimum period for Cloudwatch metrics is 1 minute (60s). However not all -# # metrics are made available to the 1 minute period. Some are collected at -# # 3 minute, 5 minute, or larger intervals. See https://aws.amazon.com/cloudwatch/faqs/#monitoring. -# # Note that if a period is configured that is smaller than the minimum for a -# # particular metric, that metric will not be returned by the Cloudwatch API -# # and will not be collected by Telegraf. -# # -# ## Requested CloudWatch aggregation Period (required - must be a multiple of 60s) -# period = "5m" -# -# ## Collection Delay (required - must account for metrics availability via CloudWatch API) -# delay = "5m" -# -# ## Recommended: use metric 'interval' that is a multiple of 'period' to avoid -# ## gaps or overlap in pulled data -# interval = "5m" -# -# ## Configure the TTL for the internal cache of metrics. -# ## Defaults to 1 hr if not specified -# #cache_ttl = "10m" -# -# ## Metric Statistic Namespace (required) -# namespace = "AWS/ELB" -# -# ## Maximum requests per second. Note that the global default AWS rate limit is -# ## 400 reqs/sec, so if you define multiple namespaces, these should add up to a -# ## maximum of 400. Optional - default value is 200. -# ## See http://docs.aws.amazon.com/AmazonCloudWatch/latest/monitoring/cloudwatch_limits.html -# ratelimit = 200 -# -# ## Metrics to Pull (optional) -# ## Defaults to all Metrics in Namespace if nothing is provided -# ## Refreshes Namespace available metrics every 1h -# #[[inputs.cloudwatch.metrics]] -# # names = ["Latency", "RequestCount"] -# # -# # ## Dimension filters for Metric (optional) -# # [[inputs.cloudwatch.metrics.dimensions]] -# # name = "LoadBalancerName" -# # value = "p-example" - - -# # Collects conntrack stats from the configured directories and files. -# [[inputs.conntrack]] -# ## The following defaults would work with multiple versions of conntrack. -# ## Note the nf_ and ip_ filename prefixes are mutually exclusive across -# ## kernel versions, as are the directory locations. -# -# ## Superset of filenames to look for within the conntrack dirs. -# ## Missing files will be ignored. -# files = ["ip_conntrack_count","ip_conntrack_max", -# "nf_conntrack_count","nf_conntrack_max"] -# -# ## Directories to search within for the conntrack files above. -# ## Missing directrories will be ignored. -# dirs = ["/proc/sys/net/ipv4/netfilter","/proc/sys/net/netfilter"] - - -# # Gather health check statuses from services registered in Consul -# [[inputs.consul]] -# ## Consul server address -# # address = "localhost" -# -# ## URI scheme for the Consul server, one of "http", "https" -# # scheme = "http" -# -# ## ACL token used in every request -# # token = "" -# -# ## HTTP Basic Authentication username and password. -# # username = "" -# # password = "" -# -# ## Data centre to query the health checks from -# # datacentre = "" -# -# ## SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## If false, skip chain & host verification -# # insecure_skip_verify = true - - -# # Read metrics from one or many couchbase clusters -# [[inputs.couchbase]] -# ## specify servers via a url matching: -# ## [protocol://][:password]@address[:port] -# ## e.g. -# ## http://couchbase-0.example.com/ -# ## http://admin:secret@couchbase-0.example.com:8091/ -# ## -# ## If no servers are specified, then localhost is used as the host. -# ## If no protocol is specified, HTTP is used. -# ## If no port is specified, 8091 is used. -# servers = ["http://localhost:8091"] - - -# # Read CouchDB Stats from one or more servers -# [[inputs.couchdb]] -# ## Works with CouchDB stats endpoints out of the box -# ## Multiple HOSTs from which to read CouchDB stats: -# hosts = ["http://localhost:8086/_stats"] - - -# # Input plugin for DC/OS metrics -# [[inputs.dcos]] -# ## The DC/OS cluster URL. -# cluster_url = "https://dcos-ee-master-1" -# -# ## The ID of the service account. -# service_account_id = "telegraf" -# ## The private key file for the service account. -# service_account_private_key = "/etc/telegraf/telegraf-sa-key.pem" -# -# ## Path containing login token. If set, will read on every gather. -# # token_file = "/home/dcos/.dcos/token" -# -# ## In all filter options if both include and exclude are empty all items -# ## will be collected. Arrays may contain glob patterns. -# ## -# ## Node IDs to collect metrics from. If a node is excluded, no metrics will -# ## be collected for its containers or apps. -# # node_include = [] -# # node_exclude = [] -# ## Container IDs to collect container metrics from. -# # container_include = [] -# # container_exclude = [] -# ## Container IDs to collect app metrics from. -# # app_include = [] -# # app_exclude = [] -# -# ## Maximum concurrent connections to the cluster. -# # max_connections = 10 -# ## Maximum time to receive a response from cluster. -# # response_timeout = "20s" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## If false, skip chain & host verification -# # insecure_skip_verify = true -# -# ## Recommended filtering to reduce series cardinality. -# # [inputs.dcos.tagdrop] -# # path = ["/var/lib/mesos/slave/slaves/*"] - - -# # Read metrics from one or many disque servers -# [[inputs.disque]] -# ## An array of URI to gather stats about. Specify an ip or hostname -# ## with optional port and password. -# ## ie disque://localhost, disque://10.10.3.33:18832, 10.0.0.1:10000, etc. -# ## If no servers are specified, then localhost is used as the host. -# servers = ["localhost"] - - -# # Provide a native collection for dmsetup based statistics for dm-cache -# [[inputs.dmcache]] -# ## Whether to report per-device stats or not -# per_device = true - - -# # Query given DNS server and gives statistics -# [[inputs.dns_query]] -# ## servers to query -# servers = ["8.8.8.8"] -# -# ## Network is the network protocol name. -# # network = "udp" -# -# ## Domains or subdomains to query. -# # domains = ["."] -# -# ## Query record type. -# ## Posible values: A, AAAA, CNAME, MX, NS, PTR, TXT, SOA, SPF, SRV. -# # record_type = "A" -# -# ## Dns server port. -# # port = 53 -# -# ## Query timeout in seconds. -# # timeout = 2 - - -# # Read metrics about docker containers -# [[inputs.docker]] -# ## Docker Endpoint -# ## To use TCP, set endpoint = "tcp://[ip]:[port]" -# ## To use environment variables (ie, docker-machine), set endpoint = "ENV" -# endpoint = "unix:///var/run/docker.sock" -# -# ## Set to true to collect Swarm metrics(desired_replicas, running_replicas) -# gather_services = false -# -# ## Only collect metrics for these containers, collect all if empty -# container_names = [] -# -# ## Containers to include and exclude. Globs accepted. -# ## Note that an empty array for both will include all containers -# container_name_include = [] -# container_name_exclude = [] -# -# ## Container states to include and exclude. Globs accepted. -# ## When empty only containers in the "running" state will be captured. -# # container_state_include = [] -# # container_state_exclude = [] -# -# ## Timeout for docker list, info, and stats commands -# timeout = "5s" -# -# ## Whether to report for each container per-device blkio (8:0, 8:1...) and -# ## network (eth0, eth1, ...) stats or not -# perdevice = true -# ## Whether to report for each container total blkio and network stats or not -# total = false -# ## Which environment variables should we use as a tag -# ##tag_env = ["JAVA_HOME", "HEAP_SIZE"] -# -# ## docker labels to include and exclude as tags. Globs accepted. -# ## Note that an empty array for both will include all labels as tags -# docker_label_include = [] -# docker_label_exclude = [] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read statistics from one or many dovecot servers -# [[inputs.dovecot]] -# ## specify dovecot servers via an address:port list -# ## e.g. -# ## localhost:24242 -# ## -# ## If no servers are specified, then localhost is used as the host. -# servers = ["localhost:24242"] -# ## Type is one of "user", "domain", "ip", or "global" -# type = "global" -# ## Wildcard matches like "*.com". An empty string "" is same as "*" -# ## If type = "ip" filters should be <IP/network> -# filters = [""] - - -# # Read stats from one or more Elasticsearch servers or clusters -# [[inputs.elasticsearch]] -# ## specify a list of one or more Elasticsearch servers -# # you can add username and password to your url to use basic authentication: -# # servers = ["http://user:pass@localhost:9200"] -# servers = ["http://localhost:9200"] -# -# ## Timeout for HTTP requests to the elastic search server(s) -# http_timeout = "5s" -# -# ## When local is true (the default), the node will read only its own stats. -# ## Set local to false when you want to read the node stats from all nodes -# ## of the cluster. -# local = true -# -# ## Set cluster_health to true when you want to also obtain cluster health stats -# cluster_health = false -# -# ## Adjust cluster_health_level when you want to also obtain detailed health stats -# ## The options are -# ## - indices (default) -# ## - cluster -# # cluster_health_level = "indices" -# -# ## Set cluster_stats to true when you want to also obtain cluster stats from the -# ## Master node. -# cluster_stats = false -# -# ## node_stats is a list of sub-stats that you want to have gathered. Valid options -# ## are "indices", "os", "process", "jvm", "thread_pool", "fs", "transport", "http", -# ## "breaker". Per default, all stats are gathered. -# # node_stats = ["jvm", "http"] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read metrics from one or more commands that can output to stdout -# [[inputs.exec]] -# ## Commands array -# commands = [ -# "/tmp/test.sh", -# "/usr/bin/mycollector --foo=bar", -# "/tmp/collect_*.sh" -# ] -# -# ## Timeout for each command to complete. -# timeout = "5s" -# -# ## measurement name suffix (for separating different commands) -# name_suffix = "_mycollector" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Read metrics from fail2ban. -# [[inputs.fail2ban]] -# ## Use sudo to run fail2ban-client -# use_sudo = false - - -# # Read stats about given file(s) -# [[inputs.filestat]] -# ## Files to gather stats about. -# ## These accept standard unix glob matching rules, but with the addition of -# ## ** as a "super asterisk". ie: -# ## "/var/log/**.log" -> recursively find all .log files in /var/log -# ## "/var/log/*/*.log" -> find all .log files with a parent dir in /var/log -# ## "/var/log/apache.log" -> just tail the apache log file -# ## -# ## See https://github.com/gobwas/glob for more examples -# ## -# files = ["/var/log/**.log"] -# ## If true, read the entire file and calculate an md5 checksum. -# md5 = false - - -# # Read metrics exposed by fluentd in_monitor plugin -# [[inputs.fluentd]] -# ## This plugin reads information exposed by fluentd (using /api/plugins.json endpoint). -# ## -# ## Endpoint: -# ## - only one URI is allowed -# ## - https is not supported -# endpoint = "http://localhost:24220/api/plugins.json" -# -# ## Define which plugins have to be excluded (based on "type" field - e.g. monitor_agent) -# exclude = [ -# "monitor_agent", -# "dummy", -# ] - - -# # Read flattened metrics from one or more GrayLog HTTP endpoints -# [[inputs.graylog]] -# ## API endpoint, currently supported API: -# ## -# ## - multiple (Ex http://<host>:12900/system/metrics/multiple) -# ## - namespace (Ex http://<host>:12900/system/metrics/namespace/{namespace}) -# ## -# ## For namespace endpoint, the metrics array will be ignored for that call. -# ## Endpoint can contain namespace and multiple type calls. -# ## -# ## Please check http://[graylog-server-ip]:12900/api-browser for full list -# ## of endpoints -# servers = [ -# "http://[graylog-server-ip]:12900/system/metrics/multiple", -# ] -# -# ## Metrics list -# ## List of metrics can be found on Graylog webservice documentation. -# ## Or by hitting the the web service api at: -# ## http://[graylog-host]:12900/system/metrics -# metrics = [ -# "jvm.cl.loaded", -# "jvm.memory.pools.Metaspace.committed" -# ] -# -# ## Username and password -# username = "" -# password = "" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read metrics of haproxy, via socket or csv stats page -# [[inputs.haproxy]] -# ## An array of address to gather stats about. Specify an ip on hostname -# ## with optional port. ie localhost, 10.10.3.33:1936, etc. -# ## Make sure you specify the complete path to the stats endpoint -# ## including the protocol, ie http://10.10.3.33:1936/haproxy?stats -# -# ## If no servers are specified, then default to 127.0.0.1:1936/haproxy?stats -# servers = ["http://myhaproxy.com:1936/haproxy?stats"] -# -# ## You can also use local socket with standard wildcard globbing. -# ## Server address not starting with 'http' will be treated as a possible -# ## socket, so both examples below are valid. -# # servers = ["socket:/run/haproxy/admin.sock", "/run/haproxy/*.sock"] -# -# ## By default, some of the fields are renamed from what haproxy calls them. -# ## Setting this option to true results in the plugin keeping the original -# ## field names. -# # keep_field_names = false -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Monitor disks' temperatures using hddtemp -# [[inputs.hddtemp]] -# ## By default, telegraf gathers temps data from all disks detected by the -# ## hddtemp. -# ## -# ## Only collect temps from the selected disks. -# ## -# ## A * as the device name will return the temperature values of all disks. -# ## -# # address = "127.0.0.1:7634" -# # devices = ["sda", "*"] - - -# # Read formatted metrics from one or more HTTP endpoints -# [[inputs.http]] -# ## One or more URLs from which to read formatted metrics -# urls = [ -# "http://localhost/metrics" -# ] -# -# ## HTTP method -# # method = "GET" -# -# ## Optional HTTP headers -# # headers = {"X-Special-Header" = "Special-Value"} -# -# ## Optional HTTP Basic Auth Credentials -# # username = "username" -# # password = "pa$$word" -# -# ## Tag all metrics with the url -# # tag_url = true -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Amount of time allowed to complete the HTTP request -# # timeout = "5s" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# # data_format = "influx" - - -# # HTTP/HTTPS request given an address a method and a timeout -# [[inputs.http_response]] -# ## Server address (default http://localhost) -# # address = "http://localhost" -# -# ## Set http_proxy (telegraf uses the system wide proxy settings if it's is not set) -# # http_proxy = "http://localhost:8888" -# -# ## Set response_timeout (default 5 seconds) -# # response_timeout = "5s" -# -# ## HTTP Request Method -# # method = "GET" -# -# ## Whether to follow redirects from the server (defaults to false) -# # follow_redirects = false -# -# ## Optional HTTP Request Body -# # body = ''' -# # {'fake':'data'} -# # ''' -# -# ## Optional substring or regex match in body of the response -# # response_string_match = "\"service_status\": \"up\"" -# # response_string_match = "ok" -# # response_string_match = "\".*_status\".?:.?\"up\"" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## HTTP Request Headers (all values must be strings) -# # [inputs.http_response.headers] -# # Host = "github.com" - - -# # Read flattened metrics from one or more JSON HTTP endpoints -# [[inputs.httpjson]] -# ## NOTE This plugin only reads numerical measurements, strings and booleans -# ## will be ignored. -# -# ## Name for the service being polled. Will be appended to the name of the -# ## measurement e.g. httpjson_webserver_stats -# ## -# ## Deprecated (1.3.0): Use name_override, name_suffix, name_prefix instead. -# name = "webserver_stats" -# -# ## URL of each server in the service's cluster -# servers = [ -# "http://localhost:9999/stats/", -# "http://localhost:9998/stats/", -# ] -# ## Set response_timeout (default 5 seconds) -# response_timeout = "5s" -# -# ## HTTP method to use: GET or POST (case-sensitive) -# method = "GET" -# -# ## List of tag names to extract from top-level of JSON server response -# # tag_keys = [ -# # "my_tag_1", -# # "my_tag_2" -# # ] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## HTTP parameters (all values must be strings). For "GET" requests, data -# ## will be included in the query. For "POST" requests, data will be included -# ## in the request body as "x-www-form-urlencoded". -# # [inputs.httpjson.parameters] -# # event_type = "cpu_spike" -# # threshold = "0.75" -# -# ## HTTP Headers (all values must be strings) -# # [inputs.httpjson.headers] -# # X-Auth-Token = "my-xauth-token" -# # apiVersion = "v1" - - -# # Read InfluxDB-formatted JSON metrics from one or more HTTP endpoints -# [[inputs.influxdb]] -# ## Works with InfluxDB debug endpoints out of the box, -# ## but other services can use this format too. -# ## See the influxdb plugin's README for more details. -# -# ## Multiple URLs from which to read InfluxDB-formatted JSON -# ## Default is "http://localhost:8086/debug/vars". -# urls = [ -# "http://localhost:8086/debug/vars" -# ] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## http request & header timeout -# timeout = "5s" - - -# # Collect statistics about itself -# [[inputs.internal]] -# ## If true, collect telegraf memory stats. -# # collect_memstats = true - - -# # This plugin gathers interrupts data from /proc/interrupts and /proc/softirqs. -# [[inputs.interrupts]] -# ## To filter which IRQs to collect, make use of tagpass / tagdrop, i.e. -# # [inputs.interrupts.tagdrop] -# # irq = [ "NET_RX", "TASKLET" ] - - -# # Read metrics from the bare metal servers via IPMI -# [[inputs.ipmi_sensor]] -# ## optionally specify the path to the ipmitool executable -# # path = "/usr/bin/ipmitool" -# ## -# ## optionally force session privilege level. Can be CALLBACK, USER, OPERATOR, ADMINISTRATOR -# # privilege = "ADMINISTRATOR" -# ## -# ## optionally specify one or more servers via a url matching -# ## [username[:password]@][protocol[(address)]] -# ## e.g. -# ## root:passwd@lan(127.0.0.1) -# ## -# ## if no servers are specified, local machine sensor stats will be queried -# ## -# # servers = ["USERID:PASSW0RD@lan(192.168.1.1)"] -# -# ## Recommended: use metric 'interval' that is a multiple of 'timeout' to avoid -# ## gaps or overlap in pulled data -# interval = "30s" -# -# ## Timeout for the ipmitool command to complete -# timeout = "20s" - - -# # Gather packets and bytes counters from Linux ipsets -# [[inputs.ipset]] -# ## By default, we only show sets which have already matched at least 1 packet. -# ## set include_unmatched_sets = true to gather them all. -# include_unmatched_sets = false -# ## Adjust your sudo settings appropriately if using this option ("sudo ipset save") -# use_sudo = false -# ## The default timeout of 1s for ipset execution can be overridden here: -# # timeout = "1s" - - -# # Gather packets and bytes throughput from iptables -# [[inputs.iptables]] -# ## iptables require root access on most systems. -# ## Setting 'use_sudo' to true will make use of sudo to run iptables. -# ## Users must configure sudo to allow telegraf user to run iptables with no password. -# ## iptables can be restricted to only list command "iptables -nvL". -# use_sudo = false -# ## Setting 'use_lock' to true runs iptables with the "-w" option. -# ## Adjust your sudo settings appropriately if using this option ("iptables -wnvl") -# use_lock = false -# ## defines the table to monitor: -# table = "filter" -# ## defines the chains to monitor. -# ## NOTE: iptables rules without a comment will not be monitored. -# ## Read the plugin documentation for more information. -# chains = [ "INPUT" ] - - -# # Read JMX metrics through Jolokia -# [[inputs.jolokia]] -# # DEPRECATED: the jolokia plugin has been deprecated in favor of the -# # jolokia2 plugin -# # see https://github.com/influxdata/telegraf/tree/master/plugins/inputs/jolokia2 -# -# ## This is the context root used to compose the jolokia url -# ## NOTE that Jolokia requires a trailing slash at the end of the context root -# ## NOTE that your jolokia security policy must allow for POST requests. -# context = "/jolokia/" -# -# ## This specifies the mode used -# # mode = "proxy" -# # -# ## When in proxy mode this section is used to specify further -# ## proxy address configurations. -# ## Remember to change host address to fit your environment. -# # [inputs.jolokia.proxy] -# # host = "127.0.0.1" -# # port = "8080" -# -# ## Optional http timeouts -# ## -# ## response_header_timeout, if non-zero, specifies the amount of time to wait -# ## for a server's response headers after fully writing the request. -# # response_header_timeout = "3s" -# ## -# ## client_timeout specifies a time limit for requests made by this client. -# ## Includes connection time, any redirects, and reading the response body. -# # client_timeout = "4s" -# -# ## Attribute delimiter -# ## -# ## When multiple attributes are returned for a single -# ## [inputs.jolokia.metrics], the field name is a concatenation of the metric -# ## name, and the attribute name, separated by the given delimiter. -# # delimiter = "_" -# -# ## List of servers exposing jolokia read service -# [[inputs.jolokia.servers]] -# name = "as-server-01" -# host = "127.0.0.1" -# port = "8080" -# # username = "myuser" -# # password = "mypassword" -# -# ## List of metrics collected on above servers -# ## Each metric consists in a name, a jmx path and either -# ## a pass or drop slice attribute. -# ## This collect all heap memory usage metrics. -# [[inputs.jolokia.metrics]] -# name = "heap_memory_usage" -# mbean = "java.lang:type=Memory" -# attribute = "HeapMemoryUsage" -# -# ## This collect thread counts metrics. -# [[inputs.jolokia.metrics]] -# name = "thread_count" -# mbean = "java.lang:type=Threading" -# attribute = "TotalStartedThreadCount,ThreadCount,DaemonThreadCount,PeakThreadCount" -# -# ## This collect number of class loaded/unloaded counts metrics. -# [[inputs.jolokia.metrics]] -# name = "class_count" -# mbean = "java.lang:type=ClassLoading" -# attribute = "LoadedClassCount,UnloadedClassCount,TotalLoadedClassCount" - - -# # Read JMX metrics from a Jolokia REST agent endpoint -# [[inputs.jolokia2_agent]] -# # default_tag_prefix = "" -# # default_field_prefix = "" -# # default_field_separator = "." -# -# # Add agents URLs to query -# urls = ["http://localhost:8080/jolokia"] -# # username = "" -# # password = "" -# # response_timeout = "5s" -# -# ## Optional SSL config -# # ssl_ca = "/var/private/ca.pem" -# # ssl_cert = "/var/private/client.pem" -# # ssl_key = "/var/private/client-key.pem" -# # insecure_skip_verify = false -# -# ## Add metrics to read -# [[inputs.jolokia2_agent.metric]] -# name = "java_runtime" -# mbean = "java.lang:type=Runtime" -# paths = ["Uptime"] - - -# # Read JMX metrics from a Jolokia REST proxy endpoint -# [[inputs.jolokia2_proxy]] -# # default_tag_prefix = "" -# # default_field_prefix = "" -# # default_field_separator = "." -# -# ## Proxy agent -# url = "http://localhost:8080/jolokia" -# # username = "" -# # password = "" -# # response_timeout = "5s" -# -# ## Optional SSL config -# # ssl_ca = "/var/private/ca.pem" -# # ssl_cert = "/var/private/client.pem" -# # ssl_key = "/var/private/client-key.pem" -# # insecure_skip_verify = false -# -# ## Add proxy targets to query -# # default_target_username = "" -# # default_target_password = "" -# [[inputs.jolokia_proxy.target]] -# url = "service:jmx:rmi:///jndi/rmi://targethost:9999/jmxrmi" -# # username = "" -# # password = "" -# -# ## Add metrics to read -# [[inputs.jolokia_proxy.metric]] -# name = "java_runtime" -# mbean = "java.lang:type=Runtime" -# paths = ["Uptime"] - - -# # Read Kapacitor-formatted JSON metrics from one or more HTTP endpoints -# [[inputs.kapacitor]] -# ## Multiple URLs from which to read Kapacitor-formatted JSON -# ## Default is "http://localhost:9092/kapacitor/v1/debug/vars". -# urls = [ -# "http://localhost:9092/kapacitor/v1/debug/vars" -# ] -# -# ## Time limit for http requests -# timeout = "5s" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Get kernel statistics from /proc/vmstat -# [[inputs.kernel_vmstat]] -# # no configuration - - -# # Read metrics from the kubernetes kubelet api -# [[inputs.kubernetes]] -# ## URL for the kubelet -# url = "http://1.1.1.1:10255" -# -# ## Use bearer token for authorization -# # bearer_token = /path/to/bearer/token -# -# ## Set response_timeout (default 5 seconds) -# # response_timeout = "5s" -# -# ## Optional SSL Config -# # ssl_ca = /path/to/cafile -# # ssl_cert = /path/to/certfile -# # ssl_key = /path/to/keyfile -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read metrics from a LeoFS Server via SNMP -# [[inputs.leofs]] -# ## An array of URLs of the form: -# ## host [ ":" port] -# servers = ["127.0.0.1:4020"] - - -# # Provides Linux sysctl fs metrics -# [[inputs.linux_sysctl_fs]] -# # no configuration - - -# # Read metrics from local Lustre service on OST, MDS -# [[inputs.lustre2]] -# ## An array of /proc globs to search for Lustre stats -# ## If not specified, the default will work on Lustre 2.5.x -# ## -# # ost_procfiles = [ -# # "/proc/fs/lustre/obdfilter/*/stats", -# # "/proc/fs/lustre/osd-ldiskfs/*/stats", -# # "/proc/fs/lustre/obdfilter/*/job_stats", -# # ] -# # mds_procfiles = [ -# # "/proc/fs/lustre/mdt/*/md_stats", -# # "/proc/fs/lustre/mdt/*/job_stats", -# # ] - - -# # Gathers metrics from the /3.0/reports MailChimp API -# [[inputs.mailchimp]] -# ## MailChimp API key -# ## get from https://admin.mailchimp.com/account/api/ -# api_key = "" # required -# ## Reports for campaigns sent more than days_old ago will not be collected. -# ## 0 means collect all. -# days_old = 0 -# ## Campaign ID to get, if empty gets all campaigns, this option overrides days_old -# # campaign_id = "" - - -# # Read metrics from one or many memcached servers -# [[inputs.memcached]] -# ## An array of address to gather stats about. Specify an ip on hostname -# ## with optional port. ie localhost, 10.0.0.1:11211, etc. -# servers = ["localhost:11211"] -# # unix_sockets = ["/var/run/memcached.sock"] - - -# # Telegraf plugin for gathering metrics from N Mesos masters -# [[inputs.mesos]] -# ## Timeout, in ms. -# timeout = 100 -# ## A list of Mesos masters. -# masters = ["http://localhost:5050"] -# ## Master metrics groups to be collected, by default, all enabled. -# master_collections = [ -# "resources", -# "master", -# "system", -# "agents", -# "frameworks", -# "tasks", -# "messages", -# "evqueue", -# "registrar", -# ] -# ## A list of Mesos slaves, default is [] -# # slaves = [] -# ## Slave metrics groups to be collected, by default, all enabled. -# # slave_collections = [ -# # "resources", -# # "agent", -# # "system", -# # "executors", -# # "tasks", -# # "messages", -# # ] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Collects scores from a minecraft server's scoreboard using the RCON protocol -# [[inputs.minecraft]] -# ## server address for minecraft -# # server = "localhost" -# ## port for RCON -# # port = "25575" -# ## password RCON for mincraft server -# # password = "" - - -# # Read metrics from one or many MongoDB servers -# [[inputs.mongodb]] -# ## An array of URLs of the form: -# ## "mongodb://" [user ":" pass "@"] host [ ":" port] -# ## For example: -# ## mongodb://user:auth_key@10.10.3.30:27017, -# ## mongodb://10.10.3.33:18832, -# servers = ["mongodb://127.0.0.1:27017"] -# gather_perdb_stats = false -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Read metrics from one or many mysql servers -# [[inputs.mysql]] -# ## specify servers via a url matching: -# ## [username[:password]@][protocol[(address)]]/[?tls=[true|false|skip-verify|custom]] -# ## see https://github.com/go-sql-driver/mysql#dsn-data-source-name -# ## e.g. -# ## servers = ["user:passwd@tcp(127.0.0.1:3306)/?tls=false"] -# ## servers = ["user@tcp(127.0.0.1:3306)/?tls=false"] -# # -# ## If no servers are specified, then localhost is used as the host. -# servers = ["tcp(127.0.0.1:3306)/"] -# -# ## Selects the metric output format. -# ## -# ## This option exists to maintain backwards compatibility, if you have -# ## existing metrics do not set or change this value until you are ready to -# ## migrate to the new format. -# ## -# ## If you do not have existing metrics from this plugin set to the latest -# ## version. -# ## -# ## Telegraf >=1.6: metric_version = 2 -# ## <1.6: metric_version = 1 (or unset) -# metric_version = 2 -# -# ## the limits for metrics form perf_events_statements -# perf_events_statements_digest_text_limit = 120 -# perf_events_statements_limit = 250 -# perf_events_statements_time_limit = 86400 -# # -# ## if the list is empty, then metrics are gathered from all databasee tables -# table_schema_databases = [] -# # -# ## gather metrics from INFORMATION_SCHEMA.TABLES for databases provided above list -# gather_table_schema = false -# # -# ## gather thread state counts from INFORMATION_SCHEMA.PROCESSLIST -# gather_process_list = true -# # -# ## gather thread state counts from INFORMATION_SCHEMA.USER_STATISTICS -# gather_user_statistics = true -# # -# ## gather auto_increment columns and max values from information schema -# gather_info_schema_auto_inc = true -# # -# ## gather metrics from INFORMATION_SCHEMA.INNODB_METRICS -# gather_innodb_metrics = true -# # -# ## gather metrics from SHOW SLAVE STATUS command output -# gather_slave_status = true -# # -# ## gather metrics from SHOW BINARY LOGS command output -# gather_binary_logs = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.TABLE_IO_WAITS_SUMMARY_BY_TABLE -# gather_table_io_waits = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.TABLE_LOCK_WAITS -# gather_table_lock_waits = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.TABLE_IO_WAITS_SUMMARY_BY_INDEX_USAGE -# gather_index_io_waits = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.EVENT_WAITS -# gather_event_waits = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.FILE_SUMMARY_BY_EVENT_NAME -# gather_file_events_stats = false -# # -# ## gather metrics from PERFORMANCE_SCHEMA.EVENTS_STATEMENTS_SUMMARY_BY_DIGEST -# gather_perf_events_statements = false -# # -# ## Some queries we may want to run less often (such as SHOW GLOBAL VARIABLES) -# interval_slow = "30m" -# -# ## Optional SSL Config (will be used if tls=custom parameter specified in server uri) -# ssl_ca = "/etc/telegraf/ca.pem" -# ssl_cert = "/etc/telegraf/cert.pem" -# ssl_key = "/etc/telegraf/key.pem" - - -# # Provides metrics about the state of a NATS server -# [[inputs.nats]] -# ## The address of the monitoring endpoint of the NATS server -# server = "http://localhost:8222" -# -# ## Maximum time to receive response -# # response_timeout = "5s" - - -# # Read metrics about network interface usage -# [[inputs.net]] -# ## By default, telegraf gathers stats from any up interface (excluding loopback) -# ## Setting interfaces will tell it to gather these explicit interfaces, -# ## regardless of status. -# ## -# # interfaces = ["eth0"] -# ## -# ## On linux systems telegraf also collects protocol stats. -# ## Setting ignore_protocol_stats to true will skip reporting of protocol metrics. -# ## -# # ignore_protocol_stats = false -# ## - - -# # TCP or UDP 'ping' given url and collect response time in seconds -# [[inputs.net_response]] -# ## Protocol, must be "tcp" or "udp" -# ## NOTE: because the "udp" protocol does not respond to requests, it requires -# ## a send/expect string pair (see below). -# protocol = "tcp" -# ## Server address (default localhost) -# address = "localhost:80" -# ## Set timeout -# timeout = "1s" -# -# ## Set read timeout (only used if expecting a response) -# read_timeout = "1s" -# -# ## The following options are required for UDP checks. For TCP, they are -# ## optional. The plugin will send the given string to the server and then -# ## expect to receive the given 'expect' string back. -# ## string sent to the server -# # send = "ssh" -# ## expected string in answer -# # expect = "ssh" - - -# # Read TCP metrics such as established, time wait and sockets counts. -# [[inputs.netstat]] -# # no configuration - - -# # Read Nginx's basic status information (ngx_http_stub_status_module) -# [[inputs.nginx]] -# # An array of Nginx stub_status URI to gather stats. -# urls = ["http://localhost/server_status"] -# -# # TLS/SSL configuration -# ssl_ca = "/etc/telegraf/ca.pem" -# ssl_cert = "/etc/telegraf/cert.cer" -# ssl_key = "/etc/telegraf/key.key" -# insecure_skip_verify = false -# -# # HTTP response timeout (default: 5s) -# response_timeout = "5s" - - -# # Read Nginx Plus' full status information (ngx_http_status_module) -# [[inputs.nginx_plus]] -# ## An array of ngx_http_status_module or status URI to gather stats. -# urls = ["http://localhost/status"] -# -# # HTTP response timeout (default: 5s) -# response_timeout = "5s" - - -# # Read NSQ topic and channel statistics. -# [[inputs.nsq]] -# ## An array of NSQD HTTP API endpoints -# endpoints = ["http://localhost:4151"] - - -# # Collect kernel snmp counters and network interface statistics -# [[inputs.nstat]] -# ## file paths for proc files. If empty default paths will be used: -# ## /proc/net/netstat, /proc/net/snmp, /proc/net/snmp6 -# ## These can also be overridden with env variables, see README. -# proc_net_netstat = "/proc/net/netstat" -# proc_net_snmp = "/proc/net/snmp" -# proc_net_snmp6 = "/proc/net/snmp6" -# ## dump metrics with 0 values too -# dump_zeros = true - - -# # Get standard NTP query metrics, requires ntpq executable. -# [[inputs.ntpq]] -# ## If false, set the -n ntpq flag. Can reduce metric gather time. -# dns_lookup = true - - -# # OpenLDAP cn=Monitor plugin -# [[inputs.openldap]] -# host = "localhost" -# port = 389 -# -# # ldaps, starttls, or no encryption. default is an empty string, disabling all encryption. -# # note that port will likely need to be changed to 636 for ldaps -# # valid options: "" | "starttls" | "ldaps" -# ssl = "" -# -# # skip peer certificate verification. Default is false. -# insecure_skip_verify = false -# -# # Path to PEM-encoded Root certificate to use to verify server certificate -# ssl_ca = "/etc/ssl/certs.pem" -# -# # dn/password to bind with. If bind_dn is empty, an anonymous bind is performed. -# bind_dn = "" -# bind_password = "" -# -# # Reverse metric names so they sort more naturally. Recommended. -# # This defaults to false if unset, but is set to true when generating a new config -# reverse_metric_names = true - - -# # A plugin to collect stats from Opensmtpd - a validating, recursive, and caching DNS resolver -# [[inputs.opensmtpd]] -# ## If running as a restricted user you can prepend sudo for additional access: -# #use_sudo = false -# -# ## The default location of the smtpctl binary can be overridden with: -# binary = "/usr/sbin/smtpctl" -# -# ## The default timeout of 1000ms can be overriden with (in milliseconds): -# timeout = 1000 - - -# # Read metrics of passenger using passenger-status -# [[inputs.passenger]] -# ## Path of passenger-status. -# ## -# ## Plugin gather metric via parsing XML output of passenger-status -# ## More information about the tool: -# ## https://www.phusionpassenger.com/library/admin/apache/overall_status_report.html -# ## -# ## If no path is specified, then the plugin simply execute passenger-status -# ## hopefully it can be found in your PATH -# command = "passenger-status -v --show=xml" - - -# # Gather counters from PF -# [[inputs.pf]] -# ## PF require root access on most systems. -# ## Setting 'use_sudo' to true will make use of sudo to run pfctl. -# ## Users must configure sudo to allow telegraf user to run pfctl with no password. -# ## pfctl can be restricted to only list command "pfctl -s info". -# use_sudo = false - - -# # Read metrics of phpfpm, via HTTP status page or socket -# [[inputs.phpfpm]] -# ## An array of addresses to gather stats about. Specify an ip or hostname -# ## with optional port and path -# ## -# ## Plugin can be configured in three modes (either can be used): -# ## - http: the URL must start with http:// or https://, ie: -# ## "http://localhost/status" -# ## "http://192.168.130.1/status?full" -# ## -# ## - unixsocket: path to fpm socket, ie: -# ## "/var/run/php5-fpm.sock" -# ## or using a custom fpm status path: -# ## "/var/run/php5-fpm.sock:fpm-custom-status-path" -# ## -# ## - fcgi: the URL must start with fcgi:// or cgi://, and port must be present, ie: -# ## "fcgi://10.0.0.12:9000/status" -# ## "cgi://10.0.10.12:9001/status" -# ## -# ## Example of multiple gathering from local socket and remove host -# ## urls = ["http://192.168.1.20/status", "/tmp/fpm.sock"] -# urls = ["http://localhost/status"] - - -# # Ping given url(s) and return statistics -# [[inputs.ping]] -# ## NOTE: this plugin forks the ping command. You may need to set capabilities -# ## via setcap cap_net_raw+p /bin/ping -# # -# ## List of urls to ping -# urls = ["www.google.com"] # required -# ## number of pings to send per collection (ping -c <COUNT>) -# # count = 1 -# ## interval, in s, at which to ping. 0 == default (ping -i <PING_INTERVAL>) -# # ping_interval = 1.0 -# ## per-ping timeout, in s. 0 == no timeout (ping -W <TIMEOUT>) -# # timeout = 1.0 -# ## total-ping deadline, in s. 0 == no deadline (ping -w <DEADLINE>) -# # deadline = 10 -# ## interface or source address to send ping from (ping -I <INTERFACE/SRC_ADDR>) -# ## on Darwin and Freebsd only source address possible: (ping -S <SRC_ADDR>) -# # interface = "" - - -# # Measure postfix queue statistics -# [[inputs.postfix]] -# ## Postfix queue directory. If not provided, telegraf will try to use -# ## 'postconf -h queue_directory' to determine it. -# # queue_directory = "/var/spool/postfix" - - -# # Read metrics from one or many PowerDNS servers -# [[inputs.powerdns]] -# ## An array of sockets to gather stats about. -# ## Specify a path to unix socket. -# unix_sockets = ["/var/run/pdns.controlsocket"] - - -# # Monitor process cpu and memory usage -# [[inputs.procstat]] -# ## PID file to monitor process -# pid_file = "/var/run/nginx.pid" -# ## executable name (ie, pgrep <exe>) -# # exe = "nginx" -# ## pattern as argument for pgrep (ie, pgrep -f <pattern>) -# # pattern = "nginx" -# ## user as argument for pgrep (ie, pgrep -u <user>) -# # user = "nginx" -# ## Systemd unit name -# # systemd_unit = "nginx.service" -# ## CGroup name or path -# # cgroup = "systemd/system.slice/nginx.service" -# -# ## override for process_name -# ## This is optional; default is sourced from /proc/<pid>/status -# # process_name = "bar" -# -# ## Field name prefix -# # prefix = "" -# -# ## Add PID as a tag instead of a field; useful to differentiate between -# ## processes whose tags are otherwise the same. Can create a large number -# ## of series, use judiciously. -# # pid_tag = false -# -# ## Method to use when finding process IDs. Can be one of 'pgrep', or -# ## 'native'. The pgrep finder calls the pgrep executable in the PATH while -# ## the native finder performs the search directly in a manor dependent on the -# ## platform. Default is 'pgrep' -# # pid_finder = "pgrep" - - -# # Read metrics from one or many prometheus clients -# [[inputs.prometheus]] -# ## An array of urls to scrape metrics from. -# urls = ["http://localhost:9100/metrics"] -# -# ## An array of Kubernetes services to scrape metrics from. -# # kubernetes_services = ["http://my-service-dns.my-namespace:9100/metrics"] -# -# ## Use bearer token for authorization -# # bearer_token = /path/to/bearer/token -# -# ## Specify timeout duration for slower prometheus clients (default is 3s) -# # response_timeout = "3s" -# -# ## Optional SSL Config -# # ssl_ca = /path/to/cafile -# # ssl_cert = /path/to/certfile -# # ssl_key = /path/to/keyfile -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Reads last_run_summary.yaml file and converts to measurments -# [[inputs.puppetagent]] -# ## Location of puppet last run summary file -# location = "/var/lib/puppet/state/last_run_summary.yaml" - - -# # Reads metrics from RabbitMQ servers via the Management Plugin -# [[inputs.rabbitmq]] -# ## Management Plugin url. (default: http://localhost:15672) -# # url = "http://localhost:15672" -# ## Tag added to rabbitmq_overview series; deprecated: use tags -# # name = "rmq-server-1" -# ## Credentials -# # username = "guest" -# # password = "guest" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Optional request timeouts -# ## -# ## ResponseHeaderTimeout, if non-zero, specifies the amount of time to wait -# ## for a server's response headers after fully writing the request. -# # header_timeout = "3s" -# ## -# ## client_timeout specifies a time limit for requests made by this client. -# ## Includes connection time, any redirects, and reading the response body. -# # client_timeout = "4s" -# -# ## A list of nodes to gather as the rabbitmq_node measurement. If not -# ## specified, metrics for all nodes are gathered. -# # nodes = ["rabbit@node1", "rabbit@node2"] -# -# ## A list of queues to gather as the rabbitmq_queue measurement. If not -# ## specified, metrics for all queues are gathered. -# # queues = ["telegraf"] -# -# ## A list of exchanges to gather as the rabbitmq_exchange measurement. If not -# ## specified, metrics for all exchanges are gathered. -# # exchanges = ["telegraf"] -# -# ## Queues to include and exclude. Globs accepted. -# ## Note that an empty array for both will include all queues -# queue_name_include = [] -# queue_name_exclude = [] - - -# # Read raindrops stats (raindrops - real-time stats for preforking Rack servers) -# [[inputs.raindrops]] -# ## An array of raindrops middleware URI to gather stats. -# urls = ["http://localhost:8080/_raindrops"] - - -# # Read metrics from one or many redis servers -# [[inputs.redis]] -# ## specify servers via a url matching: -# ## [protocol://][:password]@address[:port] -# ## e.g. -# ## tcp://localhost:6379 -# ## tcp://:password@192.168.99.100 -# ## unix:///var/run/redis.sock -# ## -# ## If no servers are specified, then localhost is used as the host. -# ## If no port is specified, 6379 is used -# servers = ["tcp://localhost:6379"] - - -# # Read metrics from one or many RethinkDB servers -# [[inputs.rethinkdb]] -# ## An array of URI to gather stats about. Specify an ip or hostname -# ## with optional port add password. ie, -# ## rethinkdb://user:auth_key@10.10.3.30:28105, -# ## rethinkdb://10.10.3.33:18832, -# ## 10.0.0.1:10000, etc. -# servers = ["127.0.0.1:28015"] -# ## -# ## If you use actual rethinkdb of > 2.3.0 with username/password authorization, -# ## protocol have to be named "rethinkdb2" - it will use 1_0 H. -# # servers = ["rethinkdb2://username:password@127.0.0.1:28015"] -# ## -# ## If you use older versions of rethinkdb (<2.2) with auth_key, protocol -# ## have to be named "rethinkdb". -# # servers = ["rethinkdb://username:auth_key@127.0.0.1:28015"] - - -# # Read metrics one or many Riak servers -# [[inputs.riak]] -# # Specify a list of one or more riak http servers -# servers = ["http://localhost:8098"] - - -# # Read API usage and limits for a Salesforce organisation -# [[inputs.salesforce]] -# ## specify your credentials -# ## -# username = "your_username" -# password = "your_password" -# ## -# ## (optional) security token -# # security_token = "your_security_token" -# ## -# ## (optional) environment type (sandbox or production) -# ## default is: production -# ## -# # environment = "production" -# ## -# ## (optional) API version (default: "39.0") -# ## -# # version = "39.0" - - -# # Monitor sensors, requires lm-sensors package -# [[inputs.sensors]] -# ## Remove numbers from field names. -# ## If true, a field name like 'temp1_input' will be changed to 'temp_input'. -# # remove_numbers = true - - -# # Read metrics from storage devices supporting S.M.A.R.T. -# [[inputs.smart]] -# ## Optionally specify the path to the smartctl executable -# # path = "/usr/bin/smartctl" -# # -# ## On most platforms smartctl requires root access. -# ## Setting 'use_sudo' to true will make use of sudo to run smartctl. -# ## Sudo must be configured to to allow the telegraf user to run smartctl -# ## with out password. -# # use_sudo = false -# # -# ## Skip checking disks in this power mode. Defaults to -# ## "standby" to not wake up disks that have stoped rotating. -# ## See --nocheck in the man pages for smartctl. -# ## smartctl version 5.41 and 5.42 have faulty detection of -# ## power mode and might require changing this value to -# ## "never" depending on your disks. -# # nocheck = "standby" -# # -# ## Gather detailed metrics for each SMART Attribute. -# ## Defaults to "false" -# ## -# # attributes = false -# # -# ## Optionally specify devices to exclude from reporting. -# # excludes = [ "/dev/pass6" ] -# # -# ## Optionally specify devices and device type, if unset -# ## a scan (smartctl --scan) for S.M.A.R.T. devices will -# ## done and all found will be included except for the -# ## excluded in excludes. -# # devices = [ "/dev/ada0 -d atacam" ] - - -# # Retrieves SNMP values from remote agents -# [[inputs.snmp]] -# agents = [ "127.0.0.1:161" ] -# ## Timeout for each SNMP query. -# timeout = "5s" -# ## Number of retries to attempt within timeout. -# retries = 3 -# ## SNMP version, values can be 1, 2, or 3 -# version = 2 -# -# ## SNMP community string. -# community = "public" -# -# ## The GETBULK max-repetitions parameter -# max_repetitions = 10 -# -# ## SNMPv3 auth parameters -# #sec_name = "myuser" -# #auth_protocol = "md5" # Values: "MD5", "SHA", "" -# #auth_password = "pass" -# #sec_level = "authNoPriv" # Values: "noAuthNoPriv", "authNoPriv", "authPriv" -# #context_name = "" -# #priv_protocol = "" # Values: "DES", "AES", "" -# #priv_password = "" -# -# ## measurement name -# name = "system" -# [[inputs.snmp.field]] -# name = "hostname" -# oid = ".1.0.0.1.1" -# [[inputs.snmp.field]] -# name = "uptime" -# oid = ".1.0.0.1.2" -# [[inputs.snmp.field]] -# name = "load" -# oid = ".1.0.0.1.3" -# [[inputs.snmp.field]] -# oid = "HOST-RESOURCES-MIB::hrMemorySize" -# -# [[inputs.snmp.table]] -# ## measurement name -# name = "remote_servers" -# inherit_tags = [ "hostname" ] -# [[inputs.snmp.table.field]] -# name = "server" -# oid = ".1.0.0.0.1.0" -# is_tag = true -# [[inputs.snmp.table.field]] -# name = "connections" -# oid = ".1.0.0.0.1.1" -# [[inputs.snmp.table.field]] -# name = "latency" -# oid = ".1.0.0.0.1.2" -# -# [[inputs.snmp.table]] -# ## auto populate table's fields using the MIB -# oid = "HOST-RESOURCES-MIB::hrNetworkTable" - - -# # DEPRECATED! PLEASE USE inputs.snmp INSTEAD. -# [[inputs.snmp_legacy]] -# ## Use 'oids.txt' file to translate oids to names -# ## To generate 'oids.txt' you need to run: -# ## snmptranslate -m all -Tz -On | sed -e 's/"//g' > /tmp/oids.txt -# ## Or if you have an other MIB folder with custom MIBs -# ## snmptranslate -M /mycustommibfolder -Tz -On -m all | sed -e 's/"//g' > oids.txt -# snmptranslate_file = "/tmp/oids.txt" -# [[inputs.snmp.host]] -# address = "192.168.2.2:161" -# # SNMP community -# community = "public" # default public -# # SNMP version (1, 2 or 3) -# # Version 3 not supported yet -# version = 2 # default 2 -# # SNMP response timeout -# timeout = 2.0 # default 2.0 -# # SNMP request retries -# retries = 2 # default 2 -# # Which get/bulk do you want to collect for this host -# collect = ["mybulk", "sysservices", "sysdescr"] -# # Simple list of OIDs to get, in addition to "collect" -# get_oids = [] -# -# [[inputs.snmp.host]] -# address = "192.168.2.3:161" -# community = "public" -# version = 2 -# timeout = 2.0 -# retries = 2 -# collect = ["mybulk"] -# get_oids = [ -# "ifNumber", -# ".1.3.6.1.2.1.1.3.0", -# ] -# -# [[inputs.snmp.get]] -# name = "ifnumber" -# oid = "ifNumber" -# -# [[inputs.snmp.get]] -# name = "interface_speed" -# oid = "ifSpeed" -# instance = "0" -# -# [[inputs.snmp.get]] -# name = "sysuptime" -# oid = ".1.3.6.1.2.1.1.3.0" -# unit = "second" -# -# [[inputs.snmp.bulk]] -# name = "mybulk" -# max_repetition = 127 -# oid = ".1.3.6.1.2.1.1" -# -# [[inputs.snmp.bulk]] -# name = "ifoutoctets" -# max_repetition = 127 -# oid = "ifOutOctets" -# -# [[inputs.snmp.host]] -# address = "192.168.2.13:161" -# #address = "127.0.0.1:161" -# community = "public" -# version = 2 -# timeout = 2.0 -# retries = 2 -# #collect = ["mybulk", "sysservices", "sysdescr", "systype"] -# collect = ["sysuptime" ] -# [[inputs.snmp.host.table]] -# name = "iftable3" -# include_instances = ["enp5s0", "eth1"] -# -# # SNMP TABLEs -# # table without mapping neither subtables -# [[inputs.snmp.table]] -# name = "iftable1" -# oid = ".1.3.6.1.2.1.31.1.1.1" -# -# # table without mapping but with subtables -# [[inputs.snmp.table]] -# name = "iftable2" -# oid = ".1.3.6.1.2.1.31.1.1.1" -# sub_tables = [".1.3.6.1.2.1.2.2.1.13"] -# -# # table with mapping but without subtables -# [[inputs.snmp.table]] -# name = "iftable3" -# oid = ".1.3.6.1.2.1.31.1.1.1" -# # if empty. get all instances -# mapping_table = ".1.3.6.1.2.1.31.1.1.1.1" -# # if empty, get all subtables -# -# # table with both mapping and subtables -# [[inputs.snmp.table]] -# name = "iftable4" -# oid = ".1.3.6.1.2.1.31.1.1.1" -# # if empty get all instances -# mapping_table = ".1.3.6.1.2.1.31.1.1.1.1" -# # if empty get all subtables -# # sub_tables could be not "real subtables" -# sub_tables=[".1.3.6.1.2.1.2.2.1.13", "bytes_recv", "bytes_send"] - - -# # Read stats from one or more Solr servers or cores -# [[inputs.solr]] -# ## specify a list of one or more Solr servers -# servers = ["http://localhost:8983"] -# -# ## specify a list of one or more Solr cores (default - all) -# # cores = ["main"] - - -# # Read metrics from Microsoft SQL Server -# [[inputs.sqlserver]] -# ## Specify instances to monitor with a list of connection strings. -# ## All connection parameters are optional. -# ## By default, the host is localhost, listening on default port, TCP 1433. -# ## for Windows, the user is the currently running AD user (SSO). -# ## See https://github.com/denisenkom/go-mssqldb for detailed connection -# ## parameters. -# # servers = [ -# # "Server=192.168.1.10;Port=1433;User Id=<user>;Password=<pw>;app name=telegraf;log=1;", -# # ] -# -# ## Optional parameter, setting this to 2 will use a new version -# ## of the collection queries that break compatibility with the original -# ## dashboards. -# query_version = 2 -# -# ## If you are using AzureDB, setting this to true will gather resource utilization metrics -# # azuredb = false -# -# ## If you would like to exclude some of the metrics queries, list them here -# ## Possible choices: -# ## - PerformanceCounters -# ## - WaitStatsCategorized -# ## - DatabaseIO -# ## - DatabaseProperties -# ## - CPUHistory -# ## - DatabaseSize -# ## - DatabaseStats -# ## - MemoryClerk -# ## - VolumeSpace -# ## - PerformanceMetrics -# # exclude_query = [ 'DatabaseIO' ] - - -# # Sysstat metrics collector -# [[inputs.sysstat]] -# ## Path to the sadc command. -# # -# ## Common Defaults: -# ## Debian/Ubuntu: /usr/lib/sysstat/sadc -# ## Arch: /usr/lib/sa/sadc -# ## RHEL/CentOS: /usr/lib64/sa/sadc -# sadc_path = "/usr/lib/sa/sadc" # required -# # -# # -# ## Path to the sadf command, if it is not in PATH -# # sadf_path = "/usr/bin/sadf" -# # -# # -# ## Activities is a list of activities, that are passed as argument to the -# ## sadc collector utility (e.g: DISK, SNMP etc...) -# ## The more activities that are added, the more data is collected. -# # activities = ["DISK"] -# # -# # -# ## Group metrics to measurements. -# ## -# ## If group is false each metric will be prefixed with a description -# ## and represents itself a measurement. -# ## -# ## If Group is true, corresponding metrics are grouped to a single measurement. -# # group = true -# # -# # -# ## Options for the sadf command. The values on the left represent the sadf -# ## options and the values on the right their description (which are used for -# ## grouping and prefixing metrics). -# ## -# ## Run 'sar -h' or 'man sar' to find out the supported options for your -# ## sysstat version. -# [inputs.sysstat.options] -# -C = "cpu" -# -B = "paging" -# -b = "io" -# -d = "disk" # requires DISK activity -# "-n ALL" = "network" -# "-P ALL" = "per_cpu" -# -q = "queue" -# -R = "mem" -# -r = "mem_util" -# -S = "swap_util" -# -u = "cpu_util" -# -v = "inode" -# -W = "swap" -# -w = "task" -# # -H = "hugepages" # only available for newer linux distributions -# # "-I ALL" = "interrupts" # requires INT activity -# # -# # -# ## Device tags can be used to add additional tags for devices. -# ## For example the configuration below adds a tag vg with value rootvg for -# ## all metrics with sda devices. -# # [[inputs.sysstat.device_tags.sda]] -# # vg = "rootvg" - - -# # Reads metrics from a Teamspeak 3 Server via ServerQuery -# [[inputs.teamspeak]] -# ## Server address for Teamspeak 3 ServerQuery -# # server = "127.0.0.1:10011" -# ## Username for ServerQuery -# username = "serverqueryuser" -# ## Password for ServerQuery -# password = "secret" -# ## Array of virtual servers -# # virtual_servers = [1] - - -# # Gather metrics from the Tomcat server status page. -# [[inputs.tomcat]] -# ## URL of the Tomcat server status -# # url = "http://127.0.0.1:8080/manager/status/all?XML=true" -# -# ## HTTP Basic Auth Credentials -# # username = "tomcat" -# # password = "s3cret" -# -# ## Request timeout -# # timeout = "5s" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false - - -# # Inserts sine and cosine waves for demonstration purposes -# [[inputs.trig]] -# ## Set the amplitude -# amplitude = 10.0 - - -# # Read Twemproxy stats data -# [[inputs.twemproxy]] -# ## Twemproxy stats address and port (no scheme) -# addr = "localhost:22222" -# ## Monitor pool name -# pools = ["redis_pool", "mc_pool"] - - -# # A plugin to collect stats from Unbound - a validating, recursive, and caching DNS resolver -# [[inputs.unbound]] -# ## If running as a restricted user you can prepend sudo for additional access: -# #use_sudo = false -# -# ## The default location of the unbound-control binary can be overridden with: -# binary = "/usr/sbin/unbound-control" -# -# ## The default timeout of 1s can be overriden with: -# timeout = "1s" -# -# ## Use the builtin fielddrop/fieldpass telegraf filters in order to keep/remove specific fields -# fieldpass = ["total_*", "num_*","time_up", "mem_*"] -# -# ## IP of server to connect to, read from unbound conf default, optionally ':port' -# ## Will lookup IP if given a hostname -# server = "127.0.0.1:8953" - - -# # A plugin to collect stats from Varnish HTTP Cache -# [[inputs.varnish]] -# ## If running as a restricted user you can prepend sudo for additional access: -# #use_sudo = false -# -# ## The default location of the varnishstat binary can be overridden with: -# binary = "/usr/bin/varnishstat" -# -# ## By default, telegraf gather stats for 3 metric points. -# ## Setting stats will override the defaults shown below. -# ## Glob matching can be used, ie, stats = ["MAIN.*"] -# ## stats may also be set to ["*"], which will collect all stats -# stats = ["MAIN.cache_hit", "MAIN.cache_miss", "MAIN.uptime"] -# -# ## Optional name for the varnish instance (or working directory) to query -# ## Usually appened after -n in varnish cli -# # instance_name = instanceName - - -# # Read metrics of ZFS from arcstats, zfetchstats, vdev_cache_stats, and pools -# [[inputs.zfs]] -# ## ZFS kstat path. Ignored on FreeBSD -# ## If not specified, then default is: -# # kstatPath = "/proc/spl/kstat/zfs" -# -# ## By default, telegraf gather all zfs stats -# ## If not specified, then default is: -# # kstatMetrics = ["arcstats", "zfetchstats", "vdev_cache_stats"] -# ## For Linux, the default is: -# # kstatMetrics = ["abdstats", "arcstats", "dnodestats", "dbufcachestats", -# # "dmu_tx", "fm", "vdev_mirror_stats", "zfetchstats", "zil"] -# ## By default, don't gather zpool stats -# # poolMetrics = false - - -# # Reads 'mntr' stats from one or many zookeeper servers -# [[inputs.zookeeper]] -# ## An array of address to gather stats about. Specify an ip or hostname -# ## with port. ie localhost:2181, 10.0.0.1:2181, etc. -# -# ## If no servers are specified, then localhost is used as the host. -# ## If no port is specified, 2181 is used -# servers = [":2181"] -# -# ## Timeout for metric collections from all servers. Minimum timeout is "1s". -# # timeout = "5s" -# -# ## Optional SSL Config -# # enable_ssl = true -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## If false, skip chain & host verification -# # insecure_skip_verify = true - - - -############################################################################### -# SERVICE INPUT PLUGINS # -############################################################################### - -# # AMQP consumer plugin -# [[inputs.amqp_consumer]] -# ## AMQP url -# url = "amqp://localhost:5672/influxdb" -# ## AMQP exchange -# exchange = "telegraf" -# ## AMQP queue name -# queue = "telegraf" -# ## Binding Key -# binding_key = "#" -# -# ## Maximum number of messages server should give to the worker. -# prefetch_count = 50 -# -# ## Auth method. PLAIN and EXTERNAL are supported -# ## Using EXTERNAL requires enabling the rabbitmq_auth_mechanism_ssl plugin as -# ## described here: https://www.rabbitmq.com/plugins.html -# # auth_method = "PLAIN" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Influx HTTP write listener -# [[inputs.http_listener]] -# ## Address and port to host HTTP listener on -# service_address = ":8186" -# -# ## maximum duration before timing out read of the request -# read_timeout = "10s" -# ## maximum duration before timing out write of the response -# write_timeout = "10s" -# -# ## Maximum allowed http request body size in bytes. -# ## 0 means to use the default of 536,870,912 bytes (500 mebibytes) -# max_body_size = 0 -# -# ## Maximum line size allowed to be sent in bytes. -# ## 0 means to use the default of 65536 bytes (64 kibibytes) -# max_line_size = 0 -# -# ## Set one or more allowed client CA certificate file names to -# ## enable mutually authenticated TLS connections -# tls_allowed_cacerts = ["/etc/telegraf/clientca.pem"] -# -# ## Add service certificate and key -# tls_cert = "/etc/telegraf/cert.pem" -# tls_key = "/etc/telegraf/key.pem" -# -# ## Optional username and password to accept for HTTP basic authentication. -# ## You probably want to make sure you have TLS configured above for this. -# # basic_username = "foobar" -# # basic_password = "barfoo" - - -# # Read metrics from Kafka topic(s) -# [[inputs.kafka_consumer]] -# ## kafka servers -# brokers = ["localhost:9092"] -# ## topic(s) to consume -# topics = ["telegraf"] -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Optional SASL Config -# # sasl_username = "kafka" -# # sasl_password = "secret" -# -# ## the name of the consumer group -# consumer_group = "telegraf_metrics_consumers" -# ## Offset (must be either "oldest" or "newest") -# offset = "oldest" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" -# -# ## Maximum length of a message to consume, in bytes (default 0/unlimited); -# ## larger messages are dropped -# max_message_len = 65536 - - -# # Read metrics from Kafka topic(s) -# [[inputs.kafka_consumer_legacy]] -# ## topic(s) to consume -# topics = ["telegraf"] -# ## an array of Zookeeper connection strings -# zookeeper_peers = ["localhost:2181"] -# ## Zookeeper Chroot -# zookeeper_chroot = "" -# ## the name of the consumer group -# consumer_group = "telegraf_metrics_consumers" -# ## Offset (must be either "oldest" or "newest") -# offset = "oldest" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" -# -# ## Maximum length of a message to consume, in bytes (default 0/unlimited); -# ## larger messages are dropped -# max_message_len = 65536 - - -# # Stream and parse log file(s). -# [[inputs.logparser]] -# ## Log files to parse. -# ## These accept standard unix glob matching rules, but with the addition of -# ## ** as a "super asterisk". ie: -# ## /var/log/**.log -> recursively find all .log files in /var/log -# ## /var/log/*/*.log -> find all .log files with a parent dir in /var/log -# ## /var/log/apache.log -> only tail the apache log file -# files = ["/var/log/apache/access.log"] -# -# ## Read files that currently exist from the beginning. Files that are created -# ## while telegraf is running (and that match the "files" globs) will always -# ## be read from the beginning. -# from_beginning = false -# -# ## Method used to watch for file updates. Can be either "inotify" or "poll". -# # watch_method = "inotify" -# -# ## Parse logstash-style "grok" patterns: -# [inputs.logparser.grok] -# ## This is a list of patterns to check the given log file(s) for. -# ## Note that adding patterns here increases processing time. The most -# ## efficient configuration is to have one pattern per logparser. -# ## Other common built-in patterns are: -# ## %{COMMON_LOG_FORMAT} (plain apache & nginx access logs) -# ## %{COMBINED_LOG_FORMAT} (access logs + referrer & agent) -# patterns = ["%{COMBINED_LOG_FORMAT}"] -# -# ## Name of the outputted measurement name. -# measurement = "apache_access_log" -# -# ## Full path(s) to custom pattern files. -# custom_pattern_files = [] -# -# ## Custom patterns can also be defined here. Put one pattern per line. -# custom_patterns = ''' -# -# ## Timezone allows you to provide an override for timestamps that -# ## don't already include an offset -# ## e.g. 04/06/2016 12:41:45 data one two 5.43µs -# ## -# ## Default: "" which renders UTC -# ## Options are as follows: -# ## 1. Local -- interpret based on machine localtime -# ## 2. "Canada/Eastern" -- Unix TZ values like those found in https://en.wikipedia.org/wiki/List_of_tz_database_time_zones -# ## 3. UTC -- or blank/unspecified, will return timestamp in UTC -# timezone = "Canada/Eastern" -# ''' - - -# # Read metrics from MQTT topic(s) -# [[inputs.mqtt_consumer]] -# ## MQTT broker URLs to be used. The format should be scheme://host:port, -# ## schema can be tcp, ssl, or ws. -# servers = ["tcp://localhost:1883"] -# -# ## MQTT QoS, must be 0, 1, or 2 -# qos = 0 -# ## Connection timeout for initial connection in seconds -# connection_timeout = "30s" -# -# ## Topics to subscribe to -# topics = [ -# "telegraf/host01/cpu", -# "telegraf/+/mem", -# "sensors/#", -# ] -# -# # if true, messages that can't be delivered while the subscriber is offline -# # will be delivered when it comes back (such as on service restart). -# # NOTE: if true, client_id MUST be set -# persistent_session = false -# # If empty, a random client ID will be generated. -# client_id = "" -# -# ## username and password to connect MQTT server. -# # username = "telegraf" -# # password = "metricsmetricsmetricsmetrics" -# -# ## Optional SSL Config -# # ssl_ca = "/etc/telegraf/ca.pem" -# # ssl_cert = "/etc/telegraf/cert.pem" -# # ssl_key = "/etc/telegraf/key.pem" -# ## Use SSL but skip chain & host verification -# # insecure_skip_verify = false -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Read metrics from NATS subject(s) -# [[inputs.nats_consumer]] -# ## urls of NATS servers -# # servers = ["nats://localhost:4222"] -# ## Use Transport Layer Security -# # secure = false -# ## subject(s) to consume -# # subjects = ["telegraf"] -# ## name a queue group -# # queue_group = "telegraf_consumers" -# -# ## Sets the limits for pending msgs and bytes for each subscription -# ## These shouldn't need to be adjusted except in very high throughput scenarios -# # pending_message_limit = 65536 -# # pending_bytes_limit = 67108864 -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Read NSQ topic for metrics. -# [[inputs.nsq_consumer]] -# ## Server option still works but is deprecated, we just prepend it to the nsqd array. -# # server = "localhost:4150" -# ## An array representing the NSQD TCP HTTP Endpoints -# nsqd = ["localhost:4150"] -# ## An array representing the NSQLookupd HTTP Endpoints -# nsqlookupd = ["localhost:4161"] -# topic = "telegraf" -# channel = "consumer" -# max_in_flight = 100 -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Read metrics from one or many postgresql servers -# [[inputs.postgresql]] -# ## specify address via a url matching: -# ## postgres://[pqgotest[:password]]@localhost[/dbname]\ -# ## ?sslmode=[disable|verify-ca|verify-full] -# ## or a simple string: -# ## host=localhost user=pqotest password=... sslmode=... dbname=app_production -# ## -# ## All connection parameters are optional. -# ## -# ## Without the dbname parameter, the driver will default to a database -# ## with the same name as the user. This dbname is just for instantiating a -# ## connection with the server and doesn't restrict the databases we are trying -# ## to grab metrics for. -# ## -# address = "host=localhost user=postgres sslmode=disable" -# ## A custom name for the database that will be used as the "server" tag in the -# ## measurement output. If not specified, a default one generated from -# ## the connection address is used. -# # outputaddress = "db01" -# -# ## connection configuration. -# ## maxlifetime - specify the maximum lifetime of a connection. -# ## default is forever (0s) -# max_lifetime = "0s" -# -# ## A list of databases to explicitly ignore. If not specified, metrics for all -# ## databases are gathered. Do NOT use with the 'databases' option. -# # ignored_databases = ["postgres", "template0", "template1"] -# -# ## A list of databases to pull metrics about. If not specified, metrics for all -# ## databases are gathered. Do NOT use with the 'ignored_databases' option. -# # databases = ["app_production", "testing"] - - -# # Read metrics from one or many postgresql servers -# [[inputs.postgresql_extensible]] -# ## specify address via a url matching: -# ## postgres://[pqgotest[:password]]@localhost[/dbname]\ -# ## ?sslmode=[disable|verify-ca|verify-full] -# ## or a simple string: -# ## host=localhost user=pqotest password=... sslmode=... dbname=app_production -# # -# ## All connection parameters are optional. # -# ## Without the dbname parameter, the driver will default to a database -# ## with the same name as the user. This dbname is just for instantiating a -# ## connection with the server and doesn't restrict the databases we are trying -# ## to grab metrics for. -# # -# address = "host=localhost user=postgres sslmode=disable" -# -# ## connection configuration. -# ## maxlifetime - specify the maximum lifetime of a connection. -# ## default is forever (0s) -# max_lifetime = "0s" -# -# ## A list of databases to pull metrics about. If not specified, metrics for all -# ## databases are gathered. -# ## databases = ["app_production", "testing"] -# # -# ## A custom name for the database that will be used as the "server" tag in the -# ## measurement output. If not specified, a default one generated from -# ## the connection address is used. -# # outputaddress = "db01" -# # -# ## Define the toml config where the sql queries are stored -# ## New queries can be added, if the withdbname is set to true and there is no -# ## databases defined in the 'databases field', the sql query is ended by a -# ## 'is not null' in order to make the query succeed. -# ## Example : -# ## The sqlquery : "SELECT * FROM pg_stat_database where datname" become -# ## "SELECT * FROM pg_stat_database where datname IN ('postgres', 'pgbench')" -# ## because the databases variable was set to ['postgres', 'pgbench' ] and the -# ## withdbname was true. Be careful that if the withdbname is set to false you -# ## don't have to define the where clause (aka with the dbname) the tagvalue -# ## field is used to define custom tags (separated by commas) -# ## The optional "measurement" value can be used to override the default -# ## output measurement name ("postgresql"). -# # -# ## Structure : -# ## [[inputs.postgresql_extensible.query]] -# ## sqlquery string -# ## version string -# ## withdbname boolean -# ## tagvalue string (comma separated) -# ## measurement string -# [[inputs.postgresql_extensible.query]] -# sqlquery="SELECT * FROM pg_stat_database" -# version=901 -# withdbname=false -# tagvalue="" -# measurement="" -# [[inputs.postgresql_extensible.query]] -# sqlquery="SELECT * FROM pg_stat_bgwriter" -# version=901 -# withdbname=false -# tagvalue="postgresql.stats" - - -# # Generic socket listener capable of handling multiple socket types. -# [[inputs.socket_listener]] -# ## URL to listen on -# # service_address = "tcp://:8094" -# # service_address = "tcp://127.0.0.1:http" -# # service_address = "tcp4://:8094" -# # service_address = "tcp6://:8094" -# # service_address = "tcp6://[2001:db8::1]:8094" -# # service_address = "udp://:8094" -# # service_address = "udp4://:8094" -# # service_address = "udp6://:8094" -# # service_address = "unix:///tmp/telegraf.sock" -# # service_address = "unixgram:///tmp/telegraf.sock" -# -# ## Maximum number of concurrent connections. -# ## Only applies to stream sockets (e.g. TCP). -# ## 0 (default) is unlimited. -# # max_connections = 1024 -# -# ## Read timeout. -# ## Only applies to stream sockets (e.g. TCP). -# ## 0 (default) is unlimited. -# # read_timeout = "30s" -# -# ## Maximum socket buffer size in bytes. -# ## For stream sockets, once the buffer fills up, the sender will start backing up. -# ## For datagram sockets, once the buffer fills up, metrics will start dropping. -# ## Defaults to the OS default. -# # read_buffer_size = 65535 -# -# ## Period between keep alive probes. -# ## Only applies to TCP sockets. -# ## 0 disables keep alive probes. -# ## Defaults to the OS configuration. -# # keep_alive_period = "5m" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# # data_format = "influx" - - -# # Statsd UDP/TCP Server -# [[inputs.statsd]] -# ## Protocol, must be "tcp", "udp", "udp4" or "udp6" (default=udp) -# protocol = "udp" -# -# ## MaxTCPConnection - applicable when protocol is set to tcp (default=250) -# max_tcp_connections = 250 -# -# ## Enable TCP keep alive probes (default=false) -# tcp_keep_alive = false -# -# ## Specifies the keep-alive period for an active network connection. -# ## Only applies to TCP sockets and will be ignored if tcp_keep_alive is false. -# ## Defaults to the OS configuration. -# # tcp_keep_alive_period = "2h" -# -# ## Address and port to host UDP listener on -# service_address = ":8125" -# -# ## The following configuration options control when telegraf clears it's cache -# ## of previous values. If set to false, then telegraf will only clear it's -# ## cache when the daemon is restarted. -# ## Reset gauges every interval (default=true) -# delete_gauges = true -# ## Reset counters every interval (default=true) -# delete_counters = true -# ## Reset sets every interval (default=true) -# delete_sets = true -# ## Reset timings & histograms every interval (default=true) -# delete_timings = true -# -# ## Percentiles to calculate for timing & histogram stats -# percentiles = [90] -# -# ## separator to use between elements of a statsd metric -# metric_separator = "_" -# -# ## Parses tags in the datadog statsd format -# ## http://docs.datadoghq.com/guides/dogstatsd/ -# parse_data_dog_tags = false -# -# ## Statsd data translation templates, more info can be read here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md#graphite -# # templates = [ -# # "cpu.* measurement*" -# # ] -# -# ## Number of UDP messages allowed to queue up, once filled, -# ## the statsd server will start dropping packets -# allowed_pending_messages = 10000 -# -# ## Number of timing/histogram values to track per-measurement in the -# ## calculation of percentiles. Raising this limit increases the accuracy -# ## of percentiles but also increases the memory usage and cpu time. -# percentile_limit = 1000 - - -# # Stream a log file, like the tail -f command -# [[inputs.tail]] -# ## files to tail. -# ## These accept standard unix glob matching rules, but with the addition of -# ## ** as a "super asterisk". ie: -# ## "/var/log/**.log" -> recursively find all .log files in /var/log -# ## "/var/log/*/*.log" -> find all .log files with a parent dir in /var/log -# ## "/var/log/apache.log" -> just tail the apache log file -# ## -# ## See https://github.com/gobwas/glob for more examples -# ## -# files = ["/var/mymetrics.out"] -# ## Read file from beginning. -# from_beginning = false -# ## Whether file is a named pipe -# pipe = false -# -# ## Method used to watch for file updates. Can be either "inotify" or "poll". -# # watch_method = "inotify" -# -# ## Data format to consume. -# ## Each data format has its own unique set of configuration options, read -# ## more about them here: -# ## https://github.com/influxdata/telegraf/blob/master/docs/DATA_FORMATS_INPUT.md -# data_format = "influx" - - -# # Generic TCP listener -# [[inputs.tcp_listener]] -# # DEPRECATED: the TCP listener plugin has been deprecated in favor of the -# # socket_listener plugin -# # see https://github.com/influxdata/telegraf/tree/master/plugins/inputs/socket_listener - - -# # Generic UDP listener -# [[inputs.udp_listener]] -# # DEPRECATED: the TCP listener plugin has been deprecated in favor of the -# # socket_listener plugin -# # see https://github.com/influxdata/telegraf/tree/master/plugins/inputs/socket_listener - - -# # A Webhooks Event collector -# [[inputs.webhooks]] -# ## Address and port to host Webhook listener on -# service_address = ":1619" -# -# [inputs.webhooks.filestack] -# path = "/filestack" -# -# [inputs.webhooks.github] -# path = "/github" -# # secret = "" -# -# [inputs.webhooks.mandrill] -# path = "/mandrill" -# -# [inputs.webhooks.rollbar] -# path = "/rollbar" -# -# [inputs.webhooks.papertrail] -# path = "/papertrail" -# -# [inputs.webhooks.particle] -# path = "/particle" - - -# # This plugin implements the Zipkin http server to gather trace and timing data needed to troubleshoot latency problems in microservice architectures. -# [[inputs.zipkin]] -# # path = "/api/v1/spans" # URL path for span data -# # port = 9411 # Port on which Telegraf listens - [0m [0;32mInfo: Computing checksum on file /etc/telegraf/telegraf.conf[0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]: Filebucketed /etc/telegraf/telegraf.conf to puppet with sum 99d9d9e7eec8a83a4ccea4bfc8fa0c99[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]/content: content changed '{md5}99d9d9e7eec8a83a4ccea4bfc8fa0c99' to '{md5}e16a4117522b4f9e0c32c3f7482ec9af'[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]/owner: owner changed 'root' to 'telegraf'[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]/group: group changed 'root' to 'telegraf'[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]/mode: mode changed '0644' to '0640'[0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.conf]: Scheduling refresh of Class[Telegraf::Service][0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]/owner: owner changed 'root' to 'telegraf'[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]/group: group changed 'root' to 'telegraf'[0m [mNotice: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]/mode: mode changed '0755' to '0770'[0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: /Stage[main]/Telegraf::Config/File[/etc/telegraf/telegraf.d]: Scheduling refresh of Class[Telegraf::Service][0m [mNotice: /Stage[main]/Lwmonitoring/Package[python-netifaces]/ensure: created[0m [mNotice: /Stage[main]/Lwmonitoring/Package[check-mk-agent-locaweb-plugins]/ensure: created[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120]/ensure: created[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120/locaweb-docker]/ensure: defined content as '{md5}a92ddaa85796efee782cbfc636db9905'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120/locaweb-puppet]/ensure: defined content as '{md5}5d375007c17423591510495bbe816dbf'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120/locaweb-squid]/ensure: defined content as '{md5}2907dfd317c1afe93585d8721eeec7ee'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120/systemd]/ensure: defined content as '{md5}62788893873b0b54d5059c103e1ed893'[0m [mNotice: /Stage[main]/Lwmonitoring/File[/usr/lib/check_mk_agent/plugins/120/xl.sh]/ensure: defined content as '{md5}612c823661f0b1a1251e9d2d430f9e99'[0m [mNotice: /Stage[main]/Ssh::Client::Config/File[/etc/ssh/ssh_config]/content: --- /etc/ssh/ssh_config 2019-08-08 22:40:39.000000000 -0300 +++ /tmp/puppet-file20200803-7604-n9ws55 2020-08-03 12:27:35.181865635 -0300 @@ -1,68 +1,5 @@ -# $OpenBSD: ssh_config,v 1.30 2016/02/20 23:06:23 sobrado Exp $ - -# This is the ssh client system-wide configuration file. See -# ssh_config(5) for more information. This file provides defaults for -# users, and the values can be changed in per-user configuration files -# or on the command line. - -# Configuration data is parsed as follows: -# 1. command line options -# 2. user-specific file -# 3. system-wide file -# Any configuration value is only changed the first time it is set. -# Thus, host-specific definitions should be at the beginning of the -# configuration file, and defaults at the end. - -# Site-wide defaults for some commonly used options. For a comprehensive -# list of available options, their meanings and defaults, please see the -# ssh_config(5) man page. - -# Host * -# ForwardAgent no -# ForwardX11 no -# RhostsRSAAuthentication no -# RSAAuthentication yes -# PasswordAuthentication yes -# HostbasedAuthentication no -# GSSAPIAuthentication no -# GSSAPIDelegateCredentials no -# GSSAPIKeyExchange no -# GSSAPITrustDNS no -# BatchMode no -# CheckHostIP yes -# AddressFamily any -# ConnectTimeout 0 -# StrictHostKeyChecking ask -# IdentityFile ~/.ssh/identity -# IdentityFile ~/.ssh/id_rsa -# IdentityFile ~/.ssh/id_dsa -# IdentityFile ~/.ssh/id_ecdsa -# IdentityFile ~/.ssh/id_ed25519 -# Port 22 -# Protocol 2 -# Cipher 3des -# Ciphers aes128-ctr,aes192-ctr,aes256-ctr,arcfour256,arcfour128,aes128-cbc,3des-cbc -# MACs hmac-md5,hmac-sha1,umac-64@openssh.com,hmac-ripemd160 -# EscapeChar ~ -# Tunnel no -# TunnelDevice any:any -# PermitLocalCommand no -# VisualHostKey no -# ProxyCommand ssh -q -W %h:%p gateway.example.com -# RekeyLimit 1G 1h -# -# Uncomment this if you want to use .local domain -# Host *.local -# CheckHostIP no +# File managed by Puppet Host * - GSSAPIAuthentication yes -# If this option is set to yes then remote X11 clients will have full access -# to the original X11 display. As virtually no X11 client supports the untrusted -# mode correctly we set this to yes. - ForwardX11Trusted yes -# Send locale-related environment variables - SendEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES - SendEnv LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT - SendEnv LC_IDENTIFICATION LC_ALL LANGUAGE - SendEnv XMODIFIERS + HashKnownHosts yes + SendEnv LANG LC_* [0m [0;32mInfo: Computing checksum on file /etc/ssh/ssh_config[0m [0;32mInfo: /Stage[main]/Ssh::Client::Config/File[/etc/ssh/ssh_config]: Filebucketed /etc/ssh/ssh_config to puppet with sum b1fd7a27af48e304eafa6259d4aa143c[0m [mNotice: /Stage[main]/Ssh::Client::Config/File[/etc/ssh/ssh_config]/content: content changed '{md5}b1fd7a27af48e304eafa6259d4aa143c' to '{md5}6b6e968bce40150262b7ab85822e7c07'[0m [mNotice: /Stage[main]/Chrony::Config/File[/etc/chrony.conf]/content: --- /etc/chrony.conf 2019-08-08 08:40:15.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1ugxysj 2020-08-03 12:27:35.206865635 -0300 @@ -1,38 +1,47 @@ # Use public servers from the pool.ntp.org project. # Please consider joining the pool (http://www.pool.ntp.org/join.html). -server 0.centos.pool.ntp.org iburst -server 1.centos.pool.ntp.org iburst -server 2.centos.pool.ntp.org iburst -server 3.centos.pool.ntp.org iburst +server ntp1.locaweb.com.br iburst +server ntp2.locaweb.com.br iburst +server ntp3.locaweb.com.br iburst + + +# Ignore stratum in source selection. +stratumweight 0 # Record the rate at which the system clock gains/losses time. driftfile /var/lib/chrony/drift -# Allow the system clock to be stepped in the first three updates -# if its offset is larger than 1 second. -makestep 1.0 3 - -# Enable kernel synchronization of the real-time clock (RTC). +# Enable kernel RTC synchronization. rtcsync -# Enable hardware timestamping on all interfaces that support it. -#hwtimestamp * +# In first 3 updates step the system clock instead of slew +# if the adjustment is larger than 10 seconds. +makestep 10 3 + +# Allow client access from local network. +#allow 192.168/16 + +# Listen for commands only on localhost. +bindcmdaddress 127.0.0.1 +bindcmdaddress ::1 -# Increase the minimum number of selectable sources required to adjust -# the system clock. -#minsources 2 +# http://chrony.tuxfamily.org/manual.html#port-directive +port 0 -# Allow NTP client access from local network. -#allow 192.168.0.0/16 +# Serve time even if not synchronized to any NTP server. +local stratum 10 -# Serve time even if not synchronized to a time source. -#local stratum 10 +keyfile /etc/chrony.keys + +# Disable logging of client accesses. +noclientlog + + +# Send a message to syslog if a clock adjustment is larger than 0.5 seconds. +logchange 0.5 -# Specify file containing keys for NTP authentication. -#keyfile /etc/chrony.keys -# Specify directory for log files. logdir /var/log/chrony -# Select which information is logged. -#log measurements statistics tracking +# Hardware reference clock drivers + [0m [0;32mInfo: Computing checksum on file /etc/chrony.conf[0m [0;32mInfo: /Stage[main]/Chrony::Config/File[/etc/chrony.conf]: Filebucketed /etc/chrony.conf to puppet with sum fcd517a062526b95db1439099d6700ee[0m [mNotice: /Stage[main]/Chrony::Config/File[/etc/chrony.conf]/content: content changed '{md5}fcd517a062526b95db1439099d6700ee' to '{md5}91c450fb4e230fdd9fbb46209f98e05b'[0m [mNotice: /Stage[main]/Chrony::Config/File[/etc/chrony.keys]/content: --- /etc/chrony.keys 2019-08-08 08:40:15.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1rs2vhz 2020-08-03 12:27:35.231865635 -0300 @@ -1,12 +1 @@ -# This is an example chrony keys file. It is used for NTP authentication with -# symmetric keys. It should be readable only by root or the user to which -# chronyd is configured to switch to after start. -# -# Don't use the example keys! It's recommended to generate random keys using -# the chronyc keygen command. - -# Examples of valid keys: - -#1 MD5 AVeryLongAndRandomPassword -#2 MD5 HEX:12114855C7931009B4049EF3EFC48A139C3F989F -#3 SHA1 HEX:B2159C05D6A219673A3B7E896B6DE07F6A440995 +0 xyzzy [0m [0;32mInfo: Computing checksum on file /etc/chrony.keys[0m [0;32mInfo: /Stage[main]/Chrony::Config/File[/etc/chrony.keys]: Filebucketed /etc/chrony.keys to puppet with sum ba6bb05c50e03f6b5ab54a2b7914800d[0m [mNotice: /Stage[main]/Chrony::Config/File[/etc/chrony.keys]/content: content changed '{md5}ba6bb05c50e03f6b5ab54a2b7914800d' to '{md5}a4d77ad6fabab7437238dfefa9f310e4'[0m [0;32mInfo: Class[Chrony::Config]: Scheduling refresh of Class[Chrony::Service][0m [0;32mInfo: Class[Chrony::Service]: Scheduling refresh of Service[chrony][0m [mNotice: /Stage[main]/Chrony::Service/Service[chrony]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Install/Package[bacula-enterprise-client]/ensure: created[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]/content: --- /opt/bacula/etc/bacula-fd.conf 2020-08-03 12:27:37.792764330 -0300 +++ /tmp/puppet-file20200803-7604-1uxjm7f 2020-08-03 12:27:38.027764330 -0300 @@ -1,48 +1,24 @@ -# -# Default Bacula File Daemon Configuration file -# -# For Bacula release 12.0.1 (02 July 2019) -- redhat Enterprise release -# -# There is not much to change here except perhaps the -# File daemon Name to -# -# -# Copyright (C) 2000-2017 Kern Sibbald -# License: BSD 2-Clause; see file LICENSE-FOSS -# +Director { + Name = sonic0001-dir + Password = "" +} -# -# List Directors who are permitted to contact this File daemon -# -Director { - Name = vpshost1491-dir - Password = "waLJgGO3G8l8T6K40Dry6OzLL6rmkiElNbWaMEaIuqbB" -} - -# -# Restricted Director, used by tray-monitor to get the -# status of the file daemon -# -Director { - Name = vpshost1491-mon - Password = "1PW5SRkVGCWC3/jwoqxMnNl31kkhPmkVx4D2ofqV1Cqo" - Monitor = yes -} +Director { + Name = tails0001-dir + Password = "" +} -# -# "Global" File daemon configuration specifications -# -FileDaemon { # this is me - Name = vpshost1491-fd - FDport = 9102 # where we listen for the director - WorkingDirectory = /opt/bacula/working - Pid Directory = /opt/bacula/working - Maximum Concurrent Jobs = 20 - Plugin Directory = /opt/bacula/plugins -} +Messages { + Name = Daemon + director = sonic0001-dir = all, !skipped, !restored, !security +} -# Send all messages except skipped files back to Director -Messages { - Name = Standard - director = vpshost1491-dir = all, !skipped, !restored, !saved +FileDaemon { + Name = hostname-fd + FDport = 9102 + WorkingDirectory = /opt/bacula/working/ + Plugin Directory = /opt/bacula/plugins + Pid Directory = /opt/bacula/working/ + Maximum Concurrent Jobs = 200 + Heartbeat Interval = 60 } [0m [0;32mInfo: Computing checksum on file /opt/bacula/etc/bacula-fd.conf[0m [0;32mInfo: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]: Filebucketed /opt/bacula/etc/bacula-fd.conf to puppet with sum befad4bbddc47ed8db0a2077d5b94339[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]/content: content changed '{md5}befad4bbddc47ed8db0a2077d5b94339' to '{md5}4308401757866dbc4e02a314f47b3289'[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]/group: group changed 'bacula' to 'root'[0m [mNotice: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]/mode: mode changed '0660' to '0644'[0m [0;32mInfo: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]: Scheduling refresh of Class[Lwbackup::Enterprise::Service][0m [0;32mInfo: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]: Scheduling refresh of Class[Lwbackup::Enterprise::Service][0m [0;32mInfo: /Stage[main]/Lwbackup::Enterprise::Config/File[/opt/bacula/etc/bacula-fd.conf]: Scheduling refresh of Class[Lwbackup::Enterprise::Service][0m [mNotice: /Stage[main]/Selinux::Config/File_line[set-selinux-config-to-disabled]/ensure: created[0m [mNotice: /Stage[main]/Selinux::Config/Exec[change-selinux-status-to-disabled]/returns: executed successfully[0m [mNotice: /Stage[main]/Selinux::Config/File_line[set-selinux-config-type-to-targeted]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Telegraf/File[/etc/telegraf/usage-per-user.sh]/ensure: defined content as '{md5}419801096f275328f23d4130750b2a6d'[0m [mNotice: /Stage[main]/Profile::Webserver::Telegraf/File[/etc/telegraf/shared-users.py]/ensure: defined content as '{md5}2e2a157b6cdaefee7e0de61f4f7889fa'[0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/Package[varnish]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/locaweb.vcl]/ensure: defined content as '{md5}50b67a521b862f8e02d3dc6fc708eb0b'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/locaweb.vcl]: Scheduling refresh of Service[varnish][0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/secret]/ensure: defined content as '{md5}d04e3ee5743a7bab50d22addebbaaea0'[0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/varnish.params]/ensure: defined content as '{md5}38999aed113fe2fdf29ac77a507cb265'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/varnish.params]: Scheduling refresh of Service[varnish][0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/backend.vcl]/ensure: defined content as '{md5}be44f35bcede0b13aaa5a5d977e88512'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Proxyserver/File[/etc/varnish/backend.vcl]: Scheduling refresh of Service[varnish][0m [mNotice: /Stage[main]/Profile::Webserver::Proxyserver/Service[varnish]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Proxyserver/Service[varnish]: Unscheduling refresh on Service[varnish][0m [mNotice: /Stage[main]/Profile::Webserver::Ftpserver/Package[pure-ftpd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Ftpserver/Package[pure-ftpd-selinux]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Ftpserver/File[/etc/pure-ftpd/pure-ftpd.conf]/content: --- /etc/pure-ftpd/pure-ftpd.conf 2015-04-08 15:00:28.000000000 -0300 +++ /tmp/puppet-file20200803-7604-hokcgj 2020-08-03 12:28:13.883403573 -0300 @@ -1,4 +1,4 @@ - +# Carica/Yokota 14/08/2009 ############################################################ # # # Configuration file for pure-ftpd wrappers # @@ -31,13 +31,13 @@ # Turn on compatibility hacks for broken clients -BrokenClientsCompatibility no +BrokenClientsCompatibility yes # Maximum number of simultaneous users -MaxClientsNumber 50 +MaxClientsNumber 700 @@ -49,14 +49,14 @@ # Maximum number of sim clients with the same IP address -MaxClientsPerIP 8 +MaxClientsPerIP 20 # If you want to log all client commands, set this to "yes". # This directive can be duplicated to also log server responses. -VerboseLog no +VerboseLog yes @@ -74,7 +74,7 @@ # Disallow anonymous connections. Only allow authenticated users. -NoAnonymous no +NoAnonymous yes @@ -140,7 +140,7 @@ # If you want simple Unix (/etc/passwd) authentication, uncomment this -# UnixAuthentication yes +UnixAuthentication yes @@ -158,7 +158,7 @@ # 'ls' recursion limits. The first argument is the maximum number of # files to be displayed. The second one is the max subdirectories depth -LimitRecursion 10000 8 +LimitRecursion 100000 8 @@ -177,7 +177,7 @@ # Port range for passive connections replies. - for firewalling. -# PassivePortRange 30000 50000 +PassivePortRange 60000 61000 @@ -212,7 +212,7 @@ # IP address/port to listen to (default=all IP and port 21). # Bind 127.0.0.1,21 - +Bind 186.202.13.103,21 # Maximum bandwidth for anonymous users in KB/s @@ -237,14 +237,14 @@ # Minimum UID for an authenticated user to log in. -MinUID 1000 +MinUID 48 # Do not use the /etc/ftpusers file to disable accounts. We're already -# using MinUID to block users with uid < 1000 +# using MinUID to block users with uid < 500 -UseFtpUsers no +UseFtpUsers yes @@ -274,7 +274,7 @@ -# Never overwrite files. When a file whose name already exist is uploaded, +# Never overwrite files. When a file whoose name already exist is uploaded, # it get automatically renamed to file.1, file.2, file.3, ... AutoRename no @@ -283,7 +283,7 @@ # Disallow anonymous users to upload new files (no = upload is allowed) -AnonymousCantUpload yes +AnonymousCantUpload no @@ -300,7 +300,7 @@ # If you want to add the PID to every logged line, uncomment the following # line. -#LogPID yes +LogPID yes @@ -308,7 +308,7 @@ # fw.c9x.org - jedi [13/Dec/1975:19:36:39] "GET /ftp/linux.tar.bz2" 200 21809338 # This log file can then be processed by www traffic analyzers. -AltLog clf:/var/log/pureftpd.log +#AltLog clf:/var/log/pureftpd.log @@ -355,7 +355,7 @@ # If your pure-ftpd has been compiled with standalone support, you can change # the location of the pid file. The default is /var/run/pure-ftpd.pid -#PIDFile /var/run/pure-ftpd.pid +PIDFile /var/run/pure-ftpd.pid @@ -363,18 +363,15 @@ # this will make pure-ftpd write info about new uploads to # /var/run/pure-ftpd.upload.pipe so pure-uploadscript can read it and # spawn a script to handle the upload. -# Don't enable this option if you don't actually use pure-uploadscript. - -#CallUploadScript yes - +CallUploadScript no # This option is useful with servers where anonymous upload is # allowed. As /var/ftp is in /var, it save some space and protect # the log files. When the partition is more that X percent full, # new uploads are disallowed. -MaxDiskUsage 99 +#MaxDiskUsage 99 @@ -427,32 +424,27 @@ # 2) A valid certificate is in place, # 3) Only compatible clients will log in. -# TLS 1 - - -# List of ciphers that will be accepted for SSL/TLS connections -# Prefix with -S: in order to totally disable SSL but not TLS. - -# TLSCipherSuite HIGH:MEDIUM:+TLSv1:!SSLv2:+SSLv3 +TLS 1 # Listen only to IPv4 addresses in standalone mode (ie. disable IPv6) # By default, both IPv4 and IPv6 are enabled. -# IPV4Only yes +IPV4Only yes # Listen only to IPv6 addresses in standalone mode (ie. disable IPv4) # By default, both IPv4 and IPv6 are enabled. -# IPV6Only yes +# IPV6Only no # UTF-8 support for file names (RFC 2640) # Define charset of the server filesystem and optionnally the default charset # for remote clients if they don't use UTF-8. # Works only if pure-ftpd has been compiled with --with-rfc2640 -# FileSystemCharset big5 -# ClientCharset big5 +# FileSystemCharset big5 +# ClientCharset big5 + [0m [0;32mInfo: Computing checksum on file /etc/pure-ftpd/pure-ftpd.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Ftpserver/File[/etc/pure-ftpd/pure-ftpd.conf]: Filebucketed /etc/pure-ftpd/pure-ftpd.conf to puppet with sum 068166e92e9635f6e37627fe52632884[0m [mNotice: /Stage[main]/Profile::Webserver::Ftpserver/File[/etc/pure-ftpd/pure-ftpd.conf]/content: content changed '{md5}068166e92e9635f6e37627fe52632884' to '{md5}bc84106c922706f60b0f127071ce6ed3'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Ftpserver/File[/etc/pure-ftpd/pure-ftpd.conf]: Scheduling refresh of Service[pure-ftpd][0m [mNotice: /Stage[main]/Profile::Webserver::Ftpserver/Service[pure-ftpd]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Ftpserver/Service[pure-ftpd]: Unscheduling refresh on Service[pure-ftpd][0m [mNotice: /Stage[main]/Profile::Webserver::Mail/Package[dovecot]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Mail/Service[postfix]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Mail/Service[dovecot]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Mail/Service[dovecot]: Unscheduling refresh on Service[dovecot][0m [mNotice: /Stage[main]/Profile::Webserver::Api/Package[piglet]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Api/Package[aka]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Api/Package[hosting-tools]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Api/Package[locaweb-instalador]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]/content: --- /etc/locaweb/linuxadmin.yml 2018-11-27 14:30:38.000000000 -0200 +++ /tmp/puppet-file20200803-7604-l81swv 2020-08-03 12:28:33.050874962 -0300 @@ -1,3 +1,139 @@ +api_url: http://localhost:7901 +dbapi_url: http://localhost:8080 +apache_port: 81 +hmac_key: ea8uevohGeeNg6she2OL2EereiCaiT +piglet_debug: True +aka_debug: True ip_allowed: - 186.202.157.75 - 10.30.94.33 + - 127.0.0.1 + - 179.188.11.200 + - 179.188.11.155 + - 10.30.94.66 + - 10.30.94.74 + - 10.30.94.216 + - 10.30.94.217 + - 10.30.94.218 + - 10.30.94.220 + - 10.30.94.134 + - 10.32.32.12 + - 10.20.236.31 + - 10.32.32.78 + - 10.32.32.79 + - 10.32.32.44 + - 10.32.32.45 + - 10.32.32.185 + - 10.32.32.111 + - 10.32.32.110 + - 10.32.32.108 + - 10.32.32.109 + - 10.32.32.107 + - 10.32.32.106 + - 10.32.10.249 +type_product: g2 +actions: + - CRIARMYSQLIDC + - CRIARMYSQL + - DELMYSQL + - STARTMYSQL + - STOPMYSQL + - TROCASENHAMYSQL + - CRIARWEB + - DELWEB + - STARTWEB + - STOPWEB + - DOMADICWEB + - APAGARDOMINIOWEB + - TROCA_SENHA + - STORAGEINFO + - ALTERA_EMAIL_CRON + - INSERIR_CRON + - REMOVER_CRON + - REMOVER_EMAIL_CRON + - VER_CRON + - VER_EMAIL_CRON + - REMOVER_EMAIL_CRON + - CRIARPOSTGRES + - STOPPOSTGRES + - STARTPOSTGRES + - DELPOSTGRES + - TROCASENHAPOSTGRESQL + - ESPACOPOSTGRESQL + - GETCLIENTPATH +STOPMYSQL: + - database +STARTMYSQL: + - database +TROCASENHAMYSQL: + - username + - password +DELMYSQL: + - database +CRIARMYSQLIDC: + - ip + - database + - username + - password + - release + - referer +CRIARWEB: + - user + - password + - domain +DOMADICWEB: + - user + - domain +DELWEB: + - user +APAGARDOMINIOWEB: + - user + - alias +TROCA_SENHA: + - username + - password +ALTERA_EMAIL_CRON: + - user + - email +VER_CRON: + - user +VER_EMAIL_CRON: + - user +INSERIR_CRON: + - user + - minute + - hour + - day + - month + - dayofweek + - command +REMOVER_CRON: + - user + - minute + - hour + - day + - month + - dayofweek + - command +STOPWEB: + - user +STARTWEB: + - user +REMOVER_EMAIL_CRON: + - user +CRIARPOSTGRES: + - database + - password +STOPPOSTGRES: + - database +STARTPOSTGRES: + - database +DELPOSTGRES: + - database +TROCASENHAPOSTGRESQL: + - database + - password +ESPACOPOSTGRESQL: + - database +GETCLIENTPATH: + - user [0m [0;32mInfo: Computing checksum on file /etc/locaweb/linuxadmin.yml[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]: Filebucketed /etc/locaweb/linuxadmin.yml to puppet with sum c05c531bb8027e434c90d2ccadfa503b[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]/content: content changed '{md5}c05c531bb8027e434c90d2ccadfa503b' to '{md5}a39ef68a4fdd2c0cca0bf4cadb7a9922'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]/owner: owner changed 'piglet' to 'root'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]/group: group changed 'piglet' to 'root'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]/mode: mode changed '0640' to '0644'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]: Scheduling refresh of Service[uwsgi][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]: Scheduling refresh of Service[uwsgi][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]: Scheduling refresh of Service[uwsgi][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/linuxadmin.yml]: Scheduling refresh of Service[uwsgi][0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/hospedagem]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka.cfg]/content: --- /etc/locaweb/aka.cfg 2019-07-12 11:54:58.000000000 -0300 +++ /tmp/puppet-file20200803-7604-41444q 2020-08-03 12:28:33.182885095 -0300 @@ -5,4 +5,4 @@ [ldap] uri = ldap://gorpo0001.linux.locaweb.com.br:389,ldap://gorpo0003.linux.locaweb.com.br:389 binddn = uid=aka,ou=Special Users,dc=hosting,dc=locaweb,dc=com,dc=br -passwd = zxcyuopiafj +passwd = zxcyuopiafj \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/locaweb/aka.cfg[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka.cfg]: Filebucketed /etc/locaweb/aka.cfg to puppet with sum 9441b416ca994536eb8cf3ba859e19ba[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka.cfg]/content: content changed '{md5}9441b416ca994536eb8cf3ba859e19ba' to '{md5}292be9a2afc8a553520fc1331fbc93da'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka.cfg]: Scheduling refresh of Service[uwsgi][0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/sudoers.d/aka]/content: --- /etc/sudoers.d/aka 2019-07-13 13:00:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-xezo6z 2020-08-03 12:28:33.226888473 -0300 @@ -1,14 +1,32 @@ # Aka sudoers file Defaults:aka !requiretty -Cmnd_Alias AKA_RESTART_CMDS = \ +Cmnd_Alias AKA_RESTART_CMDS = \ /usr/bin/systemctl restart php-5.3-fpm,\ - /usr/bin/systemctl restart php-5.4-fpm,\ - /usr/bin/systemctl restart php-5.5-fpm,\ - /usr/bin/systemctl restart php-5.6-fpm,\ - /usr/bin/systemctl restart php-7.0-fpm,\ - /usr/bin/systemctl restart php-7.1-fpm,\ - /usr/bin/systemctl restart php-7.2-fpm,\ - /usr/bin/systemctl restart httpd + /usr/bin/systemctl restart php-5.4-fpm,\ + /usr/bin/systemctl restart php-5.5-fpm,\ + /usr/bin/systemctl restart php-5.6-fpm,\ + /usr/bin/systemctl restart php-7.0-fpm,\ + /usr/bin/systemctl restart php-7.1-fpm,\ + /usr/bin/systemctl restart php-7.2-fpm,\ + /usr/bin/systemctl restart php-7.3-fpm,\ + /usr/bin/systemctl [a-z] php-5.3-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-5.4-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-5.5-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-5.6-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-7.0-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-7.1-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-7.2-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-7.3-fpm@[a-z0-9]*.socket,\ + /usr/bin/systemctl [a-z]* php-5.3-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-5.4-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-5.5-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-5.6-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-7.0-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-7.1-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-7.2-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl [a-z]* php-7.3-fpm@[a-z0-9]*.service,\ + /usr/bin/systemctl restart httpd,\ + /usr/bin/systemctl reload httpd Cmnd_Alias AKA_CRON_CMDS = \ @@ -20,31 +38,27 @@ Cmnd_Alias AKA_SSS_CMDS = \ /usr/sbin/sss_cache -u [A-Za-z0-9.]*, \ - /usr/sbin/sss_cache -g [A-Za-z0-9.] + /usr/sbin/sss_cache -g [A-Za-z0-9.] Cmnd_Alias AKA_TOUCH_CMDS = \ /usr/bin/touch /etc/default/locaweb/description/apache2,\ - /usr/bin/touch /etc/default/locaweb/description/mysql,\ - /usr/bin/touch /etc/default/locaweb/description/php,\ - /usr/bin/touch /etc/default/locaweb/description/installmysql + /usr/bin/touch /etc/default/locaweb/description/mysql,\ + /usr/bin/touch /etc/default/locaweb/description/php,\ + /usr/bin/touch /etc/default/locaweb/description/installmysql Cmnd_Alias AKA_USER_CMDS = \ /usr/sbin/useradd -M -d /home/storage/[a-z0-9]/[a-z0-9]*/[a-z0-9]*/[a-zA-Z0-9.]* -u [a-zA-Z0-9.]* -s /bin/bash [a-zA-Z0-9.]*,\ - /usr/sbin/groupadd -g [0-9.]* [a-zA-Z0-9.]*,\ - /usr/sbin/userdel [a-zA-Z0-9.]*,\ - /usr/sbin/groupdel [a-zA-Z0-9.]*,\ - /usr/bin/chattr -i /etc/locaweb/hospedagem/[a-zA-Z0-9.]*.conf,\ - /usr/bin/chattr +i /etc/locaweb/hospedagem/[a-zA-Z0-9.]*.conf,\ - /usr/bin/chattr -i /etc/php-fpm.d/[5-7].[0-9]/[a-zA-Z0-9.]*.conf,\ - /usr/bin/chattr +i /etc/php-fpm.d/[5-7].[0-9]/[a-zA-Z0-9.]*.conf,\ - /usr/bin/passwd --stdin [a-zA-Z0-9.]*, \ - /usr/bin/tar --strip-components=1 -xf /var/tmp/wordpress.tar.gz -C /home/[a-zA-Z0-9]*/public_html/, \ - /usr/bin/chown -R [a-zA-Z0-9]*\:apache /home/[a-zA-Z0-9]*/public_html/, \ - /usr/bin/mv /var/tmp/wp-config.php /home/[a-zA-Z0-9]*/public_html/wp-config.php, \ - /usr/bin/chown [a-zA-Z0-9]*\:apache /home/[a-zA-Z0-9]*/public_html/wp-config.php + /usr/sbin/groupadd -g [0-9.]* [a-zA-Z0-9.]*,\ + /usr/sbin/userdel [a-zA-Z0-9.]*,\ + /usr/sbin/groupdel [a-zA-Z0-9.]*,\ + /usr/bin/chattr -i /etc/locaweb/hospedagem/[a-zA-Z0-9.]*.conf,\ + /usr/bin/chattr +i /etc/locaweb/hospedagem/[a-zA-Z0-9.]*.conf,\ + /usr/bin/chattr -i /etc/php-fpm.d/[5-7].[0-9]/[a-zA-Z0-9.]*.conf,\ + /usr/bin/chattr +i /etc/php-fpm.d/[5-7].[0-9]/[a-zA-Z0-9.]*.conf,\ + /usr/bin/passwd --stdin [a-zA-Z0-9.]* aka ALL = NOPASSWD: AKA_TOUCH_CMDS, \ - AKA_RESTART_CMDS, \ - AKA_SSS_CMDS, \ - AKA_CRON_CMDS, \ - AKA_USER_CMDS + AKA_RESTART_CMDS, \ + AKA_SSS_CMDS, \ + AKA_CRON_CMDS, \ + AKA_USER_CMDS [0m [0;32mInfo: Computing checksum on file /etc/sudoers.d/aka[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/sudoers.d/aka]: Filebucketed /etc/sudoers.d/aka to puppet with sum 8d49a997060562cd78af945898a6e561[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/sudoers.d/aka]/content: content changed '{md5}8d49a997060562cd78af945898a6e561' to '{md5}47e152f2a1d20e4b48e0f67f29961be3'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/sudoers.d/aka]/mode: mode changed '0640' to '0440'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]/content: --- /etc/locaweb/aka-log.yml 2019-07-13 13:00:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1yjfzp8 2020-08-03 12:28:33.273892081 -0300 @@ -22,4 +22,4 @@ handlers: [file_handler] aka: level: DEBUG - handlers: [file_handler] + handlers: [file_handler] \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/locaweb/aka-log.yml[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]: Filebucketed /etc/locaweb/aka-log.yml to puppet with sum a506cc91d0b9397fceedaf49d325c827[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]/content: content changed '{md5}a506cc91d0b9397fceedaf49d325c827' to '{md5}84673b40a2c8efc27789df10deb1cace'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]/group: group changed 'aka' to 'root'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]/mode: mode changed '0640' to '0644'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]: Scheduling refresh of Service[uwsgi][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]: Scheduling refresh of Service[uwsgi][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-log.yml]: Scheduling refresh of Service[uwsgi][0m [mNotice: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-ids.yml]/ensure: defined content as '{md5}46e1469293e6c758a9b8594ac736c6d9'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Api/File[/etc/locaweb/aka-ids.yml]: Scheduling refresh of Service[uwsgi][0m [mNotice: /Stage[main]/Profile::Webserver::Api/Service[uwsgi]/enable: enable changed 'false' to 'true'[0m [mNotice: /Stage[main]/Profile::Webserver::Api/Service[uwsgi]: Triggered 'refresh' from 9 events[0m [0;32mInfo: Class[Profile::Webserver::Api]: Unscheduling all events on Class[Profile::Webserver::Api][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Install/Package[mod_ssl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Install/Package[govolog]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Install/Package[mod_rpaf]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Install/Package[mod_security]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Install/Package[locaweb-modsec-rules]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com.key]/ensure: defined content as '{md5}ec85d31ff9b214aebb2493900183821c'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com.key]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com.crt]/ensure: defined content as '{md5}edfba9d7261aa901492046036f0f650b'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com.crt]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com_CA.crt]/ensure: defined content as '{md5}f45ff1d22b03c46c46fa33352dce8857'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/websiteseguro/websiteseguro_com_CA.crt]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/userdir.conf]/content: --- /etc/httpd/conf.d/userdir.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1cdftxj 2020-08-03 12:28:45.703846265 -0300 @@ -20,7 +20,7 @@ # To enable requests to /~user/ to serve the user's public_html # directory, remove the "UserDir disabled" line above, and uncomment # the following line instead: - # + # #UserDir public_html </IfModule> @@ -32,5 +32,4 @@ AllowOverride FileInfo AuthConfig Limit Indexes Options MultiViews Indexes SymLinksIfOwnerMatch IncludesNoExec Require method GET POST OPTIONS -</Directory> - +</Directory> \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.d/userdir.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/userdir.conf]: Filebucketed /etc/httpd/conf.d/userdir.conf to puppet with sum d4a2620683cc3ff2315c685f9f354265[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/userdir.conf]/content: content changed '{md5}d4a2620683cc3ff2315c685f9f354265' to '{md5}8e27d0d6ac35999790fe0693c2950d58'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/userdir.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/autoindex.conf]/content: --- /etc/httpd/conf.d/autoindex.conf 2017-10-23 15:06:51.000000000 -0200 +++ /tmp/puppet-file20200803-7604-18bg5c8 2020-08-03 12:28:45.751849950 -0300 @@ -18,13 +18,13 @@ # We include the /icons/ alias for FancyIndexed directory listings. If # you do not use FancyIndexing, you may comment this out. # -Alias /icons/ "/usr/share/httpd/icons/" +#Alias /icons/ "/usr/share/httpd/icons/" -<Directory "/usr/share/httpd/icons"> - Options Indexes MultiViews FollowSymlinks - AllowOverride None - Require all granted -</Directory> +#<Directory "/usr/share/httpd/icons"> +# Options Indexes MultiViews FollowSymlinks +# AllowOverride None +# Require all granted +#</Directory> # # AddIcon* directives tell the server which icon to show for different @@ -90,4 +90,3 @@ # and not include in the listing. Shell-style wildcarding is permitted. # IndexIgnore .??* *~ *# HEADER* README* RCS CVS *,v *,t - [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.d/autoindex.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/autoindex.conf]: Filebucketed /etc/httpd/conf.d/autoindex.conf to puppet with sum 1d7d7dd9f1b4beef5a21688ededda355[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/autoindex.conf]/content: content changed '{md5}1d7d7dd9f1b4beef5a21688ededda355' to '{md5}4f0beb4e473f99be221bf7d099856e19'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/autoindex.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/welcome.conf]/content: --- /etc/httpd/conf.d/welcome.conf 2014-06-17 15:58:27.000000000 -0300 +++ /tmp/puppet-file20200803-7604-157cjfd 2020-08-03 12:28:45.800853712 -0300 @@ -1,7 +1,7 @@ -# +# # This configuration file enables the default "Welcome" page if there # is no default index page present for the root URL. To disable the -# Welcome page, comment out all the lines below. +# Welcome page, comment out all the lines below. # # NOTE: if this file is removed, it will be restored on upgrades. # @@ -15,8 +15,8 @@ Require all granted </Directory> -Alias /.noindex.html /usr/share/httpd/noindex/index.html -Alias /css/bootstrap.min.css /usr/share/httpd/noindex/css/bootstrap.min.css -Alias /css/open-sans.css /usr/share/httpd/noindex/css/open-sans.css -Alias /images/apache_pb.gif /usr/share/httpd/noindex/images/apache_pb.gif -Alias /images/poweredby.png /usr/share/httpd/noindex/images/poweredby.png +#Alias /.noindex.html /usr/share/httpd/noindex/index.html +#Alias /css/bootstrap.min.css /usr/share/httpd/noindex/css/bootstrap.min.css +#Alias /css/open-sans.css /usr/share/httpd/noindex/css/open-sans.css +#Alias /images/apache_pb.gif /usr/share/httpd/noindex/images/apache_pb.gif +#Alias /images/poweredby.png /usr/share/httpd/noindex/images/poweredby.png \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.d/welcome.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/welcome.conf]: Filebucketed /etc/httpd/conf.d/welcome.conf to puppet with sum 2f532c7f5de4e6cc094e42a660b1f575[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/welcome.conf]/content: content changed '{md5}2f532c7f5de4e6cc094e42a660b1f575' to '{md5}cd8a627f44b07d8741e93da30150c14e'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/welcome.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/ssl.conf]/content: --- /etc/httpd/conf.d/ssl.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-mg4n7 2020-08-03 12:28:45.860858319 -0300 @@ -49,6 +49,15 @@ SSLCryptoDevice builtin #SSLCryptoDevice ubsec +SSLCertificateFile /etc/httpd/conf/websiteseguro/websiteseguro_com.crt +SSLCertificateKeyFile /etc/httpd/conf/websiteseguro/websiteseguro_com.key +SSLCACertificateFile /etc/httpd/conf/websiteseguro/websiteseguro_com_CA.crt +SSLCACertificatePath /etc/httpd/conf/websiteseguro/ + +SSLProtocol all -SSLv2 -SSLv3 +SSLHonorCipherOrder on +SSLCipherSuite "EECDH+ECDSA+AESGCM EECDH+aRSA+AESGCM EECDH+ECDSA+SHA384 EECDH+ECDSA+SHA256 EECDH+aRSA+SHA384 EECDH+aRSA+SHA256 EECDH EDH+aRSA !aNULL !eNULL !LOW !3DES !MD5 !EXP !PSK !SRP !DSS !RC4" + ## ## SSL Virtual Host Context ## @@ -72,12 +81,12 @@ # SSL Protocol support: # List the enable protocol levels with which clients will be able to # connect. Disable SSLv2 access by default: -SSLProtocol all -SSLv2 +#SSLProtocol all -SSLv2 # SSL Cipher Suite: # List the ciphers that the client is permitted to negotiate. # See the mod_ssl documentation for a complete list. -SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5 +#SSLCipherSuite HIGH:MEDIUM:!aNULL:!MD5 # Speed-optimized SSL Cipher configuration: # If speed is your main concern (on busy HTTPS servers e.g.), [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.d/ssl.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/ssl.conf]: Filebucketed /etc/httpd/conf.d/ssl.conf to puppet with sum 5afeae2bc76d09b0b5dd04ba9e2b3522[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/ssl.conf]/content: content changed '{md5}5afeae2bc76d09b0b5dd04ba9e2b3522' to '{md5}c0544e99705b2579f63a62729c2e62d7'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/ssl.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-proxy.conf]/content: --- /etc/httpd/conf.modules.d/00-proxy.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-12tmsi3 2020-08-03 12:28:45.911862234 -0300 @@ -9,7 +9,6 @@ LoadModule proxy_connect_module modules/mod_proxy_connect.so LoadModule proxy_express_module modules/mod_proxy_express.so LoadModule proxy_fcgi_module modules/mod_proxy_fcgi.so -LoadModule proxy_fdpass_module modules/mod_proxy_fdpass.so LoadModule proxy_ftp_module modules/mod_proxy_ftp.so LoadModule proxy_http_module modules/mod_proxy_http.so -LoadModule proxy_scgi_module modules/mod_proxy_scgi.so +LoadModule proxy_scgi_module modules/mod_proxy_scgi.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-proxy.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-proxy.conf]: Filebucketed /etc/httpd/conf.modules.d/00-proxy.conf to puppet with sum 96eddccfca1ec0349f844e2460cf655b[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-proxy.conf]/content: content changed '{md5}96eddccfca1ec0349f844e2460cf655b' to '{md5}7d4fa0f0f26c03913b09796d348c4dc5'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-proxy.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-ssl.conf]/content: --- /etc/httpd/conf.modules.d/00-ssl.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-5gzg0g 2020-08-03 12:28:45.962866149 -0300 @@ -1 +1 @@ -LoadModule ssl_module modules/mod_ssl.so +LoadModule ssl_module modules/mod_ssl.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-ssl.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-ssl.conf]: Filebucketed /etc/httpd/conf.modules.d/00-ssl.conf to puppet with sum e282ac9f82fe5538692a4de3616fb695[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-ssl.conf]/content: content changed '{md5}e282ac9f82fe5538692a4de3616fb695' to '{md5}eb487b2f453155a90661859d5f2d7588'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-ssl.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-lua.conf]/content: --- /etc/httpd/conf.modules.d/00-lua.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1rfbydy 2020-08-03 12:28:46.009869757 -0300 @@ -1 +1 @@ -LoadModule lua_module modules/mod_lua.so +LoadModule lua_module modules/mod_lua.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-lua.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-lua.conf]: Filebucketed /etc/httpd/conf.modules.d/00-lua.conf to puppet with sum 449a4aea60473ac4a16f025fca4463e3[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-lua.conf]/content: content changed '{md5}449a4aea60473ac4a16f025fca4463e3' to '{md5}4d99b754b92f1b9fda4df2b8e53ac57d'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-lua.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-dav.conf]/content: --- /etc/httpd/conf.modules.d/00-dav.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-rdwuc3 2020-08-03 12:28:46.059873596 -0300 @@ -1,3 +1,3 @@ LoadModule dav_module modules/mod_dav.so LoadModule dav_fs_module modules/mod_dav_fs.so -LoadModule dav_lock_module modules/mod_dav_lock.so +LoadModule dav_lock_module modules/mod_dav_lock.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-dav.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-dav.conf]: Filebucketed /etc/httpd/conf.modules.d/00-dav.conf to puppet with sum 56406b62d1fc7b7f1912e5b9e223f7a0[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-dav.conf]/content: content changed '{md5}56406b62d1fc7b7f1912e5b9e223f7a0' to '{md5}41520f6d891cfc642f4f26402492c76f'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-dav.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-mpm.conf]/content: --- /etc/httpd/conf.modules.d/00-mpm.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1s0rp27 2020-08-03 12:28:46.109877175 -0300 @@ -3,7 +3,7 @@ # prefork MPM: Implements a non-threaded, pre-forking web server # See: http://httpd.apache.org/docs/2.4/mod/prefork.html -LoadModule mpm_prefork_module modules/mod_mpm_prefork.so +#LoadModule mpm_prefork_module modules/mod_mpm_prefork.so # worker MPM: Multi-Processing Module implementing a hybrid # multi-threaded multi-process web server @@ -15,5 +15,4 @@ # threads only for connections with active processing # See: http://httpd.apache.org/docs/2.4/mod/event.html # -#LoadModule mpm_event_module modules/mod_mpm_event.so - +LoadModule mpm_event_module modules/mod_mpm_event.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-mpm.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-mpm.conf]: Filebucketed /etc/httpd/conf.modules.d/00-mpm.conf to puppet with sum 820f672ca85595fd80620db585d51970[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-mpm.conf]/content: content changed '{md5}820f672ca85595fd80620db585d51970' to '{md5}9af9518ccd4ead3c5f9b3cad5b0fa56e'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-mpm.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-systemd.conf]/content: --- /etc/httpd/conf.modules.d/00-systemd.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-dw6qpj 2020-08-03 12:28:46.178881682 -0300 @@ -1,2 +1,2 @@ # This file configures systemd module: -LoadModule systemd_module modules/mod_systemd.so +LoadModule systemd_module modules/mod_systemd.so \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.modules.d/00-systemd.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-systemd.conf]: Filebucketed /etc/httpd/conf.modules.d/00-systemd.conf to puppet with sum fd94264cd695af2ad86e7715c10e285d[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-systemd.conf]/content: content changed '{md5}fd94264cd695af2ad86e7715c10e285d' to '{md5}806c97d2a6feb1c6fddeba4865f63469'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-systemd.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-cgi.conf]/ensure: defined content as '{md5}d5db7fd733cda52ad278c41871d76dd7'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-cgi.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-uwsgi.conf]/ensure: defined content as '{md5}fbad9d9d8c23d2d387d4985375861625'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-uwsgi.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/systemd/system/httpd.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/systemd/system/httpd.service.d/network.conf]/ensure: defined content as '{md5}c659c50e3e1f11023fb6a99710c5f846'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/systemd/system/httpd.service.d/network.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/var/www/html/teste]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/var/www/html/teste/teste.html]/ensure: defined content as '{md5}f3d04453066fd406c1c18be440277ece'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/var/log/httpd]/mode: mode changed '0700' to '0701'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/httpd.conf]/content: --- /etc/httpd/conf/httpd.conf 2014-06-17 15:57:00.000000000 -0300 +++ /tmp/puppet-file20200803-7604-3svasv 2020-08-03 12:28:46.303889848 -0300 @@ -39,8 +39,13 @@ # prevent Apache from glomming onto all bound IP addresses. # #Listen 12.34.56.78:80 -Listen 80 +Listen 81 +#[%CFEngine BEGIN %] +#[%CFEngine fpmdedicated:: %] +Listen 7890 +#[%CFEngine END %] +AcceptFilter http none # # Dynamic Shared Object (DSO) Support # @@ -214,7 +219,7 @@ # If you prefer a logfile with access, agent, and referer information # (Combined Logfile Format) you can use the following directive. # - CustomLog "logs/access_log" combined + #CustomLog "logs/access_log" combined </IfModule> <IfModule alias_module> @@ -258,6 +263,7 @@ Require all granted </Directory> + <IfModule mime_module> # # TypesConfig points to the file containing the list of mappings from @@ -347,7 +353,130 @@ #EnableMMAP off EnableSendfile on +<VirtualHost _default_:81> + DirectoryIndex index.htm index.html index.shtml + DocumentRoot /var/www/html + ProxyPass /server-status ! + ProxyPass /teste ! + ProxyPass / uwsgi://127.0.0.1:6902/ + <Location /server-status> + SetHandler server-status + Order deny,allow + Deny from all + Allow from 200.234.206.0/255.255.255.0 + Allow from 200.234.208.0/255.255.255.0 + Allow from 127.0.0.1 + Allow from localhost + Allow from 187.45.252.0/22 + </Location> +</VirtualHost> + +<VirtualHost _default_:443> + SSLEngine On + DirectoryIndex index.htm index.html index.shtml + DocumentRoot /var/www/html + ProxyPass /server-status ! + ProxyPass / uwsgi://127.0.0.1:6902/ + <Location /server-status> + SetHandler server-status + Order deny,allow + Deny from all + Allow from 200.234.206.0/255.255.255.0 + Allow from 200.234.208.0/255.255.255.0 + Allow from 127.0.0.1 + Allow from localhost + Allow from 187.45.252.0/22 + </Location> +</VirtualHost> + +<VirtualHost *:81> + ServerName vpshost1491 + ServerAlias vpshost1491.locaweb.com.br + DirectoryIndex index.htm index.html index.shtml + DocumentRoot /var/www/html + ProxyPass /server-status ! + ProxyPass / uwsgi://127.0.0.1:6902/ + <Location /server-status> + SetHandler server-status + Order deny,allow + Deny from all + Allow from 200.234.206.0/255.255.255.0 + Allow from 200.234.208.0/255.255.255.0 + Allow from 127.0.0.1 + Allow from localhost + Allow from 187.45.252.0/22 + </Location> +</VirtualHost> + +#[%CFEngine BEGIN %] +#[%CFEngine fpmdedicated:: %] +<VirtualHost *:7890> + ServerName vpshost1491 + ServerAlias vpshost1491.locaweb.com.br + DirectoryIndex index.htm index.html index.shtml + DocumentRoot /var/www/html + ProxyPass /server-status ! + ProxyPass / uwsgi://127.0.0.1:6902/ +</VirtualHost> +#[%CFEngine END %] + +<VirtualHost *:443> + SSLEngine On + ServerName vpshost1491 + ServerAlias vpshost1491.locaweb.com.br + DirectoryIndex index.htm index.html index.shtml + DocumentRoot /var/www/html + ProxyPass /server-status ! + ProxyPass / uwsgi://127.0.0.1:6902/ + <Location /server-status> + SetHandler server-status + Order deny,allow + Deny from all + Allow from 200.234.206.0/255.255.255.0 + Allow from 200.234.208.0/255.255.255.0 + Allow from 127.0.0.1 + Allow from localhost + Allow from 187.45.252.0/22 + </Location> +</VirtualHost> + +HostnameLookups Off +ServerSignature Off +ServerTokens ProductOnly + +<Directory /home> + Options FollowSymLinks +</Directory> + +<Directory /home/*/public_html> + Options -Indexes -ExecCGI -FollowSymLinks +Includes +SymLinksIfOwnerMatch + AllowOverride All + Require all granted + IndexIgnore * +</Directory> + +<Directory /home/*/*/*/*/*/public_html> + Options -Indexes -ExecCGI -FollowSymLinks +Includes +SymLinksIfOwnerMatch + AllowOverride All + Require all granted + IndexIgnore * +</Directory> + + +#[%CFEngine BEGIN %] +#[%CFEngine fpmdedicated.varnish:: %] +#CustomLog |/etc/httpd/logger "%{LOG_SUBDIR}e!%{X-Forwarded-For}i %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\"" +#[%CFEngine END %] +#[%CFEngine BEGIN %] +#[%CFEngine fpmdedicated.!varnish:: %] +#CustomLog |/etc/httpd/logger "%{LOG_SUBDIR}e!%h %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\"" +#[%CFEngine END %] +CustomLog |/etc/httpd/logger "%{LOG_SUBDIR}e!%{X-Forwarded-For}i %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\"" + # Supplemental configuration # # Load config files in the "/etc/httpd/conf.d" directory, if any. IncludeOptional conf.d/*.conf +# +# Load Locaweb virtual hosts from "/etc/locaweb/hospedagem" directory. +IncludeOptional /etc/locaweb/hospedagem/*.conf [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf/httpd.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/httpd.conf]: Filebucketed /etc/httpd/conf/httpd.conf to puppet with sum f5e7449c0f17bc856e86011cb5d152ba[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/httpd.conf]/content: content changed '{md5}f5e7449c0f17bc856e86011cb5d152ba' to '{md5}06a7e524bab85d365dd40a6bd500775f'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf/httpd.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-rpaf.conf]/ensure: defined content as '{md5}caca33f4a72778f3d194230ad8e03789'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.modules.d/00-rpaf.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/modsecurity/tmp]/group: group changed 'root' to 'apache'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/modsecurity/modsecurity.conf]/content: --- /etc/modsecurity/modsecurity.conf 2020-02-19 18:05:29.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1ddyb2f 2020-08-03 12:28:46.363893768 -0300 @@ -19,8 +19,8 @@ # Enable XML request body parser. # Initiate XML Processor in case of xml content-type # -#SecRule REQUEST_HEADERS:Content-Type "text/xml" \ -# "id:'200000',phase:1,t:none,t:lowercase,pass,nolog,ctl:requestBodyProcessor=XML" +SecRule REQUEST_HEADERS:Content-Type "text/xml" \ + "id:'200000',phase:1,t:none,t:lowercase,pass,nolog,ctl:requestBodyProcessor=XML" # Maximum request body size we will accept for buffering. If you support [0m [0;32mInfo: Computing checksum on file /etc/modsecurity/modsecurity.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/modsecurity/modsecurity.conf]: Filebucketed /etc/modsecurity/modsecurity.conf to puppet with sum 55de15b26b96a386216d688c0469c29d[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/modsecurity/modsecurity.conf]/content: content changed '{md5}55de15b26b96a386216d688c0469c29d' to '{md5}4f274253ee21b3ec1c9f03d3cca8bd1d'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/modsecurity/modsecurity.conf]/group: group changed 'root' to 'apache'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]/content: --- /etc/httpd/conf.d/mod_security.conf 2018-04-10 23:09:25.000000000 -0300 +++ /tmp/puppet-file20200803-7604-13juvs0 2020-08-03 12:28:46.420897491 -0300 @@ -1,54 +1,4 @@ <IfModule mod_security2.c> - # ModSecurity Core Rules Set configuration - IncludeOptional modsecurity.d/*.conf - IncludeOptional modsecurity.d/activated_rules/*.conf - - # Default recommended configuration - SecRuleEngine On - SecRequestBodyAccess On - SecRule REQUEST_HEADERS:Content-Type "text/xml" \ - "id:'200000',phase:1,t:none,t:lowercase,pass,nolog,ctl:requestBodyProcessor=XML" - SecRequestBodyLimit 13107200 - SecRequestBodyNoFilesLimit 131072 - SecRequestBodyInMemoryLimit 131072 - SecRequestBodyLimitAction Reject - SecRule REQBODY_ERROR "!@eq 0" \ - "id:'200001', phase:2,t:none,log,deny,status:400,msg:'Failed to parse request body.',logdata:'%{reqbody_error_msg}',severity:2" - SecRule MULTIPART_STRICT_ERROR "!@eq 0" \ - "id:'200002',phase:2,t:none,log,deny,status:44,msg:'Multipart request body \ - failed strict validation: \ - PE %{REQBODY_PROCESSOR_ERROR}, \ - BQ %{MULTIPART_BOUNDARY_QUOTED}, \ - BW %{MULTIPART_BOUNDARY_WHITESPACE}, \ - DB %{MULTIPART_DATA_BEFORE}, \ - DA %{MULTIPART_DATA_AFTER}, \ - HF %{MULTIPART_HEADER_FOLDING}, \ - LF %{MULTIPART_LF_LINE}, \ - SM %{MULTIPART_MISSING_SEMICOLON}, \ - IQ %{MULTIPART_INVALID_QUOTING}, \ - IP %{MULTIPART_INVALID_PART}, \ - IH %{MULTIPART_INVALID_HEADER_FOLDING}, \ - FL %{MULTIPART_FILE_LIMIT_EXCEEDED}'" - - SecRule MULTIPART_UNMATCHED_BOUNDARY "!@eq 0" \ - "id:'200003',phase:2,t:none,log,deny,status:44,msg:'Multipart parser detected a possible unmatched boundary.'" - - SecPcreMatchLimit 1000 - SecPcreMatchLimitRecursion 1000 - - SecRule TX:/^MSC_/ "!@streq 0" \ - "id:'200004',phase:2,t:none,deny,msg:'ModSecurity internal error flagged: %{MATCHED_VAR_NAME}'" - - SecResponseBodyAccess Off - SecDebugLog /var/log/httpd/modsec_debug.log - SecDebugLogLevel 0 - SecAuditEngine RelevantOnly - SecAuditLogRelevantStatus "^(?:5|4(?!04))" - SecAuditLogParts ABIJDEFHZ - SecAuditLogType Serial - SecAuditLog /var/log/httpd/modsec_audit.log - SecArgumentSeparator & - SecCookieFormat 0 - SecTmpDir /var/lib/mod_security - SecDataDir /var/lib/mod_security -</IfModule> + # Locaweb Rules + Include /etc/modsecurity/modsecurity.conf +</IfModule> \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/httpd/conf.d/mod_security.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]: Filebucketed /etc/httpd/conf.d/mod_security.conf to puppet with sum 944ec8416493b5ac270249a71fad3b02[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]/content: content changed '{md5}944ec8416493b5ac270249a71fad3b02' to '{md5}7d51a2991dfe6e9a099ab30463edaff4'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]/group: group changed 'root' to 'apache'[0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]/mode: mode changed '0644' to '0640'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Config/File[/etc/httpd/conf.d/mod_security.conf]: Scheduling refresh of Class[Profile::Webserver::Apache::Service][0m [0;32mInfo: Class[Profile::Webserver::Apache::Service]: Scheduling refresh of Service[httpd][0m [mNotice: /Stage[main]/Profile::Webserver::Apache::Service/Service[httpd]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Apache::Service/Service[httpd]: Unscheduling refresh on Service[httpd][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.3-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.4-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.5-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-5.6-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.0-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.1-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.2-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-bcmath]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-cli]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-gd]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-intl]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-mbstring]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-pgsql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-odbc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-dba]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-devel]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-pspell]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-soap]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-xml]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Install/Package[php-7.3-lc-xmlrpc]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.3]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.3]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php5.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze5.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config5.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar5.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.3-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.3-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.3-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.4]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.4]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php5.4]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze5.4]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config5.4]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar5.4]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.4-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.4-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.4-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.5]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.5]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php5.5]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze5.5]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config5.5]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar5.5]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.5-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.5-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.5-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.6]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/5.6]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php5.6]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze5.6]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config5.6]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar5.6]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.6-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.6-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-5.6-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.0]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.0]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php7.0]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze7.0]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config7.0]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar7.0]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.0-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.0-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.0-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.1]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.1]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php7.1]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze7.1]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config7.1]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar7.1]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.1-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.1-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.1-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.2]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.2]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php7.2]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze7.2]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config7.2]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar7.2]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.2-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.2-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.2-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.3]/group: group changed 'root' to 'aka'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/php-fpm.d/7.3]/mode: mode changed '0755' to '0775'[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php7.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phpisze7.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/php-config7.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/usr/bin/phar7.3]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.3-fpm.service.d]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.3-fpm.service.d/precommands.conf]/ensure: defined content as '{md5}fe67b8b422b6608875284ba1e0644f79'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/File[/etc/systemd/system/php-7.3-fpm.service.d/precommands.conf]: Scheduling refresh of Class[Systemd::Systemctl::Daemon_reload][0m [0;32mInfo: Class[Systemd::Systemctl::Daemon_reload]: Scheduling refresh of Exec[systemctl-daemon-reload][0m [mNotice: /Stage[main]/Systemd::Systemctl::Daemon_reload/Exec[systemctl-daemon-reload]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/5.3-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/5.4-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/5.5-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/5.6-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/7.0-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/7.1-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/7.2-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/log/php-fpm/7.3-error.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/File[/var/lib/php-fpm]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.3-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.3-fpm]: Unscheduling refresh on Service[php-5.3-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.4-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.4-fpm]: Unscheduling refresh on Service[php-5.4-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.5-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.5-fpm]: Unscheduling refresh on Service[php-5.5-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.6-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-5.6-fpm]: Unscheduling refresh on Service[php-5.6-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.0-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.0-fpm]: Unscheduling refresh on Service[php-7.0-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.1-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.1-fpm]: Unscheduling refresh on Service[php-7.1-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.2-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.2-fpm]: Unscheduling refresh on Service[php-7.2-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.3-fpm]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Php::Config/Service[php-7.3-fpm]: Unscheduling refresh on Service[php-7.3-fpm][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/Package[fail2ban]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]/content: --- /etc/fail2ban/jail.conf 2015-04-07 16:04:42.000000000 -0300 +++ /tmp/puppet-file20200803-7604-13k6qni 2020-08-03 12:32:24.730984795 -0300 @@ -1,34 +1,9 @@ +# Fail2Ban configuration file # -# WARNING: heavily refactored in 0.9.0 release. Please review and -# customize settings for your setup. +# Author: Cyril Jaquier # -# Changes: in most of the cases you should not modify this -# file, but provide customizations in jail.local file, -# or separate .conf files under jail.d/ directory, e.g.: +# $Revision: 747 $ # -# HOW TO ACTIVATE JAILS: -# -# YOU SHOULD NOT MODIFY THIS FILE. -# -# It will probably be overwritten or improved in a distribution update. -# -# Provide customizations in a jail.local file or a jail.d/customisation.local. -# For example to change the default bantime for all jails and to enable the -# ssh-iptables jail the following (uncommented) would appear in the .local file. -# See man 5 jail.conf for details. -# -# [DEFAULT] -# bantime = 3600 -# -# [sshd] -# enabled = true -# -# See jail.conf(5) man page for more information - - - -# Comments: use '#' for comment lines and ';' (following a space) for inline comments - [INCLUDES] @@ -37,33 +12,34 @@ # The DEFAULT allows a global definition of the options. They can be overridden # in each jail afterwards. + in each jail afterwards. [DEFAULT] -# -# MISCELLANEOUS OPTIONS -# - # "ignoreip" can be an IP address, a CIDR mask or a DNS host. Fail2ban will not # ban a host which matches an address in this list. Several addresses can be # defined using space separator. -ignoreip = 127.0.0.1/8 +ignoreip = 127.0.0.1 187.45.236.2 187.45.236.3 186.202.9.198 10.30.110.0/26 -# External command that will take an tagged arguments to ignore, e.g. <ip>, -# and return true if the IP is to be ignored. False otherwise. +# "usedns" specifies if jails should trust hostnames in logs, +# warn when DNS lookups are performed, or ignore all hostnames in logs # -# ignorecommand = /path/to/command <ip> -ignorecommand = +# yes: if a hostname is encountered, a DNS lookup will be performed. +# warn: if a hostname is encountered, a DNS lookup will be performed, +# but it will be logged as a warning. +# no: if a hostname is encountered, will not be used for banning, +# but it will be logged as info. +usedns = no # "bantime" is the number of seconds that a host is banned. -bantime = 600 +bantime = 1800 # A host is banned if it has generated "maxretry" during the last "findtime" # seconds. findtime = 600 # "maxretry" is the number of failures before a host get banned. -maxretry = 5 +maxretry = 7 # "backend" specifies the backend used to get files modification. # Available options are "pyinotify", "gamin", "polling", "systemd" and "auto". @@ -79,17 +55,42 @@ # See "journalmatch" in the jails associated filter config # auto: will try to use the following backends, in order: # pyinotify, gamin, polling. -backend = auto +backend = systemd +banaction = firewallcmd-ipset -# "usedns" specifies if jails should trust hostnames in logs, -# warn when DNS lookups are performed, or ignore all hostnames in logs +# The simplest action to take: ban only +action_ = %(banaction)s[name=%(__name__)s, bantime="%(bantime)s", port="%(port)s", protocol="%(protocol)s", chain="%(chain)s"] + +# ban & send an e-mail with whois report to the destemail. +action_mw = %(banaction)s[name=%(__name__)s, bantime="%(bantime)s", port="%(port)s", protocol="%(protocol)s", chain="%(chain)s"] + %(mta)s-whois[name=%(__name__)s, dest="%(destemail)s", protocol="%(protocol)s", chain="%(chain)s"] + +# ban & send an e-mail with whois report and relevant log lines +# to the destemail. +action_mwl = %(banaction)s[name=%(__name__)s, bantime="%(bantime)s", port="%(port)s", protocol="%(protocol)s", chain="%(chain)s"] + %(mta)s-whois-lines[name=%(__name__)s, dest="%(destemail)s", logpath=%(logpath)s, chain="%(chain)s"] + +# See the IMPORTANT note in action.d/xarf-login-attack for when to use this action # -# yes: if a hostname is encountered, a DNS lookup will be performed. -# warn: if a hostname is encountered, a DNS lookup will be performed, -# but it will be logged as a warning. -# no: if a hostname is encountered, will not be used for banning, -# but it will be logged as info. -usedns = warn +# ban & send a xarf e-mail to abuse contact of IP address and include relevant log lines +# to the destemail. +action_xarf = %(banaction)s[name=%(__name__)s, bantime="%(bantime)s", port="%(port)s", protocol="%(protocol)s", chain="%(chain)s"] + xarf-login-attack[service=%(__name__)s, sender="%(sender)s", logpath=%(logpath)s, port="%(port)s"] + + +# Report block via blocklist.de fail2ban reporting service API +# +# See the IMPORTANT note in action.d/blocklist_de.conf for when to +# use this action. Create a file jail.d/blocklist_de.local containing +# [Init] +# blocklist_de_apikey = {api key from registration] +# +action_blocklist_de = blocklist_de[email="%(sender)s", service=%(filter)s, apikey="%(blocklist_de_apikey)s"] + +# Choose default action. To change, just override value of 'action' with the +# interpolation to the chosen action shortcut (e.g. action_mw, action_mwl, etc) in jail.local +# globally (section [DEFAULT]) or per specific section +action = %(action_)s # "logencoding" specifies the encoding of the log files handled by the jail # This is used to decode the lines from the log file. @@ -171,7 +172,7 @@ # Report block via blocklist.de fail2ban reporting service API -# +# # See the IMPORTANT note in action.d/blocklist_de.conf for when to # use this action. Create a file jail.d/blocklist_de.local containing # [Init] @@ -194,7 +195,6 @@ # globally (section [DEFAULT]) or per specific section action = %(action_)s - # # JAILS # @@ -204,7 +204,7 @@ # [sshd] - +enabled = true port = ssh logpath = %(sshd_log)s @@ -305,7 +305,6 @@ logpath = %(nginx_access_log)s %(apache_access_log)s - [suhosin] port = http,https @@ -411,12 +410,10 @@ port = ftp,ftp-data,ftps,ftps-data logpath = %(proftpd_log)s - [pure-ftpd] - +enabled = true port = ftp,ftp-data,ftps,ftps-data logpath = %(pureftpd_log)s -maxretry = 6 [gssftpd] @@ -521,7 +518,6 @@ port = imap,smtp,imaps,465 logpath = /opt/kerio/mailserver/store/logs/security.log - # # Mail servers authenticators: might be used for smtp,ftp,imap servers, so # all relevant ports get banned @@ -629,7 +625,6 @@ logpath = /var/log/freeswitch.log maxretry = 10 - # To log wrong MySQL access attempts add to /etc/my.cnf in [mysqld] or # equivalent section: # log-warning = 2 [0m [0;32mInfo: Computing checksum on file /etc/fail2ban/jail.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]: Filebucketed /etc/fail2ban/jail.conf to puppet with sum 8ab1dfc46f3a26d208d0dc02b773f68b[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]/content: content changed '{md5}8ab1dfc46f3a26d208d0dc02b773f68b' to '{md5}19bd31209ba044460b08c2c337083abb'[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]/mode: mode changed '0644' to '0640'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]: Scheduling refresh of Service[fail2ban][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/jail.conf]: Scheduling refresh of Service[fail2ban][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]/content: --- /etc/fail2ban/filter.d/pure-ftpd.conf 2014-10-27 23:49:40.000000000 -0200 +++ /tmp/puppet-file20200803-7604-o8vuig 2020-08-03 12:32:24.782988279 -0300 @@ -1,36 +1,31 @@ -# Fail2Ban filter for pureftp +# Fail2Ban configuration file # -# Disable hostname based logging by: -# -# Start pure-ftpd with the -H switch or on Ubuntu 'echo yes > /etc/pure-ftpd/conf/DontResolve' +# Author: Cyril Jaquier +# Modified: Yaroslav Halchenko for pure-ftpd # +# $Revision: 3$ # -[INCLUDES] - -before = common.conf - [Definition] -_daemon = pure-ftpd - # Error message specified in multiple languages -__errmsg = (?:Godkendelse mislykkedes for \[.*\]|Authentifizierung fehlgeschlagen für Benutzer \[.*\].|Authentication failed for user \[.*\]|Autentificación fallida para el usuario \[.*\]|\[.*\] c'est un batard, il connait pas son code|Erreur d'authentification pour l'utilisateur \[.*\]|Azonosítás sikertelen \[.*\] felhasználónak|Autenticazione falita per l'utente \[.*\]|Autorisatie faalde voor gebruiker \[.*\]|Godkjennelse mislyktes for \[.*\]|\[.*\] kullanýcýsý için giriþ hatalý|Autenticação falhou para usuário \[.*\]|Autentificare esuata pentru utilizatorul \[.*\]|Autentifikace uživatele selhala \[.*\]|Autentyfikacja nie powiodła się dla użytkownika \[.*\]|Autentifikacia uzivatela zlyhala \[.*\]|Behörighetskontroll misslyckas för användare \[.*\]|Авторизация не удалась пользователю \[.*\]|\[.*\] 嶸盪 檣隸 褒ぬ|妏蚚氪\[.*\]桄痐囮啖|使用者\[.*\]驗證失敗) - -failregex = ^%(__prefix_line)s\(.+?@<HOST>\) \[WARNING\] %(__errmsg)s\s*$ - -ignoreregex = +#__errmsg = (?:Authentication failed for user|Erreur d'authentification pour l'utilisateur) +__errmsg = (?:Authentication failed for user) -# Author: Cyril Jaquier -# Modified: Yaroslav Halchenko for pure-ftpd -# Documentation thanks to Blake on http://www.fail2ban.org/wiki/index.php?title=Fail2ban:Community_Portal -# UTF-8 editing and mechanism thanks to Johannes Weberhofer # -# Only logs to syslog though facility can be changed configuration file/command line +# Option: failregex +# Notes.: regex to match the password failures messages in the logfile. The +# host must be matched by a group named "host". The tag "<HOST>" can +# be used for standard IP/hostname matching and is only an alias for +# (?:::f{4,6}:)?(?P<host>[\w\-.^_]+) +# Values: TEXT +# +#failregex = pure-ftpd(?:\[\d+\])?: (.+?@<HOST>) \[WARNING\] %(__errmsg)s \[.+\]$ +#failregex = pure-ftpd(?:\[\d+\])?: (.+?@<HOST>) \[WARNING\] Authentication failed for user \[.+\]$ +failregex = pure-ftpd\[.*(.+?@<HOST>).* Authentication failed for user \[.+\]$ + +# Option: ignoreregex +# Notes.: regex to ignore. If this regex matches, the line is ignored. +# Values: TEXT # -# To get messages in the right encoding: -# grep MSG_AUTH_FAILED_LOG pure-ftpd-1.0.36/src/messages_[defhint]* | grep -Po '".?"' | recode latin1..utf-8 | tr -d '"' > messages -# grep MSG_AUTH_FAILED_LOG pure-ftpd-1.0.36/src/messages_[pr][to] | grep -Po '".?"' | recode latin1..utf-8 | tr -d '"' >> messages -# grep MSG_AUTH_FAILED_LOG pure-ftpd-1.0.36/src/messages_[cps][slkv] | grep -Po '".?"' | recode latin2..utf-8 | tr -d '"' >> messages -# grep MSG_AUTH_FAILED_LOG pure-ftpd-1.0.36/src/messages_ru | grep -Po '".?"' | recode KOI8-R..utf-8 | tr -d '"' >> messages -# grep MSG_AUTH_FAILED_LOG pure-ftpd-1.0.36/src/messages_[kz] | grep -Po '".*?"' | tr -d '"' | recode big5..utf-8 >> messages +ignoreregex = \ No newline at end of file [0m [0;32mInfo: Computing checksum on file /etc/fail2ban/filter.d/pure-ftpd.conf[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]: Filebucketed /etc/fail2ban/filter.d/pure-ftpd.conf to puppet with sum 1b148262bd1a591c8178ef29ed0eecf5[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]/content: content changed '{md5}1b148262bd1a591c8178ef29ed0eecf5' to '{md5}e33825edfce875c066aedbebfe9401ac'[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]/mode: mode changed '0644' to '0640'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]: Scheduling refresh of Service[fail2ban][0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/File[/etc/fail2ban/filter.d/pure-ftpd.conf]: Scheduling refresh of Service[fail2ban][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Fail2ban/Service[fail2ban]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Fail2ban/Service[fail2ban]: Unscheduling refresh on Service[fail2ban][0m [mNotice: /Stage[main]/Profile::Webserver::Security::Falcon/Package[falcon-sensor]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Falcon/Exec[Licenca falcon]/returns: executed successfully[0m [mNotice: /Stage[main]/Profile::Webserver::Security::Falcon/Service[falcon-sensor]/ensure: ensure changed 'stopped' to 'running'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Security::Falcon/Service[falcon-sensor]: Unscheduling refresh on Service[falcon-sensor][0m [mNotice: /Stage[main]/Profile::Webserver::Tools/Package[git]/ensure: created[0m [mNotice: /Stage[main]/Profile::Webserver::Tools/Package[lsof]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/Group[mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/User[mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/my.cnf]/content: --- /etc/my.cnf 2019-11-27 13:24:56.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1yzk7r 2020-08-03 12:32:33.435567925 -0300 @@ -1,19 +1,4 @@ [mysqld] -datadir=/var/lib/mysql -socket=/var/lib/mysql/mysql.sock -# Disabling symbolic-links is recommended to prevent assorted security risks -symbolic-links=0 -# Settings user and group are ignored when systemd is used. -# If you need to run mysqld under a different user or group, -# customize your systemd unit file for mariadb according to the -# instructions in http://fedoraproject.org/wiki/Systemd - -[mysqld_safe] -log-error=/var/log/mariadb/mariadb.log -pid-file=/var/run/mariadb/mariadb.pid - -# -# include all files from the config directory -# -!includedir /etc/my.cnf.d - +!include /etc/mysql/my_lw_standards.cnf +!include /etc/mysql/my_customer_requests.cnf +!include /etc/mysql/my_lw_forced.cnf [0m [0;32mInfo: Computing checksum on file /etc/my.cnf[0m [0;32mInfo: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/my.cnf]: Filebucketed /etc/my.cnf to puppet with sum 723727cb0572654bc5143e28115e3ed3[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/my.cnf]/content: content changed '{md5}723727cb0572654bc5143e28115e3ed3' to '{md5}1ba3942877cb4c0a4bc64373af1df7a3'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/mysql/my_lw_standards.cnf]/ensure: defined content as '{md5}16aabaa6a968f69378a2f6feef15b1e4'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/mysql/my_lw_forced.cnf]/ensure: defined content as '{md5}6e70be58b2ff95b318ba27bd4c45fc6f'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/var/lib/mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/var/lib/mysql/tmpdir]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/Package[lwdbadmin-mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/Package[Percona-Server-server-57]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/var/log/mysqld.log]/mode: mode changed '0755' to '0640'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/var/log/mysql]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/var/log/mysql/perf_mysql.log]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/Exec[Boostrap MySQL]/returns: executed successfully[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/etc/cron.d/oom-set-mysql]/ensure: defined content as '{md5}f5757229020a81de83c07dd14f61c171'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Mysqlserver/File[/usr/local/sbin/oom-set-mysql]/ensure: defined content as '{md5}439abe115bbff905a700e17138064880'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/Package[mybackup]/ensure: created[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/locaweb/mybackup/databases.ignore]/content: --- /etc/locaweb/mybackup/databases.ignore 2017-03-07 16:57:06.000000000 -0300 +++ /tmp/puppet-file20200803-7604-1dj2yna 2020-08-03 12:33:54.272971446 -0300 @@ -1,2 +1,3 @@ information_schema performance_schema +mysql_backup [0m [0;32mInfo: Computing checksum on file /etc/locaweb/mybackup/databases.ignore[0m [0;32mInfo: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/locaweb/mybackup/databases.ignore]: Filebucketed /etc/locaweb/mybackup/databases.ignore to puppet with sum e99920a4da9e2791cccf7e506125c501[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/locaweb/mybackup/databases.ignore]/content: content changed '{md5}e99920a4da9e2791cccf7e506125c501' to '{md5}968fdaadee9714c2db64d6a3f28cdd7c'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/locaweb/mybackup/databases.ignore]/mode: mode changed '0600' to '0640'[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/cron.d/mybackup]/content: --- /etc/cron.d/mybackup 2017-03-07 16:57:06.000000000 -0300 +++ /tmp/puppet-file20200803-7604-qqjop4 2020-08-03 12:33:54.319974584 -0300 @@ -1,11 +1,2 @@ -# create catalog and 1st try -30 0 * * * root mycatalog.py ; mybackup.py & myinnodb.py - -# 2nd try -30 2 * * * root mybackup.py & myinnodb.py - -# 3rd try -30 3 * * * root mybackup.py & myinnodb.py - -# last try and clean old backups -30 5 * * * root mybackup.py & myinnodb.py; clean_backup.sh -A +00 0-10 * * * root mycatalog.py; mybackup.py & myinnodb.py +30 7 * * * root clean_backup.sh -A [0m [0;32mInfo: Computing checksum on file /etc/cron.d/mybackup[0m [0;32mInfo: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/cron.d/mybackup]: Filebucketed /etc/cron.d/mybackup to puppet with sum cd374c4d0584b08f2e2dd4f04af892f9[0m [mNotice: /Stage[main]/Profile::Mysqlserver::Backup/File[/etc/cron.d/mybackup]/content: content changed '{md5}cd374c4d0584b08f2e2dd4f04af892f9' to '{md5}35fc83e84020ae5e63a07eadc9585468'[0m [mNotice: /Stage[main]/Lwmonitoring/Cron::Job[run-cmk]/File[job_run-cmk]/ensure: defined content as '{md5}a3a41c9f42561be0df93becb5a5e891e'[0m [mNotice: /Stage[main]/Ssh::Server::Config/Concat[/etc/ssh/sshd_config]/File[/etc/ssh/sshd_config]/content: --- /etc/ssh/sshd_config 2020-08-03 12:20:53.322000000 -0300 +++ /tmp/puppet-file20200803-7604-1obbw0r 2020-08-03 12:33:54.350976653 -0300 @@ -1,139 +1,32 @@ -# $OpenBSD: sshd_config,v 1.100 2016/08/15 12:32:04 naddy Exp $ +# File is managed by Puppet +Port 22 -# This is the sshd server system-wide configuration file. See -# sshd_config(5) for more information. - -# This sshd was compiled with PATH=/usr/local/bin:/usr/bin - -# The strategy used for options in the default sshd_config shipped with -# OpenSSH is to specify options with their default value where -# possible, but leave them commented. Uncommented options override the -# default value. - -# If you want to change the port on a SELinux system, you have to tell -# SELinux about this change. -# semanage port -a -t ssh_port_t -p tcp #PORTNUMBER -# -#Port 22 -#AddressFamily any -#ListenAddress 0.0.0.0 -#ListenAddress :: - -HostKey /etc/ssh/ssh_host_rsa_key -#HostKey /etc/ssh/ssh_host_dsa_key -HostKey /etc/ssh/ssh_host_ecdsa_key -HostKey /etc/ssh/ssh_host_ed25519_key - -# Ciphers and keying -#RekeyLimit default none - -# Logging -#SyslogFacility AUTH -SyslogFacility AUTHPRIV -#LogLevel INFO - -# Authentication: - -#LoginGraceTime 2m -#PermitRootLogin yes -#StrictModes yes -#MaxAuthTries 6 -#MaxSessions 10 - -#PubkeyAuthentication yes - -# The default is to check both .ssh/authorized_keys and .ssh/authorized_keys2 -# but this is overridden so installations will only check .ssh/authorized_keys -AuthorizedKeysFile .ssh/authorized_keys - -#AuthorizedPrincipalsFile none - -#AuthorizedKeysCommand none -#AuthorizedKeysCommandUser nobody - -# For this to work you will also need host keys in /etc/ssh/ssh_known_hosts -#HostbasedAuthentication no -# Change to yes if you don't trust ~/.ssh/known_hosts for -# HostbasedAuthentication -#IgnoreUserKnownHosts no -# Don't read the user's ~/.rhosts and ~/.shosts files -#IgnoreRhosts yes - -# To disable tunneled clear text passwords, change to no here! -#PasswordAuthentication yes -#PermitEmptyPasswords no -PasswordAuthentication yes - -# Change to no to disable s/key passwords -#ChallengeResponseAuthentication yes +AcceptEnv USERLW +AllowTcpForwarding no ChallengeResponseAuthentication no - -# Kerberos options -#KerberosAuthentication no -#KerberosOrLocalPasswd yes -#KerberosTicketCleanup yes -#KerberosGetAFSToken no -#KerberosUseKuserok yes - -# GSSAPI options -GSSAPIAuthentication yes -GSSAPICleanupCredentials no -#GSSAPIStrictAcceptorCheck yes -#GSSAPIKeyExchange no -#GSSAPIEnablek5users no - -# Set this to 'yes' to enable PAM authentication, account processing, -# and session processing. If this is enabled, PAM authentication will -# be allowed through the ChallengeResponseAuthentication and -# PasswordAuthentication. Depending on your PAM configuration, -# PAM authentication via ChallengeResponseAuthentication may bypass -# the setting of "PermitRootLogin without-password". -# If you just want the PAM account and session checks to run without -# PAM authentication, then enable this but set PasswordAuthentication -# and ChallengeResponseAuthentication to 'no'. -# WARNING: 'UsePAM no' is not supported in Red Hat Enterprise Linux and may cause several -# problems. +DSAAuthentication yes +IgnoreRhosts yes +LoginGraceTime 45 +MaxStartups 10 +PermitRootLogin without-password +PrintMotd no +Protocol 2 +RSAAuthentication yes +RhostsRSAAuthentication no +StrictModes yes +Subsystem sftp /usr/libexec/openssh/sftp-server -f AUTH -l INFO +SyslogFacility AUTHPRIV +TcpKeepAlive yes +UseDNS no UsePAM yes - -#AllowAgentForwarding yes -#AllowTcpForwarding yes -#GatewayPorts no -X11Forwarding yes -#X11DisplayOffset 10 -#X11UseLocalhost yes -#PermitTTY yes -#PrintMotd yes -#PrintLastLog yes -#TCPKeepAlive yes -#UseLogin no -#UsePrivilegeSeparation sandbox -#PermitUserEnvironment no -#Compression delayed -#ClientAliveInterval 0 -#ClientAliveCountMax 3 -#ShowPatchLevel no -#UseDNS yes -#PidFile /var/run/sshd.pid -#MaxStartups 10:30:100 -#PermitTunnel no -#ChrootDirectory none -#VersionAddendum none - -# no default banner path -#Banner none - -# Accept locale-related environment variables -AcceptEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES -AcceptEnv LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT -AcceptEnv LC_IDENTIFICATION LC_ALL LANGUAGE -AcceptEnv XMODIFIERS - -# override default of no subsystems -Subsystem sftp /usr/libexec/openssh/sftp-server - -# Example of overriding settings on a per-user basis -#Match User anoncvs -# X11Forwarding no -# AllowTcpForwarding no -# PermitTTY no -# ForceCommand cvs server \ No newline at end of file +X11Forwarding no +Match Group _sysadms + AuthorizedKeysFile /dev/null + KbdInteractiveAuthentication no + PasswordAuthentication no + TrustedUserCAKeys /etc/ssh/trusted-user-ca-keys.pem +Match User root + AuthorizedKeysFile /dev/null + KbdInteractiveAuthentication no + PasswordAuthentication no + TrustedUserCAKeys /etc/ssh/trusted-user-ca-keys.pem [0m [0;32mInfo: Computing checksum on file /etc/ssh/sshd_config[0m [0;32mInfo: /Stage[main]/Ssh::Server::Config/Concat[/etc/ssh/sshd_config]/File[/etc/ssh/sshd_config]: Filebucketed /etc/ssh/sshd_config to puppet with sum 68314a1bdb903c20cc300777242ac175[0m [mNotice: /Stage[main]/Ssh::Server::Config/Concat[/etc/ssh/sshd_config]/File[/etc/ssh/sshd_config]/content: content changed '{md5}68314a1bdb903c20cc300777242ac175' to '{md5}6cfba7962516c26b83e93f6cd46a8739'[0m [mNotice: /Stage[main]/Ssh::Server::Config/Concat[/etc/ssh/sshd_config]/File[/etc/ssh/sshd_config]/mode: mode changed '0644' to '0600'[0m [0;32mInfo: Concat[/etc/ssh/sshd_config]: Scheduling refresh of Service[sshd][0m [0;32mInfo: Class[Ssh::Server::Config]: Scheduling refresh of Class[Ssh::Server::Service][0m [0;32mInfo: Class[Ssh::Server::Service]: Scheduling refresh of Service[sshd][0m [mNotice: /Stage[main]/Ssh::Server::Service/Service[sshd]: Triggered 'refresh' from 2 events[0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte]/File[03_suporte]/ensure: defined content as '{md5}590cd8ea1f73b09bb28d62b369c9fe1e'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte]/File[03_suporte]: Scheduling refresh of Exec[sudo-syntax-check for file /etc/sudoers.d/03_suporte][0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte]/Exec[sudo-syntax-check for file /etc/sudoers.d/03_suporte]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte_cmds]/File[04_suporte_cmds]/ensure: defined content as '{md5}e265b0fd47ed08204d03cfcd5ef70dcc'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte_cmds]/File[04_suporte_cmds]: Scheduling refresh of Exec[sudo-syntax-check for file /etc/sudoers.d/04_suporte_cmds][0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[suporte_cmds]/Exec[sudo-syntax-check for file /etc/sudoers.d/04_suporte_cmds]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse]/File[05_abuse]/ensure: defined content as '{md5}3a3f7108a80ffc3fb33c4fe29c5fcd63'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse]/File[05_abuse]: Scheduling refresh of Exec[sudo-syntax-check for file /etc/sudoers.d/05_abuse][0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse]/Exec[sudo-syntax-check for file /etc/sudoers.d/05_abuse]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse_cmds]/File[06_abuse_cmds]/ensure: defined content as '{md5}5c448a754698ad0c3cbba435693a3fee'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse_cmds]/File[06_abuse_cmds]: Scheduling refresh of Exec[sudo-syntax-check for file /etc/sudoers.d/06_abuse_cmds][0m [mNotice: /Stage[main]/Profile::Webserver::Sudo/Sudo::Conf[abuse_cmds]/Exec[sudo-syntax-check for file /etc/sudoers.d/06_abuse_cmds]: Triggered 'refresh' from 1 event[0m [mNotice: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[shared-users]/File[/etc/telegraf/telegraf.d/shared-users.conf]/ensure: defined content as '{md5}ac1a72d22828c4183bf4d49f798b9b93'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[shared-users]/File[/etc/telegraf/telegraf.d/shared-users.conf]: Scheduling refresh of Class[Telegraf::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[apache]/File[/etc/telegraf/telegraf.d/apache.conf]/ensure: defined content as '{md5}bbf68120341c52bda04205f00ca70201'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[apache]/File[/etc/telegraf/telegraf.d/apache.conf]: Scheduling refresh of Class[Telegraf::Service][0m [mNotice: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[usage-per-user]/File[/etc/telegraf/telegraf.d/usage-per-user.conf]/ensure: defined content as '{md5}3b13a78266029490e7dda94a1f9ff167'[0m [0;32mInfo: /Stage[main]/Profile::Webserver::Telegraf/Telegraf::Input[usage-per-user]/File[/etc/telegraf/telegraf.d/usage-per-user.conf]: Scheduling refresh of Class[Telegraf::Service][0m [mNotice: /Stage[main]/Profile::Mysqlserver::Telegraf/Telegraf::Input[mysql]/File[/etc/telegraf/telegraf.d/mysql.conf]/ensure: defined content as '{md5}09762e022294597edb904ab320394ee4'[0m [0;32mInfo: /Stage[main]/Profile::Mysqlserver::Telegraf/Telegraf::Input[mysql]/File[/etc/telegraf/telegraf.d/mysql.conf]: Scheduling refresh of Class[Telegraf::Service][0m [0;32mInfo: Class[Telegraf::Service]: Scheduling refresh of Service[telegraf][0m [mNotice: /Stage[main]/Telegraf::Service/Service[telegraf]/enable: enable changed 'true' to 'false'[0m [mNotice: /Stage[main]/Telegraf::Service/Service[telegraf]: Triggered 'refresh' from 1 event[0m [0;32mInfo: Stage[main]: Unscheduling all events on Stage[main][0m [0;32mInfo: Creating state file /opt/puppetlabs/puppet/cache/state/state.yaml[0m [mNotice: Applied catalog in 407.61 seconds[0m 13-FIM 14-INICIO 14-FIM 15-INICIO network.service is not a native service, redirecting to /sbin/chkconfig. Executing /sbin/chkconfig network on 15-FIM 16-INICIO 16-FIM 17-INICIO 17-FIM