Hello.
We've tested applying credits to registrars using FRED. Now, I want to
make a question of how the deductions are made.
Say, I decide to have 40 monetary units for domain creation and 10 for
domain update for renewing my domain, this way.
/fred-admin --price_add --operation_price 40.00 --zone_fqdn dom
--operation CreateDomain/
/fred-admin --price_add --operation_price 10.00 --zone_fqdn dom
--operation RenewDomain/
and assign 140 monetary units to their credit, this way
/fred-admin --invoice_credit --zone_id 1 --registrar_id 6 --price 140/
The zone numbered 1 is "dom" .
When I create a domain like this:
/create_domain testmg6.dom mf02 NULL NULL NULL (1 y)
/
What is deducted from the credit is 80 monetary units, not 70, so what
is left is 60.
Is that correct?. If it is, how to apply ONLY the renewal price when you
renew the domain, not when you create it?.
Best regards.
Mario Guerra
NIC-CR
On 27 Jun 2017 at 9:18, Ghislain wrote:
> Good Morning all,
>
> We (i.e. .RW registry – RICTA Ltd.) are not using FRED but I think the prepayment
model is more
> or less the same.
>
> #1. We don’t pre-invoice the registrars based on a “pre-established” list of
domain names.
> This is a lot of work, and it won’t scale if you have 100 of registrars, unless
the registry does that
> for them.
> But even if it is possible from the registry, it is a lot of work for “them” (i.e.
manual work).
>
> Therefore, they (registrars) just send money/amount, let say $500 or 30,000 RWF,
and that is
> what we issue the invoice for.
> With a simple description, i.e. “Advance payment”. BTW, the amount can vary
depending on
> what they want to register, renew, etc.
Thank you for the input, most of this is already the same on .mw registry.
> The law in Rwanda don’t allow to receive money without an invoice. (it being
advance or actual
> payment).
It appears there is no such law in Malawi and this is part of the reason I raised the
question - to learn what is the case with other ccTLD registries.
> #2. Once received, we credit their accounts in the Registry system. (still a
manual process).
> Then they can do whatever they want with it (i.e. do registration, renewal, pay
for transfer fees,
> etc.).
Same.
So, does your registry system have facilities for generating invoices such as these for
pre-payments?
Does it produce statements form registrars?
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
>
> I think this approach (above) is more flexible.
>
> A little additional info:
>
> The money received from registrars, is a liability until it is consumed.
> Until it is consumed, it cannot yet be called revenues from your side (registry).
> From financial “documents” perspective, an un-consumed advance payment is a
liability that
> needs to seat in the balance sheet.
> Once the revenue is realized (end of month), the money can be recognized in you
Income
> statement. (you debit the liability and credit your income accounts).
>
> Sorry if this is perhaps more than what you asked for.
>
> Thank you,
>
> Ghislain
> .RW registry
>
> From: fred-users <fred-users-bounces(a)lists.nic.cz> on behalf of Jaromir Talir
> <jaromir.talir(a)nic.cz>
> Reply-To: A mailing list for users and developers of FRED registry system
> <fred-users(a)lists.nic.cz>
> Date: Friday, 23 June 2017 at 17:18
> To: <paulos(a)sdnp.org.mw>, <fred-users(a)lists.nic.cz>
> Subject: Re: payments - invoices and statements on FRED registry system
>
> Hi Paulos,
>
> I guess this is more question for some Malawi lawyer. In Czech Republic
> we have a law that we should issue invoice when we receive advanced
> payment. However, this may be something specific for our legislation.
> Also every legislation specifies what should be the content of the
> invoice in that case (issuer, recipient, day of payment, effective day
> of service, etc..). This may differ country to country as well. FRED
> contains PDF templates for invoices according Czech legislation. I
> cannot say if they may be used for you as well.
>
> If you will be in Joburg, we can have a talk about it there.
>
> Regards,
> Jaromir
>
> On Fri, 2017-06-16 at 05:15 +0200, Dr P Nyirenda wrote:
> Hello,
> I would like to find out how your registry responds to a request like
> the one here below
> for invoices and statements on registrar payments to a registry that
> uses the FRED
> registry system.
> On our registry for the Malawi .mw ccTLD, registrar payments are
> credited to the
> registrar zone by zone according to what the registrar has paid for.
> Once the registrar
> has consumed the credit, then they need to make a new payment in
> advance which is then
> credited to the zones that they need.
> We do not need to issue them an invoice in advance, they make the
> payments based on what
> transactions they need to do on each zone.
> When we receive a request for their data payments, we have used
> Invoice on Daphne to
> generate the data and we have sent this to the registrar.
> However, as you can see here below, this registrar seems to be asking
> for more.
> I would therefore like to request information on how your registry
> using FRED handles
> requests for data, invoices and statements like these.
> Regards,
> Paulos
> ======================
> Dr Paulos B Nyirenda
> NIC.MW & .mw ccTLD
> http://www.registrar.mw
> ------- Forwarded message follows -------
> From: Jamil Kamaly <Jamil.Kamaly(a)NetNames.com >
> To: "paulos(a)sdnp.org.mw" <paulos(a)sdnp.org.mw>
> Copies to: Michal Czyz <Michal.Czyz(a)NetNames.com>, domains mw
> <domains(a)registrar.mw>,
> PB Nyirenda <pb.nyirenda(a)gmail.com>
> Subject: RE: Malawi payments.
> Date sent: Wed, 14 Jun 2017 11:56:39 +0000
> Hi Dr Paulos,
> I think you might have misunderstood, I wasn’t complaining. The
> details you provided me
> in April was excel spreadsheet with payment details and the zones
> that were topped. We
> need proper invoices and statements and therefore I was following up
> on our last
> conversation where you was saying that you are developing a system to
> make this possible.
> I was just checking if this is now possible and would we be getting
> proper statements
> and invoices.
> Thank you.
> Kind regards,
> Jamil
> ----------------------------------------------------------
> Malawi SDNP Webmail: http://www.sdnp.org.mw
> Access your Malawi SDNP e-mail from anywhere in the world.
> ----------------------------------------------------------
> --
> Jaromir Talir
> Technicky partner / Technical Fellow
> -------------------------------------------
> CZ.NIC, z.s.p.o. -- .cz domain registry
> Milesovska 5, 130 00 Praha 3, Czech Republic
> mailto:jaromir.talir@nic.cz http://nic.cz/
> sip: jaromir.talir(a)nic.cz tel:+420.222745107
> mob:+420.739632712 fax:+420.222745112
> -------------------------------------------
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hello,
I would like to find out how your registry responds to a request like the one here below
for invoices and statements on registrar payments to a registry that uses the FRED
registry system.
On our registry for the Malawi .mw ccTLD, registrar payments are credited to the
registrar zone by zone according to what the registrar has paid for. Once the registrar
has consumed the credit, then they need to make a new payment in advance which is then
credited to the zones that they need.
We do not need to issue them an invoice in advance, they make the payments based on what
transactions they need to do on each zone.
When we receive a request for their data payments, we have used Invoice on Daphne to
generate the data and we have sent this to the registrar.
However, as you can see here below, this registrar seems to be asking for more.
I would therefore like to request information on how your registry using FRED handles
requests for data, invoices and statements like these.
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
------- Forwarded message follows -------
From: Jamil Kamaly <Jamil.Kamaly(a)NetNames.com>
To: "paulos(a)sdnp.org.mw" <paulos(a)sdnp.org.mw>
Copies to: Michal Czyz <Michal.Czyz(a)NetNames.com>, domains mw <domains(a)registrar.mw>,
PB Nyirenda <pb.nyirenda(a)gmail.com>
Subject: RE: Malawi payments.
Date sent: Wed, 14 Jun 2017 11:56:39 +0000
Hi Dr Paulos,
I think you might have misunderstood, I wasn’t complaining. The details you provided me
in April was excel spreadsheet with payment details and the zones that were topped. We
need proper invoices and statements and therefore I was following up on our last
conversation where you was saying that you are developing a system to make this possible.
I was just checking if this is now possible and would we be getting proper statements
and invoices.
Thank you.
Kind regards,
Jamil
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Jaromir,
Just one or two more clarifications on FRED:
1. Is there a default maximum number of years (or months) for renewing a domain ?
I see that in .cz this is required to be 10 years - is this burned into FRED or can it be
modified?
See: https://www.nic.cz/files/nic/doc/Registration_rules_CZ.pdf
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
Vous avez reçu une invitation !
--------------------------------------
Rejoignez Ousmane Sanogo à Meetup#2 Présentation et Workshop Openstack
Quand :
samedi 29 avril 2017, 09:00
Où :
Ecole Agitel-Formation
132, Abidjan, Côte d'Ivoire, Abidjan
Ce Meetup est organisé par Openstack Côte d'Ivoire.
Après une première rencontre pour fêter les 6 ans de Openstack et le lancement du groupe d'utilisateur de Côte d'ivoire, nous organisons un second Meetup qui va vous permettre de mieux connaitre Open...
https://secure.meetup.com/n/?s=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJkZXN…
--------------------------------------
-------
Message envoyé par Meetup de la part de Ousmane Sanogo (https://www.meetup.com/fr-FR/Openstack-Cote-divoire/members/212092234/) depuis Openstack Côte d'Ivoire.
Une question? Vous pouvez contacter le support Meetup via support(a)meetup.com
Je ne souhaite plus recevoir ce type d'e-mail (https://secure.meetup.com/n/?s=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJob29…)
Meetup Inc. (https://www.meetup.com/fr-FR/), POB 4668 #37895 New York NY USA 10163
Hi,
in addition to new FRED release, we have also released a new website at
https://fred.nic.cz and completely new documentation system.
Documentation url is https://fred.nic.cz/documentation. I feel
importance of this deserves to use separate email for announcement. New
documentation is searchable and it contains many new graphical schemas
important to understand FRED architecture and processes. Source code of
this documentation in reStructuredText format is available on github
https://github.com/CZ-NIC/fred-docs. This means that you are more then
welcomed to submit comments or preferably pull requests for things that
you think they are missing in documentation. Please, check
documentation and let us know what you think about this.
Regards,
Jaromir
Hi,
we have published FRED version 2.29. During several previous releases
we have rewritten almost all code responsible for EPP communication
with registrars. This refactoring was necessery for implementation of
new features in the future. Here is a compilation of some significant
changes.
- support for more operating systems. For the first time we provide
also packages for latest RHEL/Centos version 7. Since Ubuntu 12.04 will
lost its long term support in April, we will not provide packages for
this version anymore. Preffered version of Ubuntu is 16.04. We use
Ubuntu 16.04 in production for some time without any issues. This also
means that Ubuntu 16.04 is most tested platform. In other platforms we
only run limited set of automated tests so registries are required to
do more indepth tests themselves.
- configurable domain name format checking. Checking of validity of
domain name is configurable per zone via linking to set of
preconfigured checkers in database table
zone_domain_name_validation_checker_map.
- new idn support configuration. There used to be allow_idn option in
server configuration file that meant that regular registrars are able
to register domains in xn-- format (idn domains) in all zones. In
current version it is possible to configure idn support per zone via
mechanism mentioned earlier. Support for idn is just another
preconfigured checker.
- configurable dnssec algorithm checking. Until now, there was no
checking of dnssec algorithm number used in EPP create_keyset or
update_keyset EPP commands. If registries would like to limit this
check only for some algorithms, they can do that via modification of
database tables dnssec_algorithm and dnssec_algorithm_blacklist.
- configurable limit of minimal number of nameservers in nsset. Until
now, there was hardcoded requirement to have at least 2 nameservers and
maximum 10 nameservers in nsset. Since this was limitation for some
registries that wanted to use FRED, we moved this limit into
configuration option nsset_min_hosts and nsset_max_hosts in server
configuration file
- asynchronous notification about EPP events. Notifications for domain
state change has always been generated asynchronously via fred-admin
commands, but notifications about EPP events done by registrars were
created as part of EPP operation. To speed up system a little bit and
to be able to continue EPP operation even when notification system is
down, we made also notification about EPP events asynchronnous. So
don't forget to add into cron system command 'fred-admin --
notify_email_objects_events' in intervals of your preference if you
want to keep sending notifications.
Regards,
Jaromir
People:
A nagging problem we had when we migrated FRED to Ubuntu 14.04 (until a
couple of weeks ago we ran 2.22 on Ubuntu 12.04) was that, suddenly,
Apache connections gave us a CLOSE_WAIT, not a clean closing of the
connection. This gave us a real headache with both our whois server and
our EPP server.
The solution?. Well, simply uninstall the mpm_event Apache module and
install the mem_prefork one:
a2dismod mpm_event
a2enmod mem_prefork
service apache2 restart
I hope this helps the people using FRED under Ubuntu 14.04 experiencing
a similar problem.
------------
Mario Guerra
NIC-CR
While running
# apt-get update
on Ubunto-16 as warning is issued:
W: http://archive.nic.cz/ubuntu/dists/xenial/Release.gpg: Signature by key
55360425D50EB41DB9A21E67F20C079E020ADBB4 uses weak digest algorithm (SHA1)
It seems that Debian and friends do not like SHA1 any longer.
They provide more info on the removal of sha1 and how to fix a half-broken
repositories
https://wiki.debian.org/Teams/Apt/Sha1Removal
I suppose the fred repository for ubunto at archive.nic.cz could be updated
along those lines.
We are to try out having a few extra national characters
áýúíóæøåð
and in uppercase these are
ÁÝÚÍÓÆØÅÐ
in ccTLD names (.fo)
We found the 'allow_idn' in server.conf
and have it set as 'true' (allow_idn = true),
but this seems not to be enough, and does not really fullfill the requirements.
IDN is mentioned an option in fred, but where/how can we turn this on,
and what should we be aware of ?
...torkil...
Sorry for this lengthy message, but a bugfix is provided with a description
of the issue in the latest packages of fred for ubunto
Have a nice day
On Ubuntu 16.04.1 LTS - just updated and upgraded everything including
fred, broke fred
# systemctl status fred-logd
● fred-logd.service - FRED logging daemon
Loaded: loaded (/lib/systemd/system/fred-logd.service; enabled; vendor
preset: enabled)
Active: inactive (dead) (Result: exit-code) since Fri 2016-12-30
16:56:12 WET; 17min ago
Process: 3653 ExecStart=/usr/sbin/fred-logd -ORBendPoint giop:tcp::2226
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-logd.conf (code=exited,
status=1/FAILURE)
Main PID: 3653 (code=exited, status=1/FAILURE)
Dec 30 16:56:12 fred-ubunto-16 systemd[1]: fred-logd.service: Failed with
result 'exit-code'.
Dec 30 16:56:12 fred-ubunto-16 systemd[1]: fred-logd.service: Service
hold-off time over, scheduling restart.
Dec 30 16:56:12 fred-ubunto-16 systemd[1]: Stopped FRED logging daemon.
Dec 30 16:56:12 fred-ubunto-16 systemd[1]: fred-logd.service: Start request
repeated too quickly.
Dec 30 16:56:12 fred-ubunto-16 systemd[1]: Failed to start FRED logging
daemon.
Hmm where is fred-logd.conf ?
In /etc/init/fred-logd.conf !
BUGFIX
# cd /etc/fred
# ln -s ../init/fred-logd.conf
root@fred-ubunto-16:/etc/fred# systemctl start fred-logd
root@fred-ubunto-16:/etc/fred# systemctl status fred-logd
● fred-logd.service - FRED logging daemon
Loaded: loaded (/lib/systemd/system/fred-logd.service; enabled; vendor
preset: enabled)
Active: active (running) since Fri 2016-12-30 17:22:57 WET; 2s ago
Main PID: 4600 (fred-logd)
Tasks: 3
Memory: 2.5M
CPU: 25ms
CGroup: /system.slice/fred-logd.service
└─4600 /usr/sbin/fred-logd -ORBendPoint giop:tcp::2226
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-logd.conf
Dec 30 17:22:57 fred-ubunto-16 systemd[1]: Started FRED logging daemon.
So the bugfix worked :-)
Next issue:
# systemctl status fred-rifd
● fred-rifd.service - FRED registrar interface daemon
Loaded: loaded ( ; enabled; vendor preset: enabled)
Active: inactive (dead) (Result: exit-code) since Fri 2016-12-30
16:50:26 WET; 35min ago
Process: 3321 ExecStart=/usr/sbin/fred-rifd -ORBendPoint giop:tcp::2224
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-rifd.conf (code=exited,
status=1/FAILURE)
Main PID: 3321 (code=exited, status=1/FAILURE)
Dec 30 16:50:25 fred-ubunto-16 systemd[1]: fred-rifd.service: Main process
exited, code=exited, status=1/FAILURE
Dec 30 16:50:25 fred-ubunto-16 systemd[1]: fred-rifd.service: Unit entered
failed state.
Dec 30 16:50:25 fred-ubunto-16 systemd[1]: fred-rifd.service: Failed with
result 'exit-code'.
Dec 30 16:50:26 fred-ubunto-16 systemd[1]: fred-rifd.service: Service
hold-off time over, scheduling restart.
Dec 30 16:50:26 fred-ubunto-16 systemd[1]: Stopped FRED registrar interface
daemon.
Dec 30 16:50:26 fred-ubunto-16 systemd[1]: fred-rifd.service: Start request
repeated too quickly.
Dec 30 16:50:26 fred-ubunto-16 systemd[1]: Failed to start FRED registrar
interface daemon.
Again /lib/systemd/system/fred-rifd.service specifies fred-rifd.conf to be
in /etc/fred, were as it is in /etc/init :-/
BUGFIX
# cd /etc/fred
# ln -s ../init/fred-rifd.conf
# cd
# systemctl start fred-rifd
# systemctl status fred-rifd
● fred-rifd.service - FRED registrar interface daemon
Loaded: loaded (/lib/systemd/system/fred-rifd.service; enabled; vendor
preset: enabled)
Active: active (running) since Fri 2016-12-30 17:30:01 WET; 6s ago
Main PID: 4777 (fred-rifd)
Tasks: 3
Memory: 3.3M
CPU: 31ms
CGroup: /system.slice/fred-rifd.service
└─4777 /usr/sbin/fred-rifd -ORBendPoint giop:tcp::2224
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-rifd.conf
Dec 30 17:30:01 fred-ubunto-16 systemd[1]: Started FRED registrar interface
daemon.
So the bugfix worked :-)
Next issue:
# systemctl status fred-pifd
● fred-pifd.service - FRED public interface daemon
Loaded: loaded (/lib/systemd/system/fred-pifd.service; enabled; vendor
preset: enabled)
Active: inactive (dead) (Result: exit-code) since Fri 2016-12-30
16:28:07 WET; 1h 7min ago
Process: 1334 ExecStart=/usr/sbin/fred-pifd -ORBendPoint giop:tcp::2223
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-pifd.conf (code=exited,
status=1/FAILURE)
Main PID: 1334 (code=exited, status=1/FAILURE)
Tasks: 0
Memory: 0B
CPU: 0
CGroup: /system.slice/fred-pifd.service
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-pifd.service: Main process
exited, code=exited, status=1/FAILURE
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-pifd.service: Unit entered
failed state.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-pifd.service: Failed with
result 'exit-code'.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-pifd.service: Service
hold-off time over, scheduling restart.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: Stopped FRED public interface
daemon.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-pifd.service: Start request
repeated too quickly.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: Failed to start FRED public
interface daemon.
BUGFIX
# cd /etc/fred
# ln -s ../init/fred-pifd.conf
# cd
# systemctl start fred-pifd
# systemctl status fred-pifd
● fred-pifd.service - FRED public interface daemon
Loaded: loaded (/lib/systemd/system/fred-pifd.service; enabled; vendor
preset: enabled)
Active: active (running) since Fri 2016-12-30 17:36:47 WET; 10ms ago
Main PID: 4941 (fred-pifd)
Tasks: 1
Memory: 1.1M
CPU: 5ms
CGroup: /system.slice/fred-pifd.service
└─4941 /usr/sbin/fred-pifd -ORBendPoint giop:tcp::2223
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-pifd.conf
Dec 30 17:36:47 fred-ubunto-16 systemd[1]: Started FRED public interface
daemon.
So the bugfix worked :-)
Next issue:
# systemctl status fred-msgd
● fred-msgd.service - FRED messaging daemon
Loaded: loaded (/lib/systemd/system/fred-msgd.service; enabled; vendor
preset: enabled)
Active: inactive (dead) (Result: exit-code) since Fri 2016-12-30
16:28:06 WET; 1h 9min ago
Process: 1258 ExecStart=/usr/sbin/fred-msgd -ORBendPoint giop:tcp::2228
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-msgd.conf (code=exited,
status=1/FAILURE)
Main PID: 1258 (code=exited, status=1/FAILURE)
Dec 30 16:28:05 fred-ubunto-16 systemd[1]: fred-msgd.service: Unit entered
failed state.
Dec 30 16:28:05 fred-ubunto-16 systemd[1]: fred-msgd.service: Failed with
result 'exit-code'.
Dec 30 16:28:06 fred-ubunto-16 systemd[1]: fred-msgd.service: Service
hold-off time over, scheduling restart.
Dec 30 16:28:06 fred-ubunto-16 systemd[1]: Stopped FRED messaging daemon.
Dec 30 16:28:06 fred-ubunto-16 systemd[1]: fred-msgd.service: Start request
repeated too quickly.
Dec 30 16:28:06 fred-ubunto-16 systemd[1]: Failed to start FRED messaging
daemon.
Same thing
BUGFIX
# cd /etc/init
# ln -s ../init/fred-msgd.conf
# cd
# systemctl start fred-msgd
# systemctl status fred-msgd
● fred-msgd.service - FRED messaging daemon
Loaded: loaded (/lib/systemd/system/fred-msgd.service; enabled; vendor
preset: enabled)
Active: active (running) since Fri 2016-12-30 17:38:59 WET; 4s ago
Main PID: 5016 (fred-msgd)
Tasks: 3
Memory: 1.6M
CPU: 20ms
CGroup: /system.slice/fred-msgd.service
└─5016 /usr/sbin/fred-msgd -ORBendPoint giop:tcp::2228
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-msgd.conf
Dec 30 17:38:59 fred-ubunto-16 systemd[1]: Started FRED messaging daemon.
So the bugfix worked :-)
Next issue:
# systemctl status fred-adifd
● fred-adifd.service - FRED administration interface daemon
Loaded: loaded (/lib/systemd/system/fred-adifd.service; enabled; vendor
preset: enabled)
Active: inactive (dead) (Result: exit-code) since Fri 2016-12-30
16:28:08 WET; 1h 12min ago
Process: 1352 ExecStart=/usr/sbin/fred-adifd -ORBendPoint giop:tcp::2222
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-adifd.conf
(code=exited, status=1/FAILURE)
Main PID: 1352 (code=exited, status=1/FAILURE)
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-adifd.service: Unit entered
failed state.
Dec 30 16:28:07 fred-ubunto-16 systemd[1]: fred-adifd.service: Failed with
result 'exit-code'.
Dec 30 16:28:08 fred-ubunto-16 systemd[1]: fred-adifd.service: Service
hold-off time over, scheduling restart.
Dec 30 16:28:08 fred-ubunto-16 systemd[1]: Stopped FRED administration
interface daemon.
Dec 30 16:28:08 fred-ubunto-16 systemd[1]: fred-adifd.service: Start
request repeated too quickly.
Dec 30 16:28:08 fred-ubunto-16 systemd[1]: Failed to start FRED
administration interface daemon.
Again same thing
BUGFIX
# cd /etc/fred
# ln -s ../init/fred-adifd.conf
# cd
# root@fred-ubunto-16:~# systemctl start fred-adifd
# root@fred-ubunto-16:~# systemctl status fred-adifd
● fred-adifd.service - FRED administration interface daemon
Loaded: loaded (/lib/systemd/system/fred-adifd.service; enabled; vendor
preset: enabled)
Active: active (running) since Fri 2016-12-30 17:41:42 WET; 4s ago
Main PID: 5128 (fred-adifd)
Tasks: 4
Memory: 3.3M
CPU: 29ms
CGroup: /system.slice/fred-adifd.service
└─5128 /usr/sbin/fred-adifd -ORBendPoint giop:tcp::2222
-ORBnativeCharCodeSet UTF-8 --config /etc/fred/fred-adifd.conf
Dec 30 17:41:42 fred-ubunto-16 systemd[1]: Started FRED administration
interface daemon.
Final check
# fred-status && echo ok
ok
DONE :-)
NOTE
fred-status is a local script which looks like this:
#######################################################################
#!/bin/sh
# File: fred-status.sh
# Purpose: Check that fred runs all the 7 required processes
# Author: Torkil Zachariassen
# Date: 20161209
CMD="ps -u fred --no-headers"
count=`$CMD|wc -l`
if [ $count -ne 7 ]; then
echo ERROR Wrong number of processes
$CMD
exit 1
fi
# return ok
return 0
NOTE
$ ps -u fred
should return the following processes
PID TTY TIME CMD
1096 ? 00:01:32 fred-webadmin
1181 ? 00:00:03 fred-logd
1182 ? 00:00:00 fred-rifd
1217 ? 00:00:00 fred-pifd
1218 ? 00:00:01 fred-adifd
3574 ? 00:00:00 fred-msgd
3685 ? 00:00:05 fred-pyfred
#######################################################################
It seems that the problem are the following lines in fred-* in
/lib/systemd/system:
# grep /fred/fred /lib/systemd/system/fred-*
/lib/systemd/system/fred-adifd.service:ExecStart=/usr/sbin/fred-adifd
-ORBendPoint giop:tcp::2222 -ORBnativeCharCodeSet UTF-8 --config
/etc/fred/fred-adifd.conf
/lib/systemd/system/fred-logd.service:ExecStart=/usr/sbin/fred-logd
-ORBendPoint giop:tcp::2226 -ORBnativeCharCodeSet UTF-8 --config
/etc/fred/fred-logd.conf
/lib/systemd/system/fred-msgd.service:ExecStart=/usr/sbin/fred-msgd
-ORBendPoint giop:tcp::2228 -ORBnativeCharCodeSet UTF-8 --config
/etc/fred/fred-msgd.conf
/lib/systemd/system/fred-pifd.service:ExecStart=/usr/sbin/fred-pifd
-ORBendPoint giop:tcp::2223 -ORBnativeCharCodeSet UTF-8 --config
/etc/fred/fred-pifd.conf
/lib/systemd/system/fred-rifd.service:ExecStart=/usr/sbin/fred-rifd
-ORBendPoint giop:tcp::2224 -ORBnativeCharCodeSet UTF-8 --config
/etc/fred/fred-rifd.conf
as these references configuration files in /etc/fred, whereas the actual
configuration
files are installed in /etc/init
As I am unsure of what the correct solution might be I will leave this
issue to the packager
Have a nice day :-)
Hi!
The better way for us was made a Django ApiRest for our front based in PHP Synfony2. You can import fred-client lib and use it into your ApiRest.
Best regards,
Agustin Sacramento
-----Original Message-----
From: fred-users [mailto:fred-users-bounces@lists.nic.cz] On Behalf Of Jaromir Talir
Sent: Friday, November 11, 2016 13:34
To: A mailing list for users and developers of FRED registry system
Subject: Re: PHP API
Hi,
there is nothing I'd know about for immediate use. It would be great if somebody from community of users would make it. We don't have PHP programmers in our company.
Regards,
Jaromir
On Sun, 2016-11-06 at 14:12 +0200, Mark Elkins wrote:
> Better still - open sourced, readable and commented code of an API
> written in PHP.
>
> On 06/11/2016 13:14, Thiago Farina wrote:
>> Is there a PHP API for the Python fred client?
>>
>> --
>> Thiago Farina
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
--
Jaromir Talir
Technicky partner / Technical Fellow
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Milesovska 5, 130 00 Praha 3, Czech Republicmailto:jaromir.talir@nic.cz http://nic.cz/ sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
_______________________________________________
fred-users mailing list
fred-users(a)lists.nic.cz
https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
I'm writing some words on my understanding of Premium Domain Names - and
am not sure about FRED....
Quick question:
Does FRED implement the code to specify that "these names" are premium
names and therefore cost more. The Registrar also needs a slight EPP
code modification in that they must provide the (expected) cost of the
domain to the Registry - in order to confirm its premium status - and I
guess - the correct cost.
In order for the Registry to implement this, one might need to perhaps
provide a file of "regular expressions" which if met - would imply the
Domain Name is Premium... could even add a second column as the cost?
eg
. (to match one character)
.. (to match two characters)
... (to match three characters)
green ( and other "generic" names)
blue
sexy
travel
hotel* (hotel, hotels, hotel-bookings - etc)
Perhaps - do people have a different understanding of "What is a Premium
Domain Name" ?
--
Mark James ELKINS - Posix Systems - (South) Africa
mje(a)posix.co.za Tel: +27.128070590 Cell: +27.826010496
For fast, reliable, low cost Internet in ZA: https://ftth.posix.co.za
1. The update_domain source includes the keyset firld. which is correct:
-----
self.epp.update_domain(get_domain.id.id.name, add_admin=None,
rem_admin=None,
chg={'nsset' : None, 'keyset' : keyset_id, 'registrant' : None,
'auth_info' :
None}, val_ex_date=None, cltrid=None)
-----
But the documentation does not. Checking
https://fred.nic.cz/files/fred/fred.txt, we have this fragment
-----
update_domain(self, name, add_admin=None, rem_admin=None, chg=None,
val_ex_date=None,
cltrid=None)
DESCRIPTION:
The EPP 'update_domain' command is used to update values in the domain.
SYNTAX:
update_domain name [other_options]
OPTIONS:
name (required) Domain name
add_admin Administrative contact ID (unbounded list)
rem_admin Administrative contact ID (unbounded list)
chg Change values
nsset NSSET ID
registrant Registrant ID
auth_info Password required by server to authorize the transfer
val_ex_date Validation expires at
cltrid Client transaction ID
-----
2. The DS generated from the DNSKEY included in keysets, only includes
the algorithm 1 (SHA1) but not 2 (SHA256).
Best.
Mario
We are now prepapring to transfer multiple domains from our 2R registry to registrars now on
the 3R FRED registry for .mw domains.
Could you please tell me the best database command for collecting the auth info for a
domain
Since there appears to be no bulk domain transfer facility in FRED my guess is that we need
to run the database query repeatedly to collect domain & auth-info pairs that we can then
pass on to the registrar.
What is the current best practice for passing auth info details to a registrar?
Regards,
PC
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
We are now prepapring to transfer multiple domains from our 2R registry to registrars
now on the 3R FRED registry for .mw domains.
Could you please tell me the best database command for collecting the auth info for a domain
Since there appears to be no bulk domain transfer facility in FRED my guess is that we
need to run the database query repeatedly to collect domain & auth-info pairs that we
can then pass on to the registrar.
What is the current best practice for passing auth info details to a registrar?
Regards,
PC
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Jaromir, all,
Our FRED registry 3R operation is going well enough that we can now move on to tackle
issues on domain transfers and I have one or two questions with the following understanding
that I have:.
1. My understanding is that: Once auth_info has been sent from current owner A to new
owner B for domain dA.mw then B can do the transfer, such as using fred-client command:
transfer_domain dA.mw auth_info_A [other_options]
Is this correct? what are the other options?
2. A WHOIS query for dA.mw will then list new registrar: B
3. System then generates new auth_info_B and assigns it under registrar B ... right ?
4. How can the registry charge for the transfer of the domain dA.mw?
5. What needs to be configured in FRED to charge for domain transfers like this one?
6. If this FRED config can be done using fred-admin then please show syntax for trhe
fred-admin command to configure charging for domain transfers.
7. If there a similar arrangement for transfering other objects like contacts and/or nssets?
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
-----
No virus found in this message.
Checked by AVG - www.avg.com
Version: 2016.0.7752 / Virus Database: 4649/12929 - Release Date: 09/01/16
------- End of forwarded message -------
Hi,
I'm using https://github.com/metaregistrar/php-epp-client as the EPP client.
For being able to use it I need to feel some parameters in settings.ini:
interface=eppConnection
hostname=ssl://epp.demo.fred.nic.cz
port=xxxxxx
userid=xxxxxxxx
password=xxxxxxxxx
Which port, userid and password should I use to connect to Fred?
Is it possible to use certificates from https://letsencrypt.org/?
Thanks,
--
Thiago Farina
Hello Piotr,
LOL...
Just about everything. The gTLD is currently on CoCCA and want to move to
a different system.
On Fri, Sep 2, 2016 at 9:15 AM, Piotr Przybył <piotr(a)przybyl.org> wrote:
> On 02/09/16 15:07, Stanford Mings wrote:
> > Hello All,
> >
> > I am working with a gTLD and would like to get some assistance in using
> FRED. I have the system up
> > on a VM in my lab and can access it via the web-admin and the
> fred-client CLI.
> >
> > Any assistance would be greatly appreciated.
> >
> > - Stanford Mings
>
> Hello Standord
>
> "What can I do you for?" ;-)
>
> Are you interested in FRED's features, configuration, ...?
>
> Best regards
> Piotr
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
Hello All,
I am working with a gTLD and would like to get some assistance in using
FRED. I have the system up on a VM in my lab and can access it via the
web-admin and the fred-client CLI.
Any assistance would be greatly appreciated.
- Stanford Mings
Spam detection software, running on the system "mail.nic.cz",
has identified this incoming email as possible spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
the administrator of that system for details.
Content preview: Help, We need to modify some SOA paramenters in zones that
are generated by genzone-client like reduce the TTL since we are now generating
the zone more frequently by cron job. fred-admin which we use to create zones
does not seem to have a feature to midify a zone like this [...]
Content analysis details: (5.5 points, 5.0 required)
pts rule name description
---- ---------------------- --------------------------------------------------
1.4 RCVD_IN_BRBL_LASTEXT RBL: No description available.
[41.77.11.211 listed in bb.barracudacentral.org]
-0.2 RP_MATCHES_RCVD Envelope sender domain matches handover relay domain
1.5 BAYES_50 BODY: Bayes spam probability is 40 to 60%
[score: 0.4839]
1.0 KAM_LAZY_DOMAIN_SECURITY Sending domain does not have any
anti-forgery methods
1.0 HK_NAME_DR No description available.
0.8 KAM_ASCII_DIVIDERS Spam that uses ascii formatting tricks
Hello cz.nic Team
I have a few questions related to database migration of FRED if you don't mind.
====
When trying to download the latest sources from https://fred.nic.cz/page/2904/download/#source I've
realised, that they're not available. E.g. the latest migration scripts are available in
fred-db*deb, but the tarball is not a corresponding one.
Could you please try to release latest sources in tarballs?
====
I've noticed, that upgrade to 2.19.0 creates a table object_state_backup. However, beside DDL from
2.18.0-2.19.0.sql I don't see this table being used anywhere else. Can it be deleted?
====
Could you briefly describe what's the purpose of tables:
contact_address
contact_address_history
As far I can tell after analysing the sources, these tables are populated by a functionality called
from MojeID ( =your special NIC registrar to keep domain contacts defined at central level, not each
registrar's level).
====
What are the following tables for? Or: How the checks of contacts are working? Is is something
related to checking if a contact's address fields are valid?
contact_check
contact_check_history
contact_check_message_map
contact_check_object_state_request_map
contact_check_poll_message_map
contact_test_result
contact_test_result_history
contact_testsuite_map
enum_contact_check_status
enum_contact_check_status_localization
enum_contact_test
enum_contact_test_localization
enum_contact_test_status
enum_contact_test_status_localization
enum_contact_testsuite
enum_contact_testsuite_localization
====
There's a table notification_queue. I can't find any usage of it (maybe because not all tarballs are
up to date). What is it for?
Do you replicate this table using Slony? (Because it has neither primary nor unique key.)
Best regards
Piotr
Hello Jaromír
When trying to install fred metapackage there's an error displayed that fred-transproc package is
missing. AFAICT that's the only dependency change introduced by fred 0.0.5~xenial+1.
Best regards
Piotr
Hi,
I am developing a PHP fred client and am able to get a domain details as
follows:
<?xml version="1.0" encoding="UTF-8"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0
epp-1.0.xsd"><response><result code="1000"><msg>Command completed
successfully</msg></result><resData><domain:infData
xmlns:domain="http://www.nic.cz/xml/epp/domain-1.4"
xsi:schemaLocation="http://www.nic.cz/xml/epp/domain-1.4
domain-1.4.1.xsd"><domain:name>XXXX</domain:name><domain:roid>D0000073101-CZ</domain:roid><domain:status
s="ok">Objekt is without
restrictions</domain:status><domain:registrant>CHEKI-MW-REG</domain:registrant><domain:admin>CHEKI-MW-BILLING</domain:admin><domain:admin>CHEKI-MW-ADMIN</domain:admin><domain:nsset>CHEKI-MW-NS</domain:nsset><domain:clID>mw_system_reg</domain:clID><domain:crID>mw_system_reg</domain:crID><domain:crDate>2015-01-05T17:00:58+02:00</domain:crDate><domain:exDate>2015-12-05</domain:exDate></domain:infData></resData><trID><clTRID>15c8abbebf7a746a773714973ff4e9f3</clTRID><svTRID>ReqID-0001851046</svTRID></trID></response></epp>
What's the xml command for extracting nameservers from the nsset?
Thank you.
Regards,
Mike.
Hello everyone
I have some remarks about starting FRED components automatically after boot in Ubuntu 16.04 LTS
xenial. If anyone has some input, please share.
First, I suspect that upstart job definitions are obsolete and should removed. I mean the files:
/etc/init/fred-adifd.conf
/etc/init/fred-logd.conf
/etc/init/fred-msgd.conf
/etc/init/fred-pifd.conf
/etc/init/fred-rifd.conf
Next, right after installation the services of FRED were not enabled, hence:
# cd /lib/systemd/system
# systemctl enable fred*
This is not enough, since fred-pyfred failed because it was started too early (before omniorb name
server), therefore I modified unit definition of fred-pyfred in
/lib/systemd/system/fred-pyfred.service
so now it looks like this:
[Unit]
Description=fred-pyfred
After=omniorb4-nameserver.service
#ConditionPathExists=!/etc/ssh/sshd_not_to_be_run
Requires=omniorb4-nameserver.service
[Service]
User=fred
WorkingDirectory=/
StandardOutput=null
StandardError=null
ExecStart=/usr/sbin/fred-pyfred -d
KillMode=process
Restart=on-failure
[Install]
WantedBy=multi-user.target
and generates the following result:
# systemd-analyze critical-chain fred-pyfred.service
The time after the unit is active or started is printed after the "@" character.
The time the unit takes to start is printed after the "+" character.
fred-pyfred.service @6.814s
└─omniorb4-nameserver.service @6.774s +23ms
└─network-online.target @6.764s
└─NetworkManager-wait-online.service @927ms +5.837s
└─NetworkManager.service @665ms +185ms
└─dbus.service @639ms
└─basic.target @639ms
└─sockets.target @639ms
└─snapd.socket @637ms +1ms
└─sysinit.target @634ms
└─swap.target @634ms
└─dev-disk-by\x2duuid-d8b40e4d\x2d4e62\x2d4436\x2db09b\x2d8cfc2a2d8a1d.swap
@629ms +3ms
└─dev-disk-by\x2duuid-d8b40e4d\x2d4e62\x2d4436\x2db09b\x2d8cfc2a2d8a1d.device
@623ms
(of course your delays will vary).
To check if FRED services are running, one may use
# systemctl status fred*
Maybe this page could get an update? https://fred.nic.cz/page/2906/installation-ubuntu/
Best regards
Piotr Przybył
I did the default install, but I can't access it remotely. I can access
http://localhost:18456 via lynx.
Where do edit to allow remote access ?
Stanford T. Mings Jr. ~Technologist ~
stanford(a)tech.vi ~ http://www.tech.vi ~ 340-344-8207
VI Technical Services, LLC ~ 9160 Estate Thomas ~
Suite 195 ~ St. Thomas, VI, 00802
Hello cz.nic Team
When testing SQL upgrade script I got the following error:
2.21.5-2.21.6.sql Failed (check /tmp/aaa)
psql:2.21.5-2.21.6.sql:1295: ERROR: null value in column "zone_id" violates not-null constraint
I took a look and it seems that the script is prepared for your registry only (unless there's
someone else also running .cz ;-))
Could you please tell me if the following patch is correct? It seems to do the job IMHO.
Best regards
Piotr
Dear users of the FRED,
I am a technical writer of the CZ.NIC and I'm currently working on a new
administration manual for the FRED.
I think you are of those who would appreciate this new piece of
documentation and therefore, I would like to ask you about your opinions
on what topics this manual should comprise, which questions it should
answer and what else you would expect from it.
I've attached my first (though only very rough) draft of the contents of
this manual for inspiration and/or comments. (Please, ignore the order
of the topics for now, that will be dealt with later.)
Your insight would be very helpful. Thanks for your time!
Best regards,
Lena
Technical Writer @ CZ.NIC
We have made some progress in activating FRED for our Malawi .mw registry and we have
started connecting registrars. We have now also started publishing the zonefiles from FRED
as generated by genzone-client. BUT I have a problem of serial numbers.
Our current zones have a date related SOA which is as follows:
mw. 172800 IN SOA chambo.sdnp.org.mw. domains.registrar.mw.
2010252090 43200 7200 1209600 172800
However from genzone I am getting the following SOA
mw. 18000 IN SOA chambo.sdnp.org.mw. domains.registrar.mw.
1469318701 10800 3600 604800 86400
Since our current serial number 2010252090 is greater than the genzone serial number
1469318701 then the zone will not propagate to the .mw secondary DNS servers
There is no facility in the genzone config file to help have this resolved. Could you then
anyone please show me how to set up genzone-client so that I can set a higher starting
serial number than the current 2010252090 one?
I would apprecisate a details reply ifyou have one.
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
------- End of forwarded message -------
Agree with Piotr
On Jul 19, 2016 1:12 PM, Piotr Przybył <piotr(a)przybyl.org> wrote:
On 19/07/16 17:53, Zuzana Lena Ansorgova wrote:
> Dear users of the FRED,
>
> I am a technical writer of the CZ.NIC and I'm currently working on a new administration manual for
> the FRED.
> I think you are of those who would appreciate this new piece of documentation and therefore, I would
> like to ask you about your opinions on what topics this manual should comprise, which questions it
> should answer and what else you would expect from it.
>
> I've attached my first (though only very rough) draft of the contents of this manual for inspiration
> and/or comments. (Please, ignore the order of the topics for now, that will be dealt with later.)
>
> Your insight would be very helpful. Thanks for your time!
>
> Best regards,
> Lena
> Technical Writer @ CZ.NIC
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
Hello Zuzana
Would it be possible for you to take a somewhat different approach?
What I have in mind is creating a document in a more collaborative matter than ODT. Something like
wiki or github? So one could add input directly there and some versioning is also available?
(Personally I'd opt for git[hub], but for some it could be easier to use a wiki page I guess.)
Best regards
Piotr
_______________________________________________
fred-users mailing list
fred-users(a)lists.nic.cz
https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
Hello cz.nic Team
I've read a memo at your page that you have released FRED 2.23 recently.
Do you have any plans about supporting xenial (and releasing binary packages) once it becomes really
stable?
Best regards
Piotr Przybył
Does the keyset FRED specification support the algorithm numbers 12, 13
and 14 (GOST R 34.10-2001, ECDSA Curve P-256 with SHA-256 and ECDSA
Curve P-256 with SHA-384)?
These can be found at this IANA document:
https://www.iana.org/assignments/dns-sec-alg-numbers/dns-sec-alg-numbers.xml
Thanks in advance
Mario Guerra
Good morning,
We are testing FRED, and we currently have a problem with the genzone_client script, we would like to request your help.
We have installed Fred using a Fedora 20 system (via RPM) and started the services as usual:
# Initialize the database scheme
/usr/bin/postgresql-setup initdb
# Start services
service postgresql start
service omniNames start
service fred-server start
service httpd start
service fred-webadmin-server start
Next we are able to add a TLD using:
fred-admin --zone_add --zone_fqdn=acme --ex_period_min=12
--ex_period_max=36 --ttl=18000 --hostmaster=root(a)test.acme
--refresh=10600 --update_retr=3600 --expiry=1209600 --minimum=7200
--ns_fqdn=ns1.acme
Also for the nameservers for the .acme TLD zone:
fred-admin --zone_ns_add --zone_fqdn=acme --ns_fqdn=ns1.acme
--addr=10.10.0.1
fred-admin --zone_ns_add --zone_fqdn=acme --ns_fqdn=ns2.acme
--addr=10.10.0.2
Our problem is that, when running genzone_client, the generated zone is outputted without IP address information for the name servers:
TTL 18000 ;default TTL for all records in zone
acme. IN SOA ns1.acme. root.test.acme. (1446128974 10600 3600 1209600 7200)
IN NS ns1.acme.
IN NS ns1.acme.
;
;--- domain records ---
;
We have verified in the PosgreSQL database and the A records as present as expected. What could be wrong?
Thank you!
Jorge Granjal
1. I would like to know what are the values for the CSV authorization
file for fred-webadmin interface (Daphne).
2. About the nicauth module. How is it used?. Any pointers?
Thanks in advance
Hello everyone,
Can someone help on:
1. How to lock a domain in the registry to prevent the registrar form
updating, transferring and deleting the domain.
Thanks in advance
Regards,
Timothy
==========================================================
Name :: Mathias Timothy
Cell :: +265 884 257 810
Skype :: mathias.timothy
Email :: timothy(a)sdnp.org.mw
Url :: www.sdnp.org.mw
==========================================================
Im running this in fred-client:
---------------------------------------------------------------------------------Command to issue:create_nsset NS12840 ((ns1.olivant.fo), (ns2.olivant.fo)) ID1Do you really want to send this command to the server? (y/N): yERROR: Server returned an empty message.Ending session at localhostDisconnected.Try to automaticly reconnect - send login.Connecting to localhost, port 700 ...Connected!
ERROR: Parameter value syntax errorReason: within protection peridod.---------------------------------------------------------------------------------
What does this mean ? Is the nsset protected for a period ? And how can i make it open again ?
regardsPetur Kirke.fo
i tried too with fedora 20 .
but i can't start fred-client.
i have this error :
" ERROR: ERROR HEADER : unpack requires a string argument of length 4
server didn't return Greeting message.
What can i do ?
Thanks to help
2015-05-20 10:34 GMT+00:00 Ricardo Perre <ricardo.perre(a)g9telecom.pt>:
> Ok, I'm trying on Ubuntu 12 and use the fred repo.
> Getting dep. errors again.
>
> Here is the error:
>
>
>
> root@fred:/home/fred# apt-get install fred
> Reading package lists... Done
> Building dependency tree
> Reading state information... Done
> Some packages could not be installed. This may mean that you have
> requested an impossible situation or if you are using the unstable
> distribution that some required packages have not yet been created
> or been moved out of Incoming.
> The following information may help to resolve the situation:
>
> The following packages have unmet dependencies:
> fred : Depends: fred-doc2pdf but it is not going to be installed
> Depends: fred-db but it is not going to be installed
> Depends: fred-adifd but it is not going to be installed
> Depends: fred-rifd but it is not going to be installed
> Depends: fred-pifd but it is not going to be installed
> Depends: fred-logd but it is not going to be installed
> Depends: fred-msgd but it is not going to be installed
> Depends: fred-webadmin but it is not going to be installed
> Depends: fred-whois but it is not going to be installed
> Depends: libapache2-mod-corba but it is not going to be installed
> Depends: libapache2-mod-eppd but it is not going to be installed
> Depends: libapache2-mod-whoisd but it is not going to be installed
> Depends: fred-pyfred but it is not going to be installed
> E: Unable to correct problems, you have held broken packages.
>
>
>
>
> -----Mensagem original-----
> De: fred-users-bounces(a)lists.nic.cz [mailto:
> fred-users-bounces(a)lists.nic.cz]
> Em nome de Mario Guerra
> Enviada: terça-feira, 19 de Maio de 2015 15:58
> Para: fred-users(a)lists.nic.cz
> Assunto: Re: Install process
>
>
>
> On 19/05/2015 08:41, Ricardo Perre wrote:
> > So, I’ve given up trying to install FRED on CentOS.
> >
> > I gave it a try on Ubuntu 9 (almost 5 years old) following the PDF on
> > your
> > website: same frustrating result.
> >
> >
> >
> > Do you have any installation manual? Or a installer?
> >
> >
> >
> > Please, point me in some direction.
> >
> >
> >
> > Thank you for your time.
> >
> >
>
> My recommendation would be, if possible, to install Ubuntu 12.04 and then
> add the fred.nic.cz repository and install FRED with:<
>
> apt-get install fred
>
> I hope this helps.
>
> Mario
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
>
> -----
> Não foram detetados vírus nesta mensagem.
> Verificado por AVG - www.avg.com
> Versão: 2015.0.5941 / Base de dados de Vírus: 4342/9815 - Data de
> Lançamento: 05/19/15
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
>
--
SANOGO Ousmane
Ingénieur Système&Réseau
Expert Certifié Linux LPIC2
cel : +22508143986 / +22502595080
mail : ousmane(a)sanogo.net
Site: http://www.sanogo.net
Strange, I've just try it without problems. Do you use 64bit version?
Regards,
Jaromir
On Wed, 2015-05-20 at 11:34 +0100, Ricardo Perre wrote:
> Ok, I'm trying on Ubuntu 12 and use the fred repo.
> Getting dep. errors again.
>
> Here is the error:
>
>
>
> root@fred:/home/fred# apt-get install fred
> Reading package lists... Done
> Building dependency tree
> Reading state information... Done
> Some packages could not be installed. This may mean that you have
> requested an impossible situation or if you are using the unstable
> distribution that some required packages have not yet been created
> or been moved out of Incoming.
> The following information may help to resolve the situation:
>
> The following packages have unmet dependencies:
> fred : Depends: fred-doc2pdf but it is not going to be installed
> Depends: fred-db but it is not going to be installed
> Depends: fred-adifd but it is not going to be installed
> Depends: fred-rifd but it is not going to be installed
> Depends: fred-pifd but it is not going to be installed
> Depends: fred-logd but it is not going to be installed
> Depends: fred-msgd but it is not going to be installed
> Depends: fred-webadmin but it is not going to be installed
> Depends: fred-whois but it is not going to be installed
> Depends: libapache2-mod-corba but it is not going to be installed
> Depends: libapache2-mod-eppd but it is not going to be installed
> Depends: libapache2-mod-whoisd but it is not going to be installed
> Depends: fred-pyfred but it is not going to be installed
> E: Unable to correct problems, you have held broken packages.
>
>
>
>
> -----Mensagem original-----
> De: fred-users-bounces(a)lists.nic.cz [mailto:fred-users-bounces@lists.nic.cz]
> Em nome de Mario Guerra
> Enviada: terça-feira, 19 de Maio de 2015 15:58
> Para: fred-users(a)lists.nic.cz
> Assunto: Re: Install process
>
>
>
> On 19/05/2015 08:41, Ricardo Perre wrote:
> > So, Ive given up trying to install FRED on CentOS.
> >
> > I gave it a try on Ubuntu 9 (almost 5 years old) following the PDF on
> > your
> > website: same frustrating result.
> >
> >
> >
> > Do you have any installation manual? Or a installer?
> >
> >
> >
> > Please, point me in some direction.
> >
> >
> >
> > Thank you for your time.
> >
> >
>
> My recommendation would be, if possible, to install Ubuntu 12.04 and then
> add the fred.nic.cz repository and install FRED with:<
>
> apt-get install fred
>
> I hope this helps.
>
> Mario
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
>
> -----
> Não foram detetados vírus nesta mensagem.
> Verificado por AVG - www.avg.com
> Versão: 2015.0.5941 / Base de dados de Vírus: 4342/9815 - Data de
> Lançamento: 05/19/15
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Milesovska 5, 130 00 Praha 3, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
On 19/05/2015 08:41, Ricardo Perre wrote:
> So, I’ve given up trying to install FRED on CentOS.
>
> I gave it a try on Ubuntu 9 (almost 5 years old) following the PDF on your
> website: same frustrating result.
>
>
>
> Do you have any installation manual? Or a installer?
>
>
>
> Please, point me in some direction.
>
>
>
> Thank you for your time.
>
>
My recommendation would be, if possible, to install Ubuntu 12.04 and
then add the fred.nic.cz repository and install FRED with:<
apt-get install fred
I hope this helps.
Mario
Hi,
billing features in FRED are described here
http://fred.nic.cz/attachment/wiki/documentation/billing.pdf?format=raw
Payments are processed using polling mechanism. We check every X min.
our bank account for new transactions. Inside package fred-transproc,
there are some hints how to connect to a bank, download records and
transform them into general format processed by FRED. This, however,
depends on API published by individual banks and this differs quite
heavily from bank to bank.
Regards,
Jaromir
On Mon, 2015-05-18 at 17:08 +0100, Ricardo Perre wrote:
> Hello,
>
>
>
> Is there any modules/extensions for fred to manage real-time payments
> and invoices?
>
>
>
> Thank you
>
> G9Telecom
> e-mail: ricardo.perre(a)g9telecom.pt
>
> We are a Deloitte Technology Fast 500 EMEA 2013
> P Please consider the environment before printing this mail note
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Milesovska 5, 130 00 Praha 3, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Hi Ricardo,
my recommendation is to follow installation procedure on
http://fred.nic.cz/wiki/download (section Binary packages)
Regards,
Jaromir
On Tue, 2015-05-19 at 15:41 +0100, Ricardo Perre wrote:
> So, I’ve given up trying to install FRED on CentOS.
>
> I gave it a try on Ubuntu 9 (almost 5 years old) following the PDF on
> your website: same frustrating result.
>
>
>
> Do you have any installation manual? Or a installer?
>
>
>
> Please, point me in some direction.
>
>
>
> Thank you for your time.
>
>
>
> Os melhores cumprimentos,
>
> Ricardo Perre
>
> G9Telecom
> tel.: 21 145 0130
>
> telm.: +351 96 308 61 37
> e-mail: ricardo.perre(a)g9telecom.pt
>
> We are a Deloitte Technology Fast 500 EMEA 2013
> P Please consider the environment before printing this mail note
>
> Esta mensagem (incluindo quaisquer anexos) pode conter informação
> confidencial para uso exclusivo do destinatário. Se não for o
> destinatário pretendido, não deverá usar, distribuir ou copiar este
> e-mail. Se recebeu esta mensagem por engano, por favor informe o
> emissor e elimine-a imediatamente. Obrigado
>
>
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Milesovska 5, 130 00 Praha 3, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
So, Ive given up trying to install FRED on CentOS.
I gave it a try on Ubuntu 9 (almost 5 years old) following the PDF on your
website: same frustrating result.
Do you have any installation manual? Or a installer?
Please, point me in some direction.
Thank you for your time.
Os melhores cumprimentos,
Ricardo Perre
G9Telecom
tel.: 21 145 0130
telm.: +351 96 308 61 37
e-mail: <mailto:ricardo.perre@g9telecom.pt> ricardo.perre(a)g9telecom.pt
We are a Deloitte Technology Fast 500 EMEA 2013
P Please consider the environment before printing this mail note
Esta mensagem (incluindo quaisquer anexos) pode conter informação
confidencial para uso exclusivo do destinatário. Se não for o destinatário
pretendido, não deverá usar, distribuir ou copiar este e-mail. Se recebeu
esta mensagem por engano, por favor informe o emissor e elimine-a
imediatamente. Obrigado
Hi Ricardo,
we have never tried to install it on CentOS. I'm trying to keep correct
dependencies for Fedora system and maybe it is slightly different. It
would be great to hear what are the major issues with CentOS
installation.
Regards,
Jaromir
On Mon, 2015-05-18 at 17:04 +0100, Ricardo Perre wrote:
> Hello,
>
> I’m trying to install fred on centos and its being a nightmare. Is
> there any documentation for this?
>
>
>
> G9Telecom
> e-mail: ricardo.perre(a)g9telecom.pt
>
> We are a Deloitte Technology Fast 500 EMEA 2013
> P Please consider the environment before printing this mail note
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Milesovska 5, 130 00 Praha 3, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Hello,
Is there any modules/extensions for fred to manage real-time payments and
invoices?
Thank you
G9Telecom
e-mail: <mailto:ricardo.perre@g9telecom.pt> ricardo.perre(a)g9telecom.pt
We are a Deloitte Technology Fast 500 EMEA 2013
P Please consider the environment before printing this mail note
Hello,
I'm trying to install fred on centos and its being a nightmare. Is there any
documentation for this?
G9Telecom
e-mail: <mailto:ricardo.perre@g9telecom.pt> ricardo.perre(a)g9telecom.pt
We are a Deloitte Technology Fast 500 EMEA 2013
P Please consider the environment before printing this mail note
Hello everybody,
I need an assistance on:
1. how to configure daphne, if it can be a step by step approach the better.
2. how to configure email templates to be used by FRED in sending out emails to the
contacts of the domain.
Regards,
Timothy
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
a) Define prices for each zone. Notice that prices are defined per zone
only (you can't define a price for a registrar/zone combination). For
example:
fred-admin --price_add --operation_price 80.00 --zone_fqdn tld
--operation CreateDomain
fred-admin --price_add --operation_price 80.00 --zone_fqdn tld
--operation RenewDomain
fred-admin --price_add --operation_price 80.00 --zone_fqdn tld
--operation EppOperation
Take into account that the system registrar must be defined as such and
that these prices do not apply to the system registrar
b) Add invoice prefixes:
fred-admin --invoice_add_prefix --zone_fqdn tld --prefix 01
c) Now you can start assigning credit like this:
fred-admin --invoice_credit --zone_id 1 --registrar_id 2 --price 2000.0
The zone_id usually is the TLD zone. The registrar_id usually starts
with 2 for non-system registrars. I' m supposing you are using a
pre-paid policy. FRED allows for post-paid, too.
d) Now you can use fred-client with the new registrar (I' m assuming
that you previously created the regitrar with fred-admin and assigned
the zone to that registrar):
fred-client --user=<registar handle> --password=<registar password)
--cert=/usr/share/fred-client/ssl/<registar handle>.crt
--privkey=/usr/share/fred-client/ssl/<registar handle>.key
(for easier administration, we use for the crt and key files the same
name that the registrar one)
e) Now create, renew, etc. domains:
create_domain guerra.tld <contact id.> NULL <nsset id.> NULL (1 y)
I' m assuming that you previously created both the contact and the nsset
ids.
After this, for each domain created or renewed, that price is deduced
from the credit. If you use pre-paid and the accululative operations
exceed the credit, a FRED error is given.
Suppose this:
update_domain guerra.cr NULL NULL NULL (NULL GUERRA-CR-K NULL)
This example adds keyset GUERRA-CR-K to domain guerra.cr.
Now lets try to dissociate that keyset:
update_domain guerra.cr NULL NULL NULL (NULL () NULL)
It does not work. Notice that I don't use NULL which, in that context
does not touch the keyset entry. () should mean no keyset, right?. The
same applies to dissociating an nsset making the domain a reserved one.
For example:
update_domain guerra.cr.NULL NULL NULL (() NULL NULL)
Best regards.
Hello all,
How can i only extract the current-expiry-date of a domain??.
Regards,
Timothy
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hi,
I'm successfully connecting to and able to login to FRED (demo) at TZNIC
- using the EPP Library that CentralNIC wrote (all PHP) - with some
modifications.
However - all "commands" after that seem to return the same (similar)
error message.
I've looked and copied examples from RFC5731...
As an example - the Info Command...
C:<?xml version="1.0" encoding="UTF-8" standalone="no"?>
C:<epp xmlns="urn:ietf:params:xml:ns:epp-1.0">
C: <command>
C: <info>
C: <domain:info
C: xmlns:domain="urn:ietf:params:xml:ns:domain-1.0">
C: <domain:name hosts="all">example.com</domain:name>
C: </domain:info>
C: </info>
C: <clTRID>ABC-12345</clTRID>
C: </command>
C:</epp>
So I actually send:
<?xml version="1.0" encoding="UTF-8" standalone="no"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0">
<command>
<info>
<domain:info
xmlns:domain="urn:ietf:params:xml:ns:domain-1.0">
<domain:name hosts="all">dnssec.or.tz</domain:name>
</domain:info>
</info>
<clTRID>ABC-12345</clTRID>
</command>
</epp>
and get back:
<?xml version="1.0" encoding="UTF-8"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0 epp-1.0.xsd"><response><result code="2001"><msg>Command syntax error</msg><extValue><value><domain:info xmlns:domain="urn:ietf:params:xml:ns:domain-1.0">
<domain:name hosts="all">dnssec.or.tz</domain:name>
</domain:info></value><reason>Schemas validity error: Element '{urn:ietf:params:xml:ns:domain-1.0}info': No matching global element declaration available, but demanded by the strict wildcard.</reason></extValue></result><trID><svTRID>ReqID-0002778177</svTRID></trID></response></epp>
What seems to be common is "Schemas validity error: Element
'{urn:ietf:params:xml:ns:domain-1.0}info': No matching global element
declaration available, but demanded by the strict wildcard." and I have
no idea what that means.
What should I be sending then????
...and from a debugging prospective - getting the reply on more or less
one line is real hard to read for a Human. Yes - a Machine has no
problem. I wish there was a switch for "Human Readable XML" - all
neatly grouped and indented like in the RFC documents.
In case its my login - it looks like this - except with User/Passwd XXXX'ed out:
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0">
<command>
<login>
<clID>REG-XXXXXXX</clID>
<pw>XXXXXXXX</pw>
<options>
<version>1.0</version>
<lang>en</lang>
</options>
<svcs>
<objURI>urn:ietf:params:xml:ns:domain-1.0</objURI>
<objURI>urn:ietf:params:xml:ns:contact-1.0</objURI>
<svcExtension>
<extURI>urn:ietf:params:xml:ns:secDNS-1.1</extURI>
</svcExtension>
</svcs>
</login>
</command>
</epp>
Reply==>
<?xml version="1.0" encoding="UTF-8"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0 epp-1.0.xsd"><response><result code="1000"><msg>Command completed successfully</msg></result><trID><svTRID>ReqID-0002778173</svTRID></trID></response></epp>
Please note - the current EPP XML works for the COZA System, Cocca and Central-NIC.
--
Mark James ELKINS - Posix Systems - (South) Africa
mje(a)posix.co.za Tel: +27.128070590 Cell: +27.826010496
For fast, reliable, low cost Internet in ZA: https://ftth.posix.co.za
I'd like to have my own client written in PHP talk to FRED.
I was given separate CRT and KEY files by TZNIC. I've combined this
into a single PEM file with:
cat posix.key posix.crt > /tmp/tznic.pem
I can then successfully get the "Welcome" XML from FRED at TZNIC with:
openssl s_client -connect fred.tznic.or.tz:700 -cert /tmp/tznic.pem
This shows as a self-signed certificate (as expected).
(verify error:num=18:self signed certificate)
The combining of the crt and key is because php seems to want a combined
PEM certificate...
Then - I try connecting with a VERY stripped down PHP script....
(attached)...
The core of which is:
$ip="fred.tznic.or.tz";
$port=700;
$cert="/tmp/tznic.pem";
$context = stream_context_create();
$result = stream_context_set_option($context, 'ssl', 'local_cert',
$cert);
$result = stream_context_set_option($context, 'ssl', 'verify_peer',
false);
$result = stream_context_set_option($context, 'ssl', 'verify_host',
false);
$result = stream_context_set_option($context, 'ssl',
'allow_self_signed', true);
$fp = stream_socket_client("tls://$ip:$port", $errno,$errstr, 20,
STREAM_CLIENT_CONNECT, $context);
if(!$fp) echo "CONNECT ERROR: $errstr ($errno)\n";
else // read the packet......
The "stream_socket_client" simply times out.
What am I doing wrong???
Almost the same code works for: (ie changing machines, ports and Certs)
Central-NIC
ZACR/CO.ZA
CoCCA
The FRED test system at TZNIC is running certificate validation - I'm
assuming its got something to do with that????
I'm using a variety of different versioned PHP's
eg
PHP 5.5.18-pl0-gentoo (cli) (built: Nov 10 2014 22:20:27)
PHP 5.5.21-pl0-gentoo (cli) (built: Feb 6 2015 16:46:22)
PHP 5.4.34-pl0-gentoo (cli) (built: Nov 3 2014 11:10:23)
All do the same thing - timeout.
Is anyone using a PHP based client?? - that would be the start of a
WHMCS plugin for C-Panel (etc).
--
Mark James ELKINS - Posix Systems - (South) Africa
mje(a)posix.co.za Tel: +27.128070590 Cell: +27.826010496
For fast, reliable, low cost Internet in ZA: https://ftth.posix.co.za
Hello All,
I want to make registrar X to register a domain to a certain zone[i.e mw].
How can i grant permission to registrar X to add a domain to a such a zone???
Regards,
Timothy
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hello all,
Can someone help on this:
I have done this,
a) create a CA authority (ca.key and ca.crt)
b) make a certificate request (server.csr)
c) sign the certificate request (server.crt and server.key) with the new CA authority
d) make a certificate request (registrar.csr)
e) sign the certificate request (registrar.crt and registrar.key) with the new CA
authority
Afterwards, the server.crt and server.key and the ca.crt files are included in
/usr/share/fred-mod-eppd/ssl directory,then the epp file is tweaked to reflect the
files and the fred-client configuration file in /etc/fred/directory is modified like this:
ssl_cert = %(dir)s/registrar.crt
ssl_key = %(dir)s/registrar.key
Now, if I try to run fred-client this is the result:
Login Failed
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
How do I.
a) Define prices (creation, update, EPP).
b) Create credit for a zone-registrar combination.
c) Deduce each EPP transaction (creation, updating, etc.) so the
transaction applies to the credit?.
I have scripts for creating a new registrar with their respective
certificates, and I know how to intoroduce prices. Then I supposedly
give credit to a registrar and a zone, but when I use that zone and
registar using fred-client there is no transaction. I'm missing
simething but what?.
Mario Guerra
Hello all,
Can someone help on this:
I have done this,
a) create a CA authority (ca.key and ca.crt)
b) make a certificate request (server.csr)
c) sign the certificate request (server.crt and server.key) with the new CA authority
d) make a certificate request (registrar.csr)
e) sign the certificate request (registrar.crt and registrar.key) with the new CA
authority
Afterwards, the server.crt and server.key and the ca.crt files are included in
/usr/share/fred-client/ssl directory,then the epp file is tweaked to reflect the files
and the fred-client configuration file is modified like this:
ssl_cert = %(dir)s/registrar.crt
ssl_key = %(dir)s/registrar.key
Now, if I try to run fred-client this is the result:
Login Failed
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hello,
I need some help on the following:
1.Where does fred keep the certificates for registrars?
2.In which configuration file should i include the path for the registrars' certificates
and how?
Best Regards.
Mathias Timothy
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
On 16 Feb 2015 at 10:39, Mario Guerra <fred-users(a)lists.nic.cz> wrote:
> How do I.
>
> a) Define prices (creation, update, EPP).
> b) Create credit for a zone-registrar combination.
> c) Deduce each EPP transaction (creation, updating, etc.) so the
> transaction applies to the credit?.
>
> I have scripts for creating a new registrar with their respective
> certificates, and I know how to intoroduce prices.
Mario, all,
We at the Malawi .mw registry have just finished populating our FRED registry with data
at our current home built registry system. Our biggest challenge has been creating contacts.
We are now just at this point of creating new registrars and need to generate, install
and activate certificates for new registrars.
We would therefore like to request you to send us details on how you efficiently do
certificate generation, creation, installtion and activation of registrars. A copy of
your scripts sent to us, if available, would be very helpful.
We would also really like to hear how others do this as well. We are running on Fedora
and our target is to reach production phase by 15 March 2015, in about a month.
> Then I supposedly
> give credit to a registrar and a zone, but when I use that zone and
> registar using fred-client there is no transaction. I'm missing
> simething but what?.
We see that our next biggest challenge will be billing as we move the registry from the
2R model in the present system where the registry was billing every registrant to the 3R
model where we move to create, manage and bill registrars.
We need to resolve this soon as some domains will start to expire at the end of March
2015 and hence payments will need to be made. So answers on these question raised here
as well as any additional documentation will also be very helpful to us.
Regards,
Paulos
======================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
>
> Mario Guerra
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hi,
a week ago I participated on Registry Operators Course organized by
AFTLD. For this event I've prepared four presentations about FRED so if
anyone is interested, these presentations are available on the event
website:
http://aftld.org/events/?_sfwCOM=Event:Show;233030&pg=233068
Regards,
Jaromir
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Americka 23, 120 00 Praha 2, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Jaromir,
I would like to express our appreciation that you accepted our AFTLD invitation to the
AROC Workshop at AIS in Djibouti in the past week and and that you made some really good
presentations and contributions as an instructor or trainer at the AFTLD AROC workshop.
We are indeed making these presentations and others available online on the link shown.
AFTLD similarly appreciates contributions from all the other instructors, presenters,
participants and members for making this such a very successful AROC.
We do look forward to further such collaboration from you and others as well, as AFTLD
tries to grow the African ccTLDs, TLD and registrar areas and business in our region.
Regards,
Paulos
======================================
Dr Paulos B Nyirenda
NIC.MW & .mw ccTLD
http://www.registrar.mw
Board member: AFRNIC http://www.afrinic.net
President: AFTLD http://www.aftld.org
On 2 Jun 2014 at 17:38, Jaromír Talíř <fred-users(a)lists.nic.cz> wrote:
> Hi,
>
> a week ago I participated on Registry Operators Course organized by
> AFTLD. For this event I've prepared four presentations about FRED so
> if anyone is interested, these presentations are available on the
> event website:
>
> http://aftld.org/events/?_sfwCOM=Event:Show;233030&pg=233068
>
> Regards,
> Jaromir
>
> --
> Jaromir Talir
> technicky reditel / Chief Technical Officer
> -------------------------------------------
> CZ.NIC, z.s.p.o. -- .cz domain registry
> Americka 23, 120 00 Praha 2, Czech Republic
> mailto:jaromir.talir@nic.cz http://nic.cz/
> sip:jaromir.talir@nic.cz tel:+420.222745107
> mob:+420.739632712 fax:+420.222745112
> -------------------------------------------
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>
>
> -----
> No virus found in this message.
> Checked by AVG - www.avg.com
> Version: 2014.0.4570 / Virus Database: 3955/7609 - Release Date:
> 06/02/14
>
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hallow,
I will be on annual leave from 12/05/2014 to 02/06/2014 inclusive.
While am away, my tasks will be handled by:
1. NURDIN SHEKIVULI
nurdin.shekivuli(a)smart.co.tz
0798020049
2. NOEL LUSUVA
noel.lusuva(a)smart.co.tz
0798020131
3. MOEZ HUSSEIN
moez.hussein(a)smart.co.tz
0798020021
I might be reachable on 0798020022 or 0715928870 or 0756928870
I wish you all the best.
Hallow,
I will be on annual leave from 12/05/2014 to 02/06/2014 inclusive.
While am away, my tasks will be handled by:
1. NURDIN SHEKIVULI
nurdin.shekivuli(a)smart.co.tz
0798020049
2. NOEL LUSUVA
noel.lusuva(a)smart.co.tz
0798020131
3. MOEZ HUSSEIN
moez.hussein(a)smart.co.tz
0798020021
I might be reachable on 0798020022 or 0715928870 or 0756928870
I wish you all the best.
Hi,
after some time I updated website http://fred.nic.cz/download with
source files of our most recent version FRED-2.16 and installation
procedures for supported operating systems Ubuntu 12.04 and Fedora 20.
Few weeks ago we put this version of FRED into production and I can
recommend it for use by other registries.
There is a lot of new features since last announced version so this is
just highlights:
- Contact data management features (verification, merging identical
contacts). Presented at last ICANN -
http://buenosaires48.icann.org/en/schedule/mon-tech/presentation-contact-va…
- Administrative blocking of domains - law enforcement agencies
sometimes ask registry to disable domain or prevent any changes in
domain. In this version web administration interface has 'Block' and
'Unblock' buttons in domain detail
- Billing changes - in previous versions there was a problem with
selecting proper price in price list when registry was in different
timezone than 'Europe/Prague'. Billing is also optional feature in this
version and if you want to enable it you have to set
epp_operations_charging = on in fred configuration file for fred-rifd
daemon. **Check this when upgrading to this version**
- Better IDN. To enable IDN in previous versions you had to set some
compile time option. Now system registrar can register IDN domains
immediately and all registrars can register IDN domain when
configuration option ;allow_idn = false' is set. Still, there is no
checking against list of allowed code pages
- A lot of bugfixes
If you have any questions when testing, let me know.
Regards,
Jaromir
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Americka 23, 120 00 Praha 2, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Greetings,
I see that the FRED server has a hard time parsing xmls that have a
namespace prefix. Please confirm that this is invalid xml for your sever
(even though it should NOT be):
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<ns2:epp xmlns:ns2="urn:ietf:params:xml:ns:epp-1.0" xmlns="
http://www.nic.cz/xml/epp/domain-1.4">
<ns2:command>
<ns2:login>
<ns2:clID>XXXXXXXXX</ns2:clID>
<ns2:pw>XXXXXXXXXXXXXX</ns2:pw>
<ns2:options>
<ns2:version>1.0</ns2:version>
<ns2:lang>en</ns2:lang>
</ns2:options>
<ns2:svcs>
<ns2:objURI>http://www.nic.cz/xml/epp/contact-1.6</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/domain-1.4</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/nsset-1.2</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/keyset-1.3</ns2:objURI>
<ns2:svcExtension>
<ns2:extURI>http://www.nic.cz/xml/epp/enumval-1.2</ns2:extURI>
</ns2:svcExtension>
</ns2:svcs>
</ns2:login>
<ns2:clTRID>001#13-12-07at15:18:17</ns2:clTRID>
</ns2:command>
</ns2:epp>
--
Regards,
Spase
Greetings,
I see that the FRED server has a hard time parsing xmls that have a
namespace prefix. Please confirm that this is invalid xml for your sever
(even though it should NOT be):
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<ns2:epp xmlns:ns2="urn:ietf:params:xml:ns:epp-1.0" xmlns="
http://www.nic.cz/xml/epp/domain-1.4">
<ns2:command>
<ns2:login>
<ns2:clID>XXXXXXXXX</ns2:clID>
<ns2:pw>XXXXXXXXXXXXXX</ns2:pw>
<ns2:options>
<ns2:version>1.0</ns2:version>
<ns2:lang>en</ns2:lang>
</ns2:options>
<ns2:svcs>
<ns2:objURI>http://www.nic.cz/xml/epp/contact-1.6</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/domain-1.4</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/nsset-1.2</ns2:objURI>
<ns2:objURI>http://www.nic.cz/xml/epp/keyset-1.3</ns2:objURI>
<ns2:svcExtension>
<ns2:extURI>http://www.nic.cz/xml/epp/enumval-1.2</ns2:extURI>
</ns2:svcExtension>
</ns2:svcs>
</ns2:login>
<ns2:clTRID>001#13-12-07at15:18:17</ns2:clTRID>
</ns2:command>
</ns2:epp>
--
Regards,
Spase
Hello,
Kindly help me to renew my domain as our system administrator is not around
to help.
I want to renew the domain name ushirika.co.tz which must be done in
fred-client installed in linux OS.
I can SSH the server with login credentials correct and I have the su
password but in both place su or the first one when I put DIR command I find
there is Desktop and fred-client.conf
I don't know what to do next.
Help please.
Michael Erick
| ISP Network Engineer |
|Benson Informatics Limited, P.O.Box 78914, Plot No.13, Mikocheni A2,
Warioba Area, Dar-es-Salaam. | <Tel:+255> Tel: +255 222 666 670
Fax:+255 222 666 471 |Mob: +255 798 020 022, +255 797 255 727 |E-Mail:
<mailto:michaele@bol.co.tz%7CWeb> michaele(a)bol.co.tz |Web:
<http://www.bolmobile.co.tz/> www.bolmobile.co.tz
Hi,
I am new to this list and would like to install a test environment of Fred
and eventually have it operational for our TLD registry in Lebanon (.LB).
I am seeking your assistance and guidance in order to proceed with the
installation.
I am working on ubuntu 12 and so far i have installed the following fred
packages:
ii fred-adifd 2.13.5~rc1-1~precise+1
FRED Administration Interface Daemon
ii fred-client 2.6.0~rc1-1ubuntu3~precise+1
FRED client for registrars, text interface
ii fred-client-qt4 2.6.0~rc1-1ubuntu3~precise+1
FRED client for registrars, GUI interface
ii fred-common 2.14.0~rc7-1~precise+1
FRED common files
ii fred-db 2.13.0~rc3-1~precise+1
DB schema and example data for FRED
ii fred-doc2pdf 2.5.1~rc1-2ubuntu2~precise+1
PDF generator for FRED registry system
ii fred-idl 2.14.0~rc1-1~precise+1
IDL files for FRED
ii fred-logd 2.13.5~rc1-1~precise+1
FRED logging daemon
ii fred-mifd 2.13.5~rc1-1~precise+1
FRED backend for MojeID
ii fred-msgd 2.13.5~rc1-1~precise+1
FRED messaging daemon
ii fred-pifd 2.13.5~rc1-1~precise+1
FRED Public Interface Daemon
ii fred-pyfred 2.4.2~rc2-1~precise+1
FRED Support Daemons
ii fred-pylogger 1.2.0~rc1-1ubuntu1~precise+1
Python wrapper for logging to FRED logger
ii fred-rifd 2.13.5~rc1-1~precise+1
FRED Registrar Interface Daemon
ii fred-stats 1.2.2~rc1-1~precise+1
FRED is complete central domain registry
ii fred-transproc 1.2.0-1~precise+1
FRED support for importing bank statements
ii fred-webadmin 3.10.0~rc1-1ubuntu4~precise+1
www administration interface for FRED
ii fred-whois 2.11.0-1ubuntu1~precise+1
Web Whois interface for FRED registry system
ii nagios-pyfred-genzone-plugin 2.4.2~rc2-1~precise+1
Nagios plugin to FRED Zone Generator
ii pyfred-filemanager 2.4.2~rc2-1~precise+1
FRED File Manager Client
ii pyfred-genzone 2.4.2~rc2-1~precise+1
FRED Zone Generator Client
Apache, postgres, python, corba are installed as well.
I loaded the sql database from /usr/share/fred-db/structure.sql
I am stuck at this level and would appreciate your help to proceed.
Regards,
Samer
Hi everyone,
We are currently looking into FRED for our needs, and would like to confirm if it supports RFC3915 or Domain Registry Grace Period Mapping.
http://tools.ietf.org/html/rfc3915
Thanks in advance!
Hi,
in package setup.py of fred-whois-2.8.4, line 73:
def check_CORBA(self):
try:
from omniORB import CORBA
import omniidl
except ImportError, msg:
sys.stderr.write('ImportError: %s\nWhois needs omniORB and omniidl module. For more see README.\n' % msg)
sys.exit(1)
from what i've inspected in the source code, there is no file which "import omniidl". this requirement will make installation error although omniidl-python package has been installed (i am using ubuntu precise). So it should be:
def check_CORBA(self):
try:
from omniORB import CORBA
except ImportError, msg:
sys.stderr.write('ImportError: %s\nWhois needs omniORB. For more see README.\n' % msg)
sys.exit(1)
CMIIW
--
Sayid Munawar
Sent with Sparrow (http://www.sparrowmailapp.com/?sig)
Hello,
I've just installed fred from apt-repository on lucid. Now, when I try
to connect to EPP server using fred-client, I get following error:
ERROR: socket.sslerror: [Errno 1] _ssl.c:480: error:14094418:SSL
routines:SSL3_READ_BYTES:tlsv1 alert unknown ca (10.128.5.195:700)
Certificate not signed by verified certificate authority.
There is (hopefully) no problem with CA trust. Moreover, I can see this
in fred-eppd.log:
CORBA exception: IDL:omg.org/CORBA/COMM_FAILURE:1.0
Could not get greeting data from fred_rifd
Any ideas please?
Regards,
Tomas Mazak
Hi,
I've just successfully installed fred on ubuntu 12.04. phew…
- i've added zone
- i've added registrar to zone
- i've added acl for registrar
now the problem is:
when saving anything data (certificate md5, edit street, etc) i got error returned by the fred-webadmin:
Required_integer_as_parameter
No output generated from debug log, i've set debug level to "debug" too.
Any clue how to fix this ?
--
Sayid Munawar
Sent with Sparrow (http://www.sparrowmailapp.com/?sig)
I'm trying to test introducing domain_blacklist entries. My purpose is to blacklist only one domain (under a controlled environment). These are the SQL statements:
fred=# insert into domain_blacklist values (1,'^guerra.co.cr$','2013-02-21','2013-02-22','A test');
INSERT 0 1
fred=# insert into domain_blacklist values (1,'^guerra.co.cr$','2013-02-21','2013-02-28','A test');
INSERT 0 1
But info_domain gives this:
NIC-REG1(a)127.0.0.1> info_domain guerra.co.cr
Domain name: guerra.co.cr
Repository object ID: D0000045196-EPP
Created by: NIC-REG1
Designated registrar: NIC-REG1
Updated by: NIC-REG1
Created on: 2012-02-21T07:47:02-06:00
Last update on: 2013-02-15T16:49:46-06:00
Expiration date: 2015-02-21
NSSET ID: GUERRA_CO_CR
Password for transfer: IvMlT73J
Status: ok - Objekt is without restrictions
Registrant ID: GUERRAMARIOALBERTO_AT_GMAIL.COM
Administrative contact: MGUERRA_AT_NIC.CR
MGUERRA2_AT_NIC.CR
The domain is not blacklisted, it seems. Thoughts?.
Thanks in advance.
--
Mario Guerra <mguerra(a)nic.cr>
Hello,
I am interested knowing if there is a module for whmcs that works with FRED.
Let me know if you have any ideas about this.
Thank you
--
*Sadi*
Web Developer - IT
Due to the augmented abilities of FRED 2.11, I've attempted to migrate the production database, which runs FRED 2.2, to the FRED 2.11 format, running in a test server running the later. For the DB migration, I've run the SQL scripts, one by one, until it supposedly has the 2.11 structure. I've not run the script for having the initial structure, but a) firstly I migrate the complete DB from the production server to the test server and B) run the appropiate SQL scripts from 2.2 to 2.11.
The result when I try to run fred-client:
root@fredbeta:~# fred-client
Unsupported language code: 'es' in os.environ.LANG. Available codes are: cs, en. Set default to: 'en'.
FredClient 2.4.1
Type "help", "license" or "credits" for more information.
Using configuration from /usr/etc/fred/fred-client.conf
Connecting to 127.0.0.1, port 700 ...
ERROR: Login failed
The fred-eppd.log file:
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] fred-logd createRequest logging error: IDL:ccReg/Logger/INTERNAL_SERVER_ERROR:1.0
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] Error while logging the request
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] Created session in fred-logd with id: 68462
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] using fred-logd session id: 68462
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] Client disconnected without proper logout.
[13/Dec/2012:10:45:24 --0600] 127.0.0.1 (process:17973) [sessionID 512160] Session ended
The fred.log file:
[2012-Dec-13 10:45:24] [fred-server] [error] [logd-<30156468>/session-0] --
Result failed: INSERT INTO request (time_begin, time_end, source_ip, user_name,
user_id, service_id, request_type_id, session_id, is_monitoring, result_code_id
) VALUES ('2012-12-13 16:45:24.018801', NULL, E'127.0.0.1', NULL, NULL, 3, 100,
NULL, 'f', NULL) (ERROR: column "service" does not exist <------------------------------
CONTEXT: SQL statement "CREATE TABLE request_epp_12_12 (CHECK (time_begin >=
TIMESTAMP '2012-12-01 00:00:00' AND time_begin < TIMESTAMP '2013-01-01 00:00:00
' AND service = 3 AND is_monitoring = 'f') ) INHERITS (request)"
PL/pgSQL function "create_tbl_request" line 31 at EXECUTE statement <-----------------------
SQL statement "SELECT create_tbl_request(time_begin, service_id, is_monitoring)"
PL/pgSQL function "tr_request" line 26 at PERFORM
The are apparent problems when creating the auxiliary request_epp_<year>_<month> table it seems.
Best regards.
--
Mario Guerra <mguerra(a)nic.cr>
Hi!
Is it possible to implement compliance with rfc_5731 and rfc_5732?
Conformity in the form domain/host?
Example:
1.1. Relationship of Domain Objects and Host Objects (http://tools.ietf.org/rfc/rfc5731.txt)
[skip]
<domain:ns>
<domain:hostAttr>
<domain:hostName>ns1.example.net</domain:hostName>
<domain:hostAddr
ip="v4">192.0.2.2</domain:hostAddr>
<domain:hostAddr
ip="v6">1080:0:0:0:8:800:200C:417A</domain:hostAddr>
</domain:hostAttr>
<domain:hostAttr>
<domain:hostName>ns2.example.net</domain:hostName>
</domain:hostAttr>
</domain:ns>
[/skip]
but Fred implement
[skip]
<nsset:roid>N0000000003-EPP</nsset:roid>
<nsset:status s="linked">Has relation to other records in
registry</nsset:status>
<nsset:clID>REG</nsset:clID>
<nsset:crID>REG</nsset:crID>
<nsset:crDate>2012-12-11T21:32:45+02:00</nsset:crDate>
<nsset:authInfo>krfJnwlj</nsset:authInfo>
<nsset:ns><nsset:name>ns.ns.example.net</nsset:name>
<nsset:addr>1.1.1.65</nsset:addr>
<nsset:addr>2.1.140.65</nsset:addr>
<nsset:addr>2.1.141.65</nsset:addr>
<nsset:addr>2.1.142.65</nsset:addr>
<nsset:addr>2.1.143.65</nsset:addr>
<nsset:addr>2.1.144.65</nsset:addr>
<nsset:addr>2.1.145.65</nsset:addr>
</nsset:ns>
<nsset:ns><nsset:name>ns2.example.net</nsset:name>
<nsset:addr>2.1.1.68</nsset:addr>
<nsset:addr>2.1.1.68</nsset:addr>
<nsset:addr>2.1.1.68</nsset:addr>
<nsset:addr>2.1.1.68</nsset:addr>
</nsset:ns>
[/skip]
added description to schemas:
to: all.xsd
<import namespace="http://nic.domain.my/epp/host-1.1"
schemaLocation="host-1.1.xsd"/>
add file host-1.1.xsd with schema, about nsset .... (validate mod_eppd)
change structure in IDL files, added new object
it is real, it is achieved compliance? Not changes all sources fred-server?
Greetings!
I've installed FRED on Fedora 17 according to
http://fred.nic.cz/wiki/download
Now I can't obtain the admin interface. Where can the credentials for
demo access be found?
Thank you!
--
SY, Dmitry Belyavsky
In this post I'm describing the other apparent problem I found.
I'm upgrading a copy of our FRED 2.2 database (which we are using for production), and trying to upgrade it to 2.11.2, the last version. For that I typed this SQL script:
postgres@freddb:/root/fred-db-2.11.2/upgrades$ more 2-2-a-2-11.sql
\i 2_2_0-2_3_0.sql
\i 2_3_0-2_4_0.sql
\i 2_4_0-2_5_0-ddl.sql
\i 2_4_0-2_5_0-logger-ddl.sql
\i 2_4_0-2_5_0-dml.sql
\i 2_4_0-2_5_0-logger-dml.sql
\i 2.5.0-2.5.1-ddl.sql
\i 2.5.0-2.5.1-dml.sql
\i 2.5.1-2.6.0-ddl.sql
\i 2.5.1-2.6.0-logger-ddl.sql
\i 2.5.1-2.6.0-dml.sql
\i 2.5.1-2.6.0-logger-dml.sql
\i 2.6.0-2.7.0-ddl.sql
\i 2.6.0-2.7.0-dml.sql
\i 2.6.0-2.7.0-logger-dml.sql
\i 2.7.0-2.8.0-ddl.sql
\i 2.7.0-2.8.0-dml.sql
\i 2.8.0-2.8.1-ddl.sql
\i 2.8.0-2.8.1-dml.sql
\i 2.8.1-2.8.2-dml.sql
\i 2.8.1-2.9.0-01-prepare.sql
\i 2.8.1-2.9.0-02-changes-ddl.sql
\i 2.8.1-2.9.0-03-changes-dml.sql
\i 2.8.1-2.9.0-04-finish-ddl.sql
\i 2.9.0-2.10.0-ddl.sql
\i 2.9.0-2.10.0-dml.sql
\i 2.10.0-2.11.0-01-ddl.sql
\i 2.10.0-2.11.0-02-dml.sql
\i 2.10.0-2.11.0-03-ddl.sql
\i 2.11.0-2.11.1-dml.sql
\i 2.11.1-2.11.2-dml.sql
-------------------------------
This theoretically, upgrades the DB. But when I run fred-client using this upgraded database, this is when I run fred-client (after setting up fred-server and fred-pyfred):
-------------------------------
root@fredbeta:~# fred-client
Unsupported language code: 'es' in os.environ.LANG. Available codes are: cs, en. Set default to: 'en'.
FredClient 2.4.1
Type "help", "license" or "credits" for more information.
Using configuration from /usr/etc/fred/fred-client.conf
Connecting to 127.0.0.1, port 700 ...
ERROR: Login failed.
-------------------------------
The /var/log/fred.log relevant fragment gives me this:
[2012-Sep-06 10:36:19] [fred-server] [error] [logd-<60380061>/session-0/request-311805] -- Result failed: INSERT INTO request_data (request_time_
begin, request_service_id, request_monitoring, request_id, content, is_response) VALUES ('2012-09-06 16:36:19.858714', 3, 'f', 311805, E'<?xml version
="1.0" encoding="UTF-8" standalone="no"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0 e
pp-1.0.xsd"><command><login><clID>NIC-REG1</clID><pw>reg1.cr</pw><options><version>1.0</version><lang>en</lang></options><svcs><objURI>http://www.nic.
cz/xml/epp/contact-1.6</objURI><objURI>http://www.nic.cz/xml/epp/nsset-1.2</objURI><objURI>http://www.nic.cz/xml/epp/domain-1.4</objURI><objURI>http:/
/www.nic.cz/xml/epp/keyset-1.3</objURI><svcExtension><extURI>http://www.nic.cz/xml/epp/enumval-1.2</extURI></svcExtension></svcs></login><clTRID>bttz0
01#12-09-06at10:36:19</clTRID></command></epp>
', 'f') (ERROR: column "entry_time_begin" of relation "request_data_epp_12_09" does not exist <-------------------------
LINE 1: INSERT INTO request_data_epp_12_09(entry_time_begin, entry_s... <-----------------------------------
^
QUERY: INSERT INTO request_data_epp_12_09(entry_time_begin, entry_service, entry_monitoring, entry_id, content, is_response) VALUES ('2012-09-06 16:
36:19.858714', 3, 'f', 311805, '<?xml version="1.0" encoding="UTF-8" standalone="no"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0 e
pp-1.0.xsd"><command><login><clID>NIC-REG1</clID><pw>reg1.cr</pw><options><version>1.0</version><lang>en</lang></options><svcs><objURI>http://www.nic.
cz/xml/epp/contact-1.6</objURI><objURI>http://www.nic.cz/xml/epp/nsset-1.2</objURI><objURI>http://www.nic.cz/xml/epp/domain-1.4</objURI><objURI>http:/
/www.nic.cz/xml/epp/keyset-1.3</objURI><svcExtension><extURI>http://www.nic.cz/xml/epp/enumval-1.2</extURI></svcExtension></svcs></login><clTRID>bttz0
01#12-09-06at10:36:19</clTRID></command></epp>
', 'f')
CONTEXT: PL/pgSQL function "tr_request_data" line 18 at EXECUTE statement
---------------------------------------------------------------------
Now, if I drop the table request_data_epp_12_09 so it is newly created, and run fred-client again this is what I get:
---------------------------------------------------------------------
[2012-Sep-06 10:40:00] [fred-server] [error] [logd-<62621798>/session-0/request-311806] -- Result failed: INSERT INTO request_data (request_time_
begin, request_service_id, request_monitoring, request_id, content, is_response) VALUES ('2012-09-06 16:40:00.170266', 3, 'f', 311806, E'<?xml version
="1.0" encoding="UTF-8" standalone="no"?>
<epp xmlns="urn:ietf:params:xml:ns:epp-1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="urn:ietf:params:xml:ns:epp-1.0 e
pp-1.0.xsd"><command><login><clID>NIC-REG1</clID><pw>reg1.cr</pw><options><version>1.0</version><lang>en</lang></options><svcs><objURI>http://www.nic.
cz/xml/epp/contact-1.6</objURI><objURI>http://www.nic.cz/xml/epp/nsset-1.2</objURI><objURI>http://www.nic.cz/xml/epp/domain-1.4</objURI><objURI>http:/
/www.nic.cz/xml/epp/keyset-1.3</objURI><svcExtension><extURI>http://www.nic.cz/xml/epp/enumval-1.2</extURI></svcExtension></svcs></login><clTRID>doej0
01#12-09-06at10:40:00</clTRID></command></epp>
', 'f') (ERROR: column "entry_time_begin" does not exist
CONTEXT: SQL statement "CREATE TABLE request_data_epp_12_09 (CHECK (entry_time_begin >= TIMESTAMP '2012-09-01 00:00:00' AND entry_time_begin < TIMEST
AMP '2012-10-01 00:00:00' AND entry_service = 3 AND entry_monitoring = 'f') ) INHERITS (request_data) "
PL/pgSQL function "create_tbl_request_data" line 27 at EXECUTE statement
SQL statement "SELECT create_tbl_request_data(entry_time_begin, entry_service, entry_monitoring)"
PL/pgSQL function "tr_request_data" line 23 at PERFORM
------------------------------------------------------
It seems that the upgrade scripts almost dotheir job, but I feel something got overlooked.
What do you think?.
Best regards.
--
Mario Guerra <mguerra(a)nic.cr>
I want to inform about a couple of possible bugs for FRED 2.11 (I tried to use TRAC, but it is not clear how to ccreate a new user):
1. fred-admin listing contacts
I did in a controlled environment a brand new FRED 2.11 installation. After running the orderedsql.sh script for installing the PostgreSQL initial environment I ran fred-admin for creating an initial registrar, a zone, and registered the zone with that registrar. After that, I created a contact. This is what I get:
a) fred-client
NIC-REG1(a)127.0.0.1> list_contacts
Number of records: 1
MGUERRA_AT_NIC.CR
NIC-REG1(a)127.0.0.1> info_contact MGUERRA_AT_NIC.CR
Contact ID: MGUERRA_AT_NIC.CR
Repository object ID: C0000000001-EPP
Created by: NIC-REG1
Designated registrar: NIC-REG1
Created on: 2012-09-04T18:18:51-06:00
Name: Mario Guerra
Street: AV. 12-14, Calle 25
City: San Jose
Postal code: 2060-1000
Country code: CR
Password for transfer: hPdgeOiT
Email: mguerra(a)nic.cr
Status: ok - Objekt is without restrictions
Disclose: voice
fax
email
vat
ident
notify_email
addr
b) fred-admin
root@fredbeta:~# fred-admin --contact_list
<objects>
</object>
Have you reproduced this problem?.
For the next possible bug, I'm posting another email.
Best regards.
--
Mario Guerra <mguerra(a)nic.cr>
Further to my previous email, I did the instalation of FRED from
packages of Lucid and did a lot of tweaking but seems alot of things
works but I was sad not to find a script like fred-server which i think
helps when starting the services unless the name is changed but i think
it helps especially when one wants to start services at once.
Hi,
I am having a problem with fred-pyfred on lucid when I start the
services all starts except fred-pyfred when i start via pyfredctl it
does not start, checking the logs I get the bellow errors....
fred-pyfred[1672]: segfault at 0 ip b71a57e3 sp bf8f3240 error 4 in
libomniORB4.so.1.4[b70ec000+17a000]
Now I decided to dig more and found out when I try to genzone I get the
'Segmentation Fault' error.
Can anyone help please.
--
b
Hi,
I am having a problem with fred-pyfred on lucid when I start the
services all starts except fred-pyfred when i start via pyfredctl it
does not start, checking the logs I get the bellow errors....
fred-pyfred[1672]: segfault at 0 ip b71a57e3 sp bf8f3240 error 4 in
libomniORB4.so.1.4[b70ec000+17a000]
Now I decided to dig more and found out when I try to genzone I get the
'Segmentation Fault' error.
Can anyone help please.
--
b
Hi,
CZ.NIC will host next ICANN meeting in Prague in June 24-29 this year -
http://prague44.icann.org/ and http://www.icannprague.cz/
I had an idea to do one day workshop for FRED prior to this meeting on
Sunday 24 if there will be some demand. Topics would cover:
- features, architecture, component description
- installation procedure
- basic configuration - adding zone, adding registrar,...
- place for questions.
The workshop would be in our offices where we have small educational
room for 20 people. Please let me know if you would like to participate
in this activity, we have five weeks to arrange it.
Regards,
Jaromir
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Americka 23, 120 00 Praha 2, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Anyone tried to install the 2.11!?
I am getting sql/epp_login.sql: No such file or directory on the fred-db* package
fred-db-2.11.0 # make
./orderedsql.sh > structure.sql
cat: ./sql/epp_login.sql: No such file or directory
Regards,
A
As of today, 12 June, we are using our EPP module and fred-client certificates.They are signed by the same CA, in our case, our own.
These scripts can help you to do that:
CA creation (if you decide to have your own):
--------------------------------------------
#!/bin/bash
openssl genrsa -des3 -out nicca.key 4096
openssl req -new -x509 -days 1095 -key nicca.key -out nicca.crt -subj /C=<country>/L=<City>/O=<country>.NIC/OU=Registry/CN=localhost/
Certificate request and signing (the later is done by an external CA if you decide so):
#!/bin/bash
echo "Create CSR for $1"
openssl genrsa -des3 -out $1.key 4096
openssl req -new -key $1.key -out $1.csr -subj /C=<country>/ST=<province/state>/L=<Location>/O=<country>.NIC/OU=Registry/CN=localhost/emailAddress=<your email address>
echo "Sign certificate for $1" (you don't need this if you use an external CA)
openssl x509 -req -days 1095 -in $1.csr -CA nicca.crt -CAkey nicca.key -set_serial 01 -out $1.crt
echo "Generate key w/o passphrase"
openssl rsa -in $1.key -out $1.key.insecure
mv $1.key $1.key.secure
mv $1.key.insecure $1.key
The later script is used both for the EPP module and fred-client but create two independent certificates. Algo, for fred-client you need to modify the cert field in the registraracl table for the respective registrar so it states the FRED certificate fingerprint. Calculate that with this:
openssl x509 -md5 -noout -in NIC-REG1.crt -fingerprint | awk 'BEGIN {FS="="} {print $2}'
More details at http://www.guerra.co.cr/ (Certificate management using FRED).
Any comment is welcome.
--
Mario Guerra <mguerra(a)nic.cr>
Following this thread:
1. I setup an account in cacert.org for having certificates emitted with them. Then I generated a couple of certificates, one for the EPP Apache module and one for the client (which means that both certificates are different, not the same situation described in the README file in /usr/share/fred-mod-eppd/ssl/README. Now, I notice both certificates are emitted by the very same CA, cacert.org in this case. They work perfectly. So I have some questions:
a) What happens if nic.cr has its own certificates with, say, cacert.org and the clients using fred-client generate certificates using the same CA, but with their own usernames?. My guess is that it shouldn't be a problem, because the CA cert associated in the eppd module configuration is the same. That is, for the EPP module certificate nic.cr use a cacert.org user like, say, "nicrcr" and the client connecting with nic.cr use their own user, say, "client1".
b) What if nic.cr uses, say, cacert.org for the EPPD Apache module, but a client uses, Certplus, Thawte or Verising for signing their fred-client certificates?.
c) I have tried to use our own (test) CA following the procedure in http://www.tc.umn.edu/~brams006/selfsign.html, part 1B, but it does not work. I guess I have to include something and I'm not aware of it.
Thanks in advance.
--
Mario Guerra <mguerra(a)nic.cr>
Dear Jaromir,
I would like to be part of the FRED workshop participant.
Thank you. My name is below.
regards,
Ghislain NKERAMUGABA
.rw ccTLD Coordinator - RICTA
Email: cctldc(a)ricta.org.rw / ghislain.n(a)ricta.org.rw
Mob/Cell: +250-788470507
Website: www.ricta.org.rw
I've written this so you can properly use your own certificates in a FRED production environment, either using your own or an external CA.
http://www.blogger.com/blogger.g?blogID=4416341164567520466#editor/target=p…
Consider this a draft and feel free to comment about it.
Best regards.
--
Mario Guerra <mguerra(a)nic.cr>
Dear all,
I am having a problem installing fred when I install fred-pyfred, it is
giving me an error saying that the popen2 is duplicated and I should
use the subprocess module.
I am confused and don't want to make more errors, can you help me?
Thank you
Hello everyone,
Probably this is the best place to ask, since WHMCS is being used by most small hosters today, does anyone know if there is some Module for WHMCS and FRED installations!?
Regards,
A
Hello guys
Bryton's right. But let's not forget about registraracl table and MD5
fingerprint of the certificate after.
Some more details can be found in the excerpt I attach. They're not so
relevant in this case but they might be helpful to some folks in the
future. It's openssl and Ubuntu based.
Best
Piotr
On 21/05/12 18:32, bfocus(a)tznic.or.tz wrote:
>
> Mario,
>
> Have you tweaked epp file in apache by adding the new CA and the server
> cert and key?
>
> What I normally do is I use tinyca on a separate machine...
>
> I create a CA,create server cert and key and finally the client cert and key.
>
> Once done I ship them to the server I want then does a small change on the
> epp file in apache to reflect the ca and server cert/key
>
> Then I use client certs and key for fred-client.
>
> I have never tried to use the same server cert and key for the fred-client.
>
> Bryton.
>
>> I have done this, according to
>> http://www.tc.umn.edu/~brams006/selfsign.html, part 1B (generating your
>> own CA):
>>
>> a) create a CA authority (ca.key and ca.crt)
>> b) make a certificate request (server.csr)
>> c) sign the certificate request (server.crt and server.key) with the new
>> CA authority
>> d) change the server key so it does not ask for a passphrase.
>>
>> Afterwards, the server.crt and server.key files are included in
>> /usr/share/fred-client/ssl directory, and the fred-client configuration
>> file is modified like this:
>>
>> ssl_cert = %(dir)s/server.crt
>> ssl_key = %(dir)s/server.key
>>
>> Now, if I try to run fred-client this is the result:
>>
>> ERROR: socket.sslerror: [Errno 1] _ssl.c:480: error:14094418:SSL
>> routines:SSL3_READ_BYTES:tlsv1 alert unknown ca (200.107.82.18:700)
>> Certificate not signed by verified certificate authority
>>
>> What should I do for fred-client to identify these certificates as valid?.
>>
>> Thanks in advance.
>>
>> Note: the new fred-client is perfectly compatible with FRED 2.2.
>>
>>
>> --
>> Mario Guerra <mguerra(a)nic.cr>
>> _______________________________________________
>> fred-users mailing list
>> fred-users(a)lists.nic.cz
>> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
>>
>
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
Jaromir,
I would like to participate.
It is my hope that you will have a detailed hands on installation session. I would like
to return with a working FRED registry on my Fedora laptop that includes the new
features as well like post paid billing.
Regards,
Paulos
==============================
Dr Paulos Nyirenda
Malawi SDNP Coodinator
On 17 May 2012 at 13:55, Jaromir Talir wrote:
> Hi,
>
> CZ.NIC will host next ICANN meeting in Prague in June 24-29 this year -
> http://prague44.icann.org/ and http://www.icannprague.cz/
>
> I had an idea to do one day workshop for FRED prior to this meeting on
> Sunday 24 if there will be some demand. Topics would cover:
> - features, architecture, component description
> - installation procedure
> - basic configuration - adding zone, adding registrar,...
> - place for questions.
>
> The workshop would be in our offices where we have small educational
> room for 20 people. Please let me know if you would like to participate
> in this activity, we have five weeks to arrange it.
>
> Regards,
> Jaromir
>
> --
> Jaromir Talir
> technicky reditel / Chief Technical Officer
> -------------------------------------------
> CZ.NIC, z.s.p.o. -- .cz domain registry
> Americka 23, 120 00 Praha 2, Czech Republic
> mailto:jaromir.talir@nic.cz http://nic.cz/
> sip:jaromir.talir@nic.cz tel:+420.222745107
> mob:+420.739632712 fax:+420.222745112
> -------------------------------------------
>
> _______________________________________________
> fred-users mailing list
> fred-users(a)lists.nic.cz
> https://lists.nic.cz/cgi-bin/mailman/listinfo/fred-users
----------------------------------------------------------
Malawi SDNP Webmail: http://www.sdnp.org.mw
Access your Malawi SDNP e-mail from anywhere in the world.
----------------------------------------------------------
Hi,
finally we managed to complete new version suitable for public release.
I uploaded files to http://fred.nic.cz/wiki/download
Just a quick summary of what are the main changes:
(1) auditing component - after 3 years running fred (2007-2010) we found
out that almost 99% of database size is in tables action and action_xml
used to log all incoming EPP communication and database is getting to be
non-maintainable. So we decided to change fred architecture and create
separate general component for logging incoming request. Database for
this consists of (request_*,session_*,..) monthly partitioned tables and
can be installed separately from main database. It its now used by EPP
fronted, unix whois, web whois and webadmin to store all requests in
FRED.
(2) billing component - invoicing was rewritten with intention to
support not only prepaid but also postpaid model. Price list can be
configured that in the way that charged operations are not blocked when
there is no credit, registrar sees negative credit in 'credit_info'
command and this is cleared when there is an incoming payment. Tables
for holding incoming payments were simplified and there is a simple way
to register new payment from general xml file describing payments. There
is also new component fred-transproc for transaction processing. It
queries IMAP and HTTP sources and transform responses into this new xml
file that is passed to fred. There are some example modules for our
local banks that can be used as starting point for your own modules
(3) messaging component - we added possibility to send and archive SMS
and snail mail letters automatically. But this is based on external
services so there must be some local company having web service for sms
or snail mail processing. Then script that call this web service must be
created and uploaded into fred for this feature to work.
(4) mojeid changes - we build a identity solution called mojeid (myid)
over registry (www.mojeid.cz). This is not part of fred and just use
fred as backend. It constis of validation of contact data by sending sms
to his phone number, email to his email address and snail mail letter to
his postal address. After completion of three pieces of information
send by this three channels we set status identified to this contact and
user can maintain his contact data directly through new application.
This contact also can take advantage of openid server and used the same
authentication process for different website supporting openid. I
mention this because you may see some of these mojeid changes in fred,
but actually are not useful for you. We are in the process of more
separating these things out of fred.
If you will decide to migrate we suggest to do new installation because
there are quite a lot of changes in configurations and than migrate
database according upgrade scripts in fred-db packages. Of course there
should be a intensive testing before going to production.
Regards,
Jaromir
--
Jaromir Talir
technicky reditel / Chief Technical Officer
-------------------------------------------
CZ.NIC, z.s.p.o. -- .cz domain registry
Americka 23, 120 00 Praha 2, Czech Republic
mailto:jaromir.talir@nic.cz http://nic.cz/
sip:jaromir.talir@nic.cz tel:+420.222745107
mob:+420.739632712 fax:+420.222745112
-------------------------------------------
Hello,
Does anyone know if there exists a full list of all the possible errors that might happen during the connection of Fred-Client with the server? The respective error messages might also be useful.
Thanks,
Besmira