<html><head></head><body><div style="color:#000; background-color:#fff; font-family:verdana, helvetica, sans-serif;font-size:24px"><div id="yui_3_16_0_ym19_1_1469171002174_34117">hi</div><div id="yui_3_16_0_ym19_1_1469171002174_34249"><br></div><div id="yui_3_16_0_ym19_1_1469171002174_34268">I get below error</div><div dir="ltr">ca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.</div><div dir="ltr"><br></div><div dir="ltr">when I run ipa-getcert list, also how can I check my CAs are renewed or not?<br></div><div><br></div><div id="yui_3_16_0_ym19_1_1469171002174_34118"><br></div><div id="yui_3_16_0_ym19_1_1469171002174_34119"><br></div><div id="yui_3_16_0_ym19_1_1469171002174_34120" dir="ltr"> Request ID '20140817123602':<br id="yui_3_16_0_ym19_1_1469171002174_34218"> status: MONITORING<br id="yui_3_16_0_ym19_1_1469171002174_34219"> ca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.<br id="yui_3_16_0_ym19_1_1469171002174_34220"> stuck: no<br id="yui_3_16_0_ym19_1_1469171002174_34221"> key pacom storage: type=NSSDB,location='/etc/dcomsrv/slapd-PKI-IPA',nickname='Server-Cert',token='NSS Certificate DB',pinfile='/etc/dcomsrv/slapd-PKI-IPA/pwdfile.txt'<br id="yui_3_16_0_ym19_1_1469171002174_34222"> certificate: type=NSSDB,location='/etc/dcomsrv/slapd-PKI-IPA',nickname='Server-Cert',token='NSS Certificate DB'<br id="yui_3_16_0_ym19_1_1469171002174_34223"> CA: IPA<br id="yui_3_16_0_ym19_1_1469171002174_34224"> issuer: CN=Certificate Authority,O=EXAMPLE.COM<br id="yui_3_16_0_ym19_1_1469171002174_34225"> subject: CN=drvl124.EXAMPLE.COM,O=EXAMPLE.COM<br id="yui_3_16_0_ym19_1_1469171002174_34226"> expcomes: 2016-08-17 12:36:02 UTC<br id="yui_3_16_0_ym19_1_1469171002174_34227"> eku: id-kp-serverAuth,id-kp-clientAuth<br id="yui_3_16_0_ym19_1_1469171002174_34228"> pre-save command:<br id="yui_3_16_0_ym19_1_1469171002174_34229"> post-save command: /usr/lib64/ipa/certmonger/restart_dcomsrv PKI-IPA<br id="yui_3_16_0_ym19_1_1469171002174_34230"> track: yes<br id="yui_3_16_0_ym19_1_1469171002174_34231"> auto-renew: yes<br id="yui_3_16_0_ym19_1_1469171002174_34232">Request ID '20140817123752':<br id="yui_3_16_0_ym19_1_1469171002174_34233"> status: MONITORING<br id="yui_3_16_0_ym19_1_1469171002174_34234"> ca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.<br id="yui_3_16_0_ym19_1_1469171002174_34235"> stuck: no<br id="yui_3_16_0_ym19_1_1469171002174_34236"> key pacom storage: type=NSSDB,location='/etc/httpd/alias',nickname='Server-Cert',token='NSS Certificate DB',pinfile='/etc/httpd/alias/pwdfile.txt'<br id="yui_3_16_0_ym19_1_1469171002174_34237"> certificate: type=NSSDB,location='/etc/httpd/alias',nickname='Server-Cert',token='NSS Certificate DB'<br id="yui_3_16_0_ym19_1_1469171002174_34238"> CA: IPA<br id="yui_3_16_0_ym19_1_1469171002174_34239"> issuer: CN=Certificate Authority,O=EXAMPLE.COM<br id="yui_3_16_0_ym19_1_1469171002174_34240"> subject: CN=drvl124.EXAMPLE.COM,O=EXAMPLE.COM<br id="yui_3_16_0_ym19_1_1469171002174_34241"> expcomes: 2016-08-17 12:37:51 UTC<br id="yui_3_16_0_ym19_1_1469171002174_34242"> eku: id-kp-serverAuth,id-kp-clientAuth<br id="yui_3_16_0_ym19_1_1469171002174_34243"> pre-save command:<br id="yui_3_16_0_ym19_1_1469171002174_34244"> post-save command: /usr/lib64/ipa/certmonger/restart_httpd<br id="yui_3_16_0_ym19_1_1469171002174_34245"> track: yes<br id="yui_3_16_0_ym19_1_1469171002174_34246"><br id="yui_3_16_0_ym19_1_1469171002174_34247"></div></div></body></html>