[Freeipa-users] Certificate format error: [Errno -8018]

Rob Crittenden rcritten at redhat.com
Thu Jan 23 14:21:54 UTC 2014


Alexander Bokovoy wrote:
> On Thu, 23 Jan 2014, craig.freeipa at noboost.org wrote:
>> Hi Guys,
>>
>> I'm sure this is an easy issue to fix!
>>
>> First the specs;
>> Red Hat Enterprise Linux Server release 6.3 (Santiago)
>> ipa-client-2.2.0-16.el6.x86_64
>> ipa-server-2.2.0-16.el6.x86_64
>>
>>
>> Issue:
>> When I click on the hosts TAB from inside the Identity Managemnt GUI, I
>> get the following error;
>> * Certificate format error: [Errno -8018] None (repeated many times)
>>
>> * Cannot connect to
>>  'https://sysvm-ipa.teratext.saic.com.au:443/ca/agent/ca/displayBySerial':
>>
>>  [Errno -8018] None
>>
>> Also seen this error;
>> cannot connect to
>> 'https://sysvm-ipa.teratext.saic.com.au:443/ca/agent/ca/displayBySerial':
>> [Errno -12269] (SSL_ERROR_EXPIRED_CERT_ALERT) SSL peer rejected your
>> certificate as expired.
>>
>>
>> Any advise would be greatly appreciated!
> http://www.freeipa.org/page/Howto/CA_Certificate_Renewal
>
> Since you have FreeIPA before 3.4, you need to follow manual procedure
> outlined on that page. 2.2 might also be a bit different than 3.x but
> this is a starting point.
>
>

For 2.x you want http://www.freeipa.org/page/IPA_2x_Certificate_Renewal

rob




More information about the Freeipa-users mailing list