[Freeipa-users] goddday wild card cert error

barrykfl at gmail.com barrykfl at gmail.com
Wed Jun 4 09:33:03 UTC 2014


Dear all:

my host is abc.def.com

I import a cert *.def.com of godaddy to dirsrv and warning / error prompt
any idea?
is it i cannot use *.def cert and must use a full host cert . abc.def.com???

Shutting down dirsrv:
    PKI-IPA...                                             [  OK  ]
    def-COM...                                          [  OK  ]
Starting dirsrv:
    PKI-IPA...                                             [  OK  ]
    def-COM...[04/Jun/2014:17:23:28 +0800] - SSL alert:
CERT_VerifyCertificateNow: verify certificate failed for cert *.def.com -
GoDaddy.com, Inc. of family cn=RSA,cn=encryption,cn=config (Netscape
Portable Runtime error -8172 - Peer 's certificate issuer has been marked
as not trusted by the user.)
                                                           [  OK  ]
[root@(LIVE)~]$ service ipa status
Directory Service: RUNNING
KDC Service: RUNNING
KPASSWD Service: RUNNING
MEMCACHE Service: RUNNING
HTTP Service: RUNNING
CA Service: RUNNING
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20140604/886a6aa0/attachment.htm>


More information about the Freeipa-users mailing list