[Freeipa-users] install with external CA failed

Robert Story rstory at tislabs.com
Tue Mar 11 16:44:24 UTC 2014


On Mon, 10 Mar 2014 16:07:54 -0400 Simo wrote:
SS> > Unfortunately I've already scrapped that install and just went with
SS> > the internal self-signed CA. So far, the only annoyance is that the
SS> > webserver also presents a self-signed cert for the UI.  Is it safe to
SS> > replace just the web cert with a cert signed by my local CA? Or might
SS> > that break something?
SS> 
SS> Import the CA cert in your browser.

This is exactly what I'm trying to avoid. Users already have to install our
corporate CA cert, and I'd like to avoid having to install two. I'm hoping
that the cert for the UI could be swapped for one signed by our existing CA.


Robert

--
Senior Software Engineer @ Parsons
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20140311/30bb4003/attachment.sig>


More information about the Freeipa-users mailing list