[Freeipa-users] Common Name for the ipa-cacert-manage command

William Graboyes wgraboyes at cenic.org
Tue Apr 21 21:28:49 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Hi List,

I am having yet another issue, when I run the following command:
ipa-cacert-manage renew --external-ca

It does output the CSR, however the CN is not a valid name
(Certificate Authority).  Is it possible to change the output of this
command to use an external CA that requires a proper common name to be
in the CSR?

What I am trying to do is change from the internal self signed certs
to an external CA signing system.

Thanks,
Bill
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.22 (Darwin)
Comment: GPGTools - https://gpgtools.org
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=7dQX
-----END PGP SIGNATURE-----




More information about the Freeipa-users mailing list