[Freeipa-users] ipa-getcert shows error

mohammad sereshki mohammadsereshki at yahoo.com
Sat Jul 23 07:53:24 UTC 2016


hi
I get below errorca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.
when I run ipa-getcert list, also how can I check my CAs are renewed or not?



 Request ID '20140817123602':
        status: MONITORING
        ca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.
        stuck: no
        key pacom storage: type=NSSDB,location='/etc/dcomsrv/slapd-PKI-IPA',nickname='Server-Cert',token='NSS Certificate DB',pinfile='/etc/dcomsrv/slapd-PKI-IPA/pwdfile.txt'
        certificate: type=NSSDB,location='/etc/dcomsrv/slapd-PKI-IPA',nickname='Server-Cert',token='NSS Certificate DB'
        CA: IPA
        issuer: CN=Certificate Authority,O=EXAMPLE.COM
        subject: CN=drvl124.EXAMPLE.COM,O=EXAMPLE.COM
        expcomes: 2016-08-17 12:36:02 UTC
        eku: id-kp-serverAuth,id-kp-clientAuth
        pre-save command:
        post-save command: /usr/lib64/ipa/certmonger/restart_dcomsrv PKI-IPA
        track: yes
        auto-renew: yes
Request ID '20140817123752':
        status: MONITORING
        ca-error: Error setting up ccache for local "host" service using default keytab: Cannot contact any KDC for realm 'EXAMPLE.COM'.
        stuck: no
        key pacom storage: type=NSSDB,location='/etc/httpd/alias',nickname='Server-Cert',token='NSS Certificate DB',pinfile='/etc/httpd/alias/pwdfile.txt'
        certificate: type=NSSDB,location='/etc/httpd/alias',nickname='Server-Cert',token='NSS Certificate DB'
        CA: IPA
        issuer: CN=Certificate Authority,O=EXAMPLE.COM
        subject: CN=drvl124.EXAMPLE.COM,O=EXAMPLE.COM
        expcomes: 2016-08-17 12:37:51 UTC
        eku: id-kp-serverAuth,id-kp-clientAuth
        pre-save command:
        post-save command: /usr/lib64/ipa/certmonger/restart_httpd
        track: yes

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20160723/fe9c3c38/attachment.htm>


More information about the Freeipa-users mailing list