[Freeipa-users] want to make new replicas but cert expire

barrykfl at gmail.com barrykfl at gmail.com
Wed May 18 23:04:20 UTC 2016


Already change a new cert no.errror prompt when start server. But using
ipa-replica install.same error out. So.i.should miss some.folder not yet
replace.
2016年5月19日 上午2:01 於 "Rob Crittenden" <rcritten at redhat.com> 寫道:

> barrykfl at gmail.com wrote:
>
>> Hi:
>>
>> I type ipa-replica-install server --ip 192.168.1.3
>>
>> it show my cert expire n....where location I should input the cert ?
>>
>> trusted by the user.)
>> preparation of replica failed: cannot connect to
>> 'https://ipa.cora.nwra.com:9444/ca/ee/ca/profileSubmitSSLClient': [Errno
>> -8172] (SEC_ERROR_UNTRUSTED_ISSUER) Peer's certificate issuer has been
>> marked
>>
>
> You need to sort out your expired certs before you can create a new master.
>
> Why not just renew the GoDaddy certs?
>
> rob
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20160519/12165f45/attachment.htm>


More information about the Freeipa-users mailing list