[Freeipa-users] certificates not renewing CA_UNREACHEABLE

Martin Basti mbasti at redhat.com
Fri Sep 16 08:34:34 UTC 2016



On 16.09.2016 09:38, Natxo Asenjo wrote:
> hi,
>
>
> On Thu, Sep 15, 2016 at 1:03 PM, Natxo Asenjo <natxo.asenjo at gmail.c 
> <mailto:natxo.asenjo at gmail.com>
>
>     On Thu, Sep 15, 2016 at 12:49 PM, Martin Basti <mbasti at redhat.com
>     <mailto:mbasti at redhat.com>> wrote:
>
>
>
>         On 15.09.2016 12:44, Natxo Asenjo wrote:
>>         hi,
>>
>>         On Thu, Sep 15, 2016 at 12:33 PM, Martin Basti
>>         <mbasti at redhat.com <mailto:mbasti at redhat.com>> wrote:
>>
>>
>>             Hello,
>>
>>             usually the most information can be found here
>>             /var/log/pki/pki-tomcat/ca/debug
>>
>>
>>         mmm, in this centos 6.8 system that does not exist:
>>
>>         # ls -l /var/log/pki/pki-tomcat/ca/debug
>>         ls: cannot access /var/log/pki/pki-tomcat/ca/debug: No such
>>         file or directory
>>
>>
>>         I do have a /var/log/pki-ca/debug
>>
>>
>         Does it contain any information related to your issue?
>
>
>     I have tried renewing the certificate:
>
>     ipa-getcert resubmit -i 20121107212513
>
>
>     If I grep that file for that request id I find nothing recent,
>     just in the ipaserver installation log
>
>     # cd /var/log
>     # grep -ri 20121107212513 *.log
>     ipaserver-install.log:2012-11-07T21:25:13Z DEBUG stdout=New
>     tracking request "20121107212513" added.
>
>     # grep -ri 20121107212513 pki-ca
>     #
>
>
> Any clues?
>
>
> --
> Groeten,
> natxo


Sorry, I'm quite lost here, maybe somebody from dogtag can help what 
might be reason of those CA errors
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20160916/2e304a22/attachment.htm>


More information about the Freeipa-users mailing list