[Freeipa-users] Cannot install 3rd party certificate

Matt . yamakasi.014 at gmail.com
Tue Feb 14 10:15:53 UTC 2017


Hi Dan,

Ues i have tried that and I get the message that it misses the full
chain for the certificate.

My issue is more, why is the Server-Cert being removed on a certupdate ?

Cheers,

Matt

2017-02-14 2:18 GMT+01:00 Sullivan, Daniel [CRI] <dsullivan2 at bsd.uchicago.edu>:
> Is the chain in mydomain_com_bundle.crt?  Have you tried it with the cert only (disclaimer: I’ve never done this).
>
> Dan
>
>> On Feb 13, 2017, at 4:08 PM, Matt . <yamakasi.014 at gmail.com> wrote:
>>
>> Hi Guys,
>>
>> I'm trying to install a 3rd party certificate using:
>>
>> http://www.freeipa.org/page/Using_3rd_part_certificates_for_HTTP/LDAP#Procedure_in_current_IPA
>>
>> When I run the install command for the certificate itself:
>>
>> ]# ipa-server-certinstall -w -d mydomain_com.key mydomain_com_bundle.crt
>> Directory Manager password:
>>
>> Enter private key unlock password:
>>
>> list index out of range
>> The ipa-server-certinstall command failed.
>>
>>
>> If I do a #ipa-certupdate the Server-Cert is removed from
>> /etc/httpd/alias and the install fails because of this.
>>
>> What can I do to solve this ?
>>
>> Thanks,
>>
>> Matt
>>
>> --
>> Manage your subscription for the Freeipa-users mailing list:
>> https://www.redhat.com/mailman/listinfo/freeipa-users
>> Go to http://freeipa.org for more info on the project
>




More information about the Freeipa-users mailing list