[Pki-devel] [PATCH] 807-809 Fixed PKCS #12 import for cloning.

Endi Sukma Dewata edewata at redhat.com
Thu Aug 4 00:39:18 UTC 2016


To fix cloning issue in IPA the security_database.py has been
modified to import all certificates and keys in the PKCS #12 file
before the PKI server is started. Since the PKCS #12 generated by
IPA may not contain the certificate trust flags, the script will
also reset the trust flags on the imported certificates (i.e.
CT,C,C for CA certificate and u,u,Pu for audit certificate).

https://fedorahosted.org/pki/ticket/2424

-- 
Endi S. Dewata
-------------- next part --------------
A non-text attachment was scrubbed...
Name: pki-edewata-0807-Added-log-messages-for-certificate-validation.patch
Type: text/x-patch
Size: 9203 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20160803/df8d8185/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: pki-edewata-0808-Added-log-messages-for-certificate-import-during-clo.patch
Type: text/x-patch
Size: 3171 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20160803/df8d8185/attachment-0001.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: pki-edewata-0809-Fixed-PKCS-12-import-for-cloning.patch
Type: text/x-patch
Size: 8324 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20160803/df8d8185/attachment-0002.bin>


More information about the Pki-devel mailing list