[Pki-devel] [PATCH] 824-825 Fixed default token name for system certificates.

Endi Sukma Dewata edewata at redhat.com
Mon Aug 29 22:12:58 UTC 2016


On 8/29/2016 1:06 PM, Endi Sukma Dewata wrote:
> Previously when installing with HSM the token name has to be
> specified for each system certificate in the pki_<cert>_token
> parameters. The deployment tool has been modified such that by
> default it will use the token name specified in pki_token_name.
>
> Previously issues with system certificates that happen during
> subsystem initialization were reported as database initialization
> error. Database initialization actually does not depend on
> subsystem initialization, so to avoid confusion and to simplify the
> code the reInitSubsystem() in SystemConfigService is now invoked
> after the initializeDatabase() is complete.
>
> https://fedorahosted.org/pki/ticket/2423

Patch #825 was ACKed by alee (thanks!). Patch #824 was conditionally 
ACKed as well, but the test was incomplete due to what seems to be 
unrelated DS error during IPA cloning. The patch seems to be working 
fine in non-IPA environment, so I pushed both to master (10.4).

-- 
Endi S. Dewata




More information about the Pki-devel mailing list