[Pki-users] PKI Dogtag Support

Endi Sukma Dewata edewata at redhat.com
Tue Oct 29 17:41:12 UTC 2019


Hi Sharath,

It looks like you did not provide the CA admin's cert nickname
and password in the pki ca-cert-request-review command. See the
following docs:

https://www.dogtagpki.org/wiki/PKI_CLI_Initialization
https://www.dogtagpki.org/wiki/PKI_Client_CLI
https://www.dogtagpki.org/wiki/PKI_CA_Certificate_Request_CLI
https://www.dogtagpki.org/wiki/Handling_Certificate_Request

Hope this helps.

--
Endi S. Dewata

----- Original Message -----
> Hello Team,
> 
> I've just started using pki-tomcat server installed ca/kra.
> 
> As deafault CA Admin i want to approve the certificate request, Please
> help??
> 
> command to create the cert-request
> 
> ----------------------------------------------------
> 
> pki -c tecra at 123 client-cert-request CN=Sharath --profile
> caSigningUserCert --type crmf
> 
> -----------------------------
> Submitted certificate request
> -----------------------------
>    Request ID: 20
>    Type: enrollment
>    Request Status: pending
>    Operation Result: success
> 
> to approve the above request
> 
> _--------------------------------------------
> 
> pki ca-cert-request-review 20 --action approve
> 
> pki ca-cert-request-review 20 --action approve
> WARNING: BAD_CERT_DOMAIN encountered on
> 'CN=tecra-db02,OU=pki-tomcat,O=tecra-db02 Security Domain' indicates a
> common-name mismatch
> PKIException: Unauthorized
> 
> Thanks,
> 
> Sharath
> 
> _______________________________________________
> Pki-users mailing list
> Pki-users at redhat.com
> https://www.redhat.com/mailman/listinfo/pki-users




More information about the Pki-users mailing list