Detect if the IPA client is already configured and bail if it is. This should help prevent problems, particularly with certmonger. It will refuse to generate a new CSR for a certificate it is already tracking (and this is a good thing). So if you configure the client, then configure the client again bad things could happen, don't allow it.

If things every got out-of-sync a user could always remove /var/lib/ipa-client/sysrestore/* to be able to install again.

rob

Attachment: freeipa-437-client.patch
Description: application/mbox

_______________________________________________
Freeipa-devel mailing list
Freeipa-devel@redhat.com
https://www.redhat.com/mailman/listinfo/freeipa-devel

Reply via email to