ACK

Pushed to master: 5c9b9089b7b0d40b7e924177f99c2568aaa1b5b2

On 04.12.2015 22:55, Gabe Alford wrote:
My bad. Copy and paste error. Updated patch attached.

Thanks,

Gabe

On Fri, Dec 4, 2015 at 12:17 PM, Martin Basti <mba...@redhat.com <mailto:mba...@redhat.com>> wrote:



    On 01.12.2015 15:00, Gabe Alford wrote:
    Hello,

    Fix for https://fedorahosted.org/freeipa/ticket/5458

    Thanks,

    Gabe


    Hello,

    I haven't looked closer, but your patch is causing this:

    Configuring certificate server (pki-tomcatd). Estimated time: 3
    minutes 30 seconds
      [1/27]: creating certificate server user
      [2/27]: configuring certificate server instance
      [3/27]: stopping certificate server instance to update CS.cfg
      [4/27]: backing up CS.cfg
      [5/27]: disabling nonces
      [6/27]: set up CRL publishing
      [7/27]: enable PKIX certificate path discovery and validation
      [8/27]: starting certificate server instance
    ipa.ipaserver.install.cainstance.CAInstance: CRITICAL Failed to
    restart the Dogtag instance.See the installation log for details.
      [9/27]: creating RA agent certificate database
      [10/27]: importing CA chain to RA certificate database
      [11/27]: fixing RA database permissions
      [12/27]: setting up signing cert profile
      [13/27]: setting audit signing renewal to 2 years
      [14/27]: restarting certificate server
    ipa.ipaserver.install.cainstance.CAInstance: CRITICAL Failed to
    restart the Dogtag instance.See the installation log for details.
      [15/27]: requesting RA certificate from CA
      [16/27]: issuing RA agent certificate
      [17/27]: adding RA agent as a trusted user
      [18/27]: authorizing RA to modify profiles
      [19/27]: configure certmonger for renewals
      [20/27]: configure certificate renewals
      [21/27]: configure RA certificate renewal
      [22/27]: configure Server-Cert certificate renewal
      [23/27]: Configure HTTP to proxy connections
      [24/27]: restarting certificate server

    ipa.ipaserver.install.cainstance.CAInstance: CRITICAL Failed to
    restart the Dogtag instance.See the installation log for details.
      [25/27]: migrating certificate profiles to LDAP
      [26/27]: importing IPA certificate profiles
      [27/27]: adding default CA ACL


    CA is operational and ready, but IPA installer is not able to
    detect it correctly

    2015-12-04T19:08:54Z DEBUG stderr=curl: option --connect-timeout
    30: is unknown
    curl: try 'curl --help' or 'curl --manual' for more information

    Martin^2



-- 
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

Reply via email to