On 01/26/2016 01:06 PM, Martin Babinsky wrote:
https://fedorahosted.org/freeipa/ticket/5636



This also happens on ipa-4-3/master but the offending check was moved around. Attaching patch for 4-3/master branches.

--
Martin^3 Babinsky
From 84f2114aee0f59634d3e0f41e655bec9313fd0f5 Mon Sep 17 00:00:00 2001
From: Martin Babinsky <mbabi...@redhat.com>
Date: Tue, 26 Jan 2016 13:41:37 +0100
Subject: [PATCH] fix standalone installation of externally signed CA on IPA
 master

https://fedorahosted.org/freeipa/ticket/5636
---
 install/tools/ipa-ca-install | 3 ++-
 1 file changed, 2 insertions(+), 1 deletion(-)

diff --git a/install/tools/ipa-ca-install b/install/tools/ipa-ca-install
index 83cf98ec6a34093c826470e06ad448e6033bc682..1bc5def03bf687a1e4f9fb38a54363b5429c8fc4 100755
--- a/install/tools/ipa-ca-install
+++ b/install/tools/ipa-ca-install
@@ -276,7 +276,8 @@ def main():
     if not dsinstance.DsInstance().is_configured():
         sys.exit("IPA server is not configured on this system.\n")
 
-    if cainstance.is_ca_installed_locally():
+    if (not options.external_cert_files and
+            cainstance.is_ca_installed_locally()):
         sys.exit("CA is already installed on this host.")
 
     standard_logging_setup(paths.IPASERVER_CA_INSTALL_LOG, debug=options.debug)
-- 
2.5.0

-- 
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

Reply via email to