On Mon, Mar 05, 2018 at 04:57:52PM -0000, John Seekins via FreeIPA-users wrote:
> Manually installing the cert at /etc/ipa/ca.cert and restarting
> Apache fixes the error, but it seems like whenever a cert renewal
> happens, I'll have to manually update it again. Which seems
> brittle.

The ipa-certupdate(1) command will update all relevant certificate
trust databases including /etc/ipa/ca.crt.

That said, it should have happened automatically on the master where
the CA was installed.  I'll confirm; maybe there is a ticket to file
here.

Thanks for the query/feedback.

Cheers,
Fraser
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org

Reply via email to