On Fri, Nov 09, 2018 at 01:43:37PM +0000, Peter Oliver via FreeIPA-users wrote:
> On Thu, 8 Nov 2018, 22:29 Fraser Tweedale <ftwee...@redhat.com wrote:
> 
> >
> > > On Thu, 8 Nov 2018, 01:41 Fraser Tweedale <ftwee...@redhat.com wrote:
> > >
> > > >
> > > > Please check the LDAP entry 'uid=pkidbuser,ou=people,o=ipaca'.
> > > > Do the 'userCertificate', 'description' and 'seeAlso' attributes
> > > > match the IPA RA certificate (/var/lib/ipa/ra-agent.pem)?
> > > >
> > > > If not, update the entry to match the certificate.
> > >
> > I'm sorry Peter, I told you the wrong user entry.  I should have
> > said uid=ipara, not uid=pkidbuser.
> 
> 
> I find that uid=ipara already has the expected description and certificate.
> 
OK, and you restored the uid=pkidbuser entry to its previous
contents?

Please convey the whole uid=ipara object, and the
/var/lib/ipa/ra-agent.pem certificate, for examination.

Thanks,
Fraser
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org

Reply via email to