Hi Rob -

Do you have any instructions on manually doing this?  I asked a similar
question a while ago (and excuses aside) but I haven’t responded back with
the requested info.  The http cert was updated but I can’t seem to get the
389-ds certificate to update as well.

Thanks.

sinh



On January 26, 2021 at 10:17:08 AM, Rob Crittenden via FreeIPA-users (
[email protected]) wrote:

Ahmed ElShafaie via FreeIPA-users wrote:
> Florence
> Thank you so much I really appreciated your help.
> I already did that creating a new ticket using "kinit admin" and it
accepts the password, But when I apply ipa-certupdate it returns
> "ipa: ERROR: Insufficient access: Invalid credentials"
>
> Even the DM password is correct.
>
> Second, The certificate created almost a month after. is there a solution
for that

Are these renewed certificates from the same issuer using the same
private key? Is the CA chain the same? Is this both the Apache and the
389-ds certificate?

If so then it should be fairly straightforward to manually replace the
certificates.

rob
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedorahosted.org/archives/list/[email protected]
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]

Reply via email to