An update: I was using the wrong certificate on my reverse proxy. Using the 
same http certificate *works* but is not ideal.
For anyone else, here are the self-signed cert and key locations:
- Certificate: /data/var/lib/ipa/certs/httpd.crt
- Encrypted key file: /data/var/lib/ipa/private/httpd.key
- Password for key file: /var/lib/ipa/passwds/freeipa.mydomain.net-443-RSA
Sokal in the #freeipa IRC chat pointed me in the right direction, it seems I 
need to rewrite some headers with advanced configuration in NPM: 
https://www.adelton.com/freeipa/freeipa-behind-proxy-with-different-name
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to