Hi, which version are you using? ipa-cert-fix is available since IPA 4.6.6 and can help you renew expired certs. The doc is available at https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/linux_domain_identity_authentication_and_policy_guide/cert-renewal#renewing-expired-system-certificate-when-idm-is-offline
flo On Mon, Mar 20, 2023 at 2:23 PM Omar Pagan via FreeIPA-users < [email protected]> wrote: > All my certs in IPA are expired and no matter what I do I can't get > `getcert` to renew them. I have changed the date back to before they > expired but when I try to restart IPA is trying to do an upgrade and fails. > I'm able to start kdc, directory services, http, pki-tomcat and > certmonger, but when I try to resubmit a cert for renewal it complains > about not connecting to dbus. > Please help, I need to get this IPA service up and running and I can't > figure out what's wrong. > _______________________________________________ > FreeIPA-users mailing list -- [email protected] > To unsubscribe send an email to [email protected] > Fedora Code of Conduct: > https://docs.fedoraproject.org/en-US/project/code-of-conduct/ > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > List Archives: > https://lists.fedorahosted.org/archives/list/[email protected] > Do not reply to spam, report it: > https://pagure.io/fedora-infrastructure/new_issue >
_______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
