Zak Wolfinger wrote:
> How can I tell if my FreeIPA 4.2.0 replica servers are also configured to be 
> CAs?

Brute force way is to look in LDAP under

$ ldapsearch -LLL -Y GSSAPI -b cn=masters,cn=ipa,cn=etc,dc=example,dc=com dn

The configured services for every master is listed there.


Manage your subscription for the Freeipa-users mailing list:
Go to for more info on the project

Reply via email to