[Freeipa-users] add freeipa root cert to chrome on a non ipa client system.

2020-03-17 Thread Kendrick . via FreeIPA-users
I have a manjorao desktop in the environment that i need to be able to access the freeipa based systems and not get cert errors every where. I will probably attempt to build the client on that system in the future but right now i just need the certs freeipa made to be valid. how does one go

[Freeipa-users] Re: Certificates for embeded devices and old equipment.

2020-03-17 Thread Kendrick . via FreeIPA-users
due to all that has been going on it took a while to get back to this issue. it was multiple things happening at the same time. 1) firmware on one device needed to be updated to accept certs properly. 2) unknown lockup issues, I rebuilt the vm from scratch to re-verify results and it works

[Freeipa-users] ipa reverse dns best practices.

2020-02-19 Thread Kendrick . via FreeIPA-users
Should i create a single reverse zone or should there be zones for each subnet? 10.1.1/24 10.1.2/24 10.1.3/26 10.1.3.192/26 etc? 10.1.1-50/ is the likely used ip range with a few /25-26's Thanks Kendrick ___ FreeIPA-users mailing list --

[Freeipa-users] Certificates for embeded devices and old equipment.

2020-02-19 Thread Kendrick . via FreeIPA-users
I have a older kvm that is requiring an unencrypted pem for its cert from freeipa. I have also tried signing a csr from an older ilo product and the cert manager started giving a 404 check your services after trying to import it. any suggestions on how best to aproch these issues. I did