[Freeipa-users] Re: SSL Private Key Recovery

2018-10-10 Thread Rob Crittenden via FreeIPA-users
Fraser Tweedale via FreeIPA-users wrote: > On Wed, Oct 10, 2018 at 12:12:12PM +0200, Winfried de Heiden via > FreeIPA-users wrote: >> Agree, there no real need for storing/recovering the private key, BUT: >> >> On some test/development environment server are re-deployed rapidly, >> sometimes

[Freeipa-users] Re: SSL Private Key Recovery

2018-10-10 Thread Fraser Tweedale via FreeIPA-users
On Wed, Oct 10, 2018 at 12:12:12PM +0200, Winfried de Heiden via FreeIPA-users wrote: > Agree, there no real need for storing/recovering the private key, BUT: > > On some test/development environment server are re-deployed rapidly, > sometimes multiple time a day. (ansible and cattle

[Freeipa-users] Re: SSL Private Key Recovery

2018-10-10 Thread Winfried de Heiden via FreeIPA-users
Agree, there no real need for storing/recovering the private key, BUT: On some test/development environment server are re-deployed rapidly, sometimes multiple time a day. (ansible and cattle servers) It is a bit annoying we endup soon with tons of revoked certificates Winfried

[Freeipa-users] Re: SSL Private Key Recovery

2018-10-07 Thread Fraser Tweedale via FreeIPA-users
On Fri, Oct 05, 2018 at 04:43:15PM +0200, Winfried de Heiden via FreeIPA-users wrote: > Hi all, > > Creating the SSL certs/keys for for example Apache can easily be done > by using the FreeIPA Dogtag CA-server. With some effort, I put it in an > Ansible playbook which will install Apache and