So, my IPA server rebooted last night (from dnf automatic updates -- Fedora 
Server 31)

When it came back, IPA basically is unusable, since pretty much every action 
logs this: (Caused by SSLError(SSLCertVerificationError(1, '[SSL: 
CERTIFICATE_VERIFY_FAILED] certificate verify failed: unable to get local 
issuer certificate (_ssl.c:1076)')))

I think this is because the contents of /etc/httpd/alias/ are probably 
corrupted somehow (the only file there is ipasession.key) 

certutil -L -d /etc/httpd/alias/ results in: certutil: function failed: 
SEC_ERROR_BAD_DATABASE: security library: bad database.

Any help would be useful! Thank you :)
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org

Reply via email to