Re: [Freeipa-users] Yum update broke CA/CS - pki-tomcatd not starting

2015-12-13 Thread Jani West
t-save command: /usr/lib64/ipa/certmonger/renew_ra_cert track: yes auto-renew: yes On 12/11/2015 10:23 AM, Martin Kosek wrote: On 12/11/2015 08:31 AM, Jani West wrote: Hello, Pki-tomcatd seems to have difficulties when connecting to CA. LDAP server is starting ok when starting it

Re: [Freeipa-users] Yum update broke CA/CS - pki-tomcatd not starting

2015-12-13 Thread Jani West
-29 20:23:10 UTC key usage: digitalSignature,nonRepudiation,keyEncipherment,dataEncipherment eku: id-kp-serverAuth,id-kp-clientAuth pre-save command: post-save command: /usr/lib64/ipa/certmonger/renew_ra_cert track: yes auto-renew: yes On 12/11/2015 10:23 AM, Martin Kosek wrote: On

[Freeipa-users] Yum update broke CA/CS - pki-tomcatd not starting

2015-12-10 Thread Jani West
PException: IO Error creating JSS SSL Socket (-1) Environment: CentOS 7 IPA 4.1 The problem looks the same as this: https://access.redhat.com/solutions/2022123 Unfortunately I cannot view resolution. is this related to expired CA certificates? -- -- Jani West -- jw...@iki.fi -- Mana

Re: [Freeipa-users] Migration fails from 3.0.0 to 3.3.3 on Centos 6/7

2015-02-24 Thread Jani West
and hopefully that will do the trick. rob -- -- Jani West -- jw...@iki.fi -- +358 40 5010914 -- -- Liinalahdentie 4 -- 01800 KLAUKKALA -- FINLAND -- Haluaisin, että Suomi olisi paljon monikulttuurisempi. Tänne tulee muualta paljon ihmisiä, mutta heitä ei tuoda tarpeeksi esille. Jotenkin me

Re: [Freeipa-users] Migration fails from 3.0.0 to 3.3.3 on Centos 6/7

2015-02-24 Thread Jani West
to run replication again and if you need any extra logs. On 02/25/2015 12:00 AM, Rob Crittenden wrote: Jani West wrote: Re-created replication file and run ipa-replica-install o fresh CentOS 7 server. It is still giving the same error: - 2015-02-24T21:40:54Z DEBUG Process

Re: [Freeipa-users] Migration fails from 3.0.0 to 3.3.3 on Centos 6/7

2015-02-19 Thread Jani West
wrote: On 02/19/2015 05:14 PM, Dmitri Pal wrote: On 02/19/2015 10:07 AM, Jani West wrote: Trying to migrate from CentOS 6.6 with FreeIPA 3.0.0-42 to CentOS 7.0 with FreeIPA 3.3.3-28 by using replication. I have prepared replication file and moved it to the new replica server. Configured

[Freeipa-users] Migration fails from 3.0.0 to 3.3.3 on Centos 6/7

2015-02-19 Thread Jani West
!? -- What certificate this means? ca.crt have more than five years left. Clocks are synced, /ca/admin/ca/updateDomainXML can be found on ipa-pki-proxy.conf and there are no obvious reason. Any hints? -- -- Jani West -- Manage your subscription for the Freeipa-users mailing list: https