Re: [Freeipa-users] TLSA records in FreeIPA

2013-09-26 Thread Erinn Looney-Triggs
On 09/24/2013 12:06 PM, Petr Spacek wrote: > On 24.9.2013 19:23, Erinn Looney-Triggs wrote: >> I wanted to bring up the idea of integrating TLSA records into FreeIPA >> so that a host that is issued a certificate for say the web server (via >> dogtag) would also publish that information in DNS usin

Re: [Freeipa-users] TLSA records in FreeIPA

2013-09-24 Thread Christian Horn
On Tue, Sep 24, 2013 at 11:23:29AM -0600, Erinn Looney-Triggs wrote: > I wanted to bring up the idea of integrating TLSA records into FreeIPA > so that a host that is issued a certificate for say the web server (via > dogtag) would also publish that information in DNS using a TLSA record. > This is

Re: [Freeipa-users] TLSA records in FreeIPA

2013-09-24 Thread Petr Spacek
On 24.9.2013 19:23, Erinn Looney-Triggs wrote: I wanted to bring up the idea of integrating TLSA records into FreeIPA so that a host that is issued a certificate for say the web server (via dogtag) would also publish that information in DNS using a TLSA record. This is very much like how SSHFP re

[Freeipa-users] TLSA records in FreeIPA

2013-09-24 Thread Erinn Looney-Triggs
I wanted to bring up the idea of integrating TLSA records into FreeIPA so that a host that is issued a certificate for say the web server (via dogtag) would also publish that information in DNS using a TLSA record. This is very much like how SSHFP records are handled now in FreeIPA. Has this been