Re: [Freeipa-users] certificates expired - won't renew

2016-08-01 Thread Rob Crittenden
XAMPLE.COM expires: 2016-07-29 20:38:41 UTC key usage: digitalSignature,nonRepudiation,keyEncipherment,dataEncipherment eku: id-kp-serverAuth,id-kp-clientAuth pre-save command: post-save command: /usr/lib64/ipa/certmonger/restart_dirsrv EXAMPLE-COM track: yes auto-renew: yes More GoDaddy I assume. rob ---

Re: [Freeipa-users] certificates expired - won't renew

2016-08-01 Thread sipazzo
AMPLE.COM     subject: CN=ipa3.example.com,O=EXAMPLE.COM     expires: 2016-07-29 20:38:41 UTC     key usage: digitalSignature,nonRepudiation,keyEncipherment,dataEncipherment     eku: id-kp-serverAuth,id-kp-clientAuth     pre-save command:     post-save command: /usr/lib64/ipa/certmonger/restart_dirsrv

Re: [Freeipa-users] certificates expired - won't renew

2016-07-29 Thread sipazzo
riday, July 29, 2016 2:10 PM Subject: Re: [Freeipa-users] certificates expired - won't renew sipazzo wrote: > I have seen many threads on this so sorry to bring it up again but I > have a freeipa domain, with 4 ipa servers running on redhat 6 version > 3.0.0-50. The certificates

Re: [Freeipa-users] certificates expired - won't renew

2016-07-29 Thread sipazzo
Unfortunately this issue suddenly go much worse. I get this error in the UI when trying to view hosts on one of my servers cannot connect to 'https:/ipa1.example.com:443/ca/agent/ca/displayBySerial': (SEC_ERROR_EXPIRED_CERTIFICATE) Peer's Certificate has expired. and this on others:Some operation

Re: [Freeipa-users] certificates expired - won't renew

2016-07-29 Thread Rob Crittenden
sipazzo wrote: I have seen many threads on this so sorry to bring it up again but I have a freeipa domain, with 4 ipa servers running on redhat 6 version 3.0.0-50. The certificates are expired/expiring and will not renew and it is causing many issues for us. I have tried the many suggestions I ha

[Freeipa-users] certificates expired - won't renew

2016-07-29 Thread sipazzo
I have seen many threads on this so sorry to bring it up again but I have a freeipa domain, with 4 ipa servers running on redhat 6 version 3.0.0-50. The certificates are expired/expiring and will not renew and it is causing many issues for us. I have tried the many suggestions I have see in the