Re: [Freeipa-users] how to chain CA certs

2015-11-03 Thread Sean Conley - US
Not sure if I should start a new thread for this, but... I am now trying to follow the instructions given in this thread: https://www.redhat.com/archives/freeipa-users/2014-August/msg00338.html. I think this configuration should work well with our deployment strategy. I feel like I am following t

Re: [Freeipa-users] how to chain CA certs

2015-11-01 Thread Fraser Tweedale
On Mon, Nov 02, 2015 at 01:29:48AM +, Sean Conley - US wrote: > Hello, > > I am new to FreeIPA and am attempting to stand up my first > operational instance. We do have a commercial wildcard > certificate (*.internal.example.org) that should cover the IPA > server itself (ipa.internal.example

[Freeipa-users] how to chain CA certs

2015-11-01 Thread Sean Conley - US
Hello, I am new to FreeIPA and am attempting to stand up my first operational instance. We do have a commercial wildcard certificate (*.internal.example.org) that should cover the IPA server itself (ipa.internal.example.org). I used the -external-CA option when running the setup and so a CSR