Re: [Freeipa-users] ipa-server-certinstall ruined pki-tomcatd startup

2013-08-15 Thread Rob Crittenden
Vladimir Kulev wrote: Hello, After installing FreeIPA I followed instructions from http://www.freeipa.org/page/Using_3rd_part_certificates_for_HTTP/LDAP to use globally trusted certificates for HTTP/LDAP server interface to secure other systems provisioning. What version of IPA? Then it

Re: [Freeipa-users] ipa-server-certinstall ruined pki-tomcatd startup

2013-08-15 Thread Rob Crittenden
Vladimir Kulev wrote: On Thu, Aug 15, 2013 at 3:58 PM, Rob Crittenden rcrit...@redhat.com mailto:rcrit...@redhat.com wrote: Vladimir Kulev wrote: Hello, After installing FreeIPA I followed instructions from

Re: [Freeipa-users] ipa-server-certinstall ruined pki-tomcatd startup

2013-08-15 Thread Vladimir Kulev
On Thu, Aug 15, 2013 at 6:23 PM, Rob Crittenden rcrit...@redhat.com wrote: Here is a command: certutil -d sql:/etc/pki/pki-tomcat/alias/ -A -t CT,C,C -n External CA -i /root/ca.pem Also I tried to add intermediate CA with the following: certutil -d sql:/etc/pki/pki-tomcat/alias/ -A -t ,, -n