Back to bug 747959

Who When What Removed Added
Rob Crittenden 2011-10-21 14:18:08 UTC Status NEW ASSIGNED
Siddharth Nagar 2011-12-21 23:52:24 UTC Blocks 756082
Dmitri Pal 2012-06-01 21:59:31 UTC Component ipa ipa
Version 6.2 7.0
Product Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7
Jenny Severance 2013-02-12 18:31:05 UTC Priority unspecified medium
CC jgalipea
Jenny Severance 2013-03-19 19:58:16 UTC Keywords FutureFeature
Summary ipa-server-install will reuse the certificate serial number [RFE] ipa-server-install will reuse the certificate serial number
Red Hat Bugzilla 2013-03-19 19:58:16 UTC Doc Type Bug Fix Enhancement
Tomas Kopecek 2013-06-20 11:01:05 UTC Assignee rcritten mkosek
Martin Kosek 2013-06-26 11:41:46 UTC Blocks 756082
Jenny Severance 2013-07-09 14:15:24 UTC Priority medium low
Severity unspecified low
Martin Kosek 2014-06-27 15:16:15 UTC Summary [RFE] ipa-server-install will reuse the certificate serial number [RFE] Support random serial numbers in IPA certificates
Namita Soman 2015-04-23 00:41:40 UTC CC nsoman
QA Contact seceng-idm-qe-list nsoman
Martin Tessun 2016-04-14 14:42:35 UTC CC mtessun
Flags needinfo?(mkosek)
Martin Tessun 2016-04-14 14:44:48 UTC Link ID Red Hat Knowledge Base (Solution) 873193
Martin Tessun 2016-04-14 14:45:02 UTC Link ID Red Hat Knowledge Base (Solution) 384303
Martin Kosek 2016-04-15 10:37:34 UTC Flags needinfo?(mkosek)
Petr Vobornik 2016-04-18 11:48:19 UTC CC pvoborni
Petr Vobornik 2016-06-22 17:16:47 UTC CC j.becker
Martin Kosek 2017-04-04 07:19:10 UTC Assignee mkosek ipa-maint
Jim Lyle 2017-06-08 16:36:04 UTC CC jlyle
Jim Lyle 2017-06-08 16:36:30 UTC Fixed In Version brad.scalio@noaa.gov
Jim Lyle 2017-06-08 16:36:59 UTC CC brad.scalio
Fixed In Version brad.scalio@noaa.gov
Skip Wyatt 2017-09-28 21:33:54 UTC CC awyatt
Pasi Karkkainen 2018-08-23 20:26:04 UTC CC pasik
Dmitri Pal 2019-03-12 14:15:57 UTC Target Release --- 8.2
Version 7.0 8.0
Pool ID 121 122
Component ipa ipa
CC dpal, rcritten, tscherf
Product Red Hat Enterprise Linux 7 Red Hat Enterprise Linux 8
Asha Akkiangady 2019-08-16 18:32:36 UTC CC aakkiang
Alexander Bokovoy 2019-11-12 12:43:10 UTC CC abokovoy
Christian Heimes 2019-11-25 17:29:57 UTC CC cheimes, mharmsen
Flags needinfo?(mharmsen)
Namita Soman 2019-12-04 16:21:59 UTC QA Contact nsoman ipa-qe
Matthew Harmsen 2019-12-04 18:33:19 UTC CC ftweedal
Flags needinfo?(mharmsen) needinfo?(ftweedal)
thierry bordaz 2019-12-10 13:24:19 UTC CC tbordaz
Fraser Tweedale 2020-02-12 04:23:44 UTC Flags needinfo?(ftweedal)
Alex Scheel 2020-02-27 13:55:37 UTC Depends On 1641804
Daniele 2020-03-04 16:00:45 UTC CC dconsoli
Red Hat One Jira (issues.redhat.com) 2020-10-31 07:26:07 UTC Link ID Red Hat Issue Tracker - Private RHELPLAN-13694
RHEL Program Management 2020-11-13 16:06:10 UTC Keywords Triaged
Kaushik Banerjee 2021-04-13 10:02:40 UTC Pool ID sst_identity_management_rhel_8 sst_idm_ipa_rhel_8
Marc Sauton 2021-07-09 20:47:25 UTC CC msauton
Petr Čech 2021-07-14 11:52:10 UTC CC pcech
Petr Čech 2021-07-14 11:56:35 UTC Link ID Red Hat Issue Tracker RHELBU-845
Red Hat One Jira (issues.redhat.com) 2021-10-03 13:59:07 UTC Link ID Red Hat Issue Tracker FREEIPA-7015
Theodoros Apazoglou 2021-11-02 12:20:49 UTC CC tapazogl
Sudhir Menon 2022-02-24 04:59:29 UTC CC sumenon
Theodoros Apazoglou 2022-03-28 12:40:30 UTC Priority low high
Florence Blanc-Renaud 2022-04-27 13:13:12 UTC Product Red Hat Enterprise Linux 8 Red Hat Enterprise Linux 9
Version 8.0 9.1
Assignee ipa-maint frenaud
Target Release 8.2 9.1
Pool ID sst_idm_ipa_rhel_8 sst_idm_ipa_rhel_9
CC frenaud
Component ipa ipa
Florence Blanc-Renaud 2022-04-27 14:12:12 UTC Assignee frenaud rcritten
Red Hat Bugzilla 2022-04-30 22:20:54 UTC CC tapazogl
Florence Blanc-Renaud 2022-06-09 06:37:43 UTC Status ASSIGNED POST
Florence Blanc-Renaud 2022-06-30 09:01:48 UTC Status POST MODIFIED
Florence Blanc-Renaud 2022-06-30 09:48:36 UTC Fixed In Version ipa-4.10.0-1.el9
Sumedh Sidhaye 2022-07-07 13:32:38 UTC CC ssidhaye
errata-xmlrpc 2022-07-07 13:47:07 UTC Status MODIFIED ON_QA
Sumedh Sidhaye 2022-08-04 08:36:51 UTC Status ON_QA VERIFIED
Florence Blanc-Renaud 2022-09-15 18:59:49 UTC Doc Type Enhancement Release Note
Doc Text IdM now supports deploying a Certificate Authority with Random Serial Numbers (RSN).
A new option (--random-serial-number) has been added to ipa-server-install and ipa-ca-install that allows to configure the Certificate Server with RSNv3. As a consequence the IdM certificates are issued with serial numbers using a 128-bit random value instead of sequential values.
Gabi Fialová 2022-09-20 19:54:54 UTC Docs Contact fhanzelk
CC gfialova
David Voženílek 2022-09-22 15:53:14 UTC CC dvozenil
Doc Type Release Note Enhancement
Doc Text IdM now supports deploying a Certificate Authority with Random Serial Numbers (RSN).
A new option (--random-serial-number) has been added to ipa-server-install and ipa-ca-install that allows to configure the Certificate Server with RSNv3. As a consequence the IdM certificates are issued with serial numbers using a 128-bit random value instead of sequential values.
.IdM now supports Random Serial Numbers

With this update, Identity Management (IdM) now includes `dogtagpki 11.2.0`, which allows you to use Random Serial Numbers version 3 (RSNv3). You can enable RSNv3 by using the `--random-serial-number` option when running `ipa-server-install` or `ipa-ca-install`. With RSNv3 enabled, IdM generates fully random serial numbers for certificates and requests in PKI without range management. Using RSNv3, you can avoid range management in large IdM installations and prevent common collisions when reinstalling IdM.

IMPORTANT: RSNv3 is supported only for new IdM installations. If enabled, it is required to use RSNv3 on all PKI services.
Red Hat Bugzilla 2022-11-05 04:17:48 UTC CC dpal
errata-xmlrpc 2022-11-15 00:20:38 UTC Status VERIFIED RELEASE_PENDING
errata-xmlrpc 2022-11-15 10:00:08 UTC Resolution --- ERRATA
Status RELEASE_PENDING CLOSED
Last Closed 2022-11-15 10:00:08 UTC
errata-xmlrpc 2022-11-15 10:00:33 UTC Link ID Red Hat Product Errata RHBA-2022:7988
David Voženílek 2022-12-06 12:24:19 UTC Doc Text .IdM now supports Random Serial Numbers

With this update, Identity Management (IdM) now includes `dogtagpki 11.2.0`, which allows you to use Random Serial Numbers version 3 (RSNv3). You can enable RSNv3 by using the `--random-serial-number` option when running `ipa-server-install` or `ipa-ca-install`. With RSNv3 enabled, IdM generates fully random serial numbers for certificates and requests in PKI without range management. Using RSNv3, you can avoid range management in large IdM installations and prevent common collisions when reinstalling IdM.

IMPORTANT: RSNv3 is supported only for new IdM installations. If enabled, it is required to use RSNv3 on all PKI services.
.IdM now supports Random Serial Numbers

With this update, Identity Management (IdM) now includes `dogtagpki 11.2.0`, which allows you to use Random Serial Numbers version 3 (RSNv3). You can enable RSNv3 by using the `--random-serial-numbers` option when running `ipa-server-install` or `ipa-ca-install`. With RSNv3 enabled, IdM generates fully random serial numbers for certificates and requests in PKI without range management. Using RSNv3, you can avoid range management in large IdM installations and prevent common collisions when reinstalling IdM.

IMPORTANT: RSNv3 is supported only for new IdM installations. If enabled, it is required to use RSNv3 on all PKI services.

Back to bug 747959