| Summary: | second step in external-ca install fails while doing CA-full from CA-less | ||||||
|---|---|---|---|---|---|---|---|
| Product: | Red Hat Enterprise Linux 7 | Reporter: | Kaleem <ksiddiqu> | ||||
| Component: | ipa | Assignee: | IPA Maintainers <ipa-maint> | ||||
| Status: | CLOSED NOTABUG | QA Contact: | Kaleem <ksiddiqu> | ||||
| Severity: | unspecified | Docs Contact: | |||||
| Priority: | unspecified | ||||||
| Version: | 7.3 | CC: | pvoborni, rcritten | ||||
| Target Milestone: | rc | Keywords: | Regression | ||||
| Target Release: | --- | ||||||
| Hardware: | Unspecified | ||||||
| OS: | Unspecified | ||||||
| Whiteboard: | |||||||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |||||
| Doc Text: | Story Points: | --- | |||||
| Clone Of: | Environment: | ||||||
| Last Closed: | 2016-08-25 14:22:09 UTC | Type: | Bug | ||||
| Regression: | --- | Mount Type: | --- | ||||
| Documentation: | --- | CRM: | |||||
| Verified Versions: | Category: | --- | |||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||
| Attachments: |
|
||||||
|
Description
Kaleem
2016-08-19 09:09:41 UTC
A related bug where step2 failed but proceeded further. https://bugzilla.redhat.com/show_bug.cgi?id=1318616 Created attachment 1192087 [details]
installation console output
Upstream ticket: https://fedorahosted.org/freeipa/ticket/6237 As Standa wrote in https://fedorahosted.org/freeipa/ticket/6237#comment:6 this is an invalid usage. After running ipa-ca-install, the instructions are: """ The next step is to get /root/ipa.csr signed by your CA and re-run /usr/sbin/ipa-ca-install as: /usr/sbin/ipa-ca-install --external-cert-file=/path/to/signed_certificate --external-cert-file=/path/to/external_ca_certificate """ I.e. run `ipa-ca-install` again. But in the test an ipa-server-install is run: ipa-server-install --external-cert-file=/root/ipa-ca/ipa.crt --external-cert-file=/root/ipa-ca/ipacacert.asc |