Bug 1405935

Summary: [RFE] Support in IPA for HSM boxes
Product: Red Hat Enterprise Linux 9 Reporter: Luc de Louw <ldelouw>
Component: ipaAssignee: Rob Crittenden <rcritten>
Status: ASSIGNED --- QA Contact: ipa-qe <ipa-qe>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 9.0CC: abokovoy, abustosp, afarley, apeddire, asharov, cheimes, cobrown, dsirrine, ekeck, fgarciad, frenaud, ipa-maint, jswensso, kpeeples, mrhodes, nkinder, oli.wade, pasik, pkulkarn, pvoborni, rcritten, ricardo.arguello, tscherf, vmishra
Target Milestone: betaKeywords: FutureFeature, Triaged
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Luc de Louw 2016-12-19 08:51:12 UTC
Description of problem:
Large organizations have to use HSM boxes for CA certs. Due to company policy or regulatory.

Upstream Dogtag comes with HSM support.

Version-Release number of selected component (if applicable):
4.4.x

How reproducible:


Steps to Reproduce:
1.
2.
3.

Actual results:


Expected results:

Support for HSM Boxes

Additional info:

Comment 3 Petr Vobornik 2017-01-06 17:34:26 UTC
Upstream ticket:
https://fedorahosted.org/freeipa/ticket/5608

Comment 12 Alexander Bokovoy 2018-11-12 12:17:17 UTC
We are working on this feature upstream. At this point there are needs to improve code in several components IdM relies on. We are not planning yet to bring the work back to RHEL 7 as upstream work is not completed yet.

Comment 14 Amy Farley 2019-08-16 16:02:27 UTC
Moving to RHEL 8.

Comment 26 Rob Crittenden 2022-11-15 19:54:35 UTC
Additional upstream ticket:
https://pagure.io/freeipa/issue/9273

Comment 27 Rob Crittenden 2022-11-16 19:50:03 UTC
Fixed upstream
master:
https://pagure.io/freeipa/c/83161913fb19e1e04286eb93c73c44b19d948325

Comment 28 Florence Blanc-Renaud 2022-11-18 08:47:20 UTC
Fixed upstream
ipa-4-10:
https://pagure.io/freeipa/c/1de3f6c5580dfe57e39c72268dc54b9dfeb17e69

Comment 29 Rob Crittenden 2022-11-18 21:07:02 UTC
Design doc

Fixed upstream
master:
https://pagure.io/freeipa/c/a7b58b3c07576cbea21b4528b9d703a63ebc78b2

Comment 30 Florence Blanc-Renaud 2022-11-21 07:29:13 UTC
Design doc
Fixed upstream
ipa-4-10:
https://pagure.io/freeipa/c/2aa8ec1df1468ef2ed8e54ec76f53b858ce0d241