Bug 2023805

Summary: [DDF] This isn't sufficient.
Product: Red Hat Enterprise Linux 8 Reporter: Direct Docs Feedback <ddf-bot>
Component: DocumentationAssignee: Filip Hanzelka <fhanzelk>
Documentation sub component: DDF QA Contact:
Status: CLOSED CURRENTRELEASE Docs Contact:
Severity: unspecified    
Priority: high CC: davozeni, jvilicic, rhel-docs, sam
Version: 8.0Keywords: Documentation
Target Milestone: rcFlags: pm-rhel: mirror+
Target Release: ---   
Hardware: All   
OS: All   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2021-11-29 11:26:13 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Direct Docs Feedback 2021-11-16 15:36:33 UTC
This isn't sufficient.

If the server being uninstalled is the 'CA renewal server' then some other server should be set as the 'CA renewal server'.

If the server being uninstalled is the 'CRL publisher' then the server being uninstalled should have CRL publication disabled, and another server needs to have the role enabled.

Instructions for both of this are present in other chapters but I think they should be linked to here, because it's possible to be unaware that you need to do those extra steps if the server you're removing performs either of those roles.

The docs could link to https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/configuring_and_managing_identity_management/managing-topology#server-roles-promote-to-ca (which itself links to chapters 57.2 to cover the CA renewal server and 59 for the CRL publisher.

But there's also chapter 60, "DECOMMISSIONING A SERVER THAT PERFORMS THE CA RENEWAL SERVER AND CRL PUBLISHER ROLES" which duplicates both those individual chapters. So maybe that would be better to link to instead.

Reported by: staticyrro7

https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/installing_identity_management/uninstalling-an-ipa-server_installing-identity-management#annotations:85873507-2f26-4d3a-93e9-755126e8e76e