Bug 711670

Summary: Unable to connect the Red hat satellite server with the local machine
Product: Red Hat Satellite 5 Reporter: Selvaraj <selvaraj_chandrasekaran_Cw>
Component: Satellite SynchronizationAssignee: Miroslav Suchý <msuchy>
Status: CLOSED NOTABUG QA Contact: Red Hat Satellite QA List <satqe-list>
Severity: urgent Docs Contact:
Priority: unspecified    
Version: unspecified   
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2011-06-08 09:19:09 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Attachments:
Description Flags
attachments none

Description Selvaraj 2011-06-08 06:16:23 UTC
Description of problem:
Unable to connect the Red hat satellite server with the local machine

Version-Release number of selected component (if applicable):
Red hat Satellite Server 

How reproducible:


Steps to Reproduce:
1. Run the command satellite-sync --list-channels
2.
3.
  
Actual results:
when using, server.satellite.ca_chain = /etc/rhn/bmc-software.cert i got

ERROR: there was a problem synchronizing the information.
       Error message: [('PEM routines', 'PEM_read_bio', 'bad end line'), ('x509 certificate routines', 'X509_load_cert_crl_file', 'PEM lib')] 

when using,server.satellite.ca_chain =/var/www/html/pub/RHN-ORG-TRUSTED-SSL-CERT

ERROR: there was a problem synchronizing the information.
       Error message: [('SSL routines', 'SSL3_GET_SERVER_CERTIFICATE', 'certificate verify failed')]

Expected results:
Need to list the available channels

Additional info:
I already activate my server as an RHN satellite by uploading the certicate in the rhn.redhat.com website.I also attached the rhn.conf file and the screenshot of the activation webpage of my server.

Comment 1 Selvaraj 2011-06-08 06:42:35 UTC
Created attachment 503627 [details]
attachments

Comment 2 Miroslav Suchý 2011-06-08 09:19:09 UTC
ca_chain should be set to parent CA. I.e. CA of rhn.redhat.com.
So you should have there:
server.satellite.ca_chain = /usr/share/rhn/RHNS-CA-CERT

I highly recommend you to take this course:
https://www.redhat.com/courses/rh401_red_hat_enterprise_deployment_and_systems_management/
I believe, it will be big benefit for you.