Bug 724036
| Summary: | Internal error revoking certificate - default revocation reason | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 6 | Reporter: | Jenny Severance <jgalipea> |
| Component: | ipa | Assignee: | Rob Crittenden <rcritten> |
| Status: | CLOSED ERRATA | QA Contact: | Chandrasekar Kannan <ckannan> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | high | ||
| Version: | 6.1 | CC: | benl, mkosek, nsoman |
| Target Milestone: | rc | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | ipa-2.1.0-1.el6 | Doc Type: | Bug Fix |
| Doc Text: |
Do not document
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2011-12-06 18:41:50 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Jenny Severance
2011-07-21 18:35:22 UTC
Fixed upstream: master: https://fedorahosted.org/freeipa/changeset/abb5ee22d2c842b8ba1f68ce4d2ec47c306448aa ipa-2-0: https://fedorahosted.org/freeipa/changeset/6c49412da11f66258ec4d54a050604e12ba43cff
Technical note added. If any revisions are required, please edit the "Technical Notes" field
accordingly. All revisions will be proofread by the Engineering Content Services team.
New Contents:
Do not document
Verified using ipa-client-2.1.3-8.el6.x86_64
Revoking certificate is not causing an internal error
::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
:: [ LOG ] :: ipa-functionalservices-ldap-006: Revoke certificate
::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
kdestroy: No credentials cache found while destroying cache
spawn /usr/bin/kinit -V admin
Using default cache: /tmp/krb5cc_0
Using principal: admin@TESTRELM
Password for admin@TESTRELM:
Authenticated to Kerberos v5
Default principal: admin@TESTRELM
:: [22:54:37] :: kinit as admin with password Secret123 was successful.
:: [ PASS ] :: Get administrator credentials
:: [22:54:41] :: ldap/dell-pesc1420-01.testrelm certificate serial number: 17
Revoked: True
:: [ PASS ] :: Revoke LDAP server's certificate
:: [22:54:44] :: Checking certificate revokation via OCSP
:: [22:54:44] :: EXECUTING: /usr/lib64/nss/unsupported-tools/ocspclnt -S "dell-pesc1420-01.testrelm" -d /etc/dirsrv/slapd-instance1/
:: [ PASS ] :: Running ocspclnt
:: [ PASS ] :: File '/tmp/ocsp.out' should contain 'Peer's Certificate has been revoked.'
'61f19dcc-eb19-4e42-8a62-fc0a7528c0c1'
ipa-functionalservices-ldap-006 result: PASS
metric: 0
Log: /tmp/beakerlib-3510265/journal.txt
Info: Searching AVC errors produced since 1320548075.91 (Sat Nov 5 22:54:35 2011)
Searching logs...
Info: No AVC messages found.
Writing to /mnt/testarea/tmp.Oz2Lzo
:
AvcLog: /mnt/testarea/tmp.Oz2Lzo
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHSA-2011-1533.html |