Bug 1456597
| Summary: | Certificate import using pki client-cert-import is asking for password when already provided | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 7 | Reporter: | Asha Akkiangady <aakkiang> |
| Component: | pki-core | Assignee: | Endi Sukma Dewata <edewata> |
| Status: | CLOSED ERRATA | QA Contact: | Asha Akkiangady <aakkiang> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 7.4 | CC: | edewata, mharmsen |
| Target Milestone: | rc | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | pki-core-10.4.1-8.el7 | Doc Type: | No Doc Update |
| Doc Text: |
undefined
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2017-08-01 22:52:53 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Asha Akkiangady
2017-05-29 18:38:51 UTC
Fixed in master: * https://github.com/dogtagpki/pki/commit/af41896f083e1101b1ba62f6cc8c9be6064c6786 * https://github.com/dogtagpki/pki/commit/9741b7873005419b922ba79c61ef98ae17cb58be * https://github.com/dogtagpki/pki/commit/729468e46612569da4c93b15bc0d674099003aba * https://github.com/dogtagpki/pki/commit/d4e5176702b3a08a67233e069ac211e95e01b228 * https://github.com/dogtagpki/pki/commit/3ef47867df74eb9dce408b88756ccce7d7438da5 Tested in version: pki-tools-10.4.1-9.el7.x86_64
Certificates successfully got imported with the password provided in -c or -C parameters.
# pki -d /etc/dirsrv/slapd-CC-NonTMS-LDAP -C /etc/dirsrv/slapd-CC-NonTMS-LDAP/password.txt client-cert-import "CA Certificate" --ca-cert /etc/dirsrv/slapd-CC-NonTMS-LDAP/ca.crt
-------------------------------------
Imported certificate "CA Certificate"
-------------------------------------
[root@nocp11 aakkiang]# pki -d /etc/dirsrv/slapd-CC-NonTMS-LDAP -C /etc/dirsrv/slapd-CC-NonTMS-LDAP/password.txt client-cert-import "DS Certificate" --cert /etc/dirsrv/slapd-CC-NonTMS-LDAP/ds.crt
-------------------------------------
Imported certificate "DS Certificate"
-------------------------------------
# pki -d /etc/dirsrv/slapd-CC-NonTMS-LDAP -c "SECret.123" client-cert-import "Test Certificate" --cert /etc/dirsrv/slapd-CC-NonTMS-LDAP/testcert.crt
---------------------------------------
Imported certificate "Test Certificate"
---------------------------------------
# certutil -L -d /etc/dirsrv/slapd-CC-NonTMS-LDAP
Certificate Nickname Trust Attributes
SSL,S/MIME,JAR/XPI
CA Certificate CT,C,C
DS Certificate u,u,u
Test Certificate u,u,u
Marking the bug verified.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2017:2110 |