Description of problem:
Currently, the only way to recover a certificate system instance whose certs have expired is by backdating the server till when the certs are not yet expired, and using the regular cert enrollment tools to renew the cert. This process is manual and error prone.
A tool is needed to simplify and automate this process, without requiring the system to be backdated. This tool would be part of the pki-server admin tool that would be run by a priviledged user on the server.
This tool could then be invoked by IPA administrators to easily resurrect certificate server instances.
Version-Release number of selected component (if applicable):
Steps to Reproduce:
This seems to be a duplicate of bug #1468348.
*** This bug has been marked as a duplicate of bug 1468348 ***