[Freeipa-users] Re: FREEIPA - TLS - CN > 64 characters

2020-10-21 Thread Krzysztof O via FreeIPA-users
> On Mon, Oct 19, 2020 at 11:42:08PM +1000, Fraser Tweedale via FreeIPA-users > wrote: > Found the ticket: https://pagure.io/freeipa/issue/5706 > > I also wrote a blog post about this, detailing the workaround > procedure: >

[Freeipa-users] Re: FREEIPA - TLS - CN > 64 characters

2020-10-19 Thread Krzysztof O via FreeIPA-users
> Krzysztof O via FreeIPA-users wrote: > > RFC 3280 defines the upper-bound of common name at 64 and is mandatory. > > What problem is this causing? > > rob When issuing CSR from the overcloud nodes, the CN field value exceeds the 64 characters limit and the req

[Freeipa-users] FREEIPA - TLS - CN > 64 characters

2020-10-19 Thread Krzysztof O via FreeIPA-users
Hello, I'd like to ask of is there any workaround for issuing certificates that will have Common Name longer that 64 characters? For FREEIPA version less than 4.8.0 which is designated for RHEL 8, when we will have to stay with current version of RHEL 7. Regards, Krzysztof