Re: [Freeipa-users] ipa: ERROR: Certificate format error: (SEC_ERROR_LEGACY_DATABASE) The certificate/key database is in an old, unsupported format.

2016-09-16 Thread Ben Lipton
On 09/16/2016 03:39 AM, Natxo Asenjo wrote: hi, On Thu, Sep 15, 2016 at 2:25 PM, Natxo Asenjo > wrote: hi, attached error_log Any clues? Thanks! -- -- Groeten, natxo Sorry, I'm not having any luck tracking down the

Re: [Freeipa-users] ipa: ERROR: Certificate format error: (SEC_ERROR_LEGACY_DATABASE) The certificate/key database is in an old, unsupported format.

2016-09-15 Thread Ben Lipton
On 09/15/2016 03:04 AM, Natxo Asenjo wrote: Hi Ben, On Wed, Sep 14, 2016 at 2:45 PM, Ben Lipton <blip...@redhat.com <mailto:blip...@redhat.com>> wrote: One other note - this could be a permissions issue. NSS seems to produce this confusing error message when it

Re: [Freeipa-users] ipa: ERROR: Certificate format error: (SEC_ERROR_LEGACY_DATABASE) The certificate/key database is in an old, unsupported format.

2016-09-14 Thread Ben Lipton
This may be resolved already, but just in case it's helpful: On 09/13/2016 11:26 AM, Rob Crittenden wrote: Natxo Asenjo wrote: hi, On Mon, Sep 12, 2016 at 9:48 PM, Rob Crittenden > wrote: Natxo Asenjo wrote: hi, I can

Re: [Freeipa-users] Querying the dir srv

2016-08-04 Thread Ben Lipton
On 08/04/2016 11:31 AM, Sean Hogan wrote: Hi All, Where can I find information about the IPA schema as in what = what in the dir srv? I do not have a ldap viewer. I am looking to pull specific info from it such as a list of servers that have enrolled = true and have been playing with

Re: [Freeipa-users] named-pkcs11 doesn't start after bind update

2016-07-21 Thread Ben Lipton
I'm not familiar enough with Fedora release engineering to know how this gets fixed permanently, but I'll share some investigation I've done. This appears to be due to a change in the selinux-policy-targeted package that happened recently. As of the latest version, named-pkcs11 tries to run