Re: [Freeipa-users] IPA with external CA signed certs

2015-11-13 Thread Gronde, Christopher (Contractor)
n Kosek <mko...@redhat.com>; freeipa-users@redhat.com; Jan Cholasta <jchol...@redhat.com>; David Kupka <dku...@redhat.com>; Endi Sukma Dewata <edew...@redhat.com> Subject: Re: [Freeipa-users] IPA with external CA signed certs Gronde, Christopher (Contractor) wrote: > For

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-13 Thread Rob Crittenden
Gronde, Christopher (Contractor) wrote: For those of you that have been helping me...thank you! For all those following along here is the status of my issues. I ended up replacing the krbprincipal key and the user certificate in LDAP to match what is on the master and I am no longer getting

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-13 Thread Gronde, Christopher (Contractor)
edhat.com; Jan Cholasta <jchol...@redhat.com>; David Kupka <dku...@redhat.com>; Endi Sukma Dewata <edew...@redhat.com> Subject: Re: [Freeipa-users] IPA with external CA signed certs James Masson wrote: > > > On 12/11/15 15:21, Rob Crittenden wrote: >> James Masso

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-12 Thread James Masson
On 30/10/15 13:52, Rob Crittenden wrote: James Masson wrote: On 26/10/15 16:11, Martin Kosek wrote: On 10/26/2015 04:05 PM, James Masson wrote: On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: Hi list, I successfully have IPA working with CA certs signed by an upstream

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-12 Thread Rob Crittenden
James Masson wrote: On 30/10/15 13:52, Rob Crittenden wrote: James Masson wrote: On 26/10/15 16:11, Martin Kosek wrote: On 10/26/2015 04:05 PM, James Masson wrote: On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: Hi list, I successfully have IPA working with CA certs

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-12 Thread James Masson
On 12/11/15 15:21, Rob Crittenden wrote: James Masson wrote: On 30/10/15 13:52, Rob Crittenden wrote: James Masson wrote: On 26/10/15 16:11, Martin Kosek wrote: On 10/26/2015 04:05 PM, James Masson wrote: On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: Hi list, I

Re: [Freeipa-users] IPA with external CA signed certs

2015-11-12 Thread Rob Crittenden
James Masson wrote: On 12/11/15 15:21, Rob Crittenden wrote: James Masson wrote: On 30/10/15 13:52, Rob Crittenden wrote: James Masson wrote: On 26/10/15 16:11, Martin Kosek wrote: On 10/26/2015 04:05 PM, James Masson wrote: On 19/10/15 21:06, Rob Crittenden wrote: James Masson

Re: [Freeipa-users] IPA with external CA signed certs

2015-10-30 Thread Rob Crittenden
James Masson wrote: > > > On 26/10/15 16:11, Martin Kosek wrote: >> On 10/26/2015 04:05 PM, James Masson wrote: >>> >>> >>> On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: > > Hi list, > > I successfully have IPA working with CA certs signed by an upstream >

Re: [Freeipa-users] IPA with external CA signed certs

2015-10-28 Thread James Masson
On 26/10/15 16:11, Martin Kosek wrote: On 10/26/2015 04:05 PM, James Masson wrote: On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: Hi list, I successfully have IPA working with CA certs signed by an upstream Dogtag. Now I'm trying to use a CA cert signed by a different

Re: [Freeipa-users] IPA with external CA signed certs

2015-10-26 Thread James Masson
On 19/10/15 21:06, Rob Crittenden wrote: James Masson wrote: Hi list, I successfully have IPA working with CA certs signed by an upstream Dogtag. Now I'm trying to use a CA cert signed by a different type of CA - Vault. Setup fails, using the same 2 step IPA setup process as used with

Re: [Freeipa-users] IPA with external CA signed certs

2015-10-26 Thread Martin Kosek
On 10/26/2015 04:05 PM, James Masson wrote: > > > On 19/10/15 21:06, Rob Crittenden wrote: >> James Masson wrote: >>> >>> Hi list, >>> >>> I successfully have IPA working with CA certs signed by an upstream Dogtag. >>> >>> Now I'm trying to use a CA cert signed by a different type of CA - Vault.

Re: [Freeipa-users] IPA with external CA signed certs

2015-10-19 Thread Rob Crittenden
James Masson wrote: > > Hi list, > > I successfully have IPA working with CA certs signed by an upstream Dogtag. > > Now I'm trying to use a CA cert signed by a different type of CA - Vault. > > Setup fails, using the same 2 step IPA setup process as used with > upstream Dogtag. I've also

[Freeipa-users] IPA with external CA signed certs

2015-10-15 Thread James Masson
Hi list, I successfully have IPA working with CA certs signed by an upstream Dogtag. Now I'm trying to use a CA cert signed by a different type of CA - Vault. Setup fails, using the same 2 step IPA setup process as used with upstream Dogtag. I've also tried the external-ca-type option.

Re: [Freeipa-users] ipa and external ca

2015-04-07 Thread Martin Kosek
On 04/03/2015 08:25 PM, Dmitri Pal wrote: On 04/03/2015 02:03 PM, James James wrote: Hi everybody, sorry to repost my original question but this time my problem is better described. I want to install a ipa sever on centos 6 with an external ca. My problem is to add emailAddress in the

Re: [Freeipa-users] ipa and external ca

2015-04-03 Thread Dmitri Pal
On 04/03/2015 02:03 PM, James James wrote: Hi everybody, sorry to repost my original question but this time my problem is better described. I want to install a ipa sever on centos 6 with an external ca. My problem is to add emailAddress in the subject field when I type the command :

[Freeipa-users] ipa and external ca

2015-04-03 Thread James James
Hi everybody, sorry to repost my original question but this time my problem is better described. I want to install a ipa sever on centos 6 with an external ca. My problem is to add emailAddress in the subject field when I type the command : [root@ipa-dev ~]# ipa-server-install --external_ca