[Pki-devel] [PATCH] 296 - fix cert requests problem ..

2016-04-22 Thread Ade Lee
Fix problem in creating certificate requests Some incorrect code was added to request processing in the realm patches. In the request LDAP modification code, if the realm was not present, we added a modification to remove the realm attribute. Unfortunately, if th

[Pki-devel] [PATCH] 297, 298 add validity check for external CA

2016-04-22 Thread Ade Lee
commit 0fe7bf5ff989bbc24875dce30cec8f32e89c0a8f Author: Ade Lee Date: Fri Apr 22 15:31:43 2016 -0400 Add validity check for the signing certificate in pkispawn When either an existing CA or external CA installation is performed, use the pki-server cert validation tool to check

Re: [Pki-devel] [PATCH] 297, 298 add validity check for external CA

2016-04-22 Thread Endi Sukma Dewata
On 4/22/2016 2:37 PM, Ade Lee wrote: commit 0fe7bf5ff989bbc24875dce30cec8f32e89c0a8f Author: Ade Lee Date: Fri Apr 22 15:31:43 2016 -0400 Add validity check for the signing certificate in pkispawn When either an existing CA or external CA installation is performed, use the pki

Re: [Pki-devel] [PATCH] 0084..0086 Lightweight CA replication support

2016-04-22 Thread John Magne
I took a look at the stuff alee asked for. CFU even took a quick look when I asked her a couple of questions. She was unsure of something (as was I) and she would like to be able to take a closer look next week. I will give my quick thoughts. 1. I agree that HSM support is not in the patch, seems