ipa-server-install (sudo ipa-server-install --setup-dns --auto-forwarders --auto-reverse -p 12345678 -a 12345678 -r XYZ.TEST.REDHAT.COM -n xyz.test.redhat.com -U) fails with the following message: Configuring certificate server (pki-tomcatd). Estimated time: 3 minutes 30 seconds [1/31]: creating certificate server user [2/31]: configuring certificate server instance ipa.ipaserver.install.cainstance.CAInstance: CRITICAL Failed to configure CA instance: Command '/usr/sbin/pkispawn -s CA -f /tmp/tmpaoscsU' returned non-zero exit status 1 ipa.ipaserver.install.cainstance.CAInstance: CRITICAL See the installation logs and the following files/directories for more information: ipa.ipaserver.install.cainstance.CAInstance: CRITICAL /var/log/pki/pki-tomcat [error] RuntimeError: CA configuration failed. ipa.ipapython.install.cli.install_tool(Server): ERROR CA configuration failed. ipa.ipapython.install.cli.install_tool(Server): ERROR The ipa-server-install command failed. See /var/log/ipaserver-install.log for more information
ipa version: freeipa-server x86_64 4.4.0.201608011534GIT2d4d1a9-20160801153453Zjenkins178git2d4d1a9.fc24
Issue with logs described here: https://bugzilla.redhat.com/show_bug.cgi?id=1362450
This is probably a Dogtag issue
Caused by RESTeasy issues in dogtag: https://fedorahosted.org/pki/ticket/2403
Should be fixed in pki-core-10.3.5-1.fc24, we should check requires.
We are not experiencing this bug anymore
Metadata Update from @alich: - Issue assigned to mbasti - Issue set to the milestone: FreeIPA 4.4.2
Login to comment on this ticket.