When running ipa-cacert-manage renew --external-ca with an IPA CA having a subject DN that does not correspond to CN=Certificate Authority, {subject-base}, the CSR for submission to the external CA does not generated.
ipa-cacert-manage renew --external-ca
CN=Certificate Authority, {subject-base}
PR: https://github.com/freeipa/freeipa/pull/1002
Metadata Update from @tkrizek: - Issue priority set to: major - Issue set to the milestone: FreeIPA 4.5.4
master:
ipa-4-5:
Metadata Update from @tkrizek: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)
Log in to comment on this ticket.