ipa-server-upgrade always reconfigures certmonger to track PKI, DS, HTTP certs, even if certmonger configuration is already OK.
The code looks for existing certmonger tracking requests and compares them with the expected ones. The issue is that the criteria for the search are wrong. Because of that, it assumes that certmonger is not tracking the certs wiith the right options, stops tracking, reconfigures the helpers, starts tracking.
Metadata Update from @frenaud: - Issue assigned to frenaud
Metadata Update from @frenaud: - Custom field on_review adjusted to https://github.com/freeipa/freeipa/pull/1079
Metadata Update from @pvoborni: - Issue set to the milestone: FreeIPA 4.6.2
master:
ipa-4-6:
Metadata Update from @frenaud: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)
Login to comment on this ticket.