freeipa/install/tools
Rob Crittenden 02e19d0a39 Add SHA384withRSA as a certificate signing algorithm
It required support in dogtag which was added in 10.5.0.

This is only easily configurable during installation because
it will set ca.signing.defaultSigningAlgorithm to the
selected algorithm in CS.cfg

The certificate profiles will generally by default set
default.params.signingAlg=- which means use the CA default.

So while an existing installation will technically allow
SHA384withRSA it will require profile changes and/or
changing the defaultSigningAlgorithm in CS.cfg and
restarting (completely untested). And that won't affect
already issued-certificates.

https://pagure.io/freeipa/issue/8906

Signed-off-by: Rob Crittenden <rcritten@redhat.com>
Reviewed-By: Florence Blanc-Renaud <frenaud@redhat.com>
2021-07-09 13:21:00 -04:00
..
man Add SHA384withRSA as a certificate signing algorithm 2021-07-09 13:21:00 -04:00
ipa-acme-manage.in acme: add ipa-acme-manage command 2020-07-10 08:33:22 -04:00
ipa-adtrust-install.in Unify installer context to be 'installer' 2021-05-12 10:45:57 -04:00
ipa-advise.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-backup.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-ca-install.in Add SHA384withRSA as a certificate signing algorithm 2021-07-09 13:21:00 -04:00
ipa-cacert-manage.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-ccache-sweeper.in krb_utils: Simplify get_credentials 2021-06-12 11:19:25 +03:00
ipa-cert-fix.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-compat-manage.in Simplify LDAPUpdater 2020-09-22 09:21:00 -04:00
ipa-crlgen-manage.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-csreplica-manage.in ipa-csreplica-manage, ipa-replica-manage: refactor 2021-03-02 11:48:59 +01:00
ipa-custodia-check.in Fix Custodia imports 2021-06-16 10:28:17 -04:00
ipa-custodia.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-dns-install.in Unify installer context to be 'installer' 2021-05-12 10:45:57 -04:00
ipa-httpd-kdcproxy.in Don't create log files from help scripts 2019-09-24 15:23:30 +02:00
ipa-httpd-pwdreader.in Convert ipa-httpd-pwdreader into Python script 2020-07-30 11:38:25 +02:00
ipa-kra-install.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-ldap-updater.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-managed-entries.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-nis-manage.in Simplify LDAPUpdater 2020-09-22 09:21:00 -04:00
ipa-otptoken-import.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-pki-retrieve-key.in ipa-pki-retrieve-key: request AES encryption (with fallback) 2019-09-25 12:42:06 +10:00
ipa-pki-wait-running.in Specify cert_paths when calling PKIConnection 2020-07-08 11:50:37 +02:00
ipa-pkinit-manage.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-replica-conncheck.in Change FreeIPA references to IPA and Identity Management 2021-01-21 13:51:45 +01:00
ipa-replica-install.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-replica-manage.in pylint: Fix several warnings 2021-03-30 09:58:42 +02:00
ipa-restore.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-server-certinstall.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-server-install.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-server-upgrade.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipa-subids.in Add basic support for subordinate user/group ids 2021-07-09 09:47:30 -04:00
ipa-winsync-migrate.in Replace PYTHONSHEBANG with valid shebang 2019-06-24 09:35:57 +02:00
ipactl.in Introduce minimal ipa-client-automount.in and ipactl.in 2019-06-28 10:53:07 +02:00
Makefile.am Add basic support for subordinate user/group ids 2021-07-09 09:47:30 -04:00