freeipa/ipaserver
Florence Blanc-Renaud d932642475 ipa-ca-install: append CA cert chain into /etc/ipa/ca.crt
ipa-ca-install currently overwrites /etc/ipa/ca.crt with the CA chain
retrieved from Dogtag. It should instead append the new certs, otherwise
the CA that signed dirsrv and httpd certificates is removed and ipa tools
fail.
A consequence is that ipa-kra-install fails.
This is a regression introduced by 5ab85b36.

https://pagure.io/freeipa/issue/6925

Reviewed-By: Stanislav Laznicka <slaznick@redhat.com>
2017-05-22 13:28:40 +02:00
..
advise scripts, tests: explicitly set confdir in the rest of server code 2017-02-22 08:07:48 +00:00
dnssec Fix PKCS11 helper 2017-04-12 09:54:10 +02:00
install ipa-ca-install: append CA cert chain into /etc/ipa/ca.crt 2017-05-22 13:28:40 +02:00
plugins server-del: update defaultServerList in cn=default,ou=profile,$BASE 2017-05-19 18:45:52 +02:00
secrets ipa-kra-install: fix check_host_keys 2017-05-09 14:28:13 +02:00
__init__.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
dcerpc.py ipaserver/dcerpc: unify error processing 2017-04-11 14:16:39 +02:00
dns_data_management.py Fix compatibility with python-dns 1.15.0 2016-10-11 15:45:41 +02:00
Makefile.am Build: Makefiles for Python packages 2016-11-09 13:08:32 +01:00
p11helper.py Fix PKCS11 helper 2017-04-12 09:54:10 +02:00
rpcserver.py server install: fix KDC PKINIT configuration 2017-05-19 12:31:24 +02:00
servroles.py Introduce "NTP server" role 2016-06-15 13:51:48 +02:00
setup.cfg Port all setup.py to setuptools 2016-10-20 18:43:37 +02:00
setup.py Turn on NSSOCSP check in mod_nss conf 2017-05-10 09:08:34 +02:00
topology.py Fix topologysuffix-verify failing connections 2016-06-24 13:32:02 +02:00