If ipa-replica-install is run with replica file prepared on master which has been updated from CA-less to CA-full, it fails with:
ipa-replica-install
... [16/35]: enabling referential integrity plugin [17/35]: configuring ssl for ds instance [error] RuntimeError: Could not find a CA cert in /tmp/tmpR7owOmipa/realm_info/dscert.p12 Your system may be partly configured. Run /usr/sbin/ipa-server-install --uninstall to clean up. Could not find a CA cert in /tmp/tmpR7owOmipa/realm_info/dscert.p12
I can't reproduce the ipa-client-install anymore, removing it from the description.
ipa-client-install
seen in https://bugzilla.redhat.com/show_bug.cgi?id=1256038
Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=1301687 (Red Hat Enterprise Linux 7)
master:
ipa-4-3:
ipa-4-2:
Metadata Update from @jcholast: - Issue assigned to jcholast - Issue set to the milestone: FreeIPA 4.2.4
Login to comment on this ticket.