The following error is thrown at the attempt to install ca-less replica under domain level 1:[[BR]] {{{
[5/18]: enabling mod_nss renegotiate [6/18]: adding URL rewriting rules [7/18]: configuring httpd [8/18]: setting up httpd keytab [9/18]: setting up ssl [error] NotFound: no such entry Your system may be partly configured. Run /usr/sbin/ipa-server-install --uninstall to clean up.
and copy replica.p12 file over to future replica 8. run the following command on replica to install it:[[BR]] {{{ipa-replica-install -p <dirman_password> -U --http-cert-file replica.p12 --dirsrv-cert-file replica.p12 --http-pin <dirman_password> --dirsrv-pin <dirman_password> -P admin -n <domain> -r <REALM>}}} [[BR]]
The installation is successful[[BR]]
The installation fails. [[BR]] [[BR]] The installation log is attached
Installation log ipareplica-install.log
a script to generate certs caless-create-pki
looks like a regression
Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=837369 (Red Hat Enterprise Linux 7)
based on
File "/usr/lib/python2.7/site-packages/ipaserver/install/server/replicainstall.py", line 185, in install_http 3106 ca_is_configured=ca_is_configured, promote=promote) 3107 File "/usr/lib/python2.7/site-packages/ipaserver/install/httpinstance.py", line 190, in create_instance 3108 self.start_creation(runtime=60) 3109 File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 446, in start_creation 3110 run_step(full_msg, method) 3111 File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 436, in run_step 3112 method() 3113 File "/usr/lib/python2.7/site-packages/ipaserver/install/httpinstance.py", line 343, in __setup_ssl 3114 self.add_cert_to_service() 3115 File "/usr/lib/python2.7/site-packages/ipaserver/install/service.py", line 311, in add_cert_to_service 3116 entry = self.admin_conn.get_entry(dn) 3117 File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1428, in get_entry 3118 size_limit=size_limit 3119 File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 1382, in find_entries 3120 break 3121 File "/usr/lib64/python2.7/contextlib.py", line 35, in __exit__ 3122 self.gen.throw(type, value, traceback) 3123 File "/usr/lib/python2.7/site-packages/ipapython/ipaldap.py", line 9
Closing it as a duplicate of #5789 - in both instances the http service entry is missing
Metadata Update from @ofayans: - Issue assigned to someone - Issue set to the milestone: FreeIPA 4.3.2
Login to comment on this ticket.