[389-users] Importing certificates during setup-ds.pl - is this possible?

Graham Leggett minfrin at sharp.fm
Mon Dec 24 11:32:38 UTC 2012


On 24 Dec 2012, at 12:52 PM, Vlad <vovan at vovan.nl> wrote:

> I don't see the problem. Simply install DS without SSL and then:
> 1. use ldapmodify to import SSL settings (see the example below)
> 2. use pk12util tiu import certificate
> 3. use certutil to change trusts
> All the things above could be done completely unattended…

The problem is that the above shouldn't be necessary, because setup-ds.pl has the INF file and ConfigFile options to provide the config in one go. This ConfigFile mechanism is rendered useless, because there is no ability to configure the certificate database in advance.

Regards,
Graham
--

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4365 bytes
Desc: not available
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20121224/3a450697/attachment.p7s>


More information about the 389-users mailing list