#7030 tests: CA-less test suite broken due to missing subject key identifier extension
Closed: fixed Opened by mreznik.

This case is open in order to fix CA-less test suite which is currently broken due to missing subject key identifier extension.

[2017-06-21T21:18:38Z ipa.ipatests.pytest_plugins.integration.host.Host.vm-165.cmd15] <DEBUG>: ipa.ipapython.install.cli.install_tool(CompatServerMasterInstall): ERROR CA certificate CN=CA,O=Example Organization in http.p12 is not valid: missing subject key identifier extension


Metadata Update from @mreznik:
- Issue assigned to mreznik

Metadata Update from @mreznik:
- Issue tagged with: tests

Metadata Update from @ftweedal:
- Issue assigned to ftweedal (was: mreznik)

I'll take this, for I have discovered the arcane incantations
required to make certutil do the proper things.

PR: https://github.com/freeipa/freeipa/pull/891

Metadata Update from @mreznik:
- Issue assigned to mreznik (was: ftweedal)

As discussed with Fraser, we will use new makepki.py.

PR: https://github.com/freeipa/freeipa/pull/899

Metadata Update from @pvoborni:
- Issue set to the milestone: FreeIPA 4.6

master:

  • 64375ba65bfc56694a425b1e39bd2081e604f777 test_caless: introduce new python makepki + fix SKI extension issue

Metadata Update from @tkrizek:
- Issue close_status updated to: fixed
- Issue status updated to: Closed (was: Open)

ipa-4-5:

  • f84fc586b4adc48987bb85d2e38633b886185994 test_caless: introduce new python makepki + fix SKI extension issue
Metadata