#7196 ipa-replica-install fails with 'HTTPError: 403 Client Error: Forbidden' due to a custodia issue
Closed: fixed by rcritten. Opened by pvoborni.

Ticket was cloned from Red Hat Bugzilla (product Red Hat Enterprise Linux 7): Bug 1482225

Created attachment 1314328
error log for the operation
Description of problem:
Customer is attempting to set up IPA replica. The replica install fails with
the above error
Version-Release number of selected component (if applicable):
ipa-admintools-4.4.0-14.el7_3.4.noarch                      Tue Jun 13 16:36:09
2017
ipa-client-4.4.0-14.el7_3.4.x86_64                          Tue Jun 13 16:36:09
2017
ipa-client-common-4.4.0-14.el7_3.4.noarch                   Tue Jun 13 16:35:55
2017
ipa-common-4.4.0-14.el7_3.4.noarch                          Tue Jun 13 16:35:55
2017
ipa-server-4.4.0-14.el7_3.4.x86_64                          Tue Jun 13 16:36:25
2017
ipa-server-common-4.4.0-14.el7_3.4.noarch                   Tue Jun 13 16:36:09
2017
How reproducible:
Steps to Reproduce:
1.
2.
3.
Actual results:
Expected results:
Additional info:

Metadata Update from @pvoborni:
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1482225

Metadata Update from @pvoborni:
- Issue priority set to: important

ipa-server-upgrade now checks custodia server keys and recreates missing files if needed (since commit 387ae9fd0f0afeecffb41ff8ffd6835ae66ea8ff present in ipa-4-7 and backported to ipa-4-6 with commit b216655d601e011b0c144cf5bed88c7a6579a3cf)

Metadata Update from @rcritten:
- Issue close_status updated to: fixed
- Issue status updated to: Closed (was: Open)

Metadata