#9595 Freel IPA on CentOS CA_UNREACHABLE Error - kerberos
Closed: invalid by abbra. Opened by girishf.

We have one new customer, they have setup of one single node of IPA on CentOS.

There certificate is expired, and everthing went down.

When we are trying to bring services up.

pki_tomcatd is not starting, another thing is

When we run command > ipactl-getcerts list

One of the certificate is shwoing CA_Unreachable and getting error:

/var/kerberos/krb5kdc/kdc.crt /var/kerberos/krb5kdc/kdc.key

enter image description here

Created new certificate and CA -> it loads certificate, new dates it shows but still says CA unreachable.

HOw to fix this issue...
ec2f5e24-b534-447d-a0db-c4d5d979571a.jpg


This is not a support channel but rather an issue tracker for development purposes.

If you want to get a help solve your operational issues, please use freeipa-users@ mailing list: https://lists.fedoraproject.org/archives/list/freeipa-users@lists.fedorahosted.org/

Metadata Update from @abbra:
- Issue close_status updated to: invalid
- Issue status updated to: Closed (was: Open)

Metadata