summaryrefslogtreecommitdiffstats
path: root/ipaserver/install/krainstance.py
diff options
context:
space:
mode:
authorJan Cholasta <jcholast@redhat.com>2014-10-07 16:46:15 +0200
committerMartin Kosek <mkosek@redhat.com>2014-10-10 08:48:25 +0200
commit92a08266afb565bd50a8f059ef40f3d727fc2466 (patch)
tree64d7be7f424e66c44364a397ae5a958ed6cc1ec6 /ipaserver/install/krainstance.py
parentcf956fa998d6a849aba928a361f6c5d568d65189 (diff)
downloadfreeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.tar.gz
freeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.tar.xz
freeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.zip
Fix certmonger configuration in installer code
https://fedorahosted.org/freeipa/ticket/4619 Reviewed-By: David Kupka <dkupka@redhat.com>
Diffstat (limited to 'ipaserver/install/krainstance.py')
-rw-r--r--ipaserver/install/krainstance.py9
1 files changed, 6 insertions, 3 deletions
diff --git a/ipaserver/install/krainstance.py b/ipaserver/install/krainstance.py
index 182e8e034..1af1c0f72 100644
--- a/ipaserver/install/krainstance.py
+++ b/ipaserver/install/krainstance.py
@@ -52,6 +52,10 @@ class KRAInstance(DogtagInstance):
be the same for both the CA and KRA.
"""
+ tracking_reqs = (('auditSigningCert cert-pki-kra', None),
+ ('transportCert cert-pki-kra', None),
+ ('storageCert cert-pki-kra', None))
+
def __init__(self, realm, dogtag_constants=None):
if dogtag_constants is None:
dogtag_constants = dogtag.configured_constants()
@@ -64,9 +68,6 @@ class KRAInstance(DogtagInstance):
)
self.basedn = DN(('o', 'kra'), ('o', 'ipaca'))
- self.tracking_reqs = (('auditSigningCert cert-pki-kra', None),
- ('transportCert cert-pki-kra', None),
- ('storageCert cert-pki-kra', None))
self.log = log_mgr.get_logger(self)
def configure_instance(self, host_name, domain, dm_password,
@@ -111,6 +112,8 @@ class KRAInstance(DogtagInstance):
self.step("add RA user to KRA agent group",
self.__add_ra_user_to_agent_group)
self.step("restarting KRA", self.restart_instance)
+ self.step("configure certmonger for renewals",
+ self.configure_certmonger_renewal)
self.step("configure certificate renewals", self.configure_renewal)
self.step("Configure HTTP to proxy connections",
self.http_proxy)