diff options
author | Jan Cholasta <jcholast@redhat.com> | 2014-10-07 16:46:15 +0200 |
---|---|---|
committer | Martin Kosek <mkosek@redhat.com> | 2014-10-10 08:48:25 +0200 |
commit | 92a08266afb565bd50a8f059ef40f3d727fc2466 (patch) | |
tree | 64d7be7f424e66c44364a397ae5a958ed6cc1ec6 /ipaserver/install/krainstance.py | |
parent | cf956fa998d6a849aba928a361f6c5d568d65189 (diff) | |
download | freeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.tar.gz freeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.tar.xz freeipa-92a08266afb565bd50a8f059ef40f3d727fc2466.zip |
Fix certmonger configuration in installer code
https://fedorahosted.org/freeipa/ticket/4619
Reviewed-By: David Kupka <dkupka@redhat.com>
Diffstat (limited to 'ipaserver/install/krainstance.py')
-rw-r--r-- | ipaserver/install/krainstance.py | 9 |
1 files changed, 6 insertions, 3 deletions
diff --git a/ipaserver/install/krainstance.py b/ipaserver/install/krainstance.py index 182e8e034..1af1c0f72 100644 --- a/ipaserver/install/krainstance.py +++ b/ipaserver/install/krainstance.py @@ -52,6 +52,10 @@ class KRAInstance(DogtagInstance): be the same for both the CA and KRA. """ + tracking_reqs = (('auditSigningCert cert-pki-kra', None), + ('transportCert cert-pki-kra', None), + ('storageCert cert-pki-kra', None)) + def __init__(self, realm, dogtag_constants=None): if dogtag_constants is None: dogtag_constants = dogtag.configured_constants() @@ -64,9 +68,6 @@ class KRAInstance(DogtagInstance): ) self.basedn = DN(('o', 'kra'), ('o', 'ipaca')) - self.tracking_reqs = (('auditSigningCert cert-pki-kra', None), - ('transportCert cert-pki-kra', None), - ('storageCert cert-pki-kra', None)) self.log = log_mgr.get_logger(self) def configure_instance(self, host_name, domain, dm_password, @@ -111,6 +112,8 @@ class KRAInstance(DogtagInstance): self.step("add RA user to KRA agent group", self.__add_ra_user_to_agent_group) self.step("restarting KRA", self.restart_instance) + self.step("configure certmonger for renewals", + self.configure_certmonger_renewal) self.step("configure certificate renewals", self.configure_renewal) self.step("Configure HTTP to proxy connections", self.http_proxy) |