From 1336b399065ff47477029ba487f1d392f1ce6ac8 Mon Sep 17 00:00:00 2001 From: Martin Kosek Date: Thu, 14 Mar 2013 14:36:39 +0100 Subject: Improve client install LDAP cert retrieval fallback CA certificate retrieval function did not fallback from LDAP to HTTP based retrieval in case of an LDAP error, when for example GSSAPI authentication failed. https://fedorahosted.org/freeipa/ticket/3512 --- ipa-client/ipa-install/ipa-client-install | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/ipa-client/ipa-install/ipa-client-install b/ipa-client/ipa-install/ipa-client-install index fc8b6c855..f1b2c1887 100755 --- a/ipa-client/ipa-install/ipa-client-install +++ b/ipa-client/ipa-install/ipa-client-install @@ -1624,7 +1624,7 @@ def get_ca_cert(fstore, options, server, basedn): except Exception, e: os.unlink(ca_file) raise - except errors.NoCertificateError, e: + except (errors.NoCertificateError, errors.LDAPError), e: root_logger.debug(str(e)) url = http_url() if existing_ca_cert: -- cgit