[Freeipa-devel] [PATCH] 260 allow a CA to be regenerated

Rob Crittenden rcritten at redhat.com
Fri Aug 28 17:38:45 UTC 2009


Add an option so we can generate a new cert for a CA. This is so we can 
ultimately fix the missing CA basic constraint but it will also allow 
the CA to be renewed.

This also fixes a small bug when generating the CA basic constraint. It 
wasn't getting set as Critical because somehow I had it sending a 7 
instead of a y :-(

rob
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-260-ca.patch
Type: application/mbox
Size: 2898 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20090828/0f164598/attachment.mbox>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20090828/0f164598/attachment.bin>


More information about the Freeipa-devel mailing list