IdM/IPA SSL server certificate fails to automatically renew with certmonger status "NEED_CSR_GEN_PIN"
Issue
- IdM / IPA internal SSL server certificates failed to renew automatically, and expired.
- The certmonger service list a certificate with status "NEED_CSR_GEN_PIN"
Environment
- Red Hat Enterprise Linux 6.5
- Identity Management / IdM / IPA 3.x
- certmonger-0.61-3.el6.x86_64
- ipa-server-3.0.0-37.el6.x86_64
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.