This issue was observed in an IPA domain environment. The CA debug log indicated that it could not connect to the directory server, hence it would shutdown. The whole IPA stack would shut down as the CA service did not start. The directory server access log indicates a TLS error:
[30/May/2018:09:57:46.332491276 +1200] conn=3 SSL failed to obtain channel info; Netscape Portable Runtime error -8187 (security library: invalid arguments.)
- Red Hat Enterprise Linux 7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.