Migrating IPA CA certificates from externally-signed CA to self-signed CA.
Issue
- How to migrate an IPA server from an external CA like Active Directory to self-signed IPA CA.
- This solution works when the all certificates currently present in the IPA CA subsystem are still valid and haven't expired yet.
Environment
- Red Hat Enterprise Linux 7.x
- IPA
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.