OCSP URI reference in IdM/IPA certificate's AIA extension
Issue
Why a digital certificate details in Identity Management/IdM/IPA are showing the OCSP URI in a form similar to:
http://ipaserver:80/ca/OCSP
versus the dogtag OCSP location using the unsecure "End Entity" TCP port, similar to:
http://ipaserver:9180/ca/ocsp
?
Is that URL using the TCP port number 80 is valid, can it be a problem for OCSP validation, are the certificates correctly issued?
Environment
Red Hat Enterprise Linux Server release 6.2 (Santiago)
Linux ipaserver1.example.com 2.6.32-220.el6.x86_64 #1 SMP Wed Nov 9 08:03:13 EST 2011 x86_64 x86_64 x86_64 GNU/Linux
IPA / Identity Management
ipa-server-2.1.3-9.el6.x86_64
pki-ca-9.0.3-20.el6.noarch
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
