ok. 1. certutil of httpd isn't used any more. Its certificate is tracking by certmon. Just change the settings of ssl.conf to default(self-signed) or our own.
2. Set system date time before August 3 and restart services. 3. run ipa-getcert request -d /etc/dirsrv/slapd-WINGON-HK/ -n ‘CN=*.wingon.hk' -K ldap/`hostname` -N CN=`hostname`,O=WINGON.HK -g 2048 -p /etc/dirsrv/slapd-WINGON-HK/pwdfile.txt 3. getcert list / certutil -d /etc/dirsrv/s... -L 4. ipactl restart -f -d Problem is solved. Thanks. _______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
