Skip to content

FreeIPA notes

Kataze Skunk edited this page Apr 15, 2021 · 1 revision

Certificates with certmonger

Get a kerberos ticket

kinit

Create a Kerberos service principle

ipa service-add HTTP/`hostname`

Request a certificate

sudo ipa-getcert request -K HTTP/\`hostname\` -k /etc/asterisk/keys/ipa-client.key -f /etc/asterisk/keys/ipa-client.crt -I freepbx -C /usr/local/sbin/set-ssl-permissions

List the keys being monitored

sudo ipa-getcert list

Clone this wiki locally