A helpful fellow called alee on #dogtag-pki suggested I write the list. I've
been playing with dogtag-pki-9.0.0-10 on 64-bit Fedora 17.
I'm looking to use dogtag to run a subordinate CA that does all our everyday
PKI stuff. So when I used pki-create and went into the webform, I went the
"create a csr" route and signed it using a root CA I'd set up using openssl.
Everything seemed to work out fine, until I got to the point where I was
restarting pki-cad (using systemctl restart pki-cad(a)pki-ca.service). It
With alee's help I tracked it down to a failure of SystemCertsVerification
during the selftests.
He asked me to submit my debug log to the list, so here it is.
After struggling a bit with my system, I managed to launch the ESC with a
french Gemalto Smart Card & reader.
Here is what happens.
First I see a notification pop-up that tells me :
Can't get UniversalXPConnect.TypeError: Components.classes['@
redhat.com/rhCoolKey;1'] is undefined
Then when hitting "diagnostics", I get the following.
SMART CARD DIAGNOSTICS REPORT
***Software Version Information***
Smart Card Manager Version: null
System Versions: mozilla/5.0 (x11; linux i686; rv:16.0) gecko/20100101
***Active Smart Card Details***
Number of Smart Cards Detected: 0
***Smart Card Activity***
No log file or log file has no data.
Can someone tell me what all this means (probably that the reader or card
is unsupported), however...
Is it possible to restore a backup of CA system into a
completely different computer? Does anybody has tried it out? I tried the
But I think it would only work if we are to use the same computer to
What would be the best procedure to follow in this situation.