Recover Dogtag PKIConsole PIN
by Remy van Elst
Hello,
I've got a testing setup with Dogtag 1.3 running, but it has been doing
nothing for about half a year now. I wanted to continue experimenting with
it, but found out I forgot the PIN for the admin user of PKI Console. Can
I recover this? I can enter the web services because my P12 is still
valid, and I can also directly search the LDAP. A few queries for PIN and
password to the LDAP did not help.
Any tips?
11 years, 6 months
(Fedora 17) PKI-RA fails to start after install
by Brian Henson
Hello all,
When I try to configure the RA subsystem after installing it I get this
error.
Installation information recorded in /var/log/pki-ra-install.log.
[debug] run_command(/bin/systemctl restart pki-rad(a)pki-ra.service)
[error] FAILED run_command("/bin/systemctl restart pki-rad(a)pki-ra.service"),
exit status=1 output="Job failed. See system journal and 'systemctl status'
for details."
Before proceeding with the configuration, make sure
the firewall settings of this machine permit proper
access to this subsystem.
Please start the configuration by accessing:
https://
(someaddress):12890/ra/admin/console/config/login?pin=XWdsV1oDtx9qQFcybzAr
After configuration, the server can be operated by the command:
/bin/systemctl restart pki-rad(a)pki-ra.service
Anyone know how to fix this? I get it for the TPS module as well.
Thanks
Brian Henson
11 years, 6 months
Announcing the release of Dogtag 10.0.3
by Ade Lee
The Dogtag team is proud to announce the third errata build for
Dogtag v10.0.0.
Builds are available for Fedora 18 and Fedora 19 in the updates-testing
repositories. Please try them out and provide karma to move them to the
F18 and F19 stable repositories.
== Build Versions ==
pki-core-10.0.3-1
pki-ra-10.0.3-1
pki-tps-10.0.3-1
dogtag-pki-10.0.3-1
dogtag-pki-theme-10.0.3-1
pki-console-10.0.3-1
== Highlights since Dogtag v. 10.0.2 ==
* Fixes for security flaws in the TPS as described in CVE-2013-1885 and
CVE-2013-1886
* Added checking for sane lengths of the fields in subject DNs in the
TPS, to prevent a TPS crash.
* Previously the server certificate name was partially hard-coded. Now
in Tomcat-based subsystems, it can be fully configured using
pki_ssl_server_nickname parameter.
* Corrections and additions to man pages and other documentation.
== Detailed Changes since Dogtag v. 10.0.2 ==
akoneru (1):
#599 Improve pkispawn "Installation Summary" block
alee (1):
#486 Document migration steps for dogtag 9 -> dogtag 10 instances
awnuk (4):
#607 Port plug-in randomizing validity
#571 Port patch allowing to include in CRLs NextUpdate calculated base
on ThisUpdate
BZ 951501 - correcting JavaScript inability to handle big numbers
BZ 966189 - fix various TPS flaws
cfu (1):
BZ 952500 - small patch to remove eclipse warning in fix to BZ 952500
edewata (1)
#631 Hard-coded server certificate nickname.
jmagne (1):
BZ 963073 - rhcs81 tps crash for CN over than 64 bytes
mharmsen (3):
#606 add restart/start at boot info to pkispawn man page
#610 Document limitation in using GUI install
#629 Package ownership of '/usr/share/pki/etc/' directory
11 years, 6 months