#1045 Create a top level tree for a dogtag tomcat instance
Closed: migrated by dmoluguw. Opened by vakwetu.

The idea here is to create a top level tree for a dogtag tomcat instance, under which all subsystem subtrees would be created. This change:

  • simplifies replication - only one replication instance needed per instance
  • allows for the creation of top level users and groups that can be shared across instances.
  • allows the dogtag db to be imported as part of an exisiting ldap subtree.

Along with this, a migration script will be needed to migrate old instances to the new structure (will file a separate ticket), along with other tickets to backport this fix to relevant releases to allow IPA upgrades.

Design is located here:
http://pki.fedoraproject.org/wiki/Top-Level_Tree


Based on discussion with nkinder and mkosek, the migration/upgrade steps may be too invasive for this time.
We will extract part of this functionality to perform now (ticket 1051) and will push the remainder till later.

Suggested timeframe; Future.

Metadata Update from @vakwetu:
- Issue set to the milestone: UNTRIAGED

Dogtag PKI is moving from Pagure issues to GitHub issues. This means that existing or new
issues will be reported and tracked through Dogtag PKI's GitHub Issue tracker.

This issue has been cloned to GitHub and is available here:
https://github.com/dogtagpki/pki/issues/1610

If you want to receive further updates on the issue, please navigate to the
GitHub issue and click on Subscribe button.

Thank you for understanding, and we apologize for any inconvenience.

Metadata Update from @dmoluguw:
- Issue close_status updated to: migrated
- Issue status updated to: Closed (was: Open)

Metadata