The user-cert-add command is used to assign a certificate to a user in a subsystem. If a --serial option is specified the CLI will retrieve the certificate from a CA and then submit it to be assigned to the user. However, currently it will only work with a local CA running in the same instance. If the CA is remote, the command will fail.
Ideally the certificate retrieval should be done by the subsystem itself so it will work regardless of CA location. For now the CLI should show an error message if the CA is not available in the same instance. The man page should clarify this behavior.
Fixed in master: 2b4b943fee003115a03f287340ef6bdfd47e8486
The CLI will prompt for the CA server URL.
Metadata Update from @edewata: - Issue assigned to edewata - Issue set to the milestone: 10.2.6
Dogtag PKI is moving from Pagure issues to GitHub issues. This means that existing or new issues will be reported and tracked through Dogtag PKI's GitHub Issue tracker.
This issue has been cloned to GitHub and is available here: https://github.com/dogtagpki/pki/issues/2008
If you want to receive further updates on the issue, please navigate to the GitHub issue and click on Subscribe button.
Subscribe
Thank you for understanding, and we apologize for any inconvenience.