Key archival fails when DRM is configured with lunasa.
Steps to Reproduce:
1. Configure CA and DRM with lunasa. 2. Request certificates using profile "Manual User Signing and Encryption Certificates Enrollment". 3. CA agent approve the encryption certificate.
Actual results:
Server internal error message.
Expected results:
The key archival should be successful and certificate should be approved.
Additional info:
See associated bug
committed to master
commit 67aa954964198a1d3ff0afcf050279e23930d2e0 Author: Christina Fu cfu@redhat.com Date: Fri May 6 10:40:55 2016 -0700
Ticket #2303 Key recovery fails with KRA on lunaSA This patch requires JSS with the jss-lunasaUnwrap.patch to work properly on the lunaSA. It is also required for the lunaSA to be of the following model: CKE – Key Export Models
Metadata Update from @cfu: - Issue assigned to cfu - Issue set to the milestone: 10.3.1
Dogtag PKI is moving from Pagure issues to GitHub issues. This means that existing or new issues will be reported and tracked through Dogtag PKI's GitHub Issue tracker.
This issue has been cloned to GitHub and is available here: https://github.com/dogtagpki/pki/issues/2423
If you want to receive further updates on the issue, please navigate to the GitHub issue and click on Subscribe button.
Subscribe
Thank you for understanding, and we apologize for any inconvenience.