Remove certificates from IPA tracking on repo rebuild #39

Merged
mpavlov merged 1 commits from dev into master 2025-08-16 15:30:32 +03:00
Showing only changes of commit 11cf16ff53 - Show all commits

View File

@@ -36,7 +36,16 @@
-N CN={{ ansible_facts['hostname'] }}.{{ ansible_facts['domain'] }}
-F {{ rproxy_dir }}/certs/RootCA.crt
# sudo ipa-getcert stop-tracking -i 20250813210258 if track already exists
- name: Get all tracking certificates
ansible.builtin.shell:
cmd: ipa-getcert list | grep "ID" | awk '{print $NF}' | tr -d "'\|:"
register: tracking_list
- name: Remove certificates from IPA tracking
ansible.builtin.shell:
cmd: "ipa-getcert stop-tracking -i {{ item }}"
loop: "{{ tracking_list.stdout_lines }}"
ignore_errors: true
- name: Wait for certificate to appear
ansible.builtin.wait_for: