dogtagpki / pki

The Dogtag Certificate System is an enterprise-class Certificate Authority (CA) which supports all aspects of certificate lifecycle management, including key archival, OCSP and smartcard management.
https://www.dogtagpki.org
GNU General Public License v2.0
355 stars 133 forks source link

Consider moving contents of [Tomcat] section to [DEFAULT] section of 'default.cfg' . . . #1641

Open pki-bot opened 3 years ago

pki-bot commented 3 years ago

This issue was migrated from Pagure Issue #1078. Originally filed by mharmsen (@mharmsen) on 2014-07-23 19:31:41:


When originally designed (see PKI Instance Deployment), it was believed that the contents which eventually ended up in the 'default.cfg' file as used by the pkispawn/pkidestroy framework would need to support Java-based Tomcat PKI subsystems (CA, KRA, OCSP, and TKS), as well as native-based Apache PKI subsystems (RA, TPS).

Additionally, it was originally believed that this framework should be made flexible enough to support additional web-based services from other external applications such as JBoss.

Since that time, TPS is in the late stages of being moved from an Apache-based process to a Tomcat-based process, the existing RA will continue to utilize the legacy pkicreate/pkiremove framework until such time as it too is re-architected, and interest appears to have waned in the need to support JBoss-based instances.

Consequently, we should consider:

Proposed Milestone: 10.3

pki-bot commented 3 years ago

Comment from mharmsen (@mharmsen) at 2014-08-04 23:54:41

Per CS/DS meeting of 08/04/2014: moving to Milestone FUTURE

pki-bot commented 3 years ago

Comment from mharmsen (@mharmsen) at 2017-02-27 13:57:52

Metadata Update from @mharmsen: