Project

General

Profile

Actions

Feature #1451

closed

Certificate errors after CARP election

Added by Adam Thompson over 14 years ago. Updated about 13 years ago.

Status:
Resolved
Priority:
Low
Assignee:
-
Category:
Web Interface
Target version:
-
Start date:
04/21/2011
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:

Description

Using CARP VIP to administer pfSense, after the backup is promoted to master, Firefox complains about SSL certificate again, then refuses to add an exception because one already exists. The best way I can think of to fix this would be to maintain additional certificates for VIPs and sync those via XMLRPC. Syncing the main SSL cert via XMLRPC would be OK, but only if there was a way to disable that, as some people might want each cluster member to have its own certificate (particularly if issuing name-based certs from a $$$ CA).

(FYI, forcing the browser to reload the page fixes the problem.)

Actions

Also available in: Atom PDF