On Mon, May 2, 2022 at 6:02 PM <csabany@freemail.hu> wrote:
Hi,

LAst month a renewed our hosts certificates by the "Enroll certificates" method.
The "/etc/pki/vdsm/libvirt-vnc/server-cert.pem" certificate wasn't renewed on my nodes (other certificates were).

How can i renew this certificate too?

thanks
csabany


Actually I think this could be a bug in enrolling certificate job on hosts from web admin gui.
I'm having the same problem updating from downstream RHV 4.4.10-6 to 4.4.10-7 with RHV-H hosts and the enrolling of certificates takes in consideration these directories

/etc/pki/libvirt
/etc/pki/vdsm/certs
/etc/pki/vdsm/libvirt-migrate
/etc/pki/vdsm/libvirt-spice

But not:
/etc/pki/vdsm/libvirt-vnc

I think it could impact oVirt too.

In case Red Hat guys want to see logs of my RHV environment, I've opened the case 03212406 for this problem.

Gianluca