<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question SSL for cloudera manager in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/SSL-for-cloudera-manager/m-p/376310#M242852</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I'm setting up new cluster for educational purposes and configuring SSL using case 2 "Enabling Auto-TLS with an intermediate CA signed by an existing Root CA ", I just installed cloudera manager and enabled the kerbros using Free IPA &amp;amp; created the certificates using&amp;nbsp;JAVA_HOME=/usr/lib/jvm/java-1.8.0-openjdk /opt/cloudera/cm-agent/bin/certmanager setup --configure-services --stop-at-csr. But when I sign the csr from the IPA server I got the attached error,, Any help please&lt;/P&gt;&lt;P&gt;Note: I'm using the user that automatically created by cloudera manager when setting the kerbros as principle, for more info &amp;gt;&amp;gt;&amp;nbsp;&amp;nbsp;&lt;A href="https://docs.cloudera.com/cdp-private-cloud-base/7.1.5/security-kerberos-authentication/topics/cm-security-kerberos-enabling-step3-cm-principal.html" target="_blank" rel="noopener"&gt;Step 3: Create the Kerberos Principal for Cloudera Manager Server | CDP Private Cloud&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-09-14 084046.png" style="width: 677px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/38456i071E957E8769FE52/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2023-09-14 084046.png" alt="Screenshot 2023-09-14 084046.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 21 Apr 2026 06:48:49 GMT</pubDate>
    <dc:creator>JobBranwl</dc:creator>
    <dc:date>2026-04-21T06:48:49Z</dc:date>
    <item>
      <title>SSL for cloudera manager</title>
      <link>https://community.cloudera.com/t5/Support-Questions/SSL-for-cloudera-manager/m-p/376310#M242852</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I'm setting up new cluster for educational purposes and configuring SSL using case 2 "Enabling Auto-TLS with an intermediate CA signed by an existing Root CA ", I just installed cloudera manager and enabled the kerbros using Free IPA &amp;amp; created the certificates using&amp;nbsp;JAVA_HOME=/usr/lib/jvm/java-1.8.0-openjdk /opt/cloudera/cm-agent/bin/certmanager setup --configure-services --stop-at-csr. But when I sign the csr from the IPA server I got the attached error,, Any help please&lt;/P&gt;&lt;P&gt;Note: I'm using the user that automatically created by cloudera manager when setting the kerbros as principle, for more info &amp;gt;&amp;gt;&amp;nbsp;&amp;nbsp;&lt;A href="https://docs.cloudera.com/cdp-private-cloud-base/7.1.5/security-kerberos-authentication/topics/cm-security-kerberos-enabling-step3-cm-principal.html" target="_blank" rel="noopener"&gt;Step 3: Create the Kerberos Principal for Cloudera Manager Server | CDP Private Cloud&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-09-14 084046.png" style="width: 677px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/38456i071E957E8769FE52/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2023-09-14 084046.png" alt="Screenshot 2023-09-14 084046.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2026 06:48:49 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/SSL-for-cloudera-manager/m-p/376310#M242852</guid>
      <dc:creator>JobBranwl</dc:creator>
      <dc:date>2026-04-21T06:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: SSL for cloudera manager</title>
      <link>https://community.cloudera.com/t5/Support-Questions/SSL-for-cloudera-manager/m-p/386891#M246179</link>
      <description>&lt;P&gt;hi,&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/99381"&gt;@JobBranwl&lt;/a&gt;&amp;nbsp;not sure how free IPA works, but it looks like whichever user you are using to generate this cart does not match the certificate CommanName i.e., CN. You might need to check on that part.&lt;/P&gt;</description>
      <pubDate>Mon, 22 Apr 2024 06:38:58 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/SSL-for-cloudera-manager/m-p/386891#M246179</guid>
      <dc:creator>Rajat_710</dc:creator>
      <dc:date>2024-04-22T06:38:58Z</dc:date>
    </item>
  </channel>
</rss>

