Unable import thirdparty certificate to master DAP container

Hello Team,

I have created the master container and setup the cluster and received the message that the master is up and running. I import the the CA certificate using the following command after connecting the docker container and the certs are copied to /tmp foldder on the container
evoke ca import --force --root cacert.cer
But when i try the following command to import the master certificate, I get the following error message
evoke ca import --key dap-master.key --set dapcert.cer

error message - No such file or directory @ rb_sysopen - dap-master.key

I am not sure where the master’s cert files are located. I tried to search the container but haven’t found anything useful. I have conjur appliance version 5.2.6

dap-master.key should be the private key you used in the CSR to generate dapcert.cer, not a file provided from within the container. You might have the private key and cert bundled in the dapcert.cer file. If so, you’ll need to use openssl to extract the private key and save the certificate in pem format. hopefully that’s enough to get you unstuck!

ps. you’ll need to redeploy the standbys and followers after you get the certs imported
pss. 5.2.6 is very old now, try getting a copy of the latest shipping which is 11.2.1

1 Like

Thank you for you response. I found out the issue and corrected and was able to import the cert.
I used the following url to generate the certificates

but after importing these certs when I try to create a seed I am getting a following error message, I am not sure what is causing the issue. any ideas on this?

Are these seeds for standbys or followers? Can you share the command you used to generate the seed? Can you confirm that the connectivity to the master on port 5432 is good?

Thank you for the response nathan. I had some dns issues and was able to resolve by making some changes in the host file