So I did a dnf check-update and dnf upgrade just after noon today and since then my FreeIPA server reports the following:

/etc/pki/pki-tomcat/acme/engine.conf not found

Where can I find a reference engine.conf to bring FreeIPA back online? I have a very basic install of FreeIPA and haven’t built a backup server yet. I guess that’ll have to be high on my priority list now.


I found the source config files in /usr/share/pki/acme/conf/. I ended up having to copy engine.conf and realm.conf to /etc/pki/pki-tomcat/acme/ and fix ownership and permissions. ipa-server-upgrade then ran to completion without error.

