MERCIER Jonathan via FreeIPA-users wrote:
> Dear,
> 
> I would like to allow gitlab instance to query the 389 AD but when I try to 
> loging through the LDAP form I got this error:
> 
>  Could not authenticate you from Ldapmain because "Ssl connect returned=1 
> errno=0 state=error: certificate verify failed (self signed certificate in 
> certificate chain)".
> 
> 
> I tried this to solve it without success:
> I picked the gitlab *.crt file and throught freeipa UI from host tab I 
> selected the gitlab host and after thjis I added the certicates
> 
> but the error is still here

The problem is that gitlab doesn't trust the CA that issued the LDAP
certificate. You had asked previously about replacing it so you need to
trust whatever CA issued that in gitlab.

rob
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to