--On Wednesday, August 23, 2006 7:22 PM +0200 Dieter Kluenter
<[EMAIL PROTECTED]> wrote:
Karsten Römke <[EMAIL PROTECTED]> writes:
Quanah Gibson-Mount schrieb:
--On Wednesday, August 23, 2006 6:09 PM +0200 Karsten Römke
<[EMAIL PROTECTED]> wrote:
TLS trace: SSL_connect:before/connect initialization
TLS trace: SSL_connect:SSLv2/v3 write client hello A
TLS trace: SSL3 alert read:fatal:handshake failure
TLS trace: SSL_connect:error in SSLv2/v3 read server hello A
TLS: can't connect.
ldap_perror
ldap_start_tls: Connect error (91)
additional info: error:14077410:SSL
routines:SSL23_GET_SERVER_HELLO:sslv3 alert handshake failure
This is quite obvious a certificate and/or configuration problem.
Please submit the TLS configuration part of slapd.conf and the clients
ldap.conf.
You may test the server with openssl s_client(1), for this slapd
should listen to port 639
openssl s_client -connect ldap.server:639 -showcerts
I think you mean port 636.
--Quanah
--
Quanah Gibson-Mount
Principal Software Developer
ITS/Shared Application Services
Stanford University
GnuPG Public Key: http://www.stanford.edu/~quanah/pgp.html
---
You are currently subscribed to [email protected] as: [EMAIL PROTECTED]
To unsubscribe send email to [EMAIL PROTECTED] with the word UNSUBSCRIBE as the
SUBJECT of the message.