On Thursday 26 June 2008 06:26:08 [EMAIL PROTECTED] wrote:
> When TLS is turned on, I can run the regular LDAP client apps
> (ldapsearch, ldapadd, etc.) using the -Z option which forces TLS.
> Also, not using -Z gives me the "Confidentiality Required" error on
> those LDAP clients. So, I know that everything is good with slapd and
> ldap.conf wrt TLS.

Please try "ldapsearch -ZZ ..." as "-Z" only tries to connect using TLS but 
falls back to normal connections if TLS fails.

It would be also interesting to see your ldap related pdns.conf settings.

> However, on slapd's logs, I don't see anything about powerdns trying
> to start TLS. I do see a connection rejection by slapd because the
> connection didn't use TLS.

Does "netstat -lp" shows open connections from your box to the LDAP server?


Norbert
-- 
OpenPGP public key
http://www.linuxnetworks.de/norbert.pubkey.asc

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
Pdns-users mailing list
[email protected]
http://mailman.powerdns.com/mailman/listinfo/pdns-users

Reply via email to