On Thursday 26 June 2008 06:26:08 [EMAIL PROTECTED] wrote: > When TLS is turned on, I can run the regular LDAP client apps > (ldapsearch, ldapadd, etc.) using the -Z option which forces TLS. > Also, not using -Z gives me the "Confidentiality Required" error on > those LDAP clients. So, I know that everything is good with slapd and > ldap.conf wrt TLS.
Please try "ldapsearch -ZZ ..." as "-Z" only tries to connect using TLS but falls back to normal connections if TLS fails. It would be also interesting to see your ldap related pdns.conf settings. > However, on slapd's logs, I don't see anything about powerdns trying > to start TLS. I do see a connection rejection by slapd because the > connection didn't use TLS. Does "netstat -lp" shows open connections from your box to the LDAP server? Norbert -- OpenPGP public key http://www.linuxnetworks.de/norbert.pubkey.asc
signature.asc
Description: This is a digitally signed message part.
_______________________________________________ Pdns-users mailing list [email protected] http://mailman.powerdns.com/mailman/listinfo/pdns-users
