[SSSD-users] Re: sssd failing due to self-signed certificates--but that's not what openssl says

2024-02-21 Thread Johnnie W Adams
We are connecting to an LDAP server. Thanks! On Wed, Feb 21, 2024 at 1:53 PM Spike White wrote: > Are you connecting an AD server or an LDAP server? If the former is > ad_use_ldaps set to true or false? > > Spike > > On Wed, Feb 21, 2024 at 11:46 AM Johnnie W Adams wrote: > >> Hi, folks, >>

[SSSD-users] Re: sssd failing due to self-signed certificates--but that's not what openssl says

2024-02-21 Thread Spike White
Are you connecting an AD server or an LDAP server? If the former is ad_use_ldaps set to true or false? Spike On Wed, Feb 21, 2024 at 11:46 AM Johnnie W Adams wrote: > Hi, folks, > > > So I've got a very puzzling situation. Just today, when I look at > sssd with systemctl status, I get

[SSSD-users] Re: sssd failing due to self-signed certificates--but that's not what openssl says

2024-02-21 Thread Diego Zuccato
Just shooting in the dark: maybe you included the (self signed) root cert in the chain when it's also in the system cert store? Diego Il mer 21 feb 2024, 18:46 Johnnie W Adams ha scritto: > Hi, folks, > > > So I've got a very puzzling situation. Just today, when I look at > sssd with

[SSSD-users] sssd failing due to self-signed certificates--but that's not what openssl says

2024-02-21 Thread Johnnie W Adams
Hi, folks, So I've got a very puzzling situation. Just today, when I look at sssd with systemctl status, I get this error: *Could not start TLS encryption. error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed (self signed certificate in certificate chain)*

[SSSD-users] Re: Internal credentials cache error while getting initial credentials

2024-02-21 Thread Alexey Tikhonov
On Wed, Feb 21, 2024 at 5:58 PM Albert Szostkiewicz wrote: > > Thank you! > > 'kdestroy -A' does help! > > But I found that I am running into the same issue every now and then. What > might be causing it? `klist -A` and see what is there? -- ___

[SSSD-users] Re: Internal credentials cache error while getting initial credentials

2024-02-21 Thread Albert Szostkiewicz
Thank you! 'kdestroy -A' does help! But I found that I am running into the same issue every now and then. What might be causing it? cheers, Albert -- ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to