[Fedora-directory-users] rhas4 Setting up clients for ssl only?

Steven Jones Steven.Jones at vuw.ac.nz
Mon Sep 17 03:00:32 UTC 2007


I seem unable to get this to work in anything but simple mode.....

Here is my ldap.conf for RHAS4,

URI     ldap://ldap.vuw.ac.nz
#host 130.195.87.249
base dc=vuw,dc=ac,dc=nz
#ssl no
#ssl on
pam_password md5
#HOST 130.195.87.249
BASE dc=vuw,dc=ac,dc=nz
TLS_CACERTDIR /etc/openldap/cacerts/
TLS_REQCERT allow

Trying "ssl on" breaks ssh

So has anyone got an example ldap.conf?

Since Debian also wont ssl, it is possible the server is the issue.....

regards

Steven Jones
Senior  Linux/Unix/San/Vmware System Administrator
APG -Technology Integration Team
Victoria University of Wellington
Phone: +64 4 463 6272

-----Original Message-----
From: fedora-directory-users-bounces at redhat.com
[mailto:fedora-directory-users-bounces at redhat.com] On Behalf Of Steven
Jones
Sent: Monday, 17 September 2007 10:20 a.m.
To: General discussion list for the Fedora Directory server project.
Subject: RE: [Fedora-directory-users] Setting up clients for ssl only?

8><----

Uh.....this means not a thing....where and how is it set? 

On the server? Client? Ie What and where is dse.ldif?

> Steven Jones wrote:
> Is there a way to force clients to only connect via ssl?
>   
You can set the nsslapd-port attribute in cn=config in dse.ldif to 0.

8><----

regards

Steven 

--
Fedora-directory-users mailing list
Fedora-directory-users at redhat.com
https://www.redhat.com/mailman/listinfo/fedora-directory-users




More information about the Fedora-directory-users mailing list