Please see devel list discussions. This is not an ldap_start_tls_s() bug. The problem is you want "ldaps://" via the command line and that functionality is missing from 2.0-gamma. It's been added to 2.x-devel (via the -H option), please test. Kurt