[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Perplexed



>  
> >"Never use IP numbers for hostnames, always use FQDNs". Well, for me
> >TLS/SSL only works with my IP number (127.0.0.1), not localhost. or
> >'uname -n' - the FQDN "billy.demon.nl". 

I think you are having because the certificates you create must be for the 
fqdn you are addressing in ldap.conf.  This means that if on your client 
machine /etc/ldap.conf points to your ldap server at ldap.domain.com your 
certificates must be for ldap.domain.com.  If they differ ssl/tls will puke.