[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: Perplexed
>
> >"Never use IP numbers for hostnames, always use FQDNs". Well, for me
> >TLS/SSL only works with my IP number (127.0.0.1), not localhost. or
> >'uname -n' - the FQDN "billy.demon.nl".
I think you are having because the certificates you create must be for the
fqdn you are addressing in ldap.conf. This means that if on your client
machine /etc/ldap.conf points to your ldap server at ldap.domain.com your
certificates must be for ldap.domain.com. If they differ ssl/tls will puke.