[Date Prev][Date Next] [Chronological] [Thread] [Top]

(ITS#6248) Support multiple CA Cert directories



Full_Name: Quanah Gibson-Mount
Version: 2.4.x
OS: NA
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (75.111.29.239)


Both openssl and gnutls support loading CA certs from multiple directories.  It
would be handy to be able to do this for slapd and the ldap clients.  For
example, zimbra puts its CA certs in /opt/zimbra/conf/ca, but the system it is
installed upon is going to have a different default destination for where its
ldap clients look for CA certs.  By having support for the multiple paths, the
configuration can be adjusted to look in both the system location, and any
number of specialized ones.