Re: ldap+ssl/tls

tir, 2003-03-11 kl. 15:25 skrev Francois Beretti:

> did you create keys for ldap clients using openldap library (like
> evolution) ?

Evo is supposed to bind using a dn and vanilla ssl. It doesn't use
client certs.

Unfortunately, it doesn't work, either (<=1.2.2). Mozilla does, but
neither does Mozilla want client certs (needs a server cert, though, for
ssl binds).

Incidentally, all the negative stuff about ssl/tls and Evo only applies
to ldap. ssl/tls IMAP and SMTP work fine.

The best place to follow this up, is on the Evo mailing list.




Tony Earnshaw

And they allowed Apollonius to ask questions; and
he asked them of what they thought the cosmos was
composed; but they replied ...

e-post:		tonni@billy.demon.nl
www:		http://www.billy.demon.nl