[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Problems with multiple DNS names in cert.



[ Mathias Meisfjordskar ]

(Update) Sorry for answering my own mail.

> beeblebrox.uio.no# /ldap/usr/bin/ldapsearch -x -h bb.uio.no -ZZ -s \
>                    base > /dev/null
> ldap_start_tls: Connect error (91)
>         additional info: TLS: hostname does not match CN in peer \
>                               certificate
> beeblebrox.uio.no# /ldap/usr/bin/ldapsearch -x -h \
>                    beeblebrox.uio.no -ZZ -s base > /dev/null
> beeblebrox.uio.no# 

The servers which I tested on is located on the same subnet. I can't
see why this should have anything to say.

dumbo.uio.no# /ldap/2.1.2-3/bin/ldapsearch -x -h bb.uio.no -s base \
              -Z > /dev/null 
dumbo.uio.no# /ldap/2.1.2-3/bin/ldapsearch -x -h bb.uio.no -s base \
              -ZZ > /dev/null 
dumbo.uio.no# /ldap/2.1.2-3/bin/ldapsearch -x -h beeblebrox.uio.no \
              -s base -Z > /dev/null 
dumbo.uio.no# /ldap/2.1.2-3/bin/ldapsearch -x -h beeblebrox.uio.no \ 
              -s base -ZZ > /dev/null 

>From this machine everything works perfectly. Why? I don't get it.

The server bb is behind a load-balancer(LVS), but should that wreck
tings?

-- 
Mathias Meisfjordskar
GNU/Linux addict.

"If it works; HIT IT AGAIN!"