TLS & Slurpd & SelfSigned certs

Hi All,

We are having a few problems with TLS and replication.

We have a slave with TLS (starttls) enabled and a selfsigned certificate
Our master has tls=critical in slapd.conf.

When slurpd talks to the slave it throws:
"TLS certificate verification: Error, self signed certificate"

Is there an option in slapd.conf to allow slurpd to ignore this error
and continue?

using tls=yes works however the communication is not secure, which
i tested with tcpdump.

Any ideas?


David Shirley
System's Administrator
Computer Science - Curtin University
(08) 9266 2986