Re: tls and ldap server dns alias ?

* FM <dist-list@LEXUM.UMontreal.CA> [0525 20:25]:
> Hello,
> is it possible to use dns alias for openldap server when using tls ?
> ex :
> server1 with dns alias ldap1
> create a cert for ldap1 instead of server 1 ?

The ldap client expects the server ssl cert to have a CN = the domain name
it connected to. slapd itself shouldn't give a toss :)

So if you're talking about ldap1 being a CNAME to server1,
the certificate should be for ldap1.
