RE: Problem verifying self signed certificate

man, 05.09.2005 kl. 10.35 skrev James Wilde:


> ...indicates that openssl is working okay and that there is no problem
> with either the ca certificate or the server certificate.
> That leaves incorrect configuration of openldap (server and/or client)
> on log1 - admittedly the bet that the heavy money is on - or incorrect
> handling of tls by openldap.  So this is specific to OpenLDAP.

Look at this way. OpenLDAP 2.1 (we leave 2.0 without further comment,
it's too old), 2.2 and 2.3 (including my 2 rigs) are being run, with
SSL/TLS by hundreds of thousands of operators. "It works for them", but
not for you.

Perhaps the correct steps might be to follow Kent Soper's instructions
and report what of them don't work for you and do for (hundreds of
thousands of others, and) me. Then again, that might get condemned as OT
on this list.


