[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: syncrepl with x509 certificates

Alex Samad wrote:
On Sun, Jan 20, 2008 at 07:45:06PM -0800, Howard Chu wrote:
Alex Samad wrote:
Is there

a) a way to specify another certificate to use in the syncrepl config
In OpenLDAP 2.4, yes. Read the manpage.

	syncrepl  rid=<replica  ID>   provider=ldap[s]://<hostname>[:port]
[type=refreshOnly|refreshAndPersist]   [interval=dd:hh:mm:ss]

This is the syncrep section of my man page for openssl.conf. Sorry but I can't
find the section that tells me where to point to a different certificate file.
I use TLSCertificateFile to point to the certificate that is used for the
ldaps:// part ie acting as a server.

Learn how to type, or learn how to read. "openssl.conf" has nothing to do with this question. The text you quoted above is not the text from the current OpenLDAP 2.4 man pages. Pay attention to the details, otherwise you just waste your time and ours.
-- Howard Chu
Chief Architect, Symas Corp. http://www.symas.com
Director, Highland Sun http://highlandsun.com/hyc/
Chief Architect, OpenLDAP http://www.openldap.org/project/