Re: openldap failing to launch if SSL/TLS enabled. error "main: TLS init def ctx failed: -1" ?

Philip Guenther wrote:
On Fri, 15 Aug 2008, Ben Wailea, openldap-software wrote:
i've installed openldap.  starts fine without SSL/TLS.

if SSL/TLS is enabled, slapd fails to launch @ error: "main: TLS init
def ctx failed: -1".

Try starting it with -d255 and see what other log messages show up.

Most likely a file permissions error; he said he's using the same cert/key file as for his Apache server, but most likely the key file is not readable by the ldap user.

  -- Howard Chu
  CTO, Symas Corp.           http://www.symas.com
  Director, Highland Sun     http://highlandsun.com/hyc/
  Chief Architect, OpenLDAP  http://www.openldap.org/project/