[Date Prev][Date Next] [Chronological] [Thread] [Top]

TLS only working as root when used together with pam/nss_ldap



Hi OpenLDAP Team,

I have 2 ldap servers, A and B.
Whenever i configure pam/nss to use host B in host A's /etc/ldap.conf, the
slapd daemon on A won't accept TLS when _NOT_ running as root.

When i point to A from A, it works. 
When i move /etc/ldap.conf away, it works.
When i run as root, it works.

Any ideas?

slapd output:
----8<-----
TLS: can't accept.
TLS: error:1408A0C1:SSL routines:SSL3_GET_CLIENT_HELLO:no shared cipher
s3_srvr.c:881
-----------

ldapsearch output:
-----8<----
ldap_start_tls: Connect error (91)
        additional info: error:14077410:SSL
routines:SSL23_GET_SERVER_HELLO:sslv3 alert handshake failure
-----------

regards, Hari

-- 
"Sie haben neue Mails!" - Die GMX Toolbar informiert Sie beim Surfen!
Jetzt aktivieren unter http://www.gmx.net/info