This is not an OpenBSD question but when it comes to competency this group is second to none so I am asking here for help.
I am trying to secure my LDAP server (stack OpenBSD ldapd) using starttls method. Since I recently I dealt quite a bit with OpenVPN it occurred to me that easy-rsa could be used to generate certificates for LDAP. Could somebody please confirm this? P.S. I have read man smarttls and have no problem following it.