Re: about openldap client ssl

2013-11-10 Thread Michael Ströder
You should better ask OpenLDAP questions on the openldap-technical mailing list: http://www.openldap.org/lists/ Ciao, Michael. Robbie Mingfu Zhang wrote: > Hi: > > If I set the "TLSVerifyClient demand" on openldap server side, then I'll got > below error > > (set TLSVerifyClient as never/allo

RE: about openldap client ssl

2013-11-07 Thread Robbie Mingfu Zhang
Hi: When I use SSL authentication in LDAP client, If I set the "TLSVerifyClient demand" on openldap server side, then I'll got below error (set TLSVerifyClient as never/allow/try, I can login, but will have authentication failure in LDAP log) LS trace: SSL3 alert write:fatal:handshake failure

about openldap client ssl

2013-11-07 Thread Robbie Mingfu Zhang
Hi: If I set the "TLSVerifyClient demand" on openldap server side, then I'll got below error (set TLSVerifyClient as never/allow/try, I can login, but will have authentication failure in LDAP log) LS trace: SSL3 alert write:fatal:handshake failure TLS trace: SSL_accept:error in SSLv3 read clie