I am seeing the exact same bug, only with the server being postgresql instead of openldap.
The same setup and certificates works fine on Trusty, but have regressed on Xenial. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssl in Ubuntu. https://bugs.launchpad.net/bugs/1612711 Title: TLS negation fails Status in openssl package in Ubuntu: Confirmed Bug description: This seems like a duplicate of #965371, however that is marked fixed, so I don't know. I'm running 16.04.1. I'm setting up OpenLDAP with TLS. I've followed the instructions at https://help.ubuntu.com/lts/serverguide/openldap- server.html#openldap-tls, and test with the command openssl s_client -connect my.server.com:389 -showcerts and I get the error: 140668035487384:error:140790E5:SSL routines:ssl23_write:ssl handshake failure:s23_lib.c:177 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/openssl/+bug/1612711/+subscriptions -- Mailing list: https://launchpad.net/~touch-packages Post to : touch-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~touch-packages More help : https://help.launchpad.net/ListHelp