rlm_ldap: could not start TLS
Sayantan Bhowmick
sbhowmick at novell.com
Mon Apr 3 07:17:09 CEST 2006
Hi,
Please make sure that you have entered the DNS name of your ldap serer(eDirectory) in the ldap section of radiusd.conf.
-Sayantan.
>>> On Sat, Apr 1, 2006 at 6:58 pm, in message
<442E7FEC.4050405 at cegepsherbrooke.qc.ca>, Marc.Delisle at cegepsherbrooke.qc.ca
wrote:
> Hi,
>
> I'm trying to make freeradius 1.1.0 contact a LDAP server.
> I configured freeradius -- with- edir.
>
> The error I get is
> "rlm_ldap: could not start TLS Can't contact LDAP server"
>
> I followed this document
> http://www.novell.com/coolsolutions/tip/15922.html
>
> except that in my case, the LDAP server is on Netware 6.5 SP5.
>
> On this Netware server, LDAP responds correctly over SSL, as tested with
> Novell's ldapsearch on port 636.
>
> In radiusd.conf, in the ldap section, I use
> tls_cacertfile = /usr/local/freeradius/etc/raddb/certs/rootder.b64
>
> which is the self- signed certificate exported from the Netware's CA object.
>
> I can provide other details about my "LDAP server" object in Netware
> upon request.
>
> Thanks in advance,
>
> Marc Delisle
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
More information about the Freeradius-Users
mailing list