>In site-enable/default under authorize I've uncommented ldap. You don't need ldap there. Uncomment ldap in sites-enabled/inner-tunnel virtual server. Ivan Kalik Kalik Informatika ISP