Solved

ldap.conf question

Posted on 2014-09-09
1
159 Views
Last Modified: 2014-09-10
I have the following ldap.conf

#
# LDAP Defaults
#

# See ldap.conf(5) for details
# This file should be world readable but not world writable.

BASE    dc=example,dc=com
URI     ldap://127.0.0.1 ldap://127.0.0.1:666

#SIZELIMIT      12
#TIMELIMIT      15
#DEREF          never

TLS_CACERTDIR   /etc/openldap/certs

Open in new window


This is a slightly modified version of what came with the openldap.  on the line

URI     ldap://127.0.0.1 ldap://127.0.0.1:666

Open in new window


I assume the second ldap: entry is normatively the ssl entry.

If so shouldn't it be the following ?

URI     ldap://127.0.0.1 ldaps://127.0.0.1:636

Open in new window


Or am I getting this wrong

Thanks
0
Comment
Question by:Anthony Lucia
1 Comment
 
LVL 3

Accepted Solution

by:
CraigFrost earned 500 total points
ID: 40313900
Not sure what your issue is but:
Port 636 is LDAP over SSL (LDAPS) , port 389 is LDAP.
TLS_CACERTDIR   /etc/openldap/certs will be where your certificate is installed that would be presented to a client if they connect to your server over port 636. The root cert will need to be installed on the client in the trusted root authority store. Certificate details (expiration, DNS name and if trusted) will need to be correct.
Base is the parent OU in the DS tree that LDAP(s) searches will begin from.
Auth credentials may be required also.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
LINUX ZIP - UNCOMPRESS WINDOWS PATH 3 59
Squid Authentication 7 35
How to check the PVU´s on AIX TSM servers? 3 51
nagios 1 5
SSH (Secure Shell) - Tips and Tricks As you all know SSH(Secure Shell) is a network protocol, which we use to access/transfer files securely between two networked devices. SSH was actually designed as a replacement for insecure protocols that sen…
The purpose of this article is to demonstrate how we can use conditional statements using Python.
Learn several ways to interact with files and get file information from the bash shell. ls lists the contents of a directory: Using the -a flag displays hidden files: Using the -l flag formats the output in a long list: The file command gives us mor…
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now