Solved

ldap.conf question

Posted on 2014-09-09
1
174 Views
Last Modified: 2014-09-10
I have the following ldap.conf

#
# LDAP Defaults
#

# See ldap.conf(5) for details
# This file should be world readable but not world writable.

BASE    dc=example,dc=com
URI     ldap://127.0.0.1 ldap://127.0.0.1:666

#SIZELIMIT      12
#TIMELIMIT      15
#DEREF          never

TLS_CACERTDIR   /etc/openldap/certs

Open in new window


This is a slightly modified version of what came with the openldap.  on the line

URI     ldap://127.0.0.1 ldap://127.0.0.1:666

Open in new window


I assume the second ldap: entry is normatively the ssl entry.

If so shouldn't it be the following ?

URI     ldap://127.0.0.1 ldaps://127.0.0.1:636

Open in new window


Or am I getting this wrong

Thanks
0
Comment
Question by:Anthony Lucia
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 3

Accepted Solution

by:
CraigFrost earned 500 total points
ID: 40313900
Not sure what your issue is but:
Port 636 is LDAP over SSL (LDAPS) , port 389 is LDAP.
TLS_CACERTDIR   /etc/openldap/certs will be where your certificate is installed that would be presented to a client if they connect to your server over port 636. The root cert will need to be installed on the client in the trusted root authority store. Certificate details (expiration, DNS name and if trusted) will need to be correct.
Base is the parent OU in the DS tree that LDAP(s) searches will begin from.
Auth credentials may be required also.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
auto mounter on hp-ux 2 66
Internal CA server 6 134
Disabling security updates Ubuntu 3 68
bash: ./Facebooker.pl :Permission Denied 9 58
The purpose of this article is to demonstrate how we can use conditional statements using Python.
Google Drive is extremely cheap offsite storage, and it's even possible to get extra storage for free for two years.  You can use the free account 15GB, and if you have an Android device..when you install Google Drive for the first time it will giveā€¦
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.
How to Install VMware Tools in Red Hat Enterprise Linux 6.4 (RHEL 6.4) Step-by-Step Tutorial
Suggested Courses

710 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question