[PVE-User] PVE and Active Directory...

Marco Gaiarin gaio at sv.lnf.it
Mon May 21 17:20:35 CEST 2018


Mandi! Dmitry Petuhov
  In chel di` si favelave...

> To be able to use LDAPS, your client machine (PVE) must trust server's
> certificate. Sign LDAP server's SSL certificate with some CA (private CA is
> ok) and place that CA certificate to /usr/local/share/ca-certificates in PEM
> format with .crt extension on PVE and run `update-ca-certificates` to make
> system trust it.

Good point, libldap. I've added to /etc/ldap/ldap.conf:

	TLS_REQCERT	never

but nothing changed, still does not work.

-- 
dott. Marco Gaiarin				        GNUPG Key ID: 240A3D66
  Associazione ``La Nostra Famiglia''          http://www.lanostrafamiglia.it/
  Polo FVG   -   Via della Bontà, 7 - 33078   -   San Vito al Tagliamento (PN)
  marco.gaiarin(at)lanostrafamiglia.it   t +39-0434-842711   f +39-0434-842797

		Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
      http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
	(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)


More information about the pve-user mailing list