[Fedora-directory-devel] tls_checkpeer coresponding for the openldap API

Yoram Kahana yoram.kahana at gmail.com
Sun Mar 18 16:06:32 UTC 2007


Hi,

I am using the FDS with the SSL/TLS enable. I had to activate my
ldap.confconfig file to the "tls_checkpeer no".

It works fine and solved the problem.

I am looking for the corresponding solution when using the openldap (or
Fedora) API.

After the ldap_start_tls_s(ldap,NULL,NULL)

I am getting the problem that the server certificate failed in the verifying
procedure.

The client side error is SSL3_GET_SERVER_CERTIFICATE: certificate verify
failed
In the server i am getting an error notifying me that the peer could not
verify the ca certificate.

Any idea for how to define (through the API) to ignore the server
certificate similar to the tls_checkpeer

Thanks in advance
Yoram
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/fedora-directory-devel/attachments/20070318/baf21709/attachment.htm>


More information about the Fedora-directory-devel mailing list