reverse proxy with ldap authentication

Hi all, I try to install a reverse proxy with ldap authentication : it
works with ldap but not with ldaps.
I've got this notice about LDAP and SSL in the log

[Wed Sep 26 16:57:40 2007] [notice] LDAP: Built with OpenLDAP LDAP SDK
[Wed Sep 26 16:57:40 2007] [notice] LDAP: SSL support unavailable
[Wed Sep 26 16:57:40 2007] [notice] Apache/2.0.52 (Red Hat) configured --
resuming normal operations

Any help would be appreaciated.
Thx

Roberto

____________________________________________________________ __________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List modssl-users [at] modssl.org
Automated List Manager majordomo [at] modssl.org
roberto.ramos [ Do, 27 September 2007 08:28 ] [ ID #1830681 ]

Re: reverse proxy with ldap authentication

On Thu, 27 Sep 2007 roberto.ramos [at] telintrans.fr wrote:

> Hi all, I try to install a reverse proxy with ldap authentication : it
> works with ldap but not with ldaps.
> I've got this notice about LDAP and SSL in the log
>
> [Wed Sep 26 16:57:40 2007] [notice] LDAP: Built with OpenLDAP LDAP SDK
> [Wed Sep 26 16:57:40 2007] [notice] LDAP: SSL support unavailable
> [Wed Sep 26 16:57:40 2007] [notice] Apache/2.0.52 (Red Hat) configured --
> resuming normal operations
>
> Any help would be appreaciated.
> Thx
>
> Roberto
>
>
OpenLDAP does indeed suport ldaps (assuming it was built with SSL support,
whis it most likely was).

This error message can be confusing, it also appears if you don't set the
LDAPTrustedCA and LDAPTrustedCAType directives.

In order to establish the ldaps connection (as a client) you need the CA
certificate to establish trust.

----------------------------------------
"Mon a=E9roglisseur est plein d'anguilles"
John P. Dodge
Boeing Shared Services


------------------------------------------------------------ ---------
The official User-To-User support forum of the Apache HTTP Server Project.
See <URL:http://httpd.apache.org/userslist.html> for more info.
To unsubscribe, e-mail: users-unsubscribe [at] httpd.apache.org
" from the digest: users-digest-unsubscribe [at] httpd.apache.org
For additional commands, e-mail: users-help [at] httpd.apache.org
dodge [ So, 30 September 2007 02:18 ] [ ID #1832713 ]
Webserver » gmane.comp.apache.mod-ssl.user » reverse proxy with ldap authentication

Vorheriges Thema: How to redirect http to https on same server?
Nächstes Thema: HTTPS connection error via tunnel