<div>
<div> </div>
<div><font size="2">
<p>> For the setup you described, you'd probably want to use a </p>
<p>> single certificate, signed with a CN of '<a href="http://ldap.domain.example.com">ldap.domain.example.com</a>'.</p>
<p>> </p>
<p>> This will make it possible for your server cert CNs and </p>
<p>> hostnames to match consistently, regardless of which machine </p>
<p>> (nodo1 or nodo2) the clients end up talking to.</p>
<p>> </p>
<p>Uhm...I can try, but in that case, is it possible that I've a problem with replication ?</p>
<p>Nodes use server ca with only difference....CN</p>
<p>I maked 2 server CA with the same CA</p>
<p>Thanks</p>
<p>Alex</p></font></div><br> </div>