[389-users] Error in Replication

Kamal Batra kamal.batra at timesgroup.com
Fri Mar 25 04:26:41 UTC 2011


Hi,

 

I am trying to replicate Windows 2K3 Ad to 389DS server, following things
have been done.

 

1.       Pass sync utility on AD

2.       Install CA Certificate,  export  the same to import it on the 389DS
server.

 

 

certutil command gives me the following output

 

CA certificate                                               CTu,u,u

server-cert                                                  u,u,u

Server-Cert                                                  u,u,u

psync2                                                       CT,C,C

 

 

3.       Replication agreement is also in place.

 

While I getting following errors: 

 

1.       When the password is changed on the windows AD, it tries to connect
to the 389ds server and following is the error on 389ds Server

[25/Mar/2011:02:22:33 +051800] conn=25 fd=64 slot=64 SSL connection from
10.100.109.159 to 10.100.109.157

[25/Mar/2011:02:22:33 +051800] conn=25 op=-1 fd=64 closed - SSL peer cannot
verify your certificate.

 

2.       When 389Ds tries to replicate to Windows Server, it provides the
following error

[25/Mar/2011:16:16:50 +051800] slapi_ldap_bind - Error: could not send bind
request for id [cn=Syncing 389DS,cn=Users,dc=ggdk,dc=com] mech [SIMPLE]:
error 81 (Can't contact LDAP server) -8179 (Peer's Certificate issuer is not
recognized.) 11 (Resource temporarily unavailable)

 

Please provide help me in solving the issues.

 

Regards,

Kamal Batra

+919810795008

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20110325/8bc3c568/attachment.html>


More information about the 389-users mailing list