[389-users] StartTLS error

alexandre axel0felix at gmail.com
Wed Apr 10 11:36:37 UTC 2013


Hello,

Thanks Grzegorz Dwornicki.

I found the solution, but someone can explain me why this option gave me an
error.

I uncheck the box "Check hostname against name certificate for outboun SSL
connections" in the "Encryption" tab (on both server side).

Just to exemple, I have one server name "lab.go.local" and the second
server name is "labbis.go.local".
May be because I don't put all information in my "/etc/hosts" but I use a
Windows DNS to resolve.

Many thanks,
Alex


2013/4/10 Grzegorz Dwornicki <gd1100 at gmail.com>

>
> https://access.redhat.com/site/documentation/en-US/Red_Hat_Directory_Server/8.2/html/Administration_Guide/Configuring_Logs.html
>
> Please look in this doc and increase the log verbosity. This might help.
> 10 kwi 2013 13:15, "alexandre" <axel0felix at gmail.com> napisaƂ(a):
>
>> Hi,
>>
>> I'm having problem with my multi-master replication.
>>
>> I have on 389DS server in multi-master replication with a Windows DC
>> (everything work fine).
>>
>> I try to put another 389DS in multi-master replication over startTLS
>> (just to have redundancy).
>>
>> When I do the consumer initialization i've got this error:
>>
>> The consumer initializatiion has unsuccessfully completed. The error
>> received by the replica is: -11 - System error.
>>
>> When I go to the /var/log/dirsrv/slapd-389ds/errors:
>>
>> slapi_ldap_bind - Error: could not send startTLS request: error -11
>> (Connect error)
>>
>>
>>
>> Just an indication, I went in "manage certificate" on both 389DS server
>> and I put the server cert and the CA cert, do I miss something ?
>>
>> Thanks,
>> Alex
>>
>>
>> --
>> 389 users mailing list
>> 389-users at lists.fedoraproject.org
>> https://admin.fedoraproject.org/mailman/listinfo/389-users
>>
>
> --
> 389 users mailing list
> 389-users at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/389-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20130410/459367ad/attachment.html>


More information about the 389-users mailing list