This turned out to be a fantasy. I tried every permutation described
in
www.bolthole.com/solaris/LDAP.html although my system is solaris 7.
I can login to the openldap server (another solaris 7 box) via
openssl s_client -connect
And without ssl/tls everything seems fine. With tls/ssl debug mode
server says:
Client Certificate Read failed...
I tried TLSClientVerify false. But no hope...Why does the server
insist
on reading client's certificate? I have exactly the same config
described in
www.bolthole.com.
As I change and try permutations of the configuration, I always ended
with no_shared_ciphers,
unknown protocol, TLS cannot except, etc....
Is there an easy way or cool documentation about this somewhere? Or
I'll switch to stunnel...
openssl 0.9.6b
openldap (2.0.24)
padl nssl pam downloaded yesterday... :-)) forgot the version...
solaris 7 with latest patches.
And is there anyone succeeded with solaris 7 and openldap ssl???
Tolga Ceylan
System Engineer