Description[[BR]] Currently if START_TLS fails (even with debug level 99), the following is all that is logged:[[BR]] [[BR]]
[sdap_connect_send] (3): ldap_start_tls failed: [Can't contact LDAP server]
It would be very helpful to have more information to help identify the issue.
Fields changed
owner: simo => sgallagh
Possible approaches: 1) On connection failure, manually request the certificate and inspect it. 2) Investigate openldap+NSS features for more information on certificate failures.
milestone: NEEDS_TRIAGE => SSSD 1.4.0
Fixed by 98f575bfe887af5ec0a4a474386e79b6e34b637d
fixedin: => 1.2.0 milestone: SSSD 1.4.0 => SSSD 1.2.0 resolution: => fixed status: new => closed
rhbz: => 0
Metadata Update from @jgalipea: - Issue assigned to sgallagh - Issue set to the milestone: SSSD 1.2.0
SSSD is moving from Pagure to Github. This means that new issues and pull requests will be accepted only in SSSD's github repository.
This issue has been cloned to Github and is available here: - https://github.com/SSSD/sssd/issues/1524
If you want to receive further updates on the issue, please navigate to the github issue and click on subscribe button.
subscribe
Thank you for understanding. We apologize for all inconvenience.