FusionDirectory fails to log in if LDAP server requires client certificate
I made the following change to my LDAP server config:
dn: cn=config
replace: olcTLSCACertificateFile
olcTLSCACertificateFile: /etc/ssl/certs/ssl-cert-local-ca.pem
-
replace: olcTLSCertificateFile
olcTLSCertificateFile: /etc/ssl/certs/slapd.pem
-
replace: olcTLSCertificateKeyFile
olcTLSCertificateKeyFile: /etc/ssl/private/slapd.key
-
replace: olcTLSVerifyClient
olcTLSVerifyClient: demand
-
replace: olcLocalSSF
olcLocalSSF: 256
...and FusionDirectory failed to log in with:
Fatal error
FATAL: Error when connecting the LDAP. Server said 'Could not bind to cn=admin,dc=strategicit,dc=homelinux,dc=net (Error in the push function., while operating on '' using LDAP server 'ldap://fusion.strategicit.homelinux.net:389')'.
Please fix the above error and reload the page.
Things work if I delete olcTLSVerifyCLient from my config. Perhaps there's an error if the server requires client side certs?