"Pickford, Steve" <[email protected]> writes:
> I wonder if you can help me, I can connect to our Active Directory server with
> ldapsearch compiled and running with TLS under linux.
>
> If I do this with my mingw version I get :-
>
> TLS trace: SSL3 alert write:fatal:unknown CA
You need to tell it where your list of acceptable CAs is. On the
commandline with s_client, you use something like:
-CApath arg - PEM format directory of CA's
-CAfile arg - PEM format file of CA's
I don't remember the equivalent in the API, but I'm sure some
searching will turn it up.
Good luck!
------Scott.
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [email protected]
Automated List Manager [email protected]