Hi, Scotty
 
> Now i am concerned in authenticating OpenXPKI with LDAP over TLS/SSL. 
> How can i enable it and what changes will be required ?
 
There is more information on the problem:

LDAP publishing workflow does not support SSL/TLS authentication
of the OpenXPKI while it connects to LDAP server. 
Actually there is a module LdapUtils.pm that is tested and can provide 
such an authentication but it has not been integrated into the workflow yet.
So some options in ldappublic.xml (like 'use_tls') are dummy.

That means you can try TLS/SSL only for authentication of the OpenXPKI server
while it performs user authentication using LDAP.
CA certificate path is to be specified in the auth.xml as I wrote before
and client/server certificates are described in ldap client/server
configuration files. For OpenLDAP they are ldap.conf and slapd.conf

Best regards,
Peter




------------------------------------------------------------------------------
Let Crystal Reports handle the reporting - Free Crystal Reports 2008 30-Day 
trial. Simplify your report design, integration and deployment - and focus on 
what you do best, core application coding. Discover what's new with
Crystal Reports now.  http://p.sf.net/sfu/bobj-july
_______________________________________________
OpenXPKI-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openxpki-users

Reply via email to