[389-users] Re: multi-supplier replication with certificate-based authentication

2022-03-07 Thread David Ritenour
ulting, LLC 513 Madison Street SE Huntsville, AL 35801 -Original Message- From: Giacomo Comes Sent: Monday, March 7, 2022 1:12 AM To: General discussion list for the 389 Directory server project. <389-users@lists.fedoraproject.org> Subject: [389-users] Re: multi-supplie

[389-users] Re: multi-supplier replication with certificate-based authentication

2022-03-06 Thread Giacomo Comes
Thank you for your answer. Indeed the issue was certmap.conf not configured properly. I have set CmapLdapAttr to the attribute name nsCertSubjectDN and added such attribute with the appropriate value to the host1/2 accounts. However now I have encountered another error: in the host1 error log I see

[389-users] Re: multi-supplier replication with certificate-based authentication

2022-03-04 Thread David Ritenour
Hello Giacomo, Per the error log, it appears that the certificate is not mapping to the desired user entry. Make sure your certmap.conf file is properly configured per Section 9.9.1 found here: https://access.redhat.com/documentation/en-us/red_hat_directory_server/11/html/administration_guide/