I seem unable to get this to work in anything but simple mode..... Here is my ldap.conf for RHAS4, URI ldap://ldap.vuw.ac.nz #host 130.195.87.249 base dc=vuw,dc=ac,dc=nz #ssl no #ssl on pam_password md5 #HOST 130.195.87.249 BASE dc=vuw,dc=ac,dc=nz TLS_CACERTDIR /etc/openldap/cacerts/ TLS_REQCERT allow Trying "ssl on" breaks ssh So has anyone got an example ldap.conf? Since Debian also wont ssl, it is possible the server is the issue..... regards Steven Jones Senior Linux/Unix/San/Vmware System Administrator APG -Technology Integration Team Victoria University of Wellington Phone: +64 4 463 6272 -----Original Message----- From: fedora-directory-users-bounces@xxxxxxxxxx [mailto:fedora-directory-users-bounces@xxxxxxxxxx] On Behalf Of Steven Jones Sent: Monday, 17 September 2007 10:20 a.m. To: General discussion list for the Fedora Directory server project. Subject: RE: Setting up clients for ssl only? 8><---- Uh.....this means not a thing....where and how is it set? On the server? Client? Ie What and where is dse.ldif? > Steven Jones wrote: > Is there a way to force clients to only connect via ssl? > You can set the nsslapd-port attribute in cn=config in dse.ldif to 0. 8><---- regards Steven -- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users -- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users