-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Jean-Noel Chardron wrote: > David Christensen a écrit : >> I was having a similar issue yesterday, everything worked until I >> appended more then one CA to the file in /etc/openldap/cacerts, then it >> kept failing until I limited it to one CA. Are you >> using a single CA? >> > The client authenticates to a server with a single authority, so why try > to install two or more. otherwise you must use a file by CA in the > directory. > unless you speak CA chain. > > -- > 389 users mailing list > 389-users@xxxxxxxxxx > https://www.redhat.com/mailman/listinfo/fedora-directory-users I have two directory servers in a multmaster config using round robin DNS so I need clients to be able to authenticate to both servers since it will be random. It hasn't worked for me yet, but that is where I am trying to get. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org iEYEARECAAYFAkpCaN8ACgkQ5B+8XEnAvqsc0gCfbezu9knxX1HfNNNupTwdjCEe IX4AoIRCASuVxTrB6ugLr7U0TWvnfUTb =xSWx -----END PGP SIGNATURE----- -- 389 users mailing list 389-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users