I am unable to configure an LDAPS connection to my AD servers. The error I get is similar to if I try using ldapsearch with the ZZ option (connection reset), however ldapsearch works if I use the -H option instead of -h
this returns a connection reset error when looking at strace or tcpdump logs
That is not the reason - every AD uses her own certificates. There is no self signed one as the AD has it own CA.
What @tschmidty wrote where also my first point. AD certificates imported to the CMK site. This needs to be done inside every AD.
Thanks @simon-mueller and @andreas-doehler We actually use a windows CA and I am well versed in trying to get those CA certs recognized in various tools. It probably could be better documented and/or a WATO place to import those certs. Or perhaps there is and I didn’t find it.
The other odd thing is just how undescriptive the error was but that is an LDAP issue and not a Check_MK problem.
This topic was automatically closed 365 days after the last reply. New replies are no longer allowed. Contact an admin if you think this should be re-opened.