#202 sssd.conf LDAP Domains should have option to Define the location of CA certificate
Closed: Fixed None Opened 14 years ago by jgalipea.

Description[[BR]]

When configuring an LDAP Domain for ldaps:// uri or tls_reqcert, there should also be an option to define the location of the CA certificate. This should be added to the man page and also define the require CA certificate format.

Right now, the /etc/openldap/ldap.conf file needs to be edited and TLS_CACERTDIR added. This is confusing and it is not documented anywhere.


Fields changed

owner: somebody => sbose

As discussed on IRC, this was a pretty serious oversight up until now, and we should really get this into 0.6.0. Bumping up its priority.

priority: major => critical

Fixed in e8eb42b

resolution: => fixed
status: new => closed

Fields changed

fixedin: => 0.6.0

Fields changed

tests: 1 => 0
testsupdated: 0 => 1

These options are included in both the man page and the User Guide

doc: 1 => 0
docupdated: 0 => 1

Fields changed

rhbz: => 0

Metadata Update from @jgalipea:
- Issue assigned to sbose
- Issue set to the milestone: SSSD 0.6.0

7 years ago

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/1244

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Login to comment on this ticket.

Metadata