Click here to get back home

Configuring SSL for LDAP

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Configuring SSL for LDAP bobmurarta 10-23-2007
Posted by bobmurarta on October 23, 2007, 10:01 am
Please log in for more thread options
How can I enable SSL in Active Directory? I can currently connect to
port 389 using ldp, but when trying to connect using SSL to port 636 I
get the following error:

ld = ldap_sslinit("localhost", 636, 1);
Error <0x51> = ldap_set_option(hLdap, LDAP_OPT_PROTOCOL_VERSION,
LDAP_VERSION3);
Error <0x51> = ldap_connect(hLdap, NULL);
Server error: <empty>
Error <0x51>: Fail to connect to localhost.

Any pointers/help in this regard would be very much appreciated.

Thank you,
Bob


Posted by Steven L Umbach on October 23, 2007, 7:53 pm
Please log in for more thread options
I have only done that a couple times in a test lab but it requires that you
have an Enterprise Certificate Authority installed in your domain that the
domain controllers will request and receive certificates from so that AD SSL
can then be used. The link below explains more.

Steve

http://support.microsoft.com/kb/247078
http://wiki.service-now.com/index.php?title=Configure_Microsoft_Active_Directory_for_SSL_Access

> How can I enable SSL in Active Directory? I can currently connect to
> port 389 using ldp, but when trying to connect using SSL to port 636 I
> get the following error:
>
> ld = ldap_sslinit("localhost", 636, 1);
> Error <0x51> = ldap_set_option(hLdap, LDAP_OPT_PROTOCOL_VERSION,
> LDAP_VERSION3);
> Error <0x51> = ldap_connect(hLdap, NULL);
> Server error: <empty>
> Error <0x51>: Fail to connect to localhost.
>
> Any pointers/help in this regard would be very much appreciated.
>
> Thank you,
> Bob
>



Similar ThreadsPosted
Re-Configuring LDAP CDP on Enterprise Root CA February 17, 2007, 1:31 am
advice on configuring a small network March 2, 2006, 5:38 pm
Configuring Certification Authority in Windows Server 2003 January 25, 2007, 11:40 am
Secure SSL with LDAP and AD May 20, 2008, 11:23 am
no server credential/no LDAP over SSL June 17, 2005, 3:24 pm
LDAP allows anonymous binds September 8, 2005, 9:01 am
Access Control to LDAP on AD? October 14, 2005, 9:20 pm
LDAP authentication security ? December 3, 2007, 11:25 am
Restricting LDAP search for a normal AD account January 12, 2006, 12:01 am
enabling LDAP over SSL: Enterprise CA in separate AD tree August 17, 2006, 6:31 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap