AW: StartTLS problem

Ortner Nikolaus N.Ortner at fh-kaernten.at
Fri Mar 1 05:39:48 EST 2013


> 2.) I have tried another solution. I have created certificate, installed into LDAP
> JKS store, set on LDAP 389 connection handler usage of StartTLS. Then I have
> added that certificate into java central keystore - C:\Program
> Files\Java\jdk1.6.0_37\jre\lib\security\cacerts. Then I got another error :

Don't get confused - it's the LDAP-certificate you have to add to the keystore at your IdP (so that the IdP can connect to the LDAP and do the authentication/attribute-query things).

The other self-created certificates are for the IdP and the communication with clients and SP's.

Kind regards.



More information about the users mailing list