LDAP Problem with SSL Port 636

Hi,

Domino as LDAP for third party system works perfect on Port 389, BUT:

If i’m trying to use 636, client throws this error:

Problem with RootDSE-Content

Problem occurs in loading entry RootDSE from host.domain.com:636

The LDAP Server uses an official certificate which is valid.

What can i do ?

Thanks

Uwe

Subject: LDAP with SSL Port 636

In order for ldapsearch to work over SSL (port 636), the Domino Directory (names.nsf) must have the Certificate Authority (CA) included
in the trusted certificates. When using ldapsearch.exe from the Lotus Notes client, follow the steps outlined in the following technote

Title: How to retrieve an Internet Cross Certificate using Lotus Notes 6
Doc #: 1108117
URL: http://www.ibm.com/support/docview.wss?uid=swg21108117 http://www.ibm.com/support/docview.wss?uid=swg21108117

Also do a “show tasks” at the command prompt and see if the ldap task
is running?

Subject: listening on…

the Show Tasks will not only confirm that LDAP is running
but listening on the expected ports 389, 636

Subject: Status

sorry for the late response …

sh tasks shows as expected:

LDAP Server Listen for connect requests on TCP Port:389 SSL Port:636

ldapsearch comes not from notesclient. I’m using it from a third party linux machine.

Tom, i don’t know how to add a new CA certificate to the Domino dirctory.

There is a button ‘Add’ but i can only puttin some text but no keyfile.