Ldapsearch.exe

We installed a 9.01FP4 server so that we could create sha256 ssl certificates. Now, when doing an ldap search using ldapsearch.exe, with port 636, from and R8 machine, we get the error:

ldap_bind_s( dn=, pw-, method=128 ) error

: NOT and LDAP errno 7289

SSL invalid certificate, may need to cross certify.

The ldapsearch works with port 389, and it also does work on R9 servers.

So what am I missing? I’m guessing I need to install some cert into the kry file, but what?

Thank you,

Robert