X-Recipient: archive-cygwin AT delorie DOT com DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:from:to:subject:references:date:in-reply-to :message-id:mime-version:content-type; q=dns; s=default; b=Wb2RB z5lzbov2ihjFuUCIktMxYaj+OkZdesBLn+8VxjG8h0+58r+jHPgNox7RWcDq+Od1 /FZI4xly0MsH8ZSM4Kwc75PffH3FmL9/E1Y/MQREkuYwzqmz7V9GustWMIsBJjMc xRRl1NvWpWyH2F5sJT4c81fWJnOlDBUBmvy/nc= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id :list-unsubscribe:list-subscribe:list-archive:list-post :list-help:sender:from:to:subject:references:date:in-reply-to :message-id:mime-version:content-type; s=default; bh=UxH1T3elNal tOpMK5p6bdpsSWD4=; b=wcyp4sdhToQAMPwGCYO8XR03bcX9wik/npxC+zzGtQU kUpq2jZBLJk0ZUn00rZntE1I92QSwnTiagM2qB1+LhtnT18JK/P2Pb6GIOwyzYvM 7zSU+OtOx6hJo0h41f0wHlyOQgTXi4IjRCjlMnWA1O66Aq+bJeusU2SYRN/oGIZ0 = Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Authentication-Results: sourceware.org; auth=none X-Spam-SWARE-Status: No, score=-2.5 required=5.0 tests=AWL,BAYES_00,RCVD_IN_DNSWL_LOW,SPF_PASS autolearn=ham version=3.3.1 spammy=HX-Languages-Length:798, HX-Spam-Relays-External:ESMTPA X-HELO: vsmx011.vodafonemail.xion.oxcs.net From: Achim Gratz To: cygwin AT cygwin DOT com Subject: Re: Openldap 2.4.48-1 vs my company's pki References: <87ftmje5zb DOT fsf AT Rainer DOT invalid> <874l2y4ulo DOT fsf AT Rainer DOT invalid> <228DE7899A9CF9C913C8B1B8 AT 192 DOT 168 DOT 1 DOT 39> Date: Tue, 06 Aug 2019 18:44:19 +0200 In-Reply-To: (David Goldberg's message of "Mon, 5 Aug 2019 16:06:36 -0400") Message-ID: <874l2ufdlo.fsf@Rainer.invalid> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/26.2 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain David Goldberg writes: > Correct, openssl s_client works, as does the older build of ldapsearch. I > can't find any .ldaprc nor ldap.conf files on my system. Then work the other way around and create a configuration file that points to the PKI. It's entirely possible that the compiled-in default (if there even is one) is not correct. If so I'll have to figure out how to change that, but until then it would be useful to know if things start working when the config is pointing to the existing PKI (which, as you tested can be used correctly by openssl). Regards, Achim. -- +<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+ SD adaptations for Waldorf Q V3.00R3 and Q+ V3.54R2: http://Synth.Stromeko.net/Downloads.html#WaldorfSDada -- Problem reports: http://cygwin.com/problems.html FAQ: http://cygwin.com/faq/ Documentation: http://cygwin.com/docs.html Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple