<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cannot connect to LDAPs using WLC in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4738224#M249450</link>
    <description>&lt;P&gt;Unless someone else knows better I can't see where else you could add them?&lt;/P&gt;</description>
    <pubDate>Wed, 14 Dec 2022 02:02:10 GMT</pubDate>
    <dc:creator>Rich R</dc:creator>
    <dc:date>2022-12-14T02:02:10Z</dc:date>
    <item>
      <title>Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4735863#M249347</link>
      <description>&lt;P&gt;We have a WLC, that we'd like to authenticate users against LDAP. However the WLC fails to establish a connection with the following error: &lt;STRONG&gt;Failed to start LDAP over TLS&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;The LDAP server itself is set up correctly. I have tried accessing it using an LDAP browser and that works just fine. Pinging the LDAP from the WLC also works, but somehow the LDAP connection itself fails. Sadly the above error is the only information I could get from the debug logs. It seems the WLC fails to establish a TLS connection at all and thus doesn't even get to the point of speaking LDAP. I have checked the manual, but cannot find anything that sounds like it could be the issue. Maybe the WLC is not trusting the LDAP's TLS certificate? If so, where would I add the cert to trust?&lt;/P&gt;&lt;P&gt;Device: Cisco 3504 Wireless LAN Controller&lt;BR /&gt;Software:&amp;nbsp;8.10.183.0&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 13:00:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4735863#M249347</guid>
      <dc:creator>wolff</dc:creator>
      <dc:date>2023-01-05T13:00:21Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4735992#M249350</link>
      <description>&lt;P&gt;what WLC device and what code running:&lt;/P&gt;
&lt;P&gt;look at the example&amp;nbsp; video : (since we don't know what WLC and code running)&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.youtube.com/watch?v=ofdx1s180g4" target="_blank" rel="noopener"&gt;https://www.youtube.com/watch?v=ofdx1s180g4&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/108008-ldap-web-auth-wlc.html#C2" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/108008-ldap-web-auth-wlc.html#C2&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Dec 2022 22:37:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4735992#M249350</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-12-09T22:37:09Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4736187#M249356</link>
      <description>&lt;P&gt;Sorry. I have added the missing information to the question.&lt;/P&gt;</description>
      <pubDate>Sat, 10 Dec 2022 13:14:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4736187#M249356</guid>
      <dc:creator>wolff</dc:creator>
      <dc:date>2022-12-10T13:14:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4736223#M249358</link>
      <description>&lt;P&gt;For a start - update your code version to latest recommended by TAC just to eliminate know bugs - see links below.&lt;/P&gt;
&lt;P&gt;Then get a packet capture to see which end is presenting what certificates and where it's failing.&lt;/P&gt;
&lt;P&gt;See&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-10/config-guide/b_cg810/managing_certificates.html#ID1794" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-10/config-guide/b_cg810/managing_certificates.html#ID1794&lt;/A&gt;&amp;nbsp;for adding your server's root CA cert.&lt;/P&gt;</description>
      <pubDate>Sat, 10 Dec 2022 15:10:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4736223#M249358</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2022-12-10T15:10:37Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4738132#M249447</link>
      <description>&lt;P&gt;I had come across this article when looking for solutions, however it sounds like this is for CA-certs used for EAP. Is this really the right place to add a certificate to trust for TLS connections?&lt;/P&gt;</description>
      <pubDate>Tue, 13 Dec 2022 22:16:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4738132#M249447</guid>
      <dc:creator>wolff</dc:creator>
      <dc:date>2022-12-13T22:16:20Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4738224#M249450</link>
      <description>&lt;P&gt;Unless someone else knows better I can't see where else you could add them?&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2022 02:02:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4738224#M249450</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2022-12-14T02:02:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4741797#M249627</link>
      <description>&lt;P&gt;I guess… I'll add it there, and make a packet capture.&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2022 13:50:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4741797#M249627</guid>
      <dc:creator>wolff</dc:creator>
      <dc:date>2022-12-19T13:50:51Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4749656#M250119</link>
      <description>&lt;P&gt;I have now made a packet capture and the WLC establishes a TCP socket and then immediately begins speaking LDAP (without creating a TLS-tunnel). I have set the option “secure mode (via TLS)”, as per the instructions in the manual, however that does not seem to cause the controller use LDAPs, instead it tries to perform a StartTLS extended operation (which fails, since the server speaks LDAPs and is still waiting for a TLS tunnel to be established). How do I configure the WLC for LDAPs?&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 14:11:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4749656#M250119</guid>
      <dc:creator>wolff</dc:creator>
      <dc:date>2023-01-05T14:11:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot connect to LDAPs using WLC</title>
      <link>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4750129#M250164</link>
      <description>&lt;P&gt;That is the only option - as defined in the LDAP standard - no other option on the WLC so you'll need to look at your server LDAP config.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Jan 2023 09:15:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cannot-connect-to-ldaps-using-wlc/m-p/4750129#M250164</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2023-01-06T09:15:14Z</dc:date>
    </item>
  </channel>
</rss>

