cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1697
Views
5
Helpful
1
Replies

ACS 5.2 : LDAPS error

Patrick Tran
Level 1
Level 1

Hello,

I configured a LDAP identity store.

When I use LDAP without Secure Authentication, connection works.

When I use LDAP with Secure Authentication, I have to configure root CA.

I check LDAP connectivity with "Test Bind to Server" button --> "Connection test bind Succeeded"

After "Directory Organization" configuration, I check with "Test Configuration" button --> "Number of Subjects >100, Number of Groups > 100"

When ACS receives a real authentication, I got this error:

24016  Looking up user in LDAP Server - username

24030  SSL connection error was encountered

24033  Primary server failover. Switching to secondary server

And this description by ACS:

Description

SSL connection error was encountered

Resolution Steps

Check  whether Use Secure Connection is enabled for the appropriate LDAP  server and the appropriate root CA is selected to have SSL connection to  LDAP Server

I don't understand what is the problem...

If someone has an idea...

Best regards,

Patrick

1 Reply 1

Patrick Tran
Level 1
Level 1

Solved!

I used an Intermediate CA instead of root CA...

My bad!

Unfortunately, I was focused on LDAP test which succeeded...

Patrick