cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3655
Views
0
Helpful
15
Replies

Problem installing certificates for using ldaps

bigbrother74
Level 1
Level 1

Hi

I've installed ACS 4.1 on Windows 2003 Server. I made a generic ldap connection to m$ active directory. I'm able to configure "Group Mappings for LDAP Users". So far so good.

But if I set the generic ldap connection to ldaps nothing works ???

I installed in ACS the "GTE CyberTrust Global Root" certificate and the intermediate certificate "Cybertrust Educational CA". I marked both in "System Configuration". Under "generic ldap" I set param "Trusted Root CA" to "Cybertrust Educational CA" I checked "Use Secure Authentication" and set the port to 636.

I restart acs but nothing works. I set it back to normal ldap connection (389) an everything works well.

Then I test to connect via ldp-tool from windows to connect to active directory through port 636 (ldaps) and everything works well.

After all this must be certificate installation issue under acs.

Does somebody know how to install this things correctly???

I red many manuals from cisco but nothing helps me...

Thanx for help

bb

15 Replies 15

can you perform a test

install self signed certificate of ACS and check if you are able to connect to LDAP.

This will clear the questions of intermediate cert for you.

Regards

Rohit