LDAPS connection fails due to an incorrect CA certificate
Applies to
- ONTAP 9
- LDAPS
- Certificate SSL
Issue
- LDAPS is enabled:
::> vserver cifs security show -vserver svm1 -fields use-ldaps-for-ad-ldapvserver use-ldaps-for-ad-ldap------- ---------------------svm1 true- LDAPS connection fails due to a certificate issue
- In SecD log we see these errors when TLS authentication is attempted:
LDAP TLS Alert generated is 'fatal:unknown CA'
Unable to start LDAPS: Can't contact LDAP server
Additional info: error:0A000086:SSL routines::certificate verify failed (unable to get issuer certificate)
Unable to connect to LDAP (Active Directory) service on domain.com (Error: Can't contact LDAP server)
