users@glassfish.java.net

Re: Simple LDAP connection over SSL (LDAPS) fails in glassfish

From: Bernhard Thalmayr <bernhard.thalmayr_at_painstakingminds.com>
Date: Tue, 29 Nov 2011 23:04:51 +0100

So what does the debug output tell you?

Which certificates are added as 'trusted certs'?

Is the CA cert which has been used to sing the LDAP's servers cert added as
'trusted cert'?

-Bernhard

On Tue, Nov 29, 2011 at 10:38 PM, <forums_at_java.net> wrote:

> Hi,
> Thanks for the quick reply. Regarding the comments:
> 1. I used the *correct *location for Glassfush's trustStore (the one which
> is
>
> defined by -Djavax.net.ssl.trustStore in domain.xml).
>
> 2. yes, it worked with non-ssl connection.
> 3. As Bernhard Thalmayr from this forum suggested me, I already enabed ssl
> debug (by adding -Djavax.net.debug=SSL,**hanshake,trustmanager). Actually,
> this is how I saw the "unknown_ca" error in first place.
>
> So unfortunately it's stil not solved....
> Any help is much appreciated.
> Thanks
>
>
> --
>
> [Message sent by forum member 'Karo']
>
> View Post: http://forums.java.net/node/**869156<http://forums.java.net/node/869156>
>
>
>


-- 
IT-Consulting Bernhard Thalmayr
- Painstaking Minds -
83620 Vagen (Munich area)
Germany