What is a quick test to see if TLS is working for OpenLDAP?
There is a quick test to check if TLS is working for OpenLDAP or Directory Server. Use the following command--the two Z's force TLS. If it is not working, the command will fail.
ldapsearch -xZZ [any additional arguments]
This is the error that will return if TLS is not working:
ldap_start_tls: Protocol error (2)
additional info: unsupported extend...Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
