I was able to sort this out. The following TLSCipherSuite statement in slapd.conf worked: TLSCipherSuite AES256-SHA:TLS ECDHE RSA WITH AES 256 GCM SHA384:TLS ECDH RSA WITH AES 256 GCM SHA384:TLS ECDHE RSA WITH AES 256 CBC SHA384:ECDHE-RSA-AES256-SHA TLS: configured cipher suites: TLS: 0035:...
Good afternoon, Just joined and hoping someone from the community has resolved similar issues. Our CA LDAP servers are getting flagged during Qualys vulnerability reporting for "Weak Key Exchange" port 636 or 637. I have added the following statements to the slapd.conf TLSProtocolMin tls1.2...
#LDAP
PAM Client for Linux Z Obsolete Feature Notification - Final Draft.pdf
2 attachments