cancel
Showing results for 
Search instead for 
Did you mean: 

Configuring a LDAPS destination in Secure Login Server 2.0 SP6

nuesseler
Explorer
0 Kudos

Hello,

I need to configure a LDAPS connection in the Destination Management of Secure Login Server 2.0 SP6.

If I'm using port 389 and deselect "Use SSL for LDAP Access", then the connection test works fine. If I'm using port 636 and select "Use SSL for LDAP Access", then the connection test brings the message: Could not connect to destination <destination name> <IP>:<Port>. I did import the CA certificate of the LDAP-Server SSL certificate into the keystore trusted CAs of the Java Stack. With Secure Login Server 1.0 the LDAPS connection to the same LDAP server works fine.

Questions: Where can I find more trace information about the failed connection test? Any idea what could be wrong configured?

Accepted Solutions (0)

Answers (1)

Answers (1)

LutzR
Active Contributor
0 Kudos

Hi Markus,

just a guess: If you really use IP:PORT then the LDAPS server's certificate CN will not match. The LDAPS server's hostname used for connection needs to match the certificates CN or SAN. Might be that older versions of SAP SSO did not check this.

Regards,

Lutz