[Samba] Replication with a self-signed certificate

Andrew Bartlett abartlet at samba.org
Sat Mar 11 00:39:07 UTC 2017


On Fri, 2017-03-10 at 16:17 -0600, Mircea Husz via samba wrote:
> Hello,
> 
> I just configured a three-site DCs setup with Samba 4.6.0, and
> replication worked great.
> But then I added a custom cert to one of the DCs to authenticate
> various apps against it. I used this wiki https://wiki.samba.org/inde
> x.
> php/Configuring_LDAP_over_SSL_(LDAPS)_on_a_Samba_AD_DC
> 
> Now I can authenticate my apps over LDAPS against my DC, but broke
> replication.
> 
> How do I need to configure replication to work with a self-signed
> cert?

The two are not related - replication is not over LDAP or LDAPS, but
instead it is done with DRSUAPI over DCE/RPC.

Thanks,

Andrew Bartlett

-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba




More information about the samba mailing list