From: Steven Jenkins Date: 2005-11-12T02:49:17+09:00 Subject: Re: Problem with LDAP::SSLConn.new Daniel Berger wrote: > So, I rebuilt it and explicitly set the "--with-ldap-dir" option to > point to openldap. It built fine, and standard connections seem to work > alright. When I try a secure connection now I get: > > Can't contact LDAP server (LDAP::ResultError) Is your server cert self-signed? As of version 2.1, OpenLDAP rejects self-signed certs. You can override this by adding TLS_REQCERT never to your ldap.conf file (on the OpenLDAP client). If that works, then you'll have to consider the security implications. Steve