Project

General

Profile

Actions

Bug #15588

closed

The picking of CA in the LDAP config is inconsistent.

Added by Lev Prokofev 5 months ago. Updated 5 months ago.

Status:
Duplicate
Priority:
Normal
Assignee:
-
Category:
Authentication
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
Affected Architecture:

Description

It appears that the picking of the CA is inconsistent, I have various CAs, and only one is valid for the communication with Windows AD.
If I change the CA to any other, I am still able to send requests to the LDAP server, and in certain cases, the valid LDAP cert will be not picked even if it is set, which leads to an auth fail with an error (Unknown CA)
I attached the GIF that shows the behavior

https://nc.netgate.com/nextcloud/s/GKgcMfM9pLQjCLW

tested on

24.03-RELEASE (amd64)
built on Mon May 13 15:17:00 MSK 2024
FreeBSD 15.0-CURRENT


Files


Related issues

Is duplicate of Bug #15060: LDAP bind fails when authentication servers use different CA chainsNew

Actions
Actions

Also available in: Atom PDF