Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
 
Go Back   Zimbra - Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra - Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11-29-2005, 09:09 AM
New Member
 
Posts: 4
Default Upgrade SLAPD Cert problem

I just ran the upgrade script, installed the new tar file on Fedora Core 3, and am now stuck at the config screen:

Code:
Checking ldap on localhost:389...FAILED
Checking ldap on localhost:389...FAILED

Main menu

   1) Hostname:                                mail.bustedcamel.com
   2) Ldap master host:                        mail.bustedcamel.com
   3) Ldap port:                               389
   4) Ldap password:                           set
   5) zimbra-ldap:                             Enabled
   6) zimbra-store:                            Enabled
   7) zimbra-mta:                              Enabled
   8) zimbra-snmp:                             Enabled
   9) zimbra-logger:                           Enabled
  10) zimbra-spell:                            Enabled
   r) Start servers after configuration        yes
   s) Save config to file
   x) Expand menu
   q) Quit

Address unconfigured (**) items or correct ldap configuration  (? - help)
I uncommented the errorlog 0 line from slapd.conf and this is what the zimbra log tells me:

Code:
Nov 29 09:55:09 mail slapd[25170]: @(#) $OpenLDAP: slapd 2.2.28 (Nov  9 2005 12:02:16) $        root@build-fc3.liquidsys.com:/home/build/p4/main/ThirdParty/openldap/openldap-2.2.28/servers/slapd
Nov 29 09:55:09 mail slapd[25170]: bdb_db_init: Initializing BDB database
Nov 29 09:55:09 mail slapd[25170]: main: TLS init def ctx failed: -1
Nov 29 09:55:09 mail slapd[25170]: slapd stopped.
Nov 29 09:55:09 mail slapd[25170]: connections_destroy: nothing to destroy.
I looked into the TLS error, and it sent me back to the slapd.conf file to make sure the certificates were listed, and that they existed. My slapd.conf file looks like this:

Code:
TLSCertificateFile /opt/zimbra/conf/slapd.crt
TLSCertificateKeyFile /opt/zimbra/conf/slapd.key
TLSVerifyClient never
TLSCACertificateFile /opt/zimbra/conf/ca/ca.pem
If I look in the /opt/zimbra/conf directory however, none of the files exist. I assume they should be there, but since they aren't, what should I do?

As a side note I also had to add the root slapd password to the slapd.conf file. It was listed in the config screen, but was not in the conf file, which also prevented slapd from starting up.

Thanks.
Reply With Quote
  #2 (permalink)  
Old 11-29-2005, 10:59 AM
Zimbra Employee
 
Posts: 2,073
Default slapd

The root password should be in /opt/zimbra/conf/slapd.conf in an encrypted format - search for "SHA" to find it.

For the certs - run zmcreateca, then zmcreatecert, and the ldap certs will be created.
Reply With Quote
  #3 (permalink)  
Old 11-29-2005, 12:16 PM
New Member
 
Posts: 4
Default That got it

That got it. Thanks.
Reply With Quote
Reply


Thread Tools
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

Zimbrablog.com




 

Search Engine Optimization by vBSEO 3.1.0