Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
starmen2000
Collaborator
Collaborator

LDAP Server SSL Encryption

Hi mates,

 

A customer wants gateway to communicate with LDAP via SSL (636) port. On Smartconsole on LDAP unit I can see Encryption tab on LDAP server properties. The question is whether the Fetch button has to be selected and the fingerprint has to be verified or is it not a must?

One more thing, what configuration need to be done on LDAP server side?

0 Kudos
3 Replies
K_R_V
Collaborator

Hey, I think this is already described in this article : https://community.checkpoint.com/t5/Management/LDAPS-Fingerprints-and-Proxy/td-p/155174 

You can leave it empty, it will work as a ANY rule.

My own opinion, leave it open, I've seen too many issues with the fingerprints and outages because of a changed certificate ... .

 

0 Kudos
starmen2000
Collaborator
Collaborator

Hi, thank you for your answer. On Active Diretory Site is there anything to be done? 

0 Kudos
the_rock
Legend
Legend

I dont believe you need to do anything on AD side.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events