SPAM: [PATCH docs] pveum: Add information about realm certificates

As explained by Dominik and Fabian [0].

[0] https://bugzilla.proxmox.com/show_bug.cgi?id=2827

Signed-off-by: Dominic Jäger <d.jaeger@proxmox.com>
This commit is contained in:
Dominic Jäger 2020-10-15 12:00:19 +02:00 committed by Thomas Lamprecht
parent b46a49edb1
commit 0fb9147a65

View File

@ -163,6 +163,11 @@ configured via the `bind_dn` property in `/etc/pve/domains.cfg`. Its
password then has to be stored in `/etc/pve/priv/ldap/<realmname>.pw`
(e.g. `/etc/pve/priv/ldap/my-ldap.pw`). This file should contain a
single line containing the raw password.
+
To verify certificates, it is necessary to set `capath`, either directly to the
CA certificate of your LDAP server, or to the system path containing all
trusted CA certificates (`/etc/ssl/certs`).
Additionally, the `verify` option has to be set.
Microsoft Active Directory::