Novell Home

My Favorites

Close

Please to see your favorites.

ERROR: nam_ldap_init: Retrieval of trusted root cert failed.

This document (7009694) is provided subject to the disclaimer at the end of this document.

Environment

Novell Open Enterprise Server 2 (OES 2) Linux Support Pack 3

Situation

After installing OES2sp3 (fresh sp3 install or upgrade) into tree, the following message is seen periodically:
 
Oct  6 15:45:01 server2 /usr/sbin/namcd[27870]:  nam_ldap_init: Retrieval of trusted root cert failed. Make sure you have LDAP server certificate in /var/lib/novell-lum directory.
When it appears, it will be logged once for each LDAP server defined in /etc/nam.conf.

Resolution

This is fixed with novell-lum-2.2.0.18-0.34.<arch>.rpm or later and is first included with January 2012 maintenance for OES2SP3.

Additional Information

When the server was first upgraded, the following was observed in /var/log/messages:
 
Oct  5 08:45:09 server2 namgroupadd:  init_ldapconn: Retrieval of trusted root cert failed. Make sure you have LDAP server certificate in /var/lib/novell-lum directory
Oct  5 08:45:09 w34f342 namgroupadd:  store_cert: Storing Certificate /var/lib/novell-lum/.10.20.30.40 10.30.40.50.der in local Workstation
 
Upon inspection of /var/lib/novell-lum, valid certificate files (.der) were found -- all the same size and greater than 0 bytes.  Additionally, there was a .der file with a concatenation of all of the ldap server addresses in the directory (i.e. .10.20.30.40 10.30.40.50.der   )

Disclaimer

This Support Knowledgebase provides a valuable tool for NetIQ/Novell/SUSE customers and parties interested in our products and solutions to acquire information, ideas and learn from one another. Materials are provided for informational, personal or non-commercial use within your organization and are presented "AS IS" WITHOUT WARRANTY OF ANY KIND.

  • Document ID:7009694
  • Creation Date:04-NOV-11
  • Modified Date:04-MAR-14
    • NovellOpen Enterprise Server

Did this document solve your problem? Provide Feedback