After SLES Migration LDAP does not start with TLS error












0














We had to migrate an existing physical Server running SLES to a virtual machine running on ESXi 6.5.
The migration was done with VMware vCenter Converter.



All the data was copied without problems - however now the network adapters have new MAC addresses and IPv6 is now enabled on the Host (if this matters...)



Booting and log in is no problem, everything seems to run except the ldap service (openldap).



When the service should be started with service ldap start an error is returned:
Starting ldap-serverstartproc: exit status of parent of /usr/liv/openldap/slapd : -1



But when the named file is executed manually, the service is up again: service ldap status returns running.



When I try to get more log files I find with: grep slapd /var/log/messages this error: main: TLS init def ctx failed: -1



And there I am stuck. Searching this error directs at missing permissions. But they are all there, everything was migrated 1-to-1 (files, users, groups, permission, ...).



I think it has to relate to the changing of the MAC Addresses but I don't see how this interfers with TLS certification.



Where should I look at? Where can I find more logging information?










share|improve this question







New contributor




Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.

























    0














    We had to migrate an existing physical Server running SLES to a virtual machine running on ESXi 6.5.
    The migration was done with VMware vCenter Converter.



    All the data was copied without problems - however now the network adapters have new MAC addresses and IPv6 is now enabled on the Host (if this matters...)



    Booting and log in is no problem, everything seems to run except the ldap service (openldap).



    When the service should be started with service ldap start an error is returned:
    Starting ldap-serverstartproc: exit status of parent of /usr/liv/openldap/slapd : -1



    But when the named file is executed manually, the service is up again: service ldap status returns running.



    When I try to get more log files I find with: grep slapd /var/log/messages this error: main: TLS init def ctx failed: -1



    And there I am stuck. Searching this error directs at missing permissions. But they are all there, everything was migrated 1-to-1 (files, users, groups, permission, ...).



    I think it has to relate to the changing of the MAC Addresses but I don't see how this interfers with TLS certification.



    Where should I look at? Where can I find more logging information?










    share|improve this question







    New contributor




    Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
    Check out our Code of Conduct.























      0












      0








      0







      We had to migrate an existing physical Server running SLES to a virtual machine running on ESXi 6.5.
      The migration was done with VMware vCenter Converter.



      All the data was copied without problems - however now the network adapters have new MAC addresses and IPv6 is now enabled on the Host (if this matters...)



      Booting and log in is no problem, everything seems to run except the ldap service (openldap).



      When the service should be started with service ldap start an error is returned:
      Starting ldap-serverstartproc: exit status of parent of /usr/liv/openldap/slapd : -1



      But when the named file is executed manually, the service is up again: service ldap status returns running.



      When I try to get more log files I find with: grep slapd /var/log/messages this error: main: TLS init def ctx failed: -1



      And there I am stuck. Searching this error directs at missing permissions. But they are all there, everything was migrated 1-to-1 (files, users, groups, permission, ...).



      I think it has to relate to the changing of the MAC Addresses but I don't see how this interfers with TLS certification.



      Where should I look at? Where can I find more logging information?










      share|improve this question







      New contributor




      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.











      We had to migrate an existing physical Server running SLES to a virtual machine running on ESXi 6.5.
      The migration was done with VMware vCenter Converter.



      All the data was copied without problems - however now the network adapters have new MAC addresses and IPv6 is now enabled on the Host (if this matters...)



      Booting and log in is no problem, everything seems to run except the ldap service (openldap).



      When the service should be started with service ldap start an error is returned:
      Starting ldap-serverstartproc: exit status of parent of /usr/liv/openldap/slapd : -1



      But when the named file is executed manually, the service is up again: service ldap status returns running.



      When I try to get more log files I find with: grep slapd /var/log/messages this error: main: TLS init def ctx failed: -1



      And there I am stuck. Searching this error directs at missing permissions. But they are all there, everything was migrated 1-to-1 (files, users, groups, permission, ...).



      I think it has to relate to the changing of the MAC Addresses but I don't see how this interfers with TLS certification.



      Where should I look at? Where can I find more logging information?







      vmware ssl ldap sles






      share|improve this question







      New contributor




      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.











      share|improve this question







      New contributor




      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      share|improve this question




      share|improve this question






      New contributor




      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      asked yesterday









      Christian Gerstner

      1




      1




      New contributor




      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.





      New contributor





      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






      Christian Gerstner is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






















          0






          active

          oldest

          votes











          Your Answer








          StackExchange.ready(function() {
          var channelOptions = {
          tags: "".split(" "),
          id: "106"
          };
          initTagRenderer("".split(" "), "".split(" "), channelOptions);

          StackExchange.using("externalEditor", function() {
          // Have to fire editor after snippets, if snippets enabled
          if (StackExchange.settings.snippets.snippetsEnabled) {
          StackExchange.using("snippets", function() {
          createEditor();
          });
          }
          else {
          createEditor();
          }
          });

          function createEditor() {
          StackExchange.prepareEditor({
          heartbeatType: 'answer',
          autoActivateHeartbeat: false,
          convertImagesToLinks: false,
          noModals: true,
          showLowRepImageUploadWarning: true,
          reputationToPostImages: null,
          bindNavPrevention: true,
          postfix: "",
          imageUploader: {
          brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
          contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
          allowUrls: true
          },
          onDemand: true,
          discardSelector: ".discard-answer"
          ,immediatelyShowMarkdownHelp:true
          });


          }
          });






          Christian Gerstner is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f492481%2fafter-sles-migration-ldap-does-not-start-with-tls-error%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown

























          0






          active

          oldest

          votes








          0






          active

          oldest

          votes









          active

          oldest

          votes






          active

          oldest

          votes








          Christian Gerstner is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          Christian Gerstner is a new contributor. Be nice, and check out our Code of Conduct.













          Christian Gerstner is a new contributor. Be nice, and check out our Code of Conduct.












          Christian Gerstner is a new contributor. Be nice, and check out our Code of Conduct.
















          Thanks for contributing an answer to Unix & Linux Stack Exchange!


          • Please be sure to answer the question. Provide details and share your research!

          But avoid



          • Asking for help, clarification, or responding to other answers.

          • Making statements based on opinion; back them up with references or personal experience.


          To learn more, see our tips on writing great answers.





          Some of your past answers have not been well-received, and you're in danger of being blocked from answering.


          Please pay close attention to the following guidance:


          • Please be sure to answer the question. Provide details and share your research!

          But avoid



          • Asking for help, clarification, or responding to other answers.

          • Making statements based on opinion; back them up with references or personal experience.


          To learn more, see our tips on writing great answers.




          draft saved


          draft discarded














          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f492481%2fafter-sles-migration-ldap-does-not-start-with-tls-error%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown





















































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown

































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown







          Popular posts from this blog

          How to reconfigure Docker Trusted Registry 2.x.x to use CEPH FS mount instead of NFS and other traditional...

          is 'sed' thread safe

          How to make a Squid Proxy server?