Connecting to AWS directory service over SSL

0

Hi,

We are using Sophos firewall and as per their steps we followed and enabled CA module https://community.sophos.com/sophos-xg-firewall/f/recommended-reads/137078/sophos-firewall-a-quick-guide-for-ldaps-ad-integration-with-windows-server-2022-2019-2012

But still ldp is not able to connect over ssl. Any idea what can be wrong? Or AWS directosry service needs different settings?

Pravin
已提問 5 個月前檢視次數 161 次
2 個答案
0

Hi,

Are you aware of https://docs.sophos.com/nsg/sophos-firewall/18.0/Help/en-us/webhelp/onlinehelp/AdministratorHelp/GettingStarted/DeploymentOptions/DeployAWS/index.html (and other related documents at bottom) ?

It's a step-by-step guidance to instantiate Sophos firewall on AWS.

Additionally, if you look at https://doc.sophos.com/nsg/sophos-firewall/18.5/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Authentication/Servers/AD/AuthenticationADServerAdd/index.html, there is an option to avoid TLS and start with plain text. You may want to start your test with non encryption to validate the rest of your setup and then focus on SSL when the first part is working.

Re. your specific question if I understand it correctly : I guess that you want to set Secure Channel Cipher to TLS 1.1. See https://docs.aws.amazon.com/directoryservice/latest/admin-guide/ms_ad_directory_settings.html

Best,

Didier

profile pictureAWS
專家
已回答 5 個月前
0

This is our guide for enabling LDAPS on AWS Managed Microsoft AD. https://docs.aws.amazon.com/directoryservice/latest/admin-guide/ms_ad_ldap_server_side.html

profile pictureAWS
已回答 4 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南