I have two 389 directory servers up and running with Multi Master replication without SSL/TLS with simple authentication.

After battling through the SSL for client authentication I am not able to configure StartTLS/Simple Authentication based Multi-Master replication.

When I change the connection type from plain text to StartTLS I get "SSL Peer cannot verify your cerficate".

I am using the Admin GUI for all configuration work.

I am using self signed certificate. I generated the self sign cerification using certutil and imported it into another server.

I used the same Self Signed Certs for client Authentication (I know it may not be best practice, but I will be happy if it works in this way, at least for now).

I would appreciate any help.

-Thanks

--
http://about.me/chandank