The AD server is SSL enabled with only port 636 open. Non-SSL port (389) is close.
This configuration is not supported because QAS will not work without port 389 for TCP (LDAP - queries).
LDAP traffic generated via vas_attrs_find (over 389) is encrypted by Kerberos which is considered more secure then SSL LDAP
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center