When using DNS discovery for AD repositories, there should be an option to add them as SSL-enabled on port 636.

Today when using DNS discovery for AD repositories, they are added as non-SSL on port 389. To use SSL, you then have to switch back to Manual setting and edit each individual LDAP server. For an enterprise which a large number of domain controllers, this takes some time and needs to be done each time DNS discovery is done once more.


  • I will have the engineers investigate this suggestion. It seems reasonable.
