Our IDM 2 setup was installed with an SSL connection to sync eDir to Active
Directory. The certificate for this expired a few days ago, and I'm having
difficultly fixing it.

I've created a new cert, and exported it in b64 format to the domain
controller that runs the remote loaded, and changed the properties of the
service so it uses the new b64 file. It's still not working though - when
the driver loads I get the error:

SSL protocol failure: error: 14090086:SSL
routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed

I presume that I need to sell the eDirectory 'end' which certificate to use
as well, but I can't find where it's set....or can I re-certify the old
certificate somehow???

Thanks in advance,