When you use a custom identity certificate for an Avaya Aura® Device Services service interface, Open LDAP replication might fail. The /var/log/Avaya/openldap/openldap.log file contains the TLS negotiation failure entry.
Cause
The custom identity certificate is applied to a single node and not to the entire cluster.
Solution
Procedure
Re-import the custom certificate as described in Managing server interface certificates. Ensure that you select Apply For Cluster when importing the certificate.