https://bugs.openldap.org/show_bug.cgi?id=8485
--- Comment #10 from Howard Chu hyc@symas.com --- (In reply to Michael Ströder from comment #9)
I concur that lacking support for encrypted private keys is a real deficiency!
In general OpenLDAP should aim to reach more flexibility for the TLS configuration, e.g. like Apache httpd. Encrypted private keys for both server and client side is one aspect of that.
We have never needed to add explicit support, since OpenSSL prompted for a passphrase itself, when needed.
https://www.openldap.org/lists/openldap-software/200210/msg00718.html