https://bugs.openldap.org/show_bug.cgi?id=9543
--- Comment #2 from Howard Chu hyc@openldap.org --- On private test servers you should just generate server certs with the IP address in the cert subjectAltName.
I see no need for a patch like this, nor any good reason to break the RFC-compliant cert name checking.