Hello,

Is there a way to force the LDAP client to use TLS/SSL for all queries
not just authentication/bind?

I've noticed that when configured with tls:simple as the auth
mechanism, the Illumos LDAP client doesn't use TLS/SSL for all SEARCH
queries. It only seems to use TLS/SSL for BIND commands and any
searches performed on the same connection as the BIND. The persistent
connect ldap_cachemgr maintains with the LDAP server is non-TLS on
389. I've tried adding :636 to the server name, but that just causes
the LDAP client to fail entirely as it still tries non-TLS queries
(which against 636 won't work).

-J


-------------------------------------------
illumos-discuss
Archives: https://www.listbox.com/member/archive/182180/=now
RSS Feed: https://www.listbox.com/member/archive/rss/182180/21175430-2e6923be
Modify Your Subscription: 
https://www.listbox.com/member/?member_id=21175430&id_secret=21175430-6a77cda4
Powered by Listbox: http://www.listbox.com

Reply via email to