Good morning 

I would like to know if JXplorer can issue a STARTTLS operation.

My LDAP server requires the use of STARTTLS on port 389 (and then only
accepts TLS) with GSSAPI as the only SASL mechanism available and
changing this configuration is not an option.

If I contact my LDAP server with JXplorer choosing GSSAPI as the
security level in the connection gui I get this error:

> initial receipt of exception by jndi broker [LDAP: error code 13 - TLS 
> confidentiality required]
> javax.naming.AuthenticationNotSupportedException: [LDAP: error code 13 - TLS 
> confidentiality required]; remaining name 'dc=xxx,dc=yyy,dc=zzz'

The client and server certificates are in the keystores, therefore I
suppose the problem is over the unencrypted channel with JXplorer not
issuing the STARTTLS operation.

I have digged into the JXplorer documentation and also looked at the
source code and I only find references to TLS but not to STARTTLS.
I have also read that some "evil undocumented features" could be
available through command line options but... they are undocumented :)

Do you have any plan of implementing STARTTLS in JXplorer or could you
provide any directions about where and how to insert some code to
implement it?
Or could you provide information about any extra/undocumented option
that could help?

Thank you very much in advance

Kind regards

Andrea

------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud 
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
Jxplorer-devel mailing list
Jxplorer-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/jxplorer-devel

Reply via email to