On Thu, 21 Aug 2025 13:12:38 GMT, Weijun Wang <wei...@openjdk.org> wrote:
> My "here" was > > > Not an LDAP expert, but I see that `abandonRequest()` still wants to write > > into outStream. If the SASL/GSS context is already disposed by now what > > stream should this be? Should it be reverted back to the raw stream? > > However, I'm not sure if this correct. This means the security guaranteed by > the SASL layer is lost and I also don't know if the peer can parse it > correctly. > > @michael-o What have JDK 8 and `ldapsearch` done? Did they send error > messages in the clear? I will get back to you tomorrow or Monday as soon as I have access to the environment. ------------- PR Comment: https://git.openjdk.org/jdk/pull/26566#issuecomment-3211705122