On Thu, 21 Aug 2025 13:12:38 GMT, Weijun Wang <wei...@openjdk.org> wrote:

> My "here" was
> 
> > Not an LDAP expert, but I see that `abandonRequest()` still wants to write 
> > into outStream. If the SASL/GSS context is already disposed by now what 
> > stream should this be? Should it be reverted back to the raw stream?
> 
> However, I'm not sure if this correct. This means the security guaranteed by 
> the SASL layer is lost and I also don't know if the peer can parse it 
> correctly.
> 
> @michael-o What have JDK 8 and `ldapsearch` done? Did they send error 
> messages in the clear?

I will get back to you tomorrow or Monday as soon as I have access to the 
environment.

-------------

PR Comment: https://git.openjdk.org/jdk/pull/26566#issuecomment-3211705122

Reply via email to