LDAP samdb and "ldap ssl" (fwd)

Shahms E. King shahms at shahms.com
Wed Jan 2 13:36:01 GMT 2002


Oops, I don't know if that last message was understandable...

The only reason "ldap ssl" defaulted to "off" originally was because
none of the LDAP servers I could test on actually supported it. 
OpenLDAP 1.x explicitly didn't and the support in OpenLDAP 2.x (or at
least the version I was running at the time) was flaky to the point of
being unusable.  I can't remember if I managed to figure out the problem
with OpenLDAP 2.x and just not fix the option, or what, it's been a
while since I looked at that code.  But security is always my favorite
default.

--Shahms





More information about the samba-technical mailing list