> No, it belongs in GENSEC as another SASL mechanism. ok. How will the gensec code get access to the file descriptor in the ldap server so it can ask the kernel who owns the other side of that fd? Is there a path to the fd somewhere inside the gensec structures? Cheers, Tridge