[Samba] Allow unencrypted TLS LDAP query

Dewayne Geraghty dewaynegeraghty at gmail.com
Fri Aug 19 02:17:14 UTC 2016


On 19 August 2016 at 06:48, Marc Muehlfeld via samba <samba at lists.samba.org>
wrote:

> Hello Ricardo,
>
> Am 18.08.2016 um 22:17 schrieb Ricardo Pardim Claus via samba:
> > It is possible to configure Samba 4.4.5 to accept queries that do not
> use TLS?
> > I'm having trouble authenticating the Proxy / SquidGuard in AD Samba
> 4.4.5.
> >
> > I get this error:
> >
> > (squidGuard): ldap_simple_bind_s failed: Strong(er) authentication
> required
> >
> > I read the wiki Samba, the new versions are working with authentication
> TLS encrypted connections.
> > It is possible to configure Samba to return to receive authentication in
> normal mode?
>
>
> https://wiki.samba.org/index.php/Updating_Samba#Default_
> for_LDAP_Connections_Requires_Strong_Authentication_.
> 28updating_from_.3C.3D4.4.0.2C_.3C.3D4.3.6_or_.3C.3D4.2.9.29
>
> Why don't you configure your proxy / SquidGuard to establish an
> encrypted connection instead?
>
>
> Regards,
> Marc
>
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>

Marc,

We're in a similar place.  Is there really any value having samba and squid
use TLS when they're on the same box (which in our case is accessed via
openvpn)?

Regards, Dewayne


More information about the samba mailing list