Heads-up: Setting "ldap ssl = start_tls" in 3.3.0?

Karolin Seeger kseeger at samba.org
Thu Dec 18 07:52:25 GMT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hey folks,

according to the smb.conf manpage, the default value for "ldap ssl" was
"start_tls". While trying to fix bug #5949, it sticked out that LDAP_SSL_ON was
not defined at all and the effective default value was "" for a very long period
of time.

To assure consistency, the default value has been set to "ldap ssl = no" in all
trees. The documentation has been updated accordingly. Changing the default to
"start_tls" would break existing setups using LDAP backends without tls.

The question is if we should change the default to "start_tls" in 3.3.0.
Any opinions?

Karolin

- --
Samba			http://www.samba.org
SerNet			http://www.sernet.de
sambaXP			http://www.sambaxp.org


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.4-svn0 (GNU/Linux)

iD8DBQFJSgDbKGi9fisXk1ERAvg5AKCv9m3ZeE9zDL/JOGrtVe+X9OrDcwCfR1X+
U9hgq/EytKHU+97eVrSuqEo=
=yKI9
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list