lists.arthurdejong.org
RSS feed

Re: [nssldap] Using tls_cert/key without rootbinddn

[Date Prev][Date Next] [Thread Prev][Thread Next]

Re: [nssldap] Using tls_cert/key without rootbinddn



Sometime ago, Hallvard B Furuseth wrote:
> Iain Morgan writes:
> > While I can successfully bind to the server using the client cert, the
> > client immediately attempts to rebind using simple authentication:
> 
> Note that sending a client cert with TLS is not an LDAP Bind.  It does
> sends credentials which can be _used_ in an LDAP Bind (SASL/EXTERNAL).
> 
> -- 
> Hallvard
> 

Thanks to both you and Howard Chu for pointing out my misunderstanding
and pointing me in the direction of SASL/EXTERNAL.

Cheers

--
Iain Morgan