[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: commit: ldap/tests/scripts test028-idassert conf.sh defines.sh
- To: OpenLDAP Commit <openldap-devel@OpenLDAP.org>
- Subject: Re: commit: ldap/tests/scripts test028-idassert conf.sh defines.sh
- From: Pierangelo Masarati <ando@sys-net.it>
- Date: Sat, 19 Jun 2004 15:14:56 +0200
- References: <200406190805.i5J8576F003857@cantor.openldap.org>
- User-agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.0.1) Gecko/20021003
ando@OpenLDAP.org wrote:
Added Files:
test028-idassert NONE -> 1.1
I just found out that native SASL authz doesn't work with CRAM-MD5,
i.e. the bound identity remains that of the incoming authcDN;
with DIGEST-MD5 the bound identity is turned into that of the authzDN
specified via SASL. I'm not sso familiar with SASL details, but I thought
the authz did not depend on the specific mech.
Comments?
p.
SysNet - via Dossi,8 27100 Pavia Tel: +390382573859 Fax: +390382476497