[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
OpenLDAP Proxy using PKCS#11/SmartCard client authentication
- To: openldap-technical@openldap.org
- Subject: OpenLDAP Proxy using PKCS#11/SmartCard client authentication
- From: Stefan Scheidewig <sese@mms-dresden.de>
- Date: Mon, 17 Jun 2013 10:26:24 +0200
- Organization: T-Systems Multimedia Solutions GmbH
- User-agent: Mozilla/5.0 (Windows NT 6.1; rv:17.0) Gecko/20130509 Thunderbird/17.0.6
Hello,
we have two LDAP instances. LDAP A acts as proxy for LDAP B using the
ldap-backend. Now we configured LDAP B to use client authentication. We
successfully established a connection to LDAP B using OpenSSL s_client
and the PKCS#11 engine (OpenSSL engine library). Now we want the LDAP
proxy to establish the connection using this pkcs11 engine (we compiled
the ldap proxy to use OpenSSL as TLS implementation). Is there a
posibility to tell the LDAP proxy to use the certificate and key from
the smartcard (e.g. something like pkcs11:slot_1-id_42) ?
Thank you in advance,
Stefan Scheidewig
--
Mit freundlichen Grüßen,
Stefan Scheidewig
T-Systems Multimedia Solutions GmbH
BU Content & Collaboration Solution
PF 54 Integrated Content Portals
Dipl.-Inf. Stefan Scheidewig
Softwareentwickler
Hausanschrift: Riesaer Str. 5, 01129 Dresden, Germany
Postanschrift: Postfach 10 02 24, 01072 Dresden, Germany
+49 351 2820 2924 (Tel)
+49 351 2820 5118 (Fax)
Stefan.Scheidewig@t-systems.com (E-Mail)
Internet: http://www.t-systems-mms.com
T-Systems Multimedia Solutions GmbH
Aufsichtsrat: Klaus Werner (Vorsitzender)
Geschäftsführung: Peter Klingenburg, Susanne Heger
Handelsregister: Amtsgericht Dresden HRB 11433
Sitz der Gesellschaft Dresden
Ust-IdNr.: DE 811 807 949