directory-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Pierre-Arnaud Marcelot (JIRA)" <j...@apache.org>
Subject [jira] [Resolved] (DIRAPI-51) Add cipher suite support to LdapConnectionConfig
Date Wed, 06 Jul 2011 16:41:16 GMT

     [ https://issues.apache.org/jira/browse/DIRAPI-51?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Pierre-Arnaud Marcelot resolved DIRAPI-51.
------------------------------------------

       Resolution: Fixed
    Fix Version/s: 1.0.0-M6
         Assignee: Pierre-Arnaud Marcelot

Fixed at revision 1143489.
http://svn.apache.org/viewvc?rev=1143489&view=rev

I added a specific field to the LdapConnectionConfig class.
Our use of Apache Mina's SSL Filter does not allow us to provide a property for SSLSocketFactory.

> Add cipher suite support to LdapConnectionConfig
> ------------------------------------------------
>
>                 Key: DIRAPI-51
>                 URL: https://issues.apache.org/jira/browse/DIRAPI-51
>             Project: Directory Client API
>          Issue Type: Bug
>    Affects Versions: 1.0.0-M5
>            Reporter: Daniel Fisher
>            Assignee: Pierre-Arnaud Marcelot
>            Priority: Minor
>             Fix For: 1.0.0-M6
>
>
> The current implementation of LdapConnectionConfig exposes properties for KeyManager[]
and TrustManager[], but not supported cipher suites. Some clients like to control ciphers
on a connection-by-connection basis, restricting to only certain strong ciphers. See http://download.oracle.com/javase/6/docs/api/javax/net/ssl/SSLSocketFactory.html
> It may be more expedient to remove the KeyManager and TrustManager properties and expose
a single property for an SSLSocketFactory.

--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Mime
View raw message