tomcat-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Igor Galić <i.ga...@brainsware.org>
Subject Re: JNDI: LDAPv3 with StartTLS
Date Sun, 15 Aug 2010 17:53:20 GMT

----- "Felix Schumacher" <felix.schumacher@internetallee.de> wrote:

/snip
> > I've traced the operation with wireshark only to find it's not even
> trying to do any kind of SASL negotiation.
> > That seems weird, since:
> >
> http://www.java2s.com/Open-Source/Java-Document/6.0-JDK-Modules-com.sun/jndi/com/sun/jndi/ldap/LdapClient.java.htm
> > suggests it should be doing that by default.
> If I read
> http://java.sun.com/products/jndi/tutorial/ldap/ext/starttls.html
> correctly, I would say, that you have to tell ldapclient explicitly
> to
> use tls, which the jndirealm does not.

>From a different part of the thread, by me:
``I would still like to believe that this is a simple configuration error from
my side. That I have to tell Tomcat use StartTLS, use SASL - but none
of the documentation gives a hint about that.''

So, my question is: Is there a way to do this from within JNDI Realm?

My guesswork was at the end when protocol="TLS" or "StartTLS" or
authentication="simple" SASL, etc.. didn't do it.

> Bye
>  Felix
> 
> > 
> > I'm out ideas now. and welcome any advise you can offer.
> > 
> > So long o/~
> > -- 
> > Igor Galić
> > 
> > Tel: +43 (0) 664 886 22 883
> > Mail: i.galic@brainsware.org
> > URL: http://brainsware.org/
> > 
> >
> ---------------------------------------------------------------------
> > To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
> > For additional commands, e-mail: users-help@tomcat.apache.org
> > 
> 
> 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
> For additional commands, e-mail: users-help@tomcat.apache.org

-- 
Igor Galić

Tel: +43 (0) 664 886 22 883
Mail: i.galic@brainsware.org
URL: http://brainsware.org/

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org
For additional commands, e-mail: users-help@tomcat.apache.org


Mime
View raw message