[Date Prev][Date Next] [Chronological] [Thread] [Top]

RE: is TLS an EXTERNAL SASL mechanism



This bug is in GSSAPI plugin.
The GSSAPI seems to be needed
only when using Kerberos.
Otherwise, the SASL configure script will disable gssapi
when gssapi.h is not found.
This is the situation on Slackware Linux.
Also, the Cyrus SASL for System Administrators
says:
''use --disable-krb4 and --disable-gssapi 
if you aren't a kerberos site.''
I am not using Kerberos, only want
to make OpenLDAP running through TLS 
as an EXTERNAL SASL mechanism.
Is it possible without Kerberos?

> > Command  'ldapsearch -Z -x' works,
> > 'ldapsearch -Z' reports 'Unknown authentication method'.
> 
> That's a bug in Cyrus-SASL...
> Have a look at 
> http://www.bayour.com/kerberos/Kerberos-MiniHOWTO.html#patch-sasl
>