[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP An Null Bind



Hi,

"Marcel Alburg" <marcel.alburg@gmx.de> writes:

> Hello,
>
> i use the ldap server for my usermanagement, postfix userchecks and dns
> data.
>
> postfix and pam supports the bind to a ldap server but the "bind9 ldap sdb"
> does not support the bin against a ldap server.
>
> because that, anybody can see my dns entries if he connects anonymous with
> my ldap server.
>
> but this is a security risk.
>
> is anybody know how i can secure the ldap server so, that my bind dns server
> work ?

If all your applications reside on the same host, you might start
slapd listening on unix sockets only. That is ./slapd -h "ldapi:///"

-Dieter

-- 
Dieter Kluenter  | Systemberatung
Tel:040.64861967 | Fax: 040.64891521
mailto: dkluenter(at)dkluenter.de
http://www.avci.de