[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Force StartTLS on port 389



Fabio Spelta <spelta@linux.it> writes:

> Hello list.
> I'm wondering if it's possible to configure slapd forcing it to listen
> only to the 389 port (that should be easy, by running ithe daemon with
> the adequate -h option) *and* accepting *only* TLS cyphered traffic,
> both for authentication and for all the queries and their result. I
> searched both the list archives and the FAQ-O-Matiq without founding
> the answer.

man slapd.conf(5) security factors. An example 
security tls=56
and set apropriate TLS Options in slapd.conf and ldap.conf. 

-Dieter 

 


-- 
Dieter Klünter | Systemberatung
http://www.dkluenter.de
GPG Key ID:01443B53