[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: 2829 questions



At 02:43 PM 12/21/00 +0100, Rob Byrne wrote:
>A few questions come to mind when thinking about Authentication as used
>by the acl draft...

>1. reading 2829bis

I think in the context of this discussion, you should read
RFC2829 and, if you note the need for clarification, raise
such issues to the LDAPbis WG.

In terms of your post, please note that RFC2829, Section 6
says:

   LDAP implementations MUST support authentication with a password
   using the DIGEST-MD5 SASL mechanism for password protection, as
   defined in section 6.1.  

That is, SASL/DIGEST-MD5 is the LDAPv3 mandatory-to-implement
secure authentication method.

Kurt