[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: [ldapext] CLDAPv3: A slightly different approach



Stig Venaas wrote:

On Sat, Feb 22, 2003 at 03:56:39PM +0100, Leif Johansson wrote:


1. You can't do bind over UDP in any sensible way. You won't get away
with specifying plain password mechs in this day and age and SASL requires
a connection.



I haven't looked enough at these things, but I wonder if one could reuse mechanisms from SNMP? Something like HMAC-SHA or HMAC-MD5, See sections 6 and 7 of RFC 3414.

Stig



That was my idea. That way you can also make sure you are not loosing response pdus.

_______________________________________________
Ldapext mailing list
Ldapext@ietf.org
https://www1.ietf.org/mailman/listinfo/ldapext