[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
StartTLS URL extension
- To: OpenLDAP-devel@OpenLDAP.org
- Subject: StartTLS URL extension
- From: Howard Chu <hyc@symas.com>
- Date: Sun, 05 Oct 2008 19:35:16 -0700
- User-agent: Mozilla/5.0 (X11; U; Linux x86_64;	rv:1.9.1b1pre) Gecko/20081004 SeaMonkey/2.0a1pre
We really ought to have a way to allow clients to make libldap use StartTLS 
without having to code their own calls into libldap for that purpose. I think 
it would be useful to allow specifying StartTLS in the extension field of the 
LDAP URL. Then at least it can be configured into ldap.conf forgotten about.
The code for ldap_initialize() should look for the URL extension field, and 
act on it if StartTLS / 1.3.6.1.4.1.1466.20037 is present.
Any comments?
--
  -- Howard Chu
  CTO, Symas Corp.           http://www.symas.com
  Director, Highland Sun     http://highlandsun.com/hyc/
  Chief Architect, OpenLDAP  http://www.openldap.org/project/