TLS and security of LDAP transmissions


I noticeed the mentions of OpenSSL and Cyrus SASL as prerequisites for compling OpenLDAP, but i wanted to check the following:

are all OpenLDAP transmissions encrypted, with SSL, by default [and /without/ Kerberos being used], or is everything [including any passwords stored in a given LDAP directory] sent as clear-text?


