Re: Support of Kerberos V5 safe and private messages for LDAP

--On Freitag, 8. Februar 2002 03:59 -0800 Abhinav Ratna <abhi_ldap@yahoo.com> wrote:

 Basically i  plan to write a client that presents a
kerberos ticket to the LDAP server and after mutual
authentication between the LDAP server and itself,
does an encrypted message exchange with the server and
thus the LDAP server ( directly or through GSSAPI )
also need to send encrypted messages to the client.

If you're using the OpenLDAP client libraries and don't set SASL_SECPROPS
maxssf < 56, a security layer, ie. an encrypted message exchange, will automatically be setup. (Works with OpenLDAP Servers and also Microsoft Active Directory).

