Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-server
Navigation:
Lists: gentoo-server: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-server@g.o
From: Benjamin Smee <strerror@g.o>
Subject: Re: does ldap need sasl?
Date: Sat, 21 May 2005 14:32:45 +0100
lo,

On Saturday 21 May 2005 11:32, Chris S wrote:
> any ideas?
>
> -c
>
> Chris S wrote:
> > Hi all,
> >
> > Quick (hopefully) question:
> > If I'm setting up a server to authenticate everything via ldap, do I
> > need sasl?

You don't NEED sasl for ldap related authentication at all. The issue is more 
that a lot of things, eg cyrus / postfix can use sasl layers to talk to ldap, 
eg cyrus-sasl provides saslauthd which is how cyrus would talk to your ldap 
server for authentication / authorization information. This is also true of 
ldap clients that can also use sasl to auth to the ldap server using mechs 
like cram / digest.

> > I thought sasl, apart from being a security layer, was another db to
> > hold users?

you are talking about sasldb which is indeed a db of users, but normally these 
days more used for generating session stuff like cram / digest keys.

> > So if my users are in ldap, why would I need sasl also?
> >
> > Unless it's needed for secure authentication within ldap itself? ssl?

its not _needed_ but it can be useful. It just depends on your security model.

b

-- 
Benjamin Smee (strerror)
497F 5E98 1FA0 C313 EA0B 08C7 004A 66ED 448B E78C
Attachment:
pgpdKAnrV4ZVO.pgp (PGP signature)
Replies:
Re: does ldap need sasl?
-- Paul Kölle
Re: does ldap need sasl?
-- Chris S
References:
Opteron; BIOS ack's all 4GB RAM, but OS does not
-- Christian Parpart
does ldap need sasl?
-- Chris S
Re: does ldap need sasl?
-- Chris S
Navigation:
Lists: gentoo-server: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: does ldap need sasl?
Next by thread:
Re: does ldap need sasl?
Previous by date:
Re: does ldap need sasl?
Next by date:
Re: does ldap need sasl?


Updated Jun 17, 2009

Summary: Archive of the gentoo-server mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.