Uploaded image for project: 'Directory ApacheDS'
  1. Directory ApacheDS
  2. DIRSERVER-1617

Add a feture to support TLS in DelegatingAuthenticator

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Minor
    • Resolution: Fixed
    • 1.5.7
    • 2.0.0-M13
    • None
    • None

    Description

      Current implementation of DelegatingAuthenticator uses plain socket connection which makes it vulnerable to MITM attacks.
      It will be good to setup TLS (using startTLS extended operation) after establishing a connection.

      We should also add a configuration option to selectively turn on/off this option with a new attributetype named like 'useTLS'
      in the 'ads-delegatingAuthenticator' objectclass.

      Attachments

        Activity

          People

            Unassigned Unassigned
            akiran Kiran Ayyagari
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: