Uploaded image for project: 'Qpid'
  1. Qpid
  2. QPID-7063

[Java Broker] SimpleLdap Authentication Provider should be able to override enabled cipher suites and TLS protocols from context variables for TLS connections to LDAP servers

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • qpid-java-6.0, qpid-java-6.1
    • qpid-java-6.1
    • Broker-J
    • None

    Description

      At the moment, required TLS protocols and cipher suites can not be set in SSLConetextFactory created in SampleLdap Authentication Provider for TLS connections. As result, Qpid users cannot override TLS protocols and cipher suites to use in TLS connections to LDAP servers which might cause a selection of weaker cipher suites during TLS negotiation or even can prevent establishing of TLS connections in JVM implementations not supporting downgrade of TLS protocol

      Attachments

        Activity

          People

            orudyy Alex Rudyy
            orudyy Alex Rudyy
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: