Chapter 44. Ldap and Transport Layer Security

Introduction

Up until now, we have discussed the straightforward configuration of OpenLDAPTM, with some advanced features such as ACLs. This does not however, deal with the fact that the network transmissions are still in plain text. This is where Transport Layer Security (TLS) comes in.

OpenLDAPTM clients and servers are capable of using the Transport Layer Security (TLS) framework to provide integrity and confidentiality protections in accordance with RFC 2830[1]; Lightweight Directory Access Protocol (v3): Extension for Transport Layer Security.

TLS uses X.509 certificates. All servers are required to have valid certificates, whereas client certificates are optional. We will only be discussing server ...

Get Official Samba-3 HOWTO and Reference Guide, The, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.