[Freeipa-devel] [PATCH] 78 Use ldapi: instead of unsecured ldap: in ipa core tools.

Simo Sorce ssorce at redhat.com
Tue Feb 15 14:52:38 UTC 2011


On Tue, 15 Feb 2011 15:19:50 +0100
Pavel Zuna <pzuna at redhat.com> wrote:

> I can't reproduce this. :-/
> 
> For me it goes fine:
> 
> [root at ipadev tools]# ./ipa-nis-manage enable
> Directory Manager password:
> 
> Enabling plugin
> This setting will not take effect until you restart Directory Server.
> The rpcbind service may need to be started.
> 

Pavel,
Jr has set the minimum ssf to a non default value to test a
configuration in which all communications are required to be encrypted.
That's why you can't reproduce with the vanilla configuration.

We want to support that mode although it won't be the default, so we
need to fix any issue that causes that configuration to break (ie all
non-encrypted/non-ldapi connections).

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-devel mailing list