LDAP channel binding for other SASL mechanisms

XMLWordPrintable

    • Type: Bug
    • Resolution: Unresolved
    • Priority: P4
    • tbd
    • Affects Version/s: 16, 23
    • Component/s: core-libs
    • None

      When the LDAP channel binding requirement is enabled in Active Directory, SASL mechanisms other than GSS/Kerberos must also supply channel binding data.

      SASL digest-md5 authentication over a SSL/TLS connection fails with the same

      LDAP: error code 49 - 80090346: LdapErr: DSID-0C09058A, comment: AcceptSecurityContext error, data 80090346, v4563

      error that you get with GSS/Kerberos connections.

            Assignee:
            Aleksej Efimov
            Reporter:
            Richard Evans
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: