LDAPSSL level 1 and level 2 inconsistent in looking for TLS_CACERT

Bug #1450122 reported by Paul Low
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Trafodion
In Progress
High
Cliff Gray

Bug Description

For LDAP Encryption Level 1 (SSL)
Current code does not look at TLS_CACERTFilename value in config file .traf_authentication_config and doesn’t require it to be specified
LDAP APIs default to reading TLS_CACERT from $HOME/.ldaprc

For LDAP Encryption Level 1 (TLS)
TLS_CACERTFilename value in config file .traf_authentication_config is required.
If not specified we don’t default to reading $HOME/.ldaprc

The behavior should be the same for both LDAPSSL options.

Tags: sql-security
Cliff Gray (cliff-gray)
Changed in trafodion:
status: New → In Progress
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.