Re: only password encrypted, all other data unencrypted!



On Mar 21, 5:42 am, Unruh <unruh-s...@xxxxxxxxxxxxxx> wrote:
If you told us what problem you were having or trying to solve maybe we
could help you more. The standard is to encrypt everything. Why is that a
problem?- Hide quoted text -
The usecase is related to the LDAP client authentication to the LDAP
server. We do not have any stringent requirement of en/decrypting the
data(except the password that is used for LDAP authentication) that we
send over the LDAP connection. Hence, we require a simple, but
considerably safer(by encrypting the password) mechanism for it.

.



Relevant Pages

  • Re: Signing LDAP Without Certificate Services
    ... This is using the feature of Windows SSPI authentication to sign and encrypt ... XP and higher, Kerb, NTLM and Digest all support this with 128 bit cipher ... you can't use SSL LDAP connection in conjunction with the SSPI ... Note also that Windows clients have the ability to sign and encrypt LDAP ...
    (microsoft.public.windows.server.active_directory)
  • Re: only password encrypted, all other data unencrypted!
    ... The standard is to encrypt everything. ... The usecase is related to the LDAP client authentication to the LDAP ... C MACs passphrase P using MK and appends the MAC to the passphrase to create ... C encrypts MC using EK to create EMP ...
    (sci.crypt)
  • Re: AIX authentication against Sun ONE/Java Directory Server
    ... > I have setup a SUN one LDAP server version 5.2 ... > But AIX 4.3.3 client doesn't seem to work. ... 4.3-5.1 LDAP client. ... IBM's (Directory Server) website. ...
    (comp.unix.aix)
  • Re: Turning off secured LDAP on Win2K domain controllers?
    ... If accessing the AD database through anonymous LDAP calls is dangerous, ... would I set up a third party LDAP client to access the AD ... > support anonymous queries; Permissions on the directory must be set ... Setting Directory Permissions The following ...
    (microsoft.public.win2000.security)
  • RE: SASL authentication
    ... As I understood the original poster he wants to use LDAP SASL ... Bind with mechanism GSSAPI in his LDAP client when accessing ... SASL/GSSAPI will automagically obtain a service ticket. ...
    (comp.protocols.kerberos)