https://bugs.openldap.org/show_bug.cgi?id=9189
--- Comment #8 from dpa-openldap(a)aegee.org <dpa-openldap(a)aegee.org> ---
At
https://github.com/cyrusimap/cyrus-sasl/issues/637 I objected how the
interoperability is achieved. RFC 4752 says the GSSAPI SASL mechanism offers
no Channel binding. Users of Cyrus SASL, if utilize the API correct, shall be
able to offer the SASL mechanisms GS2-KRB5, GS2-KRB5-PLUS and GSSAPI (per RFC
4752 without CB) at the same time. With the adjustments to
libsasl/plugins/gssapi.c to get compatible with MS-LDAP-over-TLS, the libsasl2
users are now incompatible with the remaining GSSAPI clients.
--
You are receiving this mail because:
You are on the CC list for the issue.