Quanah Gibson-Mount wrote:
--On Sunday, July 21, 2019 10:54 PM +0100 Howard Chu hyc@symas.com wrote:
Feel free to add a note to slapd.conf(5) / slapd-config(5) about TLS defaults.
I take this back. Pretty sure we've had this debate before, haven't found it in the list archive.
We explicitly create a fresh TLS context in slapd, to eliminate any ldap.conf initialization defaults.
I think that's worth doing.