IETF opinion change on "implicit TLS" vs. StartTLS

2018-02-12 Thread Michael Ströder
HI! To me this rationale for SMTP submission with implicit TLS seems also applicable to LDAPS vs. StartTLS: https://tools.ietf.org/html/rfc8314#appendix-A So LDAPS should not be considered deprecated. Rather it should be recommended and the _optional_ use of StartTLS should be strongly

Re: placeholder problems

2018-02-12 Thread Côme Chilliet
Le jeudi 8 février 2018, 09:59:03 CET Joeri Casteels a écrit : > Now i would like to assign them directly to the correct unix group depending > on the base you start from or Primary group you select. > If i use this placeholder:Home directory*: /home/%primaryGroup%/%uid% i get > the option in

dynamic config replication

2018-02-12 Thread Gerard Ranke
Hello list, Openldap 2.4.45 here, on 1 producer and 4 consumers. ( I'll attach relevant parts of the configuration at the end of this message. ) Following the scripts from test059, I configured the producer to serve up a cn=config backend for the consumers. This seems to work nicely at first:

Re: IETF opinion change on "implicit TLS" vs. StartTLS

2018-02-12 Thread William Brown
On Mon, 2018-02-12 at 14:30 +0100, Michael Ströder wrote: > HI! > > To me this rationale for SMTP submission with implicit TLS seems also > applicable to LDAPS vs. StartTLS: > > https://tools.ietf.org/html/rfc8314#appendix-A > > So LDAPS should not be considered deprecated. Rather it should be

Re: IETF opinion change on "implicit TLS" vs. StartTLS

2018-02-12 Thread Quanah Gibson-Mount
--On Tuesday, February 13, 2018 9:31 AM +1000 William Brown wrote: On Mon, 2018-02-12 at 14:30 +0100, Michael Ströder wrote: HI! To me this rationale for SMTP submission with implicit TLS seems also applicable to LDAPS vs. StartTLS: