[Fedora-directory-users] ssl encryption without certs

Pete Rowley prowley at redhat.com
Thu Feb 2 19:11:30 UTC 2006


Susan wrote:

>Hi.  Is it possible to protect the passwords & other info during transit with SSL w/o
>certificates?  I'm not concerned with a MITM attack against the FDS or clients misrepresenting
>themselves, only need to encrypt the password like ssh would.  Can I do it without all the cert
>setup business?
>  
>
SSL and certs are tightly bound.  If you cared to set up kerberos, a sasl bind would get you secure authentication and subsequent transport.          

BTW, please start a new thread rather than changing subject text on a reply - it really messes with threaded mail readers :)

-- 
Pete

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3241 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20060202/11b14770/attachment.bin>


More information about the 389-users mailing list