Re: back_ldap / TLS Issues with OPENLDAP_REL_ENG_2_4_48

Quanah Gibson-Mount <[email protected]>
Newsgroups gmane.network.openldap.devel
Message-ID <B0148B683FD220EE3A8CCA4C@[192.168.1.39]>
--On Sunday, July 21, 2019 10:02 PM +0100 Howard Chu <[email protected]> wrote:

> As I already said: there is no reason for the syncrepl consumer and
> back-ldap to behave identically. The manpages are correct in each case.

I've never said they should behave identically, and I do not fathom why you 
are so focussed on something I never stated.

*You* stated:

"The behavior is supposed to be exactly as specified in the manpages."

The *man page* for back-ldap makes ZERO reference to ldap.conf.  It makes 
ZERO reference to back-ldap being considered an "ldap client".  If your 
statement that they should behave as specified in the man pages is true, 
then its behavior is incorrect, because PER THE MAN PAGE the TLS settings 
are either EXPLICIT in the back-ldap configuration OR they are taking from 
slapd's TLS settings.  NOWHERE does it say that if there are no settings in 
back-ldap OR slapd that it will THEN take the settings from ldap.conf.

The *exact same* applies to syncrepl and its TLS settings.

--Quanah

--

Quanah Gibson-Mount
Product Architect
Symas Corporation
Packaged, certified, and supported LDAP solutions powered by OpenLDAP:
<http://www.symas.com>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.