Skip to content

LDAP realm does not reload SSL context if files change #36923

@tvernum

Description

@tvernum

Somewhere between 6.2 and 6.5 the LDAP realm behaviour changed to not reload the SSL context if the underlying file contents change (updated CA file).

The SSL Service still reloads the internal context, but the LDAP realm doesn't use it.

My guess is that this might be due to the way we changed reloading to support FIPS, but I haven't dug into it yet.

Metadata

Metadata

Assignees

Labels

:Security/AuthenticationLogging in, Usernames/passwords, Realms (Native/LDAP/AD/SAML/PKI/etc)>bug

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions