-
Notifications
You must be signed in to change notification settings - Fork 25.8k
LDAP realm does not reload SSL context if files change #36923
Copy link
Copy link
Closed
Labels
:Security/AuthenticationLogging in, Usernames/passwords, Realms (Native/LDAP/AD/SAML/PKI/etc)Logging in, Usernames/passwords, Realms (Native/LDAP/AD/SAML/PKI/etc)>bug
Description
Somewhere between 6.2 and 6.5 the LDAP realm behaviour changed to not reload the SSL context if the underlying file contents change (updated CA file).
The SSL Service still reloads the internal context, but the LDAP realm doesn't use it.
My guess is that this might be due to the way we changed reloading to support FIPS, but I haven't dug into it yet.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
:Security/AuthenticationLogging in, Usernames/passwords, Realms (Native/LDAP/AD/SAML/PKI/etc)Logging in, Usernames/passwords, Realms (Native/LDAP/AD/SAML/PKI/etc)>bug
Type
Fields
Give feedbackNo fields configured for issues without a type.