Add custom certificate validation for Windows LDAP connections

XMLWordPrintableJSON

    • Type: Task
    • Resolution: Unresolved
    • Priority: Major - P3
    • None
    • Affects Version/s: None
    • Component/s: None
    • None
    • Server Security
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Windows provides an option to configure how the server certificate is verified via LDAP_OPT_SERVER_CERTIFICATE. A callback hook will be set to call the existing SSLManagerWindows::parseAndValidatePeerCertificate. The Windows LDAP code will create an instance of SSLManagerWindows for its private use to load all the necessary certs and initialize all the structures to support building certificate chains.

            Assignee:
            [DO NOT USE] Backlog - Security Team
            Reporter:
            Mark Benvenuto
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: