[KLUG Members] LDAP via URL

Michael Lueck mlueck at lueckdatasystems.com
Tue Jun 28 16:02:39 EDT 2005


On Tue, 28 Jun 2005 15:51:10 -0400, Adam Tauno Williams wrote:

>There is no way to hide a password in an URL, except of course to use LDAP over
>SSL (ldaps://)

I will check this option... curl will be the method I am looking at which you
mentioned. (Would be interesting to see what in the world Mozilla displays when
you point it at a LDAP URL.)

>There is no URL socket.  An ldap:/// ... url communicates using native LDAP
>protocol. 

Ja, but it has a socket open / listening on the NIC to make that happen, thus
what I was talking about. There is also that, what was it, AppSocket? where it
skips going to the NIC but that obviously does not work across the wire.

I was thinking here that the main LDAP daemon could be configured for AppSocket
only and has "all" of the data in it. A second LDAP daemon (on the same box)
could be configured to listen on the NIC, and receive a replica of just the bit
of the entire database which is needed via URL access. All this assuming the
"if you build it they will come" and that more than one app wants to use the
LDAP services.

Thanks!

Michael Lueck
Lueck Data Systems
http://www.lueckdatasystems.com/



More information about the Members mailing list