Details
-
Type:
Improvement
-
Status: Closed
-
Priority:
Major
-
Resolution: Fixed
-
Affects Version/s: None
-
Fix Version/s: ejabberd 2.1.4, ejabberd 3.0.0-alpha-1
-
Component/s: LDAP
-
Labels:None
-
Company:
-
Last commented by user ?:false
Description
ejabberd's LDAPS does not check the validity of the peer certificate. This is preferable in most deployments, but in some cases the admin may prefer ejabberd to check that.
ejabberd could implement a configurable option.
See topic 1) in https://bugs.launchpad.net/ubuntu/+source/ejabberd/+bug/252698
Proposed patch.