> Date: Wed, 08 Nov 2006 15:08:02 -0800 > From: Chris Maresca <ckm at olliancegroup.com> > Richard Megginson wrote: >> I just don't like overloading the userPassword {foo} syntax, but >> openldap has a history of doing something similar with {kerberos} and >> {sasl}, so there is precedent. They're also strongly deprecated; {kerberos} is no longer supported. The only real need for them is old clients that only know how to do Simple Bind. Since that in itself is a security liability, it's better to get the clients updated. -- -- Howard Chu Chief Architect, Symas Corp. http://www.symas.com Director, Highland Sun http://highlandsun.com/hyc OpenLDAP Core Team http://www.openldap.org/project/