????
| Current Path : /proc/self/root/proc/thread-self/root/etc/openldap/ |
| Current File : //proc/self/root/proc/thread-self/root/etc/openldap/ldap.conf |
# File modified by ipa-client-install # We do not want to break your existing configuration, hence: # URI, BASE, and SASL_MECH # have been added if they were not set. # In case any of them were set, a comment has been inserted and # "# CONF_NAME modified by IPA" added to the line above. # To use IPA server with openLDAP tools, please comment out your # existing configuration for these options and uncomment the # corresponding lines generated by IPA. # # LDAP Defaults # # See ldap.conf(5) for details # This file should be world readable but not world writable. #BASE dc=example,dc=com #URI ldap://ldap.example.com ldap://ldap-master.example.com:666 #SIZELIMIT 12 #TIMELIMIT 15 #DEREF never # When no CA certificates are specified the Shared System Certificates # are in use. In order to have these available along with the ones specified # by TLS_CACERTDIR one has to include them explicitly: #TLS_CACERT /etc/pki/tls/cert.pem # System-wide Crypto Policies provide up to date cipher suite which should # be used unless one needs a finer grinded selection of ciphers. Hence, the # PROFILE=SYSTEM value represents the default behavior which is in place # when no explicit setting is used. (see openssl-ciphers(1) for more info) #TLS_CIPHER_SUITE PROFILE=SYSTEM # Turning this off breaks GSSAPI used with krb5 when rdns = false SASL_NOCANON on URI ldaps://ipa.int.tasjeel.ae BASE dc=tasjeel,dc=ae SASL_MECH GSSAPI