Red Hat Directory Server 8.0 Configuration, Command, and File Reference
There are three SASL mechanisms supported in Red Hat Directory Server:
• CRAM-MD5, described in Table 6.6, “Description of CRAM-MD5 Mechanism Options”
• DIGEST-MD5, described in Table 6.7, “Description of DIGEST-MD5 SASL Mechanism
Options”
• GSSAPI, described in Table 6.8, “Description of GSSAPI SASL Mechanism Options”
Required or
Optional
Option Description Example
Required mech=CRAM-MD5 Gives the SASL
mechanism.
-o
“mech=CRAM-MD5”
Required authid=authid_value Gives the ID used to
authenticate to the
server. authid_value
can be the following:
• UID. For example,
msmith.
• u: uid. For
example, u:
msmith.
• dn: dn_value. For
example, dn:
uid=msmith,ou=People,o=example.com.
-o
“authid=dn:uid=msmith,ou=People,o=example.com"
Optional secprop=value The secprop attribute
sets the security
properties for the
connection. The
secprop value can be
any of the following:
• None
• noplain — Do not
permit mechanisms
susceptible to
simple passive
attack.
• noactive — Do not
permit mechanisms
-o
"secprop=noplain,minssf=1,maxbufsize=512"
ldapsearch
205