Red Hat Directory Server 8.0 Configuration, Command, and File Reference

There are three SASL mechanisms supported in Red Hat Directory Server:
CRAM-MD5, described in Table 6.6, “Description of CRAM-MD5 Mechanism Options”
DIGEST-MD5, described in Table 6.7, “Description of DIGEST-MD5 SASL Mechanism
Options”
GSSAPI, described in Table 6.8, “Description of GSSAPI SASL Mechanism Options”
Required or
Optional
Option Description Example
Required mech=CRAM-MD5 Gives the SASL
mechanism.
-o
“mech=CRAM-MD5”
Required authid=authid_value Gives the ID used to
authenticate to the
server. authid_value
can be the following:
UID. For example,
msmith.
u: uid. For
example, u:
msmith.
dn: dn_value. For
example, dn:
uid=msmith,ou=People,o=example.com.
-o
“authid=dn:uid=msmith,ou=People,o=example.com"
Optional secprop=value The secprop attribute
sets the security
properties for the
connection. The
secprop value can be
any of the following:
None
noplain — Do not
permit mechanisms
susceptible to
simple passive
attack.
noactive — Do not
permit mechanisms
-o
"secprop=noplain,minssf=1,maxbufsize=512"
ldapsearch
205