summaryrefslogtreecommitdiff
path: root/docs/docbook/smbdotconf/ldap/ldapssl.xml
diff options
context:
space:
mode:
Diffstat (limited to 'docs/docbook/smbdotconf/ldap/ldapssl.xml')
-rw-r--r--docs/docbook/smbdotconf/ldap/ldapssl.xml30
1 files changed, 30 insertions, 0 deletions
diff --git a/docs/docbook/smbdotconf/ldap/ldapssl.xml b/docs/docbook/smbdotconf/ldap/ldapssl.xml
new file mode 100644
index 0000000000..d747d8f7df
--- /dev/null
+++ b/docs/docbook/smbdotconf/ldap/ldapssl.xml
@@ -0,0 +1,30 @@
+<samba:parameter xmlns:samba="http://samba.org/common">
+ <term><anchor id="LDAPSSL"/>ldap ssl (G)</term>
+ <listitem><para>This option is used to define whether or not Samba should
+ use SSL when connecting to the ldap server
+ This is <emphasis>NOT</emphasis> related to
+ Samba's previous SSL support which was enabled by specifying the
+ <command moreinfo="none">--with-ssl</command> option to the <filename moreinfo="none">configure</filename>
+ script.
+ </para>
+
+ <para>
+ The <parameter moreinfo="none">ldap ssl</parameter> can be set to one of three values:
+ </para>
+ <itemizedlist>
+ <listitem><para><parameter moreinfo="none">Off</parameter> = Never use SSL when querying the directory.</para></listitem>
+
+ <listitem><para><parameter moreinfo="none">Start_tls</parameter> = Use the LDAPv3 StartTLS extended operation
+ (RFC2830) for communicating with the directory server.</para></listitem>
+
+ <listitem><para><parameter moreinfo="none">On</parameter> =
+ Use SSL on the ldaps port when contacting the
+ <parameter moreinfo="none">ldap server</parameter>. Only
+ available when the backwards-compatiblity <command moreinfo="none">
+ --with-ldapsam</command> option is specified
+ to configure. See <link linkend="PASSDBBACKEND"><parameter moreinfo="none">passdb backend</parameter></link></para></listitem>
+ </itemizedlist>
+
+ <para>Default : <command moreinfo="none">ldap ssl = start_tls</command></para>
+ </listitem>
+ </samba:parameter>