ssl client certificates

Wesley Craig wes at umich.edu
Wed Sep 10 09:35:59 EDT 2008


Yes, the code lacks at least the ability to specify aspects of the  
schema.  I also noticed that it's using obsolete APIs, tho I'm not  
sure that's actually a problem.  I'd be happy to work with you to get  
an acceptable patch committed for this code path.

:wes

On 10 Sep 2008, at 07:48, Johannes Rußek wrote:
> thanks for the information. I managed to find the code in tls.c and
> imapd.c and it seems as if it you were right :) which is good news!
> but it's bad news that we use the UID attribute for the "username",  
> and
> CN for the actual name (like Johannes Russek in my case). :/
> it also doesn't seem to be configurable (yet), so i might check if  
> i can
> hack tls.c for that. (would anyone else think this is a good idea?  
> e.g.
> to specify the attribute that contains the username/userid used for
> cyrus mailstore?


More information about the Info-cyrus mailing list