Lightweight Directory Access Protocol(LDAP) is a set of protocols for accessing information directories. LDAP is based on the standards contained within the X.500 standard, but is significantly simpler. And unlike X.500, LDAP supports TCP/IP, which is necessary for any type of Internet access.

Features of LDAP security would include the followings:
- Using basic authentication or Microsoft Windows NT LAN Manager NTLM as a limited access to authorized users
- It also supports Negotiation method
- Secure Socket Layer (SSL) protocol that ensure data is not sniffed by outsiders or hackers using physical access to network
- RootDSE – LDAP version 3 as server maintains a supportedLDAP version attribute in the root DSE that identifies LDAP versions for implementations
- RootDSE – Extension refers to server maintains a supportedExtension attribute in the rootDSE that enables extended operations
- Using basic authentication or Microsoft Windows NT LAN Manager NTLM as a limited access to authorized users
- It also supports Negotiation method
- Secure Socket Layer (SSL) protocol that ensure data is not sniffed by outsiders or hackers using physical access to network
- RootDSE – LDAP version 3 as server maintains a supportedLDAP version attribute in the root DSE that identifies LDAP versions for implementations
- RootDSE – Extension refers to server maintains a supportedExtension attribute in the rootDSE that enables extended operations
Hi zam,
ReplyDeletei feel that your post on LDAP security features has got the main point and i understand more from reading the post, however it could be much better if you highlight the main points that your trying to say so as to attract the attention of the readers. Other than the above i feel that you have done great describing SSL as well as RootDSE.
Hello there zammm,
ReplyDeleteReading from this post about LDAP, i see that its somehow related to X.500 in some ways? About the security features on SSL, thats a good security feature u have listed down. From being sniff by outsiders or hacked. That is one of the problems nowadays networks are facing.
RootDSE is something new to me, so i will read more on it as you have given me a simple understanding from your post.
Ikhtiari
1000858I