Bug 687939

Summary: RFE: add ability to have SSL configured for TLS but not a separate SSL listener
Product: Red Hat Enterprise Linux 7 Reporter: Rob Crittenden <rcritten>
Component: 389-ds-baseAssignee: Noriko Hosoi <nhosoi>
Status: CLOSED WONTFIX QA Contact: Viktor Ashirov <vashirov>
Severity: unspecified Docs Contact:
Priority: low    
Version: 7.0CC: mreynolds, nhosoi, nkinder, rmeggins, wibrown
Target Milestone: rcKeywords: FutureFeature
Target Release: 7.3   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2018-03-15 01:54:06 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On:    
Bug Blocks: 690319    

Description Rob Crittenden 2011-03-15 18:52:34 UTC
Description of problem:

Currently in order to enable TLS on the unsecure port you need to define a second secure port, 0 is not allowed. It would be nice to be able to have just the single listener.

Version-Release number of selected component (if applicable):

389-ds-base-1.2.8-0.2.a2.fc14.x86_64

Comment 1 Martin Kosek 2012-01-04 13:27:48 UTC
Upstream ticket:
https://fedorahosted.org/389/ticket/61

Comment 6 wibrown@redhat.com 2018-03-15 01:54:06 UTC
Hi,

Closing this as won't fix. I'm about to make a submission to the IETF deprecating StartTLS in LDAP in favour of LDAPS. I have already gained support from some OpenLDAP community members.

Once the draft is done, this makes this request obsolete. 

Thanks,