Issue with upgrading to 2.3.6

Halm Reusser halm.reusser at switch.ch
Wed Feb 29 15:25:49 GMT 2012


Hi Daniel,

On 29.02.12 16:06, Daniel Fisher wrote:
> When hostname verification was requested as the default behavior for
> LDAPS we decided that the best course of action was an implementation
> similar to Sun's implementation for startTLS.

I didn't say that this was a bad approach. It's probably the best.
And that deployers have to fix their certificates - I agree as well.

But people with issues have now the choice between stick on 2.3.5 or buy
a new cert - assumed they do not like to implement a custom
HostnameVerifier, right?

Thanks for the API docs.

-Halm


More information about the users mailing list