Req #50924 [Opn->Nab]: LDAP_OPT_ENCRYPT support for ldap_set_option
| From: | heiglandreas@php.net | Date: | Mon, 09 Jan 2017 07:06:20 +0000 |
| Subject: | Req #50924 [Opn->Nab]: LDAP_OPT_ENCRYPT support for ldap_set_option | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-206434@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=50924&edit=1
ID: 50924
Updated by: heiglandreas@php.net
Reported by: richard dot hyland at aegworldwide dot co dot uk
Summary: LDAP_OPT_ENCRYPT support for ldap_set_option
-Status: Open
+Status: Not a bug
Type: Feature/Change Request
Package: LDAP related
Operating System: Linux
PHP Version: 5.2.12
Block user comment: N
Private report: N
New Comment:
This issue has been open for about 6 years and targets a by now unsupported version of PHP.
Therefore I'm closing it.
Besides enabling a hack to circumvent using TLS or SSL isn't really an option.
Should you still have these issues with a supported version of PHP please feel free to open a new
issue.
Thanks
Previous Comments:
------------------------------------------------------------------------
[2010-02-03 10:10:08] richard dot hyland at aegworldwide dot co dot uk
Description:
------------
To change an Active Directory password over LDAP requires either SSL,
TLS or LDAP_OPT_ENCRYPT (which in turn requires Kerberos)
You can change the password without SSL (which is no easy feat to
install SSL on a domain controller) using LDAP_OPT_ENCRYPT but it seems
to that ldap_set_option does not support this constant.
Reproduce code:
---------------
ldap_set_option($cn, LDAP_OPT_ENCRYPT, 1);
ldap_mod_replace($cn, $dn, array('unicodePwd'=>$unicodePassword));
Expected result:
----------------
Password changed in AD
Actual result:
--------------
Server is unwilling to perform as it requires SSL or encryption
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=50924&edit=1