[Bug 1987992] Re: autofs: Missing support of SCRAM for SASL binds
Bryce Harrington
1987992 at bugs.launchpad.net
Tue Aug 30 01:54:22 UTC 2022
Hi rdratlos, thanks for keeping an eye on autofs.
Is this something that can be enabled in the Ubuntu packaging for
autofs, or is it more a feature that'd need implemented in autofs
itself? If the latter, would this be better to report upstream? Or do
you already have thoughts on a fix for it?
** Tags added: server-todo
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to autofs in Ubuntu.
https://bugs.launchpad.net/bugs/1987992
Title:
autofs: Missing support of SCRAM for SASL binds
Status in autofs package in Ubuntu:
New
Bug description:
Most directory services now support the more secure Salted Challenge
Response Authentication Mechanismis (SCRAM) for SASL binding (RFC 5802).
But automount user cannot request use of SCRAM, as automount does not
read user and password credentials for SCRAM mechanisms.
For sys admins that do not want to implement Kerberos based
authentication to their directory service using GSSAPI need to rely on
DIGEST-MD5, which is regarded as insecure.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/autofs/+bug/1987992/+subscriptions
More information about the foundations-bugs
mailing list