Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-65269

Active Directory uses unsecure LDAP

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not A Defect
    • Icon: Major Major
    • None
    • Jenkins 2.286
      Active Directory plugin 2.23

      The IT department complains that my Jenkins server is performing unsecure requests over a clear text (non-SSL/TSL encrypted) LDAP connection. However, I'm not using LDAP, I'm using active directory to authenticate users. How is this possible?

      Configuration of the Active Directory Security Realm:

      • TLS Configuration: JDK TrustStore
      • StartTLs is enabled
      • Test domain returns success
      • Group membership is using "Token-Groups users attribute" as the default LDAP_MATCHING_RULE_IN_CHAIN might fall back to LDAP
      • Remove irrelevant groups is enabled
      • Use Jenkins Internal Database is disabled
      • Cache is enabled with 256 elements and 10 minutes TTL

      What is causing these LDAP requests or how can I stop them?

            fbelzunc FĂ©lix Belzunce Arcos
            kpop kpop
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: