Details
-
Feature
-
Status: Released (View Workflow)
-
Minor
-
Resolution: Fixed
-
2.5.9, 2.6.0, 2.7.0
-
None
-
None
Description
Current Situation
The configuration for the identity service LDAP includes the option to disable the hostname verification using the option "LDAP Host Name Verification".
The option is evaluated for the setup of StartTls.
When LDAPS is used the hostname verification can be disabled with the setting "https_with_hostname_verification" provided by the configuration file joc.properties.
Desired Behavior
The hostname verification for StartTls and LDAP should be enabled/disabled with the option "LDAP Host Name Verification" provided by the identity service settings for LDAP.