🌟 This is the official Mastodon account for LDAP Tool Box, a collection of packages and tools for LDAP directories.
ℹ️ We will publish here information about releases and new features. Please follow us!
🌐 See also our official website: https://www.ltb-project.org
#introduction #LTB #LDAPToolBox #LDAP #OpenLDAP #OpenSource #FreeSoftware #LogicielLibre
#introduction #ltb #ldaptoolbox #ldap #openldap #OpenSource #FreeSoftware #LogicielLibre
📣 LTB OpenLDAP 2.5.16 and 2.6.6 packages released!
➡️ https://projects.ow2.org/view/ldaptoolbox/ltb-openldap-2-5-16-and-2-6-6-packages-released/
#OW2 #LDAP #OpenLDAP #LDAPToolBox #LTB #OpenSource #LogicielLibre #IAM
#iam #logiciellibre #opensource #ltb #ldaptoolbox #openldap #ldap #ow2
Anbox and OpenLDAP to Active Directory for SSO #activedirectory #openldap #anbox
#activedirectory #openldap #anbox
🔒 Passwortsicherheit ist entscheidend für Entwicklerinnen & Systemadministratorinnen. OpenLDAP bietet zwar MD5 & SHA1, aber diese sind unsicher. Erfahre im neuesten Blogpost, wie du OpenLDAP mit dem sicheren argon2-Algorithmus kompilierst und als Standard festlegst.
https://www.puzzle.ch/de/blog/articles/2023/08/08/enhancing-openldap-security-with-argon2
#cybersicherheit #argon2 #openldap #passwortsicherheit
I learned (or didn't actually learn?) more than I ever wanted to know about #GnuTLS with #OpenLDAP in #Debian.
I still didn't manage to make OpenLDAP only support TLSv1.3 without (potentially) breaking the rest of the system. Would be trivial with OpenSSL backend as you could just set the minimum TLS version in OpenLDAP, but well. Hopefully future releases of Debian will implement "crypto-policies" like in #Fedora.
https://codeberg.org/fkooman/paste/src/branch/main/LDAP_SETUP.md#tls-hardening
#gnutls #openldap #debian #fedora
One thing I've learned for the past few years is that while they are highly compatible, #SpringLDAP and #OpenLDAP and its tooling and the real deal #ActiveDirectory are wildly divergent in many ways and having unit tests is just a pipe dream without functional testing against #AD. Your successful tests will blow up against AD. Read-only operations are mostly fine though, apart from likely divergence of AD paths (groups et al.) handling.
#springldap #openldap #activedirectory #ad #java #springboot #microsoft #aim
📣 Les paquets LTB OpenLDAP 2.5.15 and 2.6.5 ont été publiés !
➡️ https://projects.ow2.org/view/ldaptoolbox/ltb-openldap-2-5-15-and-2-6-5-packages-released/
#OW2 #LDAP #OpenLDAP #LDAPToolBox #LTB #OpenSource #LogicielLibre #IAM
#iam #logiciellibre #opensource #ltb #ldaptoolbox #openldap #ldap #ow2
📣 Sortie de OpenLDAP 2.5.15 et 2.6.5
📰 Notes de version pour la 2.5.15 : https://www.openldap.org/software/release/changes_lts.html
📰 Notes de version pour la 2.6.5 : https://www.openldap.org/software/release/changes.html
Hey dear #infosec #cybersecurity #cybersec !
I've got a question regarding #openldap and #ssha (salted sha1). In fact, I cannot find anything other about SSHA than "it's pure SHA1, but salted".
Is SSHA as used in OpenLDAP safe to use in 2023? Can you give me some details on the internal mechanics? Should I run as far as I can, if SSHA is used?
Thank you.
#ssha #openldap #cybersec #cybersecurity #infosec
Could you give me some advice (and sources!) towards #openLDAP? Is #SSHA (seeded #SHA) in any way still a valid scheme in 2023? I see only "SHA-1" and then I'm quitting.
Is there any way to somehow see SSHA as acceptable nowadays or should I enforce use of crypt/sha-512 "$6$%.16s"?
A new #howto and #Ansible playbook collection has been published that should show how simple it is to set up a fully functional #VirtualDataCenter on #FreeBSD with #Pot and #Potluck.
Example nodes like #MariaDB, #Prometheus, #Grafana, #Nginx, #OpenLDAP, #Traefik and more are provisioned. #Nomad and #Consul based #container #orchestration is also included.
Last not least nodes communicate via #Wireguard #mesh network (#ZeroTrustNetworking anybody?).
Have fun!
#howto #ansible #virtualdatacenter #freebsd #pot #potluck #mariadb #prometheus #grafana #nginx #openldap #traefik #nomad #consul #container #orchestration #wireguard #mesh #zerotrustnetworking
What are all the certificates mandatory to be provide while setting TLSVerifyClient option to demand? #openssl #pam #certificates #ldap #openldap
#openssl #pam #certificates #ldap #openldap
@rowens …and for those using #FreeBSD there also is a ready to run #bsdpot (i.e. #jail) #container / #potluck image with a complete preconfigured mail server consisting of #postfix, #dovecot, #openldap client, #spamassassin at https://potluck.honeyguide.net/blog/mailhub-potluck/ to try out…
#freebsd #bsdpot #jail #container #postfix #dovecot #openldap #spamassassin #potluck
🎉 LTB White Pages 0.4 released!
➡️ Details on https://projects.ow2.org/view/ldaptoolbox/ltb-white-pages-0-4-released/
#LDAP #LTB #LDAPToolBox #OpenSource #LogicielLibre #FreeSoftware #PHP #OpenLDAP #WhitePages #IAM #Directory #OW2 @worteks_com
#ow2 #directory #iam #whitepages #openldap #php #freesoftware #logiciellibre #opensource #ldaptoolbox #ltb #ldap
RT @PIRATEN_Lev
könnten Angreifer möglicherweise die Kontrolle (ATO) über die E-Mail-Adressen übernehmen und sie für böswillige Zwecke nutzen.
AG_Bildung
#NRW #Leak #OpenLDAP #FediLZ
https://astronomy.social/@2ndStar/110261166267924422 (3/3)
Am 19.04.23 hat eine #Sicherheitslücke im Cloud-Service (OpenLDAP/Active Directory) vom Land NRW zu einer großen Menge an zugänglichen Informationen geführt, unter anderem wie Telefonnummern, Usernamen und Mail-Adressen des Lehrpersonals.
Was diesen Leak aber noch prekärer macht, dass durch diese Sicherheitslücke auch andere Schwachstellen aufgedeckt wurden, wie z. B. die Möglichkeit, Kontrolle über E-Mail-Konten zu übernehmen, auch bei denen die zugehörigen Domains nicht mehr existieren. In solchen Fällen könnten Angreifer möglicherweise die Kontrolle (ATO) über die E-Mail-Adressen übernehmen und sie für böswillige Zwecke nutzen.
#sicherheitslucke #nrw #leak #openldap #FediLZ