You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@qpid.apache.org by "michael j. goulish (JIRA)" <ji...@apache.org> on 2011/03/10 19:45:59 UTC

[jira] Updated: (QPID-2057) qpidd --require-encryption forces SASL security layer to be used even if SSL is in use

     [ https://issues.apache.org/jira/browse/QPID-2057?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

michael j. goulish updated QPID-2057:
-------------------------------------

    Fix Version/s: 0.11

> qpidd --require-encryption forces SASL security layer to be used even if SSL is in use
> --------------------------------------------------------------------------------------
>
>                 Key: QPID-2057
>                 URL: https://issues.apache.org/jira/browse/QPID-2057
>             Project: Qpid
>          Issue Type: Bug
>          Components: C++ Broker
>    Affects Versions: 0.5
>            Reporter: Ted Ross
>            Assignee: michael j. goulish
>            Priority: Minor
>             Fix For: 0.11
>
>
> If running SSL and using GSSAPI authentication with the --require-encryption option turned on, the SASL layer will force minSsf to be greater than zero, thus causing the SASL security layer to encrypt.
> This is unnecessary double-encryption since SSL is already providing a cipher channel at a lower layer.

--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira

---------------------------------------------------------------------
Apache Qpid - AMQP Messaging Implementation
Project:      http://qpid.apache.org
Use/Interact: mailto:dev-subscribe@qpid.apache.org