Database is a broad term. I presume that you are talking about StartTLS for LDAP connections from Java and Python. At the moment the Python code only supports LDAP and LDAPS but not LDAP+StartTLS upgrade.
Metadata Update from @vakwetu: - Issue set to the milestone: 10.4
Based upon feedback from cheimes: moving to 10.4 - major since this is a "Nice-to-Have"
Metadata Update from @mharmsen: - Custom field proposedmilestone adjusted to '' - Custom field proposedpriority adjusted to '' - Custom field reviewer adjusted to '' - Custom field version adjusted to '' - Issue close_status updated to: None - Issue priority set to: major (was: critical)
Per CS/DS Meeting of August 7, 2017, it was determined to move this issue from 10.4 ==> FUTURE.
Metadata Update from @mharmsen: - Issue set to the milestone: FUTURE (was: 10.4)
Closing WONTFIX. ldaps is fine :)
Metadata Update from @ftweedal: - Issue close_status updated to: wontfix - Issue status updated to: Closed (was: Open)
I created the issue to reduce the amount of open ports. For FreeIPA, Dogtag is the only service that requires LDAPS port to be open.
Metadata Update from @mharmsen: - Issue set to the milestone: 10.5.2 (was: FUTURE)
After discussions with @simo @firstyear & Robbie there doesn't seem to be a compelling reason to do this, so I'm leaving it closed.
There are some benefits to using LDAPS over StartTLS infact, so it's good to keep this port open.
Dogtag PKI is moving from Pagure issues to GitHub issues. This means that existing or new issues will be reported and tracked through Dogtag PKI's GitHub Issue tracker.
This issue has been cloned to GitHub and is available here: https://github.com/dogtagpki/pki/issues/1108
If you want to receive further updates on the issue, please navigate to the GitHub issue and click on Subscribe button.
Subscribe
Thank you for understanding, and we apologize for any inconvenience.