AW: JNDIRealm with required ChannelBindingToken fails

2025-03-20 Thread Thomas Hoffmann (Speed4Trade GmbH)
Hello Joey, > -Ursprüngliche Nachricht- > Von: Joey Cochran > Gesendet: Mittwoch, 19. März 2025 18:27 > An: users@tomcat.apache.org > Betreff: RE: JNDIRealm with required ChannelBindingToken fails > > On 2025/03/19 08:02:43 "Thomas Hoffmann (Speed4Trade GmbH)

RE: JNDIRealm with required ChannelBindingToken fails

2025-03-19 Thread Joey Cochran
On 2025/03/19 08:02:43 "Thomas Hoffmann (Speed4Trade GmbH)" wrote: > Hello Michael, > > > -Ursprüngliche Nachricht- > > Von: Michael Osipov > > Gesendet: Dienstag, 18. März 2025 22:50 > > An: users@tomcat.apache.org > > Betreff: Re: JND

Re: AW: JNDIRealm with required ChannelBindingToken fails

2025-03-19 Thread Michael Osipov
On 2025/03/19 08:02:43 "Thomas Hoffmann (Speed4Trade GmbH)" wrote: > Hello Michael, > > > -Ursprüngliche Nachricht- > > Von: Michael Osipov > > Gesendet: Dienstag, 18. März 2025 22:50 > > An: users@tomcat.apache.org > > Betreff: Re: JND

AW: JNDIRealm with required ChannelBindingToken fails

2025-03-19 Thread Thomas Hoffmann (Speed4Trade GmbH)
Hello Michael, > -Ursprüngliche Nachricht- > Von: Michael Osipov > Gesendet: Dienstag, 18. März 2025 22:50 > An: users@tomcat.apache.org > Betreff: Re: JNDIRealm with required ChannelBindingToken fails > > On 2025/03/18 16:22:42 "Thomas Hoffmann (Speed4Tra

Re: JNDIRealm with required ChannelBindingToken fails

2025-03-18 Thread Michael Osipov
On 2025/03/18 16:22:42 "Thomas Hoffmann (Speed4Trade GmbH)" wrote: > Hello Tomcat-Team, > we are currently using a JNDIRealm to authenticate against an ActiveDirectory > via LDAPs. > For security reasons, the LDAP-Server should be configured to enforce channel > binding token (CBT). > > If CBT i

JNDIRealm with required ChannelBindingToken fails

2025-03-18 Thread Thomas Hoffmann (Speed4Trade GmbH)
Hello Tomcat-Team, we are currently using a JNDIRealm to authenticate against an ActiveDirectory via LDAPs. For security reasons, the LDAP-Server should be configured to enforce channel binding token (CBT). If CBT is set to enforced however, the JNDIRealm fails with this exception: org.apache.c