summaryrefslogtreecommitdiff
path: root/doc/doc-docbook
diff options
context:
space:
mode:
authorTodd Lyons <tlyons@exim.org>2013-10-31 09:42:15 -0700
committerTodd Lyons <tlyons@exim.org>2013-11-19 19:44:48 -0800
commit5428a9463ae1080029a84a1b33e4a8a6915c5f28 (patch)
tree5777dfe7449150de6d594147dd109c87236501b8 /doc/doc-docbook
parentb0e85a8ff9297a4edab3f4b8262c933747a52e7f (diff)
Fix ldap option setting.
Some client libs set a global context, newer client libs set a global default which then needs to be reloaded.
Diffstat (limited to 'doc/doc-docbook')
-rw-r--r--doc/doc-docbook/.gitignore3
-rw-r--r--doc/doc-docbook/spec.xfpt12
2 files changed, 15 insertions, 0 deletions
diff --git a/doc/doc-docbook/.gitignore b/doc/doc-docbook/.gitignore
index fdcaf8b27..ae93d1875 100644
--- a/doc/doc-docbook/.gitignore
+++ b/doc/doc-docbook/.gitignore
@@ -6,4 +6,7 @@ spec.txt
filter*.xml
filter.ps
filter.pdf
+filter-txt.html
+filter.txt
local_params
+exim.8
diff --git a/doc/doc-docbook/spec.xfpt b/doc/doc-docbook/spec.xfpt
index 4b9f53ed1..5f1c25f41 100644
--- a/doc/doc-docbook/spec.xfpt
+++ b/doc/doc-docbook/spec.xfpt
@@ -7040,6 +7040,18 @@ With sufficiently modern LDAP libraries, Exim supports forcing TLS over regular
LDAP connections, rather than the SSL-on-connect &`ldaps`&.
See the &%ldap_start_tls%& option.
+.new
+Starting with Exim 4.83, the initialization of LDAP with TLS is more tightly
+controlled. Every part of the TLS configuration can be configured by settings in
+&_exim.conf_&. Depending on the version of the client libraries installed on
+your system, some of the initialization may have required setting options in
+&_/etc/ldap.conf_& or &_~/.ldaprc_& to get TLS working with self-signed
+certificates. This revealed a nuance where the current UID that exim was
+running as could affect which config files it read. With Exim 4.83, these
+methods become optional, only taking effect if not specifically set in
+&_exim.conf_&.
+.wen
+
.section "LDAP quoting" "SECID68"
.cindex "LDAP" "quoting"