Does migrating to Secure Hash Algorithm (SHA)-2 certificates affect Authentication Services? Does going from SSL ver 1 to SSL2 impact Authentication Services? (4261188)
Does migrating to Secure Hash Algorithm (SHA)-2 certificates affect Authentication Services? Does going from SSL ver 1 to SSL2 impact Authentication Services?
说明
The migration to Secure Hash Algorithm (SHA)-2 certificates is an industry mandate. This effort includes all applications that connect to Active Directory domain controllers using the Secure Lightweight Directory Access Protocol (LDAPS). Does migrating to Secure Hash Algorithm (SHA)-2 certificates affect Authentication Services? Does going from SSL ver 1 to SSL2 impact Authentication Services?
解决办法
There is no impact to Authentication Services. Authentication Services has never used LDAPS but instead only used the LDAP ports.
The changes in SHA-2 would not impact Authentication Services in this regard.
It uses LDAP authenticated with the SASL Authentication Method, secured with the GSSAPI Authentication Mechanism, with both Integrity and Privacy protection. Its Kerberos using whatever you have set up, arc-four or AES, both encrypting the channel and providing signing to contents.