Only negotiate PLAIN when using TLS with PasswordAuthenticator

Description

When TLS is enabled, only PLAIN should be negotiated. There are multiple reasons why this is a good idea:

  • We are on a secure connection already, SCRAM is not needed

  • Less roundtrips/requests to send over SCRAM

  • Always works with LDAP out of the box

 

(Description copied from Michael Nitschinger's commit summary)

Environment

None

Gerrit Reviews

None

Release Notes Description

None

Activity

Show:
Fixed
Pinned fields
Click on the next to a field label to start pinning.

Details

Assignee

Reporter

Story Points

Fix versions

Priority

Instabug

Open Instabug

PagerDuty

Sentry

Zendesk Support

Created September 16, 2020 at 4:18 AM
Updated February 14, 2023 at 7:34 AM
Resolved September 18, 2020 at 7:17 AM
Instabug