Export (0) Print
Expand All

3.1.1.3.4.5 LDAP SASL Mechanisms

The following sections describe the SASL mechanisms that are implemented by DCs in Windows 2000 operating system, Windows Server 2003 operating system, Windows Server 2008 operating system, Windows Server 2008 R2 operating system, Windows Server 2012 operating system, and Windows Server 2012 R2 operating system. SASL is described in [RFC2222], and the usage of SASL and other authentication methods in LDAP is described in [RFC2829]. The SASL mechanisms supported by a DC are exposed as strings in the supportedSASLMechanisms attribute of the rootDSE.

Not all versions of Windows Server operating system and Active Directory Application Mode (ADAM) support all the LDAP SASL mechanisms. The following table indicates which SASL mechanisms are supported in which version.

Mechanism name

Windows 2000

Windows Server 2003, Windows Server 2008, Windows Server 2008 R2, Windows Server 2012, and Windows Server 2012 R2

AD LDS

GSSAPI

X

X

X

GSS-SPNEGO

X

X

X

EXTERNAL

 

X

X

DIGEST-MD5

 

X

X

Additional details of LDAP authentication in Active Directory are in section 5.1.

 
Show:
© 2015 Microsoft