From 62574214ce164edabd124a48a2f88a705aca4bfb Mon Sep 17 00:00:00 2001
From: Aleksander Machniak <alec@alec.pl>
Date: Tue, 05 Aug 2014 04:43:04 -0400
Subject: [PATCH] Do not log ldap bind passwords
---
program/lib/Net/LDAP3.php | 4 ++--
1 files changed, 2 insertions(+), 2 deletions(-)
diff --git a/program/lib/Net/LDAP3.php b/program/lib/Net/LDAP3.php
index 1b3ac73..3202f5a 100644
--- a/program/lib/Net/LDAP3.php
+++ b/program/lib/Net/LDAP3.php
@@ -481,7 +481,7 @@
return true;
}
- $this->_debug("C: Bind [dn: $bind_dn] [pass: $bind_pw]");
+ $this->_debug("C: Bind [dn: $bind_dn]");
if (@ldap_bind($this->conn, $bind_dn, $bind_pw)) {
$this->_debug("S: OK");
@@ -1435,7 +1435,7 @@
$method = 'DIGEST-MD5';
}
- $this->_debug("C: Bind [mech: $method, authc: $authc, authz: $authz] [pass: $pass]");
+ $this->_debug("C: Bind [mech: $method, authc: $authc, authz: $authz]");
if (ldap_sasl_bind($this->conn, null, $pass, $method, null, $authc, $authz)) {
$this->_debug("S: OK");
--
Gitblit v1.9.1