From 62574214ce164edabd124a48a2f88a705aca4bfb Mon Sep 17 00:00:00 2001
From: Aleksander Machniak <alec@alec.pl>
Date: Tue, 05 Aug 2014 04:43:04 -0400
Subject: [PATCH] Do not log ldap bind passwords

---
 program/lib/Net/LDAP3.php |    4 ++--
 1 files changed, 2 insertions(+), 2 deletions(-)

diff --git a/program/lib/Net/LDAP3.php b/program/lib/Net/LDAP3.php
index 1b3ac73..3202f5a 100644
--- a/program/lib/Net/LDAP3.php
+++ b/program/lib/Net/LDAP3.php
@@ -481,7 +481,7 @@
             return true;
         }
 
-        $this->_debug("C: Bind [dn: $bind_dn] [pass: $bind_pw]");
+        $this->_debug("C: Bind [dn: $bind_dn]");
 
         if (@ldap_bind($this->conn, $bind_dn, $bind_pw)) {
             $this->_debug("S: OK");
@@ -1435,7 +1435,7 @@
             $method = 'DIGEST-MD5';
         }
 
-        $this->_debug("C: Bind [mech: $method, authc: $authc, authz: $authz] [pass: $pass]");
+        $this->_debug("C: Bind [mech: $method, authc: $authc, authz: $authz]");
 
         if (ldap_sasl_bind($this->conn, null, $pass, $method, null, $authc, $authz)) {
             $this->_debug("S: OK");

--
Gitblit v1.9.1