Sometime ago, Hallvard B Furuseth wrote:
> Iain Morgan writes:
> > While I can successfully bind to the server using the client cert, the
> > client immediately attempts to rebind using simple authentication:
>
> Note that sending a client cert with TLS is not an LDAP Bind. It does
> sends credentials which can be _used_ in an LDAP Bind (SASL/EXTERNAL).
>
> --
> Hallvard
>
Thanks to both you and Howard Chu for pointing out my misunderstanding
and pointing me in the direction of SASL/EXTERNAL.
Cheers
--
Iain Morgan