我们如何知道 LDAPS 正在运行?
适用场景
- ONTAP 9
- LDAPS
问题解答
- 收集可筛选和调查 LDAP 服务器与 SVM 之间连接的数据包跟踪
- 通过 使用 TLS 协议筛选器并检查用于通信的 TCP 端口。
- 正常的 LDAPS 通信位于端口 636 上,应如以下示例所示:
Source Destination Protocol Src. Port Dest. Port Info
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Client Hello
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Server Hello, Certificate, Server Key Exchange, Certificate Request, Server Hello Done
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Certificate, Client Key Exchange, Change Cipher Spec, Encrypted Handshake Message
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Change Cipher Spec, Encrypted Handshake Message
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Application Data
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Application Data
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Application Data
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Application Data
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Application Data
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Application Data
192.168.90.132 192.168.90.55 TLSv1.2 19322 636 Application Data
192.168.90.55 192.168.90.132 TLSv1.2 636 19322 Application Data