33 lines
810 B
Plaintext
33 lines
810 B
Plaintext
![]() |
include::../description.adoc[]
|
||
|
|
||
|
== Noncompliant Code Example
|
||
|
|
||
|
----
|
||
|
import ldap
|
||
|
|
||
|
def init_ldap():
|
||
|
connect = ldap.initialize('ldap://example:1389')
|
||
|
|
||
|
connect.simple_bind('cn=root') # Noncompliant
|
||
|
connect.simple_bind_s('cn=root') # Noncompliant
|
||
|
connect.bind_s('cn=root', None) # Noncompliant
|
||
|
connect.bind('cn=root', None) # Noncompliant
|
||
|
----
|
||
|
|
||
|
== Compliant Solution
|
||
|
|
||
|
----
|
||
|
import ldap
|
||
|
import os
|
||
|
|
||
|
def init_ldap():
|
||
|
connect = ldap.initialize('ldap://example:1389')
|
||
|
|
||
|
connect.simple_bind('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
||
|
connect.simple_bind_s('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
||
|
connect.bind_s('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
||
|
connect.bind('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
||
|
----
|
||
|
|
||
|
include::../see.adoc[]
|