33 lines
810 B
Plaintext
33 lines
810 B
Plaintext
include::../description.adoc[]
|
|
|
|
== Noncompliant Code Example
|
|
|
|
----
|
|
import ldap
|
|
|
|
def init_ldap():
|
|
connect = ldap.initialize('ldap://example:1389')
|
|
|
|
connect.simple_bind('cn=root') # Noncompliant
|
|
connect.simple_bind_s('cn=root') # Noncompliant
|
|
connect.bind_s('cn=root', None) # Noncompliant
|
|
connect.bind('cn=root', None) # Noncompliant
|
|
----
|
|
|
|
== Compliant Solution
|
|
|
|
----
|
|
import ldap
|
|
import os
|
|
|
|
def init_ldap():
|
|
connect = ldap.initialize('ldap://example:1389')
|
|
|
|
connect.simple_bind('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
|
connect.simple_bind_s('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
|
connect.bind_s('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
|
connect.bind('cn=root', os.environ.get('LDAP_PASSWORD')) # Compliant
|
|
----
|
|
|
|
include::../see.adoc[]
|