2.2.1 LDAP Digest Authentication

An LDAP client implementing extension bundle B, C or D will either use simple authentication in an LDAP Bind request, or will request the DIGEST-MD5 SASL security mechanism in an LDAP Bind request, depending on the configuration of the LDAP client.

The usage of digest authentication with LDAP and the SASL mechanism "DIGEST-MD5" are documented in [RFC2829] section 6.1, and in [RFC2831].

A directory server implementing extension bundle B, C or D MAY implement SASL and the SASL mechanism "DIGEST-MD5".