So, I'm thinking, if you have like 50 services connected to LDAP, with some being mission critical, and some being just quick hackathon projects that needed authentication, a bug (edit: a bug that leaks the password) in any of these services (no matter how unimportant) would compromise
everything.
How come I didn't find any literature about this issue? Is there some solution I don't know about? If not, why do people even use LDAP if it's so inherently insecure?
Maybe I am wrong, but can you not have multiple LDAP server in a hierarchical relationship?
So, for a hackathon, a child LDAP server would be used, but if compromised, would be limited to the administrative capacities of the role created for the hackathon LDAP admin/authentication roles?