Your message dated Sun, 27 Nov 2016 21:47:47 +0000 with message-id <[email protected]> and subject line Bug#814881: fixed in nss-pam-ldapd 0.9.4-3+deb8u2 has caused the Debian Bug report #814881, regarding nslcd is stopped after service restart to be marked as done.
This means that you claim that the problem has been dealt with. If this is not the case it is now your responsibility to reopen the Bug report if necessary, and/or fix the problem forthwith. (NB: If you are a system administrator and have no idea what this message is talking about, this may indicate a serious mail system misconfiguration somewhere. Please contact [email protected] immediately.) -- 814881: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=814881 Debian Bug Tracking System Contact [email protected] with problems
--- Begin Message ---Package: nslcd Version: 0.9.4-3 Severity: important After installing some unrelated program using apt-get, it was discovered that nslcd needs a restart und I was promted to restart it (among other services). A while after, all LDAP users failed to login or get their mail delivered. It was then discovered that nslcd was not running anymore. Starting it (again) resolved the issue. This also happend a while ago in the same way, so I guess it is due to the restart happening, altough I cannot reproduce when manually restarting the service. The logs when the error occured read: Feb 15 12:12:01 gate nslcd[26487]: caught signal SIGTERM (15), shutting down Feb 15 12:12:01 gate nslcd[21177]: Stopping LDAP connection daemon: nslcd. Feb 15 12:12:01 gate nslcd[21302]: version 0.9.4 starting Feb 15 12:12:04 gate nslcd[26487]: thread 2 is still running, shutting down anyway Feb 15 12:12:04 gate nslcd[26487]: version 0.9.4 bailing out Feb 15 12:12:06 gate nslcd[21302]: accepting connections Feb 15 12:12:06 gate nslcd[21231]: Starting LDAP connection daemon: nslcd. and nothing until when try to recover some hours later: Feb 15 16:56:23 gate nslcd[20861]: Stopping LDAP connection daemon: nslcdNo nslcd found running; none killed. Feb 15 16:56:23 gate nslcd[20861]: . Feb 15 16:56:23 gate nslcd[20878]: version 0.9.4 starting Feb 15 16:56:23 gate nslcd[20878]: accepting connections Feb 15 16:56:23 gate nslcd[20870]: Starting LDAP connection daemon: nslcd. Feb 15 16:56:33 gate nslcd[20878]: [8b4567] <passwd="someusername"> (re)loading /etc/nsswitch.conf Feb 15 16:58:13 gate nslcd[20878]: [0bd78f] <passwd="*"> request denied by validnames option Other procs start to complain immediately: /var/log/auth.log:Feb 15 12:13:16 gate su[10107]: pam_ldap(su:session): error opening connection to nslcd: Datei oder Verzeichnis nicht gefunden /var/log/auth.log:Feb 15 12:14:18 gate sshd[16245]: pam_ldap(sshd:session): error opening connection to nslcd: No such file or directory /var/log/auth.log:Feb 15 12:14:21 gate auth: pam_ldap(dovecot:auth): error opening connection to nslcd: No such file or directory And recovered once nslcd was restartet. When manually restarting: Feb 16 10:02:25 gate nslcd[20878]: caught signal SIGTERM (15), shutting down Feb 16 10:02:25 gate nslcd[16661]: Stopping LDAP connection daemon: nslcd. Feb 16 10:02:25 gate nslcd[20878]: version 0.9.4 bailing out Feb 16 10:02:25 gate nslcd[16678]: version 0.9.4 starting Feb 16 10:02:25 gate nslcd[16678]: accepting connections Feb 16 10:02:25 gate nslcd[16670]: Starting LDAP connection daemon: nslcd. Feb 16 10:03:55 gate nslcd[16678]: [1b58ba] <passwd="*"> request denied by validnames option -- System Information: Debian Release: 8.3 APT prefers stable APT policy: (700, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 3.16.0-4-amd64 (SMP w/2 CPU cores) Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/dash Init: systemd (via /run/systemd/system) Versions of packages nslcd depends on: ii adduser 3.113+nmu3 ii debconf [debconf-2.0] 1.5.56 ii libc6 2.19-18+deb8u2 ii libgssapi-krb5-2 1.12.1+dfsg-19+deb8u2 ii libldap-2.4-2 2.4.40+dfsg-1+deb8u2 Versions of packages nslcd recommends: ii bind9-host [host] 1:9.9.5.dfsg-9+deb8u5 ii ldap-utils 2.4.40+dfsg-1+deb8u2 ii libnss-ldapd [libnss-ldap] 0.9.4-3 ii libpam-ldapd [libpam-ldap] 0.9.4-3 ii nscd 2.19-18+deb8u2 ii nslcd-utils 0.9.4-3 Versions of packages nslcd suggests: pn kstart <none> -- debconf information: nslcd/restart-failed: nslcd/ldap-sasl-mech: nslcd/xdm-needs-restart: * nslcd/ldap-base: <my private dc> nslcd/ldap-reqcert: nslcd/ldap-cacertfile: /etc/ssl/certs/ca-certificates.crt nslcd/ldap-sasl-realm: nslcd/ldap-sasl-krb5-ccname: /var/run/nslcd/nslcd.tkt nslcd/disable-screensaver: nslcd/ldap-sasl-secprops: * nslcd/ldap-uris: ldap://127.0.0.1/ nslcd/restart-services: * libraries/restart-without-asking: true nslcd/ldap-sasl-authcid: nslcd/ldap-auth-type: simple nslcd/ldap-starttls: false nslcd/ldap-binddn: uid=proxyuser,<my private dc> nslcd/ldap-sasl-authzid:
--- End Message ---
--- Begin Message ---Source: nss-pam-ldapd Source-Version: 0.9.4-3+deb8u2 We believe that the bug you reported is fixed in the latest version of nss-pam-ldapd, which is due to be installed in the Debian FTP archive. A summary of the changes between this version and the previous one is attached. Thank you for reporting the bug, which will now be closed. If you have further comments please address them to [email protected], and the maintainer will reopen the bug report if appropriate. Debian distribution maintenance software pp. Salvatore Bonaccorso <[email protected]> (supplier of updated nss-pam-ldapd package) (This message was generated automatically at their request; if you believe that there is a problem with it please contact the archive administrators by mailing [email protected]) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 09 Nov 2016 13:48:14 +0100 Source: nss-pam-ldapd Binary: nslcd pynslcd libnss-ldapd libpam-ldapd nslcd-utils Architecture: all source Version: 0.9.4-3+deb8u2 Distribution: jessie Urgency: medium Maintainer: Arthur de Jong <[email protected]> Changed-By: Salvatore Bonaccorso <[email protected]> Closes: 814881 Description: libnss-ldapd - NSS module for using LDAP as a naming service libpam-ldapd - PAM module for using LDAP as an authentication service nslcd - daemon for NSS and PAM lookups using LDAP nslcd-utils - utilities for querying LDAP via nslcd pynslcd - daemon for NSS and PAM lookups via LDAP - Python version Changes: nss-pam-ldapd (0.9.4-3+deb8u2) jessie; urgency=medium . * Non-maintainer upload. * have init script stop action only return when nslcd has actually stopped (Closes: #814881) Checksums-Sha1: 8bb017b7b3033ccd96da12299044bdc89e58290d 2525 nss-pam-ldapd_0.9.4-3+deb8u2.dsc 3e99cc5e49c30a00c53164da00e5aee42d6b8488 135072 nss-pam-ldapd_0.9.4-3+deb8u2.debian.tar.xz b8004aaebba7e1bb3176a54cc5ca1ac3657abcb4 180286 pynslcd_0.9.4-3+deb8u2_all.deb 1e4c79a23bd64e42f38efe5228eac7f5ef4dc678 57606 nslcd-utils_0.9.4-3+deb8u2_all.deb Checksums-Sha256: c1ef1812a2cc52aa58e4c05883c71faa9d49d28e560194404415ae8084950921 2525 nss-pam-ldapd_0.9.4-3+deb8u2.dsc 0a88be818ce45deb95e3af48cf6d5cd1a2f07c07d54154d98a7e390769921144 135072 nss-pam-ldapd_0.9.4-3+deb8u2.debian.tar.xz 5269cd4cd92f4f67f44bc6db2ae9af7d2609c1f3863fcf908705e0e43647bb7d 180286 pynslcd_0.9.4-3+deb8u2_all.deb 7c54936064f4aa16359c676099a1992adeb6d1097c2057b57c9679d0f4b6028e 57606 nslcd-utils_0.9.4-3+deb8u2_all.deb Files: 591e16fdf7faabc3504a55bbbf31ac78 2525 admin extra nss-pam-ldapd_0.9.4-3+deb8u2.dsc 20fd4d6413031ea0a505102ff14e9d80 135072 admin extra nss-pam-ldapd_0.9.4-3+deb8u2.debian.tar.xz a011f9f267acd4370f9319466853e988 180286 admin extra pynslcd_0.9.4-3+deb8u2_all.deb 30a4a5a1ff4e6605900b927ac526031a 57606 admin extra nslcd-utils_0.9.4-3+deb8u2_all.deb -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAlg1mGtfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EGYoP/ib2Y0f3F8Fm/qbIgWXHWGY5/LVeCuaa WhCnkQ0GGUm6n02EdS74OCyUn3j/z8pxy91BCDrleFsrsjF2DQIUvyyoxqerfuEp vy9pm3gZN5Bvzj8ByqKNS5GpCXqeyNtSKygaAiZbtbMoExbLb12jnFSl+kqi9j1O CZoYVOS1d64w1xUmpA+aommpL/hJNFLDLZCOHoeINsQSM9wSLRfUnb9DIEiX0sJi SMFm28T+uUNVPadObTTpLXjb9ht+tSXu0HRGlxUtOtixFlbZut1IHuLY3KcCU67y EBL5CFvn3PQzirXXGWdxx9UwzyOs7bUDVBlXgTQQVh6sX+ZsPPCINmP1Y1gQDkFE jO/MXWVCZFl6047O0DGpawQgWHvebWmj4bCisyaMixq+v2x3xtZQkxZvYc7bVsh+ vsXETP2bSkj//WiaKO5dcrQzrXegj8JFCEKKjwc4Z1vvOfzizppzVoa5apACwPgh zp/LmZSzdisVoV7hKwm1UqYNH8tZ8bAJfuRrbu9RyhjzdL7tfVUJr7z4OCyCfJyL omzQdMKMhvEPOxlkzTK201ase2NWYqooDSP7AxsO5xczxZUvnAy4aECbaBbcKJhc riL9tGgrDIl06R8pdtMqoMWH5XMShf4cOG6fgfmM9kcDjoxXE7RGVo69vyWA3eV4 FzI0W4JYJyoY =KtGh -----END PGP SIGNATURE-----
--- End Message ---

