08.04.2016, 20:41, Timo Aaltonen kirjoitti: > 03.04.2016, 12:32, Timo Aaltonen kirjoitti: >> 20.05.2015, 20:43, Ryan Tandy kirjoitti: >>> Hi dkg, >>> >>> On Wed, May 20, 2015 at 12:58:08PM -0400, Daniel Kahn Gillmor wrote: >>>> If the work to switch openldap to NSS is strictly because of licensing >>>> concerns that have been resolved since the bug was opened, please >>>> reconsider the switch. >>> >>> I don't think anyone intends to switch the default libldap or slapd to >>> nss. I personally would argue against causing that kind of upgrade pain. >>> There's still a possibility of providing an alternate libldap built with >>> nss, but that would take some work, and it sounds like freeipa upstream >>> are moving away from needing it anyway. So this bug will probably just >>> go away eventually. >> >> Another thing is that folks using just 389ds can't replicate it (LP: >> #1564179) because of the same reason.. so having a libldap built against >> nss would still be useful for some. > > It is done! Or at least available for review: > > http://anonscm.debian.org/cgit/users/tjaalton/openldap.git/commit/?h=nss2
In order to minimize the diff, ldap.conf could still be shipped by libldap-2.4-2, and -nss can just depend on that. Avoids having another single-file package in the archive. -- t

