On Sun, May 24, 2009 at 02:22:22PM -0300, Rodrigo Campos wrote: > On Sun, May 24, 2009 at 11:45:31AM +0200, Arthur de Jong wrote: > > On Fri, 2009-05-22 at 13:15 -0300, Rodrigo Campos wrote: > > > Hi, I've just upgraded from libnss-ldapd 0.6.7.1 (the version in > > > lenny) and it stopped working. I have also tried 0.6.8 and it fails > > > too. If I downgraded to the version in lenny, it works again. > > > > > > After digging for a while, I tried adding "tls_reqcert no" > > > in /etc/nss-ldapd.conf and it started working OK :) (i.e. "id > > > <username>" works and everything else seems to work too). > > > > > > If some default have changed, I was wondering if it is possible to > > > handle it in a more smooth way. > > > > The problem was that earlier versions of nss-ldapd, the OpenLDAP library > > also parsed /etc/ldap.conf, ~/.ldaprc and used some environment > > variables. Since this could result in weird interaction between options > > this was disabled. Now all options should be in /etc/nss-ldapd.conf. > > What is weird is that I have all options commented in /etc/ldap.conf and I > have
I meant /etc/ldap/ldap.conf (I dont have a /etc/ldap.conf file) And now that I check, I do have "tls_checkpeer no" in /etc/pam_ldap.conf, perhaps that file was parsed too ? Thanks a lot, Rodrigo -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected]

