Bug#612049: Authentication with ntlm_auth or winbind running on a DC fails with NT_STATUS_INVALID_HANDLE

2011-02-05 Thread Predrag Gavrilovic
Package: winbind
Version: 2:3.5.6
Severity: normal

Using ntlm_auth on samba DC (as a part of freeradius mschap authentication) or 
testing wbinfo -a authentication against winbind fails with 
NT_STATUS_INVALID_HANDLE
Bug is alreadu reported upstream (#7481), and patch is suggested.
I have tested patch on lenny with samba and winbind from backports and it 
resolves the issue.
Problem actually appeared after upgrade from samba 3.4.8.
It would be nice to include suggested patch or at least some information about 
the bug for people trying to set freeradius EAP or Squid ntlm authentication.

-- System Information:
Debian Release: 6.0
  APT prefers testing-proposed-updates
  APT policy: (500, 'testing-proposed-updates'), (500, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-5-amd64 (SMP w/1 CPU core)
Locale: LANG=sr_RS.utf8, LC_CTYPE=sr_RS.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#443073: smbk5pwd not working with heimdal in lenny

2008-09-27 Thread Predrag Gavrilovic
Problems my not be related to the way package is built.

I have actually manage to compile smbk5pwd in lenny using instructions
posted here (manually edited Makefile, haven't build package)  but
smbk5pwd that ships with lenny doesn't work with heimdal that ships
with lenny. Look at
http://news.gmane.org/find-root.php?message_id=%3c483AD6E8.1020902%40inria.fr%3e
(thread smbk5pwd crash for missing symbol on
network.openldap.general).

Guillaume Rousse on that thread posted a patch to smbk5pwd.c, and Love
Hörnquist Åstrand made correction to that patch. Using those I have
built smbk5pwd that actually works in lenny (well, for two day now,
maybe needs more testing) without crushing slapd. I haven't seen those
patches upstream in openldap, as a matter of facts ITS#5535 is still
open on openldap issue tracking.
If smbk5pwd is to be built as a package in lenny this or some other
patch should be included.


Bug#484252: newpki-client unable to logon

2008-06-03 Thread Predrag Gavrilovic
Package: newpki-client
Version: 2.0.0+rc1-3

I am experiencing problems using newpki-client in lenny in two similar cases

First case:
Starting newpki-client from console gives:

(newpki-client:4033): Pango-WARNING **: Invalid UTF-8 string passed to
pango_layout_set_text()

This is not the problem but I don't know if it is relevant. Then
newpki-client starts normally.

When trying to logon using pkcs12 for pki entity admin user,
newpki-client in lenny against newpki-server on etch, newpki-client
fails to logon with message:

system library #21
Is a directory
[bss_file.c:198]

BIO routines #2
system lib
[bss_file.c:199]

asn1 encoding routines #142
not enough data
[a_d2i_fp.c:180]

Error sent by internal crypto:  #3026
Giving up on previous error(s)
[PKI_PKCS12.cpp:176]


pkcs12 is created on debian etch and still works on different
workrstation using debian etch.
Same message is displayed even if I deliberately type wrong password
or wrong hostname for newpki-server. Seems like there is problem
parsing pkcs12 package.

Second case:
Both newpki-client and newpki-server installed on separate lenny
machines (newpki-client on amd64 if that matters)
Starting newpki-client gives same pango errors.
I am able to logon as root to newpki-server. Creating PKI entity is
problematic.
If I fill:
entity name : firstitem
Organization: seconditem
Organization unit: thirditem
and so on, PKI entity is created with name f (that is truncated to
first letter of the name that is filled in) O=s (again truncated),
OU=t (truncated to the first letter).
I can download admin's pkcs12 but it is still unusable, like in the
first case that I have mentioned. Gives the same error.

Best regards,
Predrag Gavrilovic



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#483210: tasksel error

2008-05-27 Thread Predrag Gavrilovic
Package: tasksel
Version 2.74

Using tasksel on already installed system (Debian testing AMD64,
installed 24.5.2008. using daily built buissines card iso, installed
desktop system, installation went OK) gives following error:

my variable @deps masks earlier declaration in same scope at
/usr/bin/tasksel line 535.

then tasksel apparently starts, but leaving it or selecting manual
package selection, tasksel exits with:

Use of uninitialized value in string eq at /usr/bin/tasksel line 529.
Use of uninitialized value in string eq at /usr/bin/tasksel line 529.

... and so on 114 times.

To make it clear there were no problems during installation. Both
tasksel and tasksel-data were upgraded on 26.5.2008. from 2.73 to
2.74, so this version was not used during installation.


Best regards,
Predrag Gavrilovic



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]