Bug#974986: sasl2-bin: Include upstream PAM_RHOST patch

2022-02-26 Thread Bastian Germann

Control: tags -1 wontfix

The patch was not included in the latest release 2.1.28, so I am not including it in Debian's 
version. Please wait for a 2.2 release which will probably contain this.




Bug#974986: sasl2-bin: Include upstream PAM_RHOST patch

2020-11-17 Thread James Botting
Package: sasl2-bin
Version: 2.1.27+dfsg-1+deb10u1
Severity: normal
Tags: upstream

Dear Maintainer,

Upstream has pushed a patch that enables sending PAM_RHOST when authenticating 
against PAM.
This allows for correct host/ip logging for requests. Can this patch be ported 
to the debain release?

See the patch on the upstream here:
https://github.com/cyrusimap/cyrus-sasl/commit/c813bf1f8b8179807bc2d4cd99c4246df98c35dd

As current, no RHOST field is sent to PAM when authenticating, so no IP or Host 
is logged against the authentication request.

-- System Information:
Debian Release: 10.6
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.19.0-11-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_GB:en (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages sasl2-bin depends on:
ii  db-util5.3.1+nmu1
ii  debconf [debconf-2.0]  1.5.71
ii  init-system-helpers1.56+nmu1
ii  libc6  2.28-10
ii  libdb5.3   5.3.28+dfsg1-0.5
ii  libkrb5-3  1.17-3
ii  libldap-2.4-2  2.4.47+dfsg-3+deb10u3
ii  libpam0g   1.3.1-5
ii  libsasl2-2 2.1.27+dfsg-1+deb10u1
ii  libssl1.1  1.1.1d-0+deb10u3
ii  lsb-base   10.2019051400

sasl2-bin recommends no packages.

sasl2-bin suggests no packages.

-- Configuration Files:
/etc/default/saslauthd changed [not included]

-- debconf information excluded