Bug#586334: ldappasswd hangs while smbk5pwd enabled

2010-07-13 Thread Quanah Gibson-Mount
--On Tuesday, July 13, 2010 8:31 PM +0200 Matthijs Möhlmann 
matth...@cacholong.nl wrote:



-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Hi Quanah,

According to the following url:
http://lists.arthurdejong.org/openldap-technical/2010/06/msg00308.html

This seems to be fixed ?


Right, it was user error.

--Quanah


--

Quanah Gibson-Mount
Principal Software Engineer
Zimbra, Inc

Zimbra ::  the leader in open source messaging and collaboration



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#586334: ldappasswd hangs while smbk5pwd enabled

2010-07-13 Thread Matthijs Möhlmann
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Hi Quanah,

According to the following url:
http://lists.arthurdejong.org/openldap-technical/2010/06/msg00308.html

This seems to be fixed ?

Regards,

Matthijs Mohlmann
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.10 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAkw8sR0ACgkQ2n1ROIkXqbBUmgCfQvTBzSCgKm5yh4wVuj4u0Bee
vJUAn2nO1mm/Wqtu5LV1v8zW3aOx5PIT
=RJes
-END PGP SIGNATURE-



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#586334: ldappasswd hangs while smbk5pwd enabled

2010-06-18 Thread Frank Van Damme
Package: slapd-smbk5pwd
Version: 2.4.21-1

With this overlay enabled in the slapd configuration, ldappasswd hangs.
ldappasswd is supposed to update the password of a user using an ldap
extended operation (as opposed to an ldapmodify command). The overlay is
there to also update the krb5Key and krb5KeyVersionNumber for objects
that have the krb5KDCEntry object class and the sambaLMPassword,
sambaNTPassword, and sambaPwdLastSet attributes of the objects that have
the sambaSamAccount object class. Instead, what happens is: once the
user has started ldappasswd (eg
ldappasswd  -x -W -D 'cn=admin,dc=example,dc=com'
)
and has entered his correct current password, ldappasswd will give no
more output (except for ldap_initialize( DEFAULT ) if you use -v)
and the user has to interrupt by pressing ctrl-c.
If a wrong password is given, you're simply denied access and returned
to the cmdline.

This also happens under Stable, by downloading the sources and compiling
the overlay myself as per
http://student.physik.uni-mainz.de/~reiffert/smbk5pwd.html#smbk5pwd.

I also tried to compile myself the whole openldap source, both 2.4.11
and 2.4.21, the actual latest stable, on Lenny, with the same results.
Some of the things I tried:

* It doesn't seem to matter what compile time options are used. Tried
openssl instead of gnutls, makes no difference.
* It also doesn't seem to matter if the object really has (is?) the
right object classes.
* Disabling either of the samba of kerberoz passwords has no result.
* I also tried starting the database over from scratch and enabling the
overlay before even starting the slapd for the first time.

This is what happens in the slapd log (I marked where I push ctrl-c; the
log is from Debian Unstable):

Jun 18 14:56:32 debian slapd[1162]: daemon: activity on 1 descriptor
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on:
Jun 18 14:56:32 debian slapd[1162]:
Jun 18 14:56:32 debian slapd[1162]: slap_listener_activate(9):
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=8
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=9 busy
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=10
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]:  slap_listener(ldap:///)
Jun 18 14:56:32 debian slapd[1162]: daemon: listen=9, new connection on 17
Jun 18 14:56:32 debian slapd[1162]: daemon: added 17r (active)
listener=(nil)
Jun 18 14:56:32 debian slapd[1162]: conn=1001 fd=17 ACCEPT from
IP=[::1]:47463 (IP=[::]:389)
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on 1 descriptor
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on:
Jun 18 14:56:32 debian slapd[1162]:
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=8
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=9
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=10
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on 1 descriptor
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on:
Jun 18 14:56:32 debian slapd[1162]:  17r
Jun 18 14:56:32 debian slapd[1162]:
Jun 18 14:56:32 debian slapd[1162]: daemon: read active on 17
Jun 18 14:56:32 debian slapd[1162]: connection_get(17)
Jun 18 14:56:32 debian slapd[1162]: connection_get(17): got connid=1001
Jun 18 14:56:32 debian slapd[1162]: connection_read(17): checking for
input on id=1001
Jun 18 14:56:32 debian slapd[1162]: op tag 0x60, time 1276865792
Jun 18 14:56:32 debian slapd[1162]: conn=1001 op=0 do_bind
Jun 18 14:56:32 debian slapd[1162]:  dnPrettyNormal:
cn=admin,dc=vub,dc=ac,dc=be
Jun 18 14:56:32 debian slapd[1162]:  dnPrettyNormal:
cn=admin,dc=vub,dc=ac,dc=be, cn=admin,dc=vub,dc=ac,dc=be
Jun 18 14:56:32 debian slapd[1162]: conn=1001 op=0 BIND
dn=cn=admin,dc=vub,dc=ac,dc=be method=128
Jun 18 14:56:32 debian slapd[1162]: do_bind: version=3
dn=cn=admin,dc=vub,dc=ac,dc=be method=128
Jun 18 14:56:32 debian slapd[1162]: == hdb_bind: dn:
cn=admin,dc=vub,dc=ac,dc=be
Jun 18 14:56:32 debian slapd[1162]:
bdb_dn2entry(cn=admin,dc=vub,dc=ac,dc=be)
Jun 18 14:56:32 debian slapd[1162]: conn=1001 op=0 BIND
dn=cn=admin,dc=vub,dc=ac,dc=be mech=SIMPLE ssf=0
Jun 18 14:56:32 debian slapd[1162]: do_bind: v3 bind:
cn=admin,dc=vub,dc=ac,dc=be to cn=admin,dc=vub,dc=ac,dc=be
Jun 18 14:56:32 debian slapd[1162]: send_ldap_result: conn=1001 op=0 p=3
Jun 18 14:56:32 debian slapd[1162]: send_ldap_result: err=0 matched=
text=
Jun 18 14:56:32 debian slapd[1162]: send_ldap_response: msgid=1 tag=97 err=0
Jun 18 14:56:32 debian slapd[1162]: conn=1001 op=0 RESULT tag=97 err=0 text=
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=8
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=9
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: epoll: listen=10
active_threads=0 tvp=zero
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on 1 descriptor
Jun 18 14:56:32 debian slapd[1162]: daemon: activity on:
Jun 18 

Bug#586334: [Pkg-openldap-devel] Bug#586334: ldappasswd hangs while smbk5pwd enabled

2010-06-18 Thread Quanah Gibson-Mount
--On Friday, June 18, 2010 3:45 PM +0200 Frank Van Damme 
frank.vanda...@gmail.com wrote:



Package: slapd-smbk5pwd
Version: 2.4.21-1


Quite frankly, I'm beyond baffled as to why you would file this bug with 
Debian, and not the OpenLDAP project.  The Debian project does not maintain 
this code.  Particularly given all of the ongoing discussion on the 
OpenLDAP list about this issue already.




--Quanah

--

Quanah Gibson-Mount
Principal Software Engineer
Zimbra, Inc

Zimbra ::  the leader in open source messaging and collaboration



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#586334: [Pkg-openldap-devel] Bug#586334: ldappasswd hangs while smbk5pwd enabled

2010-06-18 Thread Quanah Gibson-Mount
--On Friday, June 18, 2010 7:59 AM -0700 Quanah Gibson-Mount 
qua...@zimbra.com wrote:



--On Friday, June 18, 2010 3:45 PM +0200 Frank Van Damme
frank.vanda...@gmail.com wrote:


Package: slapd-smbk5pwd
Version: 2.4.21-1


Quite frankly, I'm beyond baffled as to why you would file this bug with
Debian, and not the OpenLDAP project.  The Debian project does not
maintain this code.  Particularly given all of the ongoing discussion on
the OpenLDAP list about this issue already.


Never mind, I just saw your post to the OpenLDAP technical list.  So this 
only happens with the Debian build.


--Quanah


--

Quanah Gibson-Mount
Principal Software Engineer
Zimbra, Inc

Zimbra ::  the leader in open source messaging and collaboration



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org