Bug#578345: [Lwat] Bug#578345: lwat in Squeeze: Fail to create user with ldap error34 "Invalid DN syntax"

2010-05-26 Thread Finn-Arne Johansen
On 04/19/2010 07:48 AM, Petter Reinholdtsen wrote: > > Package: lwat > Version: 0.18~beta-3 > Severity: grave > User: debian-...@lists.debian.org > Usertag: debian-edu > > When testing lwat in a Squeeze based Debian Edu install of > main-server+thin-client-server (using PXE), it is impossi

Bug#426630: lwat: Bug fixed in cvs

2007-06-22 Thread Finn-Arne Johansen
Package: lwat Followup-For: Bug #426630 The bug was caused by a typo in postinst, causing lwat to not set up an admin.ini if the admin/user scheme was selected during installation. This is now fixed in cvs, and will be included in 0.15-x if not before // faj -- System Information: Debian Rele

Bug#426630: lwat: postinst fails to install admin.ini

2007-05-29 Thread Finn-Arne Johansen
Package: lwat Version: 0.14-3 Severity: grave Justification: renders package unusable When installed lwat from unstable/testing, I get no /etc/lwat/admin.ini This makes it impossible to add new users, which is a core function for lwat. -- System Information: Debian Release: 4.0 APT prefers

Bug#402010: gosa leaves the ldap admin password readable by any web application

2006-12-07 Thread Finn-Arne Johansen
Cajus Pollmeier skrev: > Am Donnerstag 07 Dezember 2006 14:37 schrieb Finn-Arne Johansen: >> Package: gosa >> Version: 2.5.6-2 >> Severity: critical >> Tags: security >> Justification: root security hole >> >> >> The documentation in gosa tell

Bug#402010: gosa leaves the ldap admin password readable by any web application

2006-12-07 Thread Finn-Arne Johansen
Package: gosa Version: 2.5.6-2 Severity: critical Tags: security Justification: root security hole The documentation in gosa tells the admin to install gosa.conf under /etc/gosa/gosa.conf, and to make it readable by the group www-data. In this configuration file, the ldap admin password is stored

Bug#386519: [Pkg-sql-ledger-discussion] Re: Bug#386519: sql-ledger: Security vulnerability CVE-2006-4244

2006-09-12 Thread Finn-Arne Johansen
Raphael Hertzog skrev: > On Tue, 12 Sep 2006, Finn-Arne Johansen wrote: >> Dieter Simader skrev: >>> The sessionid is still there but not used anymore. >>> >>> If you need more info let me know. >> OK, as said - I've tested that the new package i

Bug#386519: [Pkg-sql-ledger-discussion] Re: Bug#386519: sql-ledger: Security vulnerability CVE-2006-4244

2006-09-12 Thread Finn-Arne Johansen
now, I doubt that I can make the time to verify anything else than that the upgrade went ok. If Raphael understands the patch, I suggest it's uploaded to the security mirror, and that a DSA is released. -- Finn-Arne Johansen [EMAIL PROTECTED] http://bzz.no/ Debian-edu develop

Bug#386519: [Pkg-sql-ledger-discussion] Re: Bug#386519: sql-ledger: Security vulnerability CVE-2006-4244

2006-09-11 Thread Finn-Arne Johansen
the user-name i used to log in with. > I'd like other people from [EMAIL PROTECTED] to help out > with the testing. Can people confirm that the updated package works fine? It works, but I fail to see how it fixes the bug. -- Finn-Arne Johansen [EMAIL PROTECTED] http://bzz.no/ EE2A71C6403A3D191FCDC043006F1215062E6642 062E6642 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#354093: still a problem with version 249

2006-02-28 Thread Finn-Arne Johansen
Tested with libnss-ldap 249, and it looks like it's still a problem. I've not tested with the patch from cajus -- Finn-Arne Johansen [EMAIL PROTECTED] http://bzz.no/ Debian-edu developer and Solution provider EE2A71C6403A3D191FCDC043006F1215062E6642 062E6642 -- To UNSUBSCRIBE

Bug#323580: looks like this is fixed in newer version

2006-02-28 Thread Finn-Arne Johansen
27;ll leave them there for a month or so ... There is also some debug info at http://bugs.skolelinux.no/show_bug.cgi?id=1069 -- Finn-Arne Johansen [EMAIL PROTECTED] http://bzz.no/ Debian-edu developer and Solution provider EE2A71C6403A3D191FCDC043006F1215062E6642 062E6642 -- To UNSUBSCRIBE,

Bug#311188: debian-edu-config: Messes "programmatically" with conffiles of other packages

2005-05-31 Thread Finn-Arne Johansen
Jonas Smedegaard wrote: > On 31-05-2005 14:53, Steve Langasek wrote: > >>>On Tue, May 31, 2005 at 08:00:24AM +0200, Finn-Arne Johansen wrote: >>> >>>>>>I agree that debian-edu is a special case, but don't see your point in >>>>>>th

Bug#311188: Possible compromise...

2005-05-30 Thread Finn-Arne Johansen
installed. Until every package is preconfigurable, I think this is something we need, yes. -- Finn-Arne Johansen [EMAIL PROTECTED] http://bzz.no/ Debian-edu developer -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#311188: debian-edu-config: Messes "programmatically" with conffiles of other packages

2005-05-30 Thread Finn-Arne Johansen
ly to be useful in the Skolelinux Debian-derived >>distribution. It is a goal of debian-edu to be able to create Skolelinux >>solely from officially released Debian packages but that goal is not yet >>reached so a few more packages having to be added unofficially shouldn't >

Bug#307319: webmin-ldap-user-simple: unable to add new users, admin password shows up in error-log

2005-05-02 Thread Finn-Arne Johansen
Package: webmin-ldap-user-simple Version: 1.4-3 Severity: critical Justification: root security hole This is a sarge-based debian-edu main-server, installed of the image from 2005-04-22, upgraded with the latest packages from sarge. when I try to add a user, I get an error message like this: ERR