[Enterprise-support] [Bug 571481] Re: when slapd upgrade fails, later upgrade attempts overwrite saved backups of pre-upgrade configuration files

2021-02-25 Thread Ryan Tandy
Fixed in 2.4.51+dfsg-1 i.e. groovy ** Changed in: openldap (Ubuntu) Assignee: Ryan Tandy (rtandy) => (unassigned) ** Changed in: openldap (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Suppor

Re: [Enterprise-support] [Question #691504]: LDAP channel binding unsupported until version 2.5.0 of libldap2

2020-06-24 Thread Ryan Tandy
Question #691504 on openldap in Ubuntu changed: https://answers.launchpad.net/ubuntu/+source/openldap/+question/691504 Ryan Tandy posted a new comment: On Wed, Jun 24, 2020 at 08:55:52PM -, Søren Grønning Iversen wrote: >But, I guess I'll see if I can manage getting it put together some

Re: [Enterprise-support] [Question #691504]: LDAP channel binding unsupported until version 2.5.0 of libldap2

2020-06-24 Thread Ryan Tandy
Question #691504 on openldap in Ubuntu changed: https://answers.launchpad.net/ubuntu/+source/openldap/+question/691504 Status: Open => Answered Ryan Tandy proposed the following answer: On Wed, Jun 24, 2020 at 11:06:08AM -, Søren Grønning Iversen wrote: >Have you tested the 2.5.0-

[Enterprise-support] [Bug 1875697] [NEW] drop fix-ldap-distribution.patch?

2020-04-28 Thread Ryan Tandy
Public bug reported: Hi, In version 2.4.49+dfsg-3 I fixed a bug where the version was missing from the -V output in OpenLDAP programs: . At the same time, I've patched it to display the package version there, instead of the upstream version: # slapd -VV @(#)

[Enterprise-support] [Bug 1866303] [NEW] slapd crash with pwdAccountLockedTime and stacked overlays

2020-03-05 Thread Ryan Tandy
Public bug reported: Hello, Please merge openldap 2.4.49+dfsg-2 from Debian unstable to fix an issue in the ppolicy overlay that can crash slapd. Please also consider SRUing the patch after it has had some testing time. Upstream: https://openldap.org/its/?findid=9171 Debian:

[Enterprise-support] [Bug 1864205] Re: _sasl_plugin_load failed on sasl_canonuser_init

2020-02-21 Thread Ryan Tandy
The messages are harmless as far as I know. If you don't want to see them, uninstall the libsasl2-modules-ldap package. (Since you evidently haven't configured it, I assume you aren't using it.) At any rate this is not a bug in the openldap package. ** Changed in: openldap (Ubuntu)

[Enterprise-support] [Bug 1838370] Re: slapd segfault on filter parse error

2019-08-07 Thread Ryan Tandy
This has already been fixed as of 2.4.48+dfsg-1ubuntu1. I'm not sure why the upload didn't automatically close the bug. ** Changed in: openldap (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team,

[Enterprise-support] [Bug 1838370] Re: slapd segfault on filter parse error

2019-07-30 Thread Ryan Tandy
Looks like this is fixed upstream already: https://openldap.org/its/?findid=8964 fixed in 2.4.48. Cherry-picking upstream commit d40b357f5da9a94d2f4f541c21bde02610d9cd3b fixes the crash for me. ** Also affects: openldap Importance: Undecided Status: New ** Changed in: openldap

[Enterprise-support] [Bug 1811630] [NEW] Please merge openldap 2.4.47+dfsg-2 (main) from Debian unstable (main)

2019-01-13 Thread Ryan Tandy
Public bug reported: Hello, I have prepared the merge of openldap 2.4.47+dfsg-2. This will probably be the version released in Debian buster unless any release critical bugs show up. I made changes in Debian to how the contrib modules are built. I made the same changes for nssov in this merge

[Enterprise-support] [Bug 1809938] Re: delta syncrepl generates reqMod Attribute 'colon' with emtpty value

2018-12-27 Thread Ryan Tandy
** Changed in: openldap (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching subscriptions: Ubuntu Server/Client Support Team

[Enterprise-support] [Bug 1702290] Re: slapd fails to stop if /etc/ldap/slapd.d/cn=config.ldif is deleted but /etc/ldap/slapd.d still exists

2017-08-29 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #873682 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=873682 ** Also affects: openldap (Debian) via https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=873682 Importance: Unknown Status: Unknown -- You received this bug notification

[Enterprise-support] [Bug 1688575] Re: Segmentation fault on a slave slapd (sync replication with kerberos authentication)

2017-08-11 Thread Ryan Tandy
** Changed in: openldap Status: Fix Committed => Fix Released ** Changed in: openldap (Ubuntu) Assignee: Ryan Tandy (rtandy) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in

[Enterprise-support] [Bug 1708341] Re: package libldap-2.4-2 2.4.42+dfsg-2ubuntu3.1 failed to install/upgrade: intentando sobreescribir el compartido `/etc/ldap/ldap.conf', que es distinto de otras in

2017-08-02 Thread Ryan Tandy
*** This bug is a duplicate of bug 1436558 *** https://bugs.launchpad.net/bugs/1436558 ** This bug has been marked a duplicate of bug 1436558 package libldap-2.4-2 2.4.31-1+nmu2ubuntu8 failed to install/upgrade: trying to overwrite shared '/etc/ldap/ldap.conf', which is different from

[Enterprise-support] [Bug 1704726] Re: Please merge openldap 2.4.44+dfsg-8 (main) from Debian unstable (main)

2017-07-26 Thread Ryan Tandy
Closing as Gianfranco Costamagna already merged it on his own. ** Changed in: openldap (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching

[Enterprise-support] [Bug 1704726] [NEW] Please merge openldap 2.4.44+dfsg-8 (main) from Debian unstable (main)

2017-07-17 Thread Ryan Tandy
: openldap (Ubuntu) Importance: Undecided Status: Confirmed ** Changed in: openldap (Ubuntu) Status: New => In Progress ** Changed in: openldap (Ubuntu) Assignee: (unassigned) => Ryan Tandy (rtandy) ** Summary changed: - Please merge openldap openldap_2.4.44+dfsg-8

[Enterprise-support] [Bug 1697397] Re: libldap-2.4.42+dfsg-2ubuntu3.2 crashes libreoffice

2017-06-13 Thread Ryan Tandy
I would be amazed if a libldap upgrade actually caused the error you've pasted here. It _should_ be completely unrelated - the symbol is a LibreOffice internal one you mentioned in a LibreOffice internal one. Could you please paste the relevant transactions from /var/log/apt/history.log (the

[Enterprise-support] [Bug 1688575] Re: Segmentation fault on a slave slapd (sync replication with kerberos authentication)

2017-05-07 Thread Ryan Tandy
** Also affects: openldap Importance: Undecided Status: New ** Changed in: openldap Status: New => Fix Committed -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching

[Enterprise-support] [Bug 1436558] Re: package libldap-2.4-2 2.4.31-1+nmu2ubuntu8 failed to install/upgrade: trying to overwrite shared '/etc/ldap/ldap.conf', which is different from other instances o

2017-03-22 Thread Ryan Tandy
This should be fixed in zesty now. openldap (2.4.44+dfsg-3ubuntu1) zesty; urgency=medium * Merge with Debian unstable (LP: #1663702, LP: #1654416). openldap (2.4.44+dfsg-1) unstable; urgency=medium * Fix policy 8.2 violation (Closes: #330695) + Move /etc/ldap/ldap.conf and manpage to

[Enterprise-support] [Bug 478827] Re: openldap database backend back_perl has undefined symbols (aka slapd-perl back-perl)

2016-11-21 Thread Ryan Tandy
*** This bug is a duplicate of bug 90812 *** https://bugs.launchpad.net/bugs/90812 ** This bug has been marked a duplicate of bug 90812 perl backend can't use dynamically loaded modules (DBI, POSIX...) -- You received this bug notification because you are a member of Ubuntu Server/Client

[Enterprise-support] [Bug 489597] Re: PMI Schema in slapd package can't be added to database

2016-11-21 Thread Ryan Tandy
Not sure exactly when it changed, but on xenial, the pmi schema seems to work fine. Tested: - adding the provided LDIF directly: ldapadd -H ldapi:// -Y EXTERNAL -f /etc/ldap/schema/pmi.ldif - including the schema in a slapd.conf file - converting pmi.schema to LDIF and adding that to slapd

[Enterprise-support] [Bug 1579566] Re: Automatic openldap db migration fails on release upgrade when using accesslog overlay

2016-05-09 Thread Ryan Tandy
*** This bug is a duplicate of bug 1003854 *** https://bugs.launchpad.net/bugs/1003854 Thanks for the report. This is most likely bug 1003854, triggered in this case by having /var/lib/ldap/accesslog nested inside /var/lib/ldap. ** Summary changed: - Automatic openldap db migration fails on

[Enterprise-support] [Bug 1559775] Re: package slapd 2.4.42+dfsg-2ubuntu3 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1

2016-03-20 Thread Ryan Tandy
from DpkgTerminalLog: Setting up slapd (2.4.42+dfsg-2ubuntu3) ... Backing up /etc/ldap/slapd.d in /var/backups/slapd-2.4.31-1+nmu2ubuntu8.2... done. Moving old database directories to /var/backups: Backup path /var/backups/dc=nodomain-2.4.31-1+nmu2ubuntu8.2.ldapdb exists. Giving up...

[Enterprise-support] [Bug 1550437] Re: [BUG] Unable to install: dependency problem

2016-02-26 Thread Ryan Tandy
> Investigating (0) slapd [i386] 2.4.40-4 ~ ~ ubuntu14.04.1 c42.ppa1> (net) This package (slapd 2.4.40-4~ubuntu14.04.1~c42.ppa1) is not part of Ubuntu. It comes from one of the PPAs you have installed: https://launchpad.net/~dirk-computer42/+archive/ubuntu/c42-backport This is either a problem

[Enterprise-support] [Bug 1532648] [NEW] Please merge openldap 2.4.42+dfsg-2 (main) from Debian testing (main)

2016-01-10 Thread Ryan Tandy
Public bug reported: Please merge openldap 2.4.42+dfsg-2 (main) from Debian testing (main) ** Affects: openldap (Ubuntu) Importance: Undecided Assignee: Ryan Tandy (rtandy) Status: In Progress ** Changed in: openldap (Ubuntu) Assignee: (unassigned) => Ryan Tandy (rta

[Enterprise-support] [Bug 112631] Re: slapd failed to install/upgrade: database (dc=xxx, dc=xxx, dc=xx) not configured to hold "dc=nodomain"

2015-12-26 Thread Ryan Tandy
** Summary changed: - [apport] package slapd failed to install/upgrade: + slapd failed to install/upgrade: database (dc=xxx,dc=xxx,dc=xx) not configured to hold "dc=nodomain" ** Bug watch added: Debian Bug tracker #546368 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=546368 ** Also

[Enterprise-support] [Bug 1108252] Re: package slapd 2.4.28-1.1ubuntu4.2 failed to install/upgrade: ErrorMessage: el subproceso instalado el script post-installation devolvió el código de salida de er

2015-12-26 Thread Ryan Tandy
*** This bug is a duplicate of bug 112631 *** https://bugs.launchpad.net/bugs/112631 ** This bug is no longer a duplicate of bug 1011227 package slapd 2.4.28-1.1ubuntu4 failed to install/upgrade: ErrorMessage: subprocess installed post-installation script returned error exit status 1 **

[Enterprise-support] [Bug 896737] Re: package slapd 2.4.21-0ubuntu5.6 failed to install/upgrade:

2015-12-26 Thread Ryan Tandy
*** This bug is a duplicate of bug 112631 *** https://bugs.launchpad.net/bugs/112631 Thanks dino99, but this one is still relevant and does need to be fixed. We should keep it open. ** Changed in: openldap (Ubuntu) Status: Invalid => Confirmed ** Bug watch added: Debian Bug tracker

[Enterprise-support] [Bug 571752] Re: slapd upgrades don't add frontend ACLs for base="" and cn=subschema

2015-12-26 Thread Ryan Tandy
Fixed in natty and later, looks like. openldap (2.4.23-5) unstable; urgency=high [...] * debian/slapd.scripts-common, debian/slapd.postinst: on upgrade from versions <= 2.4.23-4, explicitly grant access to cn=Subschema, which otherwise is blocked by our added olcAccess settings.

[Enterprise-support] [Bug 1495339] Re: package slapd 2.4.31-1+nmu2ubuntu12.2 failed to install/upgrade: el subproceso instalado el script post-installation devolvió el código de salida de error 1

2015-09-14 Thread Ryan Tandy
Thanks for the bug report. The dpkg log says: Configurando slapd (2.4.31-1+nmu2ubuntu12.2) ... Creating new user openldap... done. Creating initial configuration... done. Creating LDAP directory... done. insserv: warning: script 'K01centrify-kcm' missing LSB tags and overrides insserv:

[Enterprise-support] [Bug 1489071] Re: slapd expose server filestructure when issue lpadsearch with special query

2015-08-26 Thread Ryan Tandy
Please read https://help.ubuntu.com/community/ShellGlobbing to understand how your shell interprets the * character. ** Changed in: openldap (Ubuntu) Status: New = Invalid -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is

[Enterprise-support] [Bug 1479512] Re: package libldap-2.4-2:i386 2.4.31-1+nmu2ubuntu12.2 failed to install/upgrade: package libldap-2.4-2:i386 is already installed and configured

2015-07-29 Thread Ryan Tandy
Thanks for the report. I guess apt has gotten confused since you had to reboot in the middle of the upgrade. I don't know that there's anything I can do about it from openldap's end, though. ** Package changed: openldap (Ubuntu) = apt (Ubuntu) -- You received this bug notification because you

[Enterprise-support] [Bug 680358] Re: ldapadd -W with -w password parameter causes assertion failure

2015-06-25 Thread Ryan Tandy
This was reported upstream as ITS#6849, and fixed in OpenLDAP 2.4.25. ** Changed in: openldap (Ubuntu) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching

[Enterprise-support] [Bug 1033096] Re: request to have sha2 module in contrib included in package

2015-06-25 Thread Ryan Tandy
The slapd package in wily now provides the pw-sha2 module. ** Changed in: openldap (Ubuntu) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching

[Enterprise-support] [Bug 667597] Re: conf.d directory not a configuration directory

2015-06-25 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #626911 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=626911 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=626911 Importance: Unknown Status: Unknown -- You received this bug notification because

Re: [Enterprise-support] [Question #257240]: when will a more current version be available?

2015-05-26 Thread Ryan Tandy
Question #257240 on openldap in Ubuntu changed: https://answers.launchpad.net/ubuntu/+source/openldap/+question/257240 Linked to bug: #1395098 https://bugs.launchpad.net/bugs/1395098 Please merge openldap 2.4.40-4 (main) from Debian unstable (main) -- You received this question

[Enterprise-support] [Bug 833818] Re: default DIT suffix should be definable by user (debconf/preseed)

2015-05-25 Thread Ryan Tandy
Hello Peter, I don't have a natty chroot any more, but as far back as precise, preseeding slapd/domain does set the suffix of the default DIT, and there is a debconf prompt for it too, at medium priority. Marking the bug fixed, but please correct me if you meant something different. ** Changed

[Enterprise-support] [Bug 242313] Re: TLS_CACERTDIR not supported in gnutls

2015-05-25 Thread Ryan Tandy
It looks like very recent GnuTLS releases (= 3.3.6) may have finally added the API needed to make this possible: https://www.happyassassin.net/2015/01/12/a-note-about-ssltls-trusted- certificate-stores-and-platforms/ http://gnutls.org/manual/html_node/X509-certificate-API.html#index-

[Enterprise-support] [Bug 1446809] Re: denial of service via an LDAP search query with attrsOnly set to true (CVE-2012-1164)

2015-05-05 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #663644 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=663644 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=663644 Importance: Unknown Status: Unknown -- You received this bug notification because

[Enterprise-support] [Bug 1393306] [NEW] slapd: nssov does not work with lib{nss, pam}-ldapd 0.9.x

2014-11-16 Thread Ryan Tandy
on with it I'm happy to provide my WIP. ** Affects: openldap (Ubuntu) Importance: Undecided Assignee: Ryan Tandy (rtandy) Status: In Progress ** Tags: utopic vivid ** Changed in: openldap (Ubuntu) Assignee: (unassigned) = Ryan Tandy (rtandy) ** Changed in: openldap (Ubuntu

[Enterprise-support] [Bug 576957] Re: passwd crashed when the password is changed through pam_ldap

2014-10-26 Thread Ryan Tandy
Hi, Nikita Borzykh (sample-n) wrote on 2010-06-11: Workaround from debian libldap This change was included upstream in OpenLDAP 2.4.10, which entered Ubuntu in Intrepid. Therefore, setting to Fix Released. ** Changed in: openldap (Ubuntu) Status: Fix Committed = Fix Released -- You

[Enterprise-support] [Bug 368044] Re: slapd crash when using SQL backend

2014-10-26 Thread Ryan Tandy
Hi, This appears to be the same as ITS#6172 upstream, fixed in 2.4.18, so Karmic and later. Therefore, marking Fix Released. ** Changed in: openldap (Ubuntu) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support

[Enterprise-support] [Bug 1003854] Re: Database upgrade/migration fails with nested db directories (lucid to precise)

2014-10-22 Thread Ryan Tandy
Fixed in Debian in 2.4.40-1. ** Changed in: openldap (Debian) Status: Fix Committed = Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching subscriptions: Ubuntu Server/Client

[Enterprise-support] [Bug 1103353] Re: Invalid GnuTLS cipher suite strings causes libldap to crash

2014-09-02 Thread Ryan Tandy
** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=640384 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu. Matching

[Enterprise-support] [Bug 1033096] Re: request to have sha2 module in contrib included in package

2014-09-02 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #746727 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=746727 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=746727 Importance: Unknown Status: Unknown -- You received this bug notification because

[Enterprise-support] [Bug 676503] Re: slapd 2.4.21 memory leak in syncprov

2014-09-02 Thread Ryan Tandy
ITS#6459 is fixed in maverick (2.4.23) and later. Setting to Fix Released. ** Changed in: openldap (Ubuntu) Status: Confirmed = Fix Released -- You received this bug notification because you are a member of Ubuntu Server/Client Support Team, which is subscribed to openldap in Ubuntu.

[Enterprise-support] [Bug 571481] Re: when slapd upgrade fails, later upgrade attempts overwrite saved backups of pre-upgrade configuration files

2014-08-29 Thread Ryan Tandy
** Changed in: openldap (Ubuntu) Assignee: (unassigned) = Ryan Tandy (rtandy) ** Bug watch added: Debian Bug tracker #757550 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=757550 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=757550

[Enterprise-support] [Bug 1362481] Re: openldap upgrade fails. chwon of olcDbDirectory, /var/lib/ldap not empty and missing backup of suffix

2014-08-28 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #759596 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=759596 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=759596 Importance: Unknown Status: Unknown -- You received this bug notification because

Re: [Enterprise-support] [Bug 1348259] [NEW] Openldap config modify tls error

2014-07-24 Thread Ryan Tandy
On Thu, Jul 24, 2014 at 9:24 AM, Danny Hernandez danny.hernan...@onelogos.com wrote: ldap_modify: Other (e.g., implementation specific) error (80) additional info: Error: parse_syncrepl_line: unable to parse bindmethod=simplebinddn=cn=admin,dc=example,dc=com Typo? Needs a space

[Enterprise-support] [Bug 1347954] Re: build slapd-sha2 module for strong passwords

2014-07-23 Thread Ryan Tandy
** Bug watch added: Debian Bug tracker #746727 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=746727 ** Also affects: openldap (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=746727 Importance: Unknown Status: Unknown -- You received this bug notification because

[Enterprise-support] [Bug 1003854] Re: Database upgrade/migration fails with nested db directories (lucid to precise)

2014-05-04 Thread Ryan Tandy
Did anyone ever forward this to Debian? The patch seems reasonable to me. I don't know of any situation where bdb/hdb/mdb create subdirectories under /var/lib/ldap, only files. I've committed this to the pkg-openldap Git repository. Thanks for the patch! ** Also affects: openldap (Debian)