Re: (ITS#7240) [PATCH] MozNSS: skip hostname check if peer certificate was not requested

2012-04-18 Thread hyc
jvce...@redhat.com wrote: Full_Name: Jan Vcelak Version: git master OS: Linux URL: ftp://ftp.openldap.org/incoming/jvcelak-120412-moznss-hostname-check.patch Submission from: (NULL) (209.132.186.34) Hello. With Mozilla NSS crypto backend, the 'tls_checkpeer no' option in 'sudo' tool

Re: (ITS#7240) [PATCH] MozNSS: skip hostname check if peer certificate was not requested

2012-04-18 Thread jvcelak
Sounds like a simple sequencing bug then. Just initialize the global options before the first ldap_initialize() call. Sudo parses the options in config file and stores them in a table: http://www.sudo.ws/repos/sudo/file/6fa11e8448b9/plugins/sudoers/ldap.c#l225 This table is then iterated and

Re: (ITS#7240) [PATCH] MozNSS: skip hostname check if peer certificate was not requested

2012-04-18 Thread hyc
Jan Vcelak wrote: Sounds like a simple sequencing bug then. Just initialize the global options before the first ldap_initialize() call. Sudo parses the options in config file and stores them in a table: http://www.sudo.ws/repos/sudo/file/6fa11e8448b9/plugins/sudoers/ldap.c#l225 This table

(ITS#7249) slapd segfault with memberof overlay on frontend db

2012-04-18 Thread jvcelak
Full_Name: Jan Vcelak Version: master OS: Linux URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (209.132.186.34) Enabling memberof overlay on frontend database causes slapd to SEGFAULT due to stack overflow when renaming an entry. Slapd should not segfault even if the

(ITS#7250) Issue with search filter escape sequanced

2012-04-18 Thread malleswari . nandi
Full_Name: Malleswari Nandireddy Version: 2.4.23 OS: Linux URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (206.126.170.20) In our code we are using ldap_add_ext_s and ldap_search_ext_s , to add an entry to LDAP and to search and entry in the LDAP. If the enter added is

Re: (ITS#7250) Issue with search filter escape sequanced

2012-04-18 Thread masarati
On 04/18/2012 02:47 PM, malleswari.na...@gmail.com wrote: Full_Name: Malleswari Nandireddy Version: 2.4.23 OS: Linux URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (206.126.170.20) In our code we are using ldap_add_ext_s and ldap_search_ext_s , to add an entry to LDAP and

ITS#7239: testbed

2012-04-18 Thread michael
This is a multi-part message in MIME format. --000704030300080804030201 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 8bit See openldap-testbed-its7239.tar.bz2 attached. You have to adjust paths in the config of course. ldapadd -H ldap://localhost:2071 \

Re: ITS#7239: testbed

2012-04-18 Thread masarati
The attachment is unreadable; can you ftp it somewhere? Thanks, p.

Re: ITS#7239: testbed

2012-04-18 Thread michael
This is a cryptographically signed message in MIME format. --ms020801020604080509050502 Content-Type: text/plain; charset=ISO-8859-15 Content-Transfer-Encoding: quoted-printable masar...@aero.polimi.it wrote: =20 The attachment is unreadable; can you ftp it somewhere? Thanks, p.

Re: ITS#7239: testbed

2012-04-18 Thread masarati
This is a cryptographically signed message in MIME format. --ms020801020604080509050502 Content-Type: text/plain; charset=ISO-8859-15 Content-Transfer-Encoding: quoted-printable masar...@aero.polimi.it wrote: =20 The attachment is unreadable; can you ftp it somewhere? Thanks,

Re: ITS#7239: testbed

2012-04-18 Thread hyc
masar...@aero.polimi.it wrote: This is a cryptographically signed message in MIME format. --ms020801020604080509050502 Content-Type: text/plain; charset=ISO-8859-15 Content-Transfer-Encoding: quoted-printable masar...@aero.polimi.it wrote: =20 The attachment is unreadable; can