Thank you for taking the time to report this bug and helping to make
Ubuntu better.

It is certainly confusing that PAM uses /etc/ldap.conf whereas openldap
uses /etc/ldap/ldap.conf. But it isn't clear to me that these two files
are actually of the same format, or that it is guaranteed that one is a
superset of the other.

The pam_ldap(5) manpage says:

       pam_ldap stores its configuration in the ldap.conf file. (It should
       be  noted  that  some LDAP client libraries, such as OpenLDAP, also
       use a configuration file of the same name.  pam_ldap supports  many
       of  the  same  configuration  file options as OpenLDAP, but it adds
       several that are specific to the functionality it provides.  It  is
       not  guaranteed that pam_ldap will continue to match the configura‐
       tion file semantics of OpenLDAP.  You may  wish  to  use  different
       files.)

I think that doing something such as your symlink would have unintended
consequences, so I'm not sure that a fix for the general case is
trivial. And any change would best be coordinated with Debian.

** Package changed: openldap (Ubuntu) => libpam-ldap (Ubuntu)

** Changed in: libpam-ldap (Ubuntu)
   Importance: Undecided => Medium

** Changed in: libpam-ldap (Ubuntu)
       Status: New => Triaged

** Summary changed:

- /etc/ldap/ldap.conf missing
+ libpam-ldap should share openldap's configuration file

** Summary changed:

- libpam-ldap should share openldap's configuration file
+ libpam-ldap should share openldap's configuration mechanism

** Also affects: openldap (Ubuntu)
   Importance: Undecided
       Status: New

** Changed in: openldap (Ubuntu)
   Importance: Undecided => Medium

** Changed in: openldap (Ubuntu)
       Status: New => Triaged

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1078102

Title:
  libpam-ldap should share openldap's configuration mechanism

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libpam-ldap/+bug/1078102/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to