Hi Modestas, On Sat, Feb 12, 2005 at 12:57:31AM +0200, Modestas Vainius wrote: > I want to announce that I'm working on the GnuTLS patch for OpenLDAP 2.2. > It is based on the current patch for OpenLDAP 2.1 and on the > OpenSSL compatibility layer from the GnuTLS library.
You know that the OpenSSL compat layer has nearly identical issues to the OpenSSL lib itself? The old patch did not use it because of them. > Here are the goals I'm trying to achieve: > * Thread-safe error handling > * Minimize patches to the OpenLDAP code to bear minimum > * Compatibily with both OpenLDAP 2.1 and 2.2 (and probably future versions) > * Get rid of using obsolete/depreciated GnuTLS API > * Implement missing features in the 2.1 patch (such as SASL EXTERNAL > support) > > Currently, I'm at the testing/debugging stage. If everything goes > well, the initial version of the patch should be ready this > weekend/next week. Nice! But as I said the compat layer will pose a problem. And - I am working on a patch for current OpenLDAP CVS as well together with somebody from univention.de. I'd rather use something I can fix instead of using third party code again and trying to keep it alive later. Your help is of course very welcome, I'd like to join forces to get this up and running. I could move my current working tree to svn.debian.org or something if needed. I hope we can work out something reasonable and more stable than the last patch. Thanks! Torsten
signature.asc
Description: Digital signature