Package: cyrus-imapd-2.2
Version: 2.2.13-10
Severity: normal

Please add a build dependency on heimdal-dev. This fixes the problem.

I am trying to use Kerberos 5 with admin principals. This means, for
example, that the user "foo/admin" should be able to authenticate to get
admin access.

This does not work unless I rebuild the source package with heimdal-dev
installed. Thus, I believe that adding a build dependency on heimdal-dev
would fix the problem.

Without heimdal-dev or libkrb5-dev installed, running "debian/rules
configure-stamp" gives me:
        checking gssapi.h usability... no
        checking gssapi.h presence... no
        checking for gssapi.h... no
        checking gssapi/gssapi.h usability... no
        checking gssapi/gssapi.h presence... no
        checking for gssapi/gssapi.h... no
        configure: WARNING: Disabling GSSAPI - no include files found
        checking GSSAPI... disabled

With heimdal-dev installed, running "debian/rules configure-stamp" gives
me:
        checking gssapi.h usability... yes
        checking gssapi.h presence... yes
        checking for gssapi.h... yes
        checking for res_search in -lresolv... (cached) yes
        checking for gss_unwrap in -lgssapi... yes
        checking GSSAPI... with implementation heimdal

With libkrb5-dev installed, running "debian/rules configure-stamp" gives
me:
        checking gssapi.h usability... no
        checking gssapi.h presence... no
        checking for gssapi.h... no
        checking gssapi/gssapi.h usability... yes
        checking gssapi/gssapi.h presence... yes
        checking for gssapi/gssapi.h... yes
        checking for res_search in -lresolv... (cached) yes
        checking for gss_unwrap in -lgssapi... no
        checking for krb5int_getspecific in -lkrb5support... yes
        checking for gss_unwrap in -lgssapi_krb5... yes
        checking GSSAPI... with implementation mit
...however, with libkrb5-dev:
# grep HAVE_GSSAPI_H config.h
/* #undef HAVE_GSSAPI_H */

It seems that there is a regression somewhere that broke the build with
MIT Kerberos. Heimdal Kerberos still works. This seems related:
  http://www.irbs.net/internet/info-cyrus/0610/0321.html

In any case, there is currently no build dependency on any Kerberos
library. Adding one is the only change needed to the package to fix
this. Once done, I can add "auth_mech: krb5" to /etc/imapd.conf and it
works.

Thanks,
Robie

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-4-686
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8)

Versions of packages cyrus-imapd-2.2 depends on:
ii  cyrus-common-2.2          2.2.13-10      Cyrus mail system (common files)
ii  libc6                     2.3.6.ds1-13   GNU C Library: Shared libraries
ii  libdb4.2                  4.2.52+dfsg-2  Berkeley v4.2 Database Libraries [
ii  libsasl2-2                2.1.22.dfsg1-8 Authentication abstraction library
ii  libssl0.9.8               0.9.8c-4       SSL shared libraries
ii  libwrap0                  7.6.dbs-13     Wietse Venema's TCP wrappers libra

cyrus-imapd-2.2 recommends no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to