Bug#608815: [Pkg-openldap-devel] Bug#608815: Proxy authorization fails with SASL-GSSAPI

2011-01-03 Thread Jaap Winius

Quoting Quanah Gibson-Mount :


Why are you filing bugs with Debian for issues in the OpenLDAP project?


Sorry, sorry! I did it simply because I'm familiar with the procedure  
here and because it's where I get the software. Also, when I stated my  
preference, Pierangelo did not seem to express an opinion regarding  
the issue, so I really didn't think it would make a difference.


Please understand that I'm not familiar with the relationship between  
the OpenLDAP dev team and the Debian maintainers for these packages.  
In other cases they seem to be one and the same.


If you want bugs for OpenLDAP to be tracked, use the OpenLDAP ITS  
system.  You were *already* told to do this on the OpenLDAP list.


It didn't look like that to me, but you probably know Pierangelo  
better than me and perhaps that was his way of expressing an opinion.  
Sometimes I can be rather obtuse.


The Debian project is *not* part of the OpenLDAP Foundation or the  
OpenLDAP project.  Please use the correct and appropriate resources  
for filing bugs.


Okay, no problem. As soon as I figure out how to do so, I will  
resubmit this bug over there, as well as for the one regarding the  
olcDbURI attribute (unless you think that's no longer necessary).


Cheers,

Jaap



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#608815: [Pkg-openldap-devel] Bug#608815: Proxy authorization fails with SASL-GSSAPI

2011-01-03 Thread Quanah Gibson-Mount
--On Monday, January 03, 2011 9:29 PM +0100 Jaap Winius  
wrote:



Quoting Quanah Gibson-Mount :



Okay, no problem. As soon as I figure out how to do so, I will resubmit
this bug over there, as well as for the one regarding the olcDbURI
attribute (unless you think that's no longer necessary).


 is the URI for the OpenLDAP bug tracker. 
Hope that helps! :)


--Quanah

--

Quanah Gibson-Mount
Sr. Member of Technical Staff
Zimbra, Inc
A Division of VMware, Inc.

Zimbra ::  the leader in open source messaging and collaboration



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#608815: [Pkg-openldap-devel] Bug#608815: Proxy authorization fails with SASL-GSSAPI

2011-01-03 Thread Quanah Gibson-Mount
--On Monday, January 03, 2011 6:49 PM +0100 Jaap Winius  
wrote:



Package: slapd
Version: 2.4.23-7

Proxy authorization works with SIMPLE binds, as well as with SASL binds
using various other mechanisms, but not with SASL and GSSAPI. In that
case it may only work initially, but eventually the problem is that, for
no apparent reason, the consumer instead attempts to use a SIMPLE bind to
authenticate itself to the provider. Naturally, this fails.


Why are you filing bugs with Debian for issues in the OpenLDAP project?  If 
you want bugs for OpenLDAP to be tracked, use the OpenLDAP ITS system.  You 
were *already* told to do this on the OpenLDAP list.


The Debian project is *not* part of the OpenLDAP Foundation or the OpenLDAP 
project.  Please use the correct and appropriate resources for filing bugs.


--Quanah

--

Quanah Gibson-Mount
Sr. Member of Technical Staff
Zimbra, Inc
A Division of VMware, Inc.

Zimbra ::  the leader in open source messaging and collaboration



--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org



Bug#608815: Proxy authorization fails with SASL-GSSAPI

2011-01-03 Thread Jaap Winius

Package: slapd
Version: 2.4.23-7

Proxy authorization works with SIMPLE binds, as well as with SASL  
binds using various other mechanisms, but not with SASL and GSSAPI. In  
that case it may only work initially, but eventually the problem is  
that, for no apparent reason, the consumer instead attempts to use a  
SIMPLE bind to authenticate itself to the provider. Naturally, this  
fails.


For detailed background and debugging info, see this thread:

   http://www.openldap.org/lists/openldap-technical/201101/msg2.html

And especially this message:

   http://www.openldap.org/lists/openldap-technical/201101/msg9.html




--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org