[Bug 1472639] Re: apparmor profile denied for kerberos: /run/.heim_org.h5l.kcm-socket

2015-07-27 Thread Kartik Subbarao
I'm not sure if/how exactly I'm using kcm with slapd. I have an /etc/krb5.keytab and in slapd.conf, I have a sasl-realm parameter defined. Kerberos authentication actually seems to work okay -- for example, ldapwhoami -Y GSSAPI works properly. I don't know what else may or may not be working, but I

[Bug 1472639] [NEW] apparmor profile denied for kerberos: /run/.heim_org.h5l.kcm-socket

2015-07-08 Thread Kartik Subbarao
Public bug reported: The slapd apparmor profile doesn't allow access to /run/.heim_org.h5l .kcm-socket which is used by kerberos: apparmor="DENIED" operation="connect" profile="/usr/sbin/slapd" name="/run/.heim_org.h5l.kcm-socket" pid=61289 comm="slapd" requested_mask="wr" denied_mask="wr" fsuid=

[Bug 1471831] [NEW] Requesting a package for 2.4.41

2015-07-06 Thread Kartik Subbarao
Public bug reported: OpenLDAP version 2.4.41 is now available, and includes the bugfix for the issue I reported in bug #1461276, as well as many other bugfixes. Requesting an Ubuntu package for this release. ** Affects: openldap (Ubuntu) Importance: Undecided Status: New -- You re

[Bug 1461276] Re: off-by-one in LDIF length

2015-07-06 Thread Kartik Subbarao
This bug can be closed out now in favor of just building a new package for 2.4.41, since that release is now available and includes the fix: http://www.openldap.org/software/release/changes.html -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscr

[Bug 1461276] Re: off-by-one in LDIF length

2015-06-25 Thread Kartik Subbarao
Any response on this? -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1461276 Title: off-by-one in LDIF length To manage notifications about this bug go to: https://bugs.launchpad.net/

[Bug 1461276] Re: off-by-one in LDIF length

2015-06-03 Thread Kartik Subbarao
I have run both 2.4.31 and 2.4.40 for a few days, and have only experienced this type of slapd crash with 2.4.40. That by itself isn't conclusive though, since memory corruption errors can be sensitive in how they manifest. Looking at the code briefly, I see that the same off- by-one error in inclu

[Bug 1461276] [NEW] Requesting ITS#8003 inclusion in 2.4.40 package

2015-06-02 Thread Kartik Subbarao
Public bug reported: Would it be possible to include the patch for ITS#8003 in the next build of the 2.4.40 package? http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=patch;h=c8353f7acdec4a42f537b0d475aaae005ba72363 It fixes a bug that causes slapd to crash when the audit log is enabled