Hi! On Thu, Mar 02, 2006 at 09:56:03AM +0000, Greg Matthews wrote: > sorry for the long silence,
It's me who had to be sorry, actually, as I didn't have enough time to work on the bug. > just trying to reproduce this bug and the symptoms seem to have changed, > I dont get a segfault but su is still failing: > > with TLS_CACERTDIR: > $ su - > Sorry. > $ > > with TLS_CACERT: > $ su - > Password: > # I first heard about TLS_CACERTDIR from you. What is it usually used for? Having different CA trusted by user gathered in one place? It looks like bug is in libnss-ldap, or libpam-ldap, not in su, but this has to be proven first. > current pkg versions on debian sarge host: > libnss-ldap 238-1 > libpam-ldap 178-1sarge1 > > wrt schemas, I assume you mean the relevant objectclasses for my user > object? In this case I am using the rather restrictive "account", with > "posixAccount" and "shadowAccount". The server is using the following > schema files: OK, so you don't use samba schemas, neither do smbldap-* tools... BTW, what tools do you use for user/group account maintenance? ldapscripts? P.S. thanks for your help, Greg. -- WBR, xrgtn -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]