Hi!

On Thu, Mar 02, 2006 at 09:56:03AM +0000, Greg Matthews wrote:
> sorry for the long silence,

It's me who had to be sorry, actually, as I didn't have
enough time to work on the bug.

> just trying to reproduce this bug and the symptoms seem to have changed,
> I dont get a segfault but su is still failing:
> 
> with TLS_CACERTDIR:
> $ su -
> Sorry.
> $
> 
> with TLS_CACERT:
> $ su -
> Password:
> #

I first heard about TLS_CACERTDIR from you. What is it
usually used for? Having different CA trusted by user
gathered in one place?

It looks like bug is in libnss-ldap, or libpam-ldap,
not in su, but this has to be proven first.

> current pkg versions on debian sarge host:
> libnss-ldap 238-1
> libpam-ldap 178-1sarge1
> 
> wrt schemas, I assume you mean the relevant objectclasses for my user
> object? In this case I am using the rather restrictive "account", with
> "posixAccount" and "shadowAccount". The server is using the following
> schema files:

OK, so you don't use samba schemas, neither do smbldap-*
tools...

BTW, what tools do you use for user/group account
maintenance? ldapscripts?

P.S. thanks for your help, Greg.
-- 
WBR,
xrgtn


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to