Hi,

Op wo, 06-04-2005 te 00:45 +0200, schreef Torsten Landschoff:
> > No it did use /var/backups/slapd-2.1.30-3, so that went alright :) 
> 
> Okay *phew*
I should have made that more clear in my first mail :)

> I can see that it indeed messes up the configuration. The reason is
> quite simple: You wrote the file in DOS mode and the maintainer script
> does not cope with that. I assumed that merging lines can be done by
> removing combinations of line feed followed by a line which is prefixed
> with white space. That's almost what slapd does - well, almost :)

Did not know that file was in DOS mode. Seems I edited it when I still
was using Windows as my primary workstation OS... 

> I'll go and fix the script to understand ^M in slapd.conf.
> 
> > Well you can say it isn't true but it still tried to write something in
> > or create the /var/backups/slapd-2.1.30-3 directory. I don't know
> 
> Hrm. I can't see how that can happen. When I get arround to implement 
> putting only the used functions into the maintainer scripts the code
> should even get excluded from the postinst which should proof that it 
> isn't called. But maybe I am wrong, which would mean that I am entirely
> stupid. 
>
> Anyway, what I'd expect is that it tries to move /var/lib/ldap to 
> /var/backups/dc=arriesoft,dc=nl.ldabdb which will fail. Can you by
> chance reproduce this failure and send me the output? 
> 
I will give it a try tomorrow and give more useful information.

> > > I don't think the breakage in your Samba installation is related. Samba
> > > is using the libldap2 libraries which should still be from 2.1.x on any
> > > Debian system. So nothing has changed on that front. Not sure if that is
> > > a good thing... :(
> > 
> > I think it is. The breakage occured right after upgrading slapd and in
> > the trace I get from smbd i seel some calls to SSL related functions. So
> > it seems the change from gnutls to openssl triggers a bug in Samba (see
> > http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=303272 ).
> 
> Looks interesting. Maybe it is in fact related but in the way that
> OpenSSL and GnuTLS do not really like each other. 

That is what i was thinking. It seems samba can connect 2/3 times but
then it still segfaults.

> Your slapd.conf has 
> 
>       TLSCipherSuite         HIGH

After commenting this out samba still crashes.

> I am not sure if the TLS patch will use this setting in any way. Maybe
> the algorithm used by samba does not suffice for this setting and now 
> OpenLDAP is rejecting the connection, triggering a bug in libldap2
> or GnuTLS, more likely the first :(
> 
> Debugging output from slapd about that connection could be helpful.

Which info is need (or which loglevel combination? With loglevel 296 I 
did not see anything interesting.)

I will downgrade slapd tomorrow to testing and see if samba starts
working again, and then to a nice upgrade and send you the necessary
info.

Greetings Arjan Oosting 

Attachment: signature.asc
Description: Dit berichtdeel is digitaal ondertekend

Reply via email to