Hi,
Op wo, 06-04-2005 te 00:45 +0200, schreef Torsten Landschoff: > > No it did use /var/backups/slapd-2.1.30-3, so that went alright :) > > Okay *phew* I should have made that more clear in my first mail :) > I can see that it indeed messes up the configuration. The reason is > quite simple: You wrote the file in DOS mode and the maintainer script > does not cope with that. I assumed that merging lines can be done by > removing combinations of line feed followed by a line which is prefixed > with white space. That's almost what slapd does - well, almost :) Did not know that file was in DOS mode. Seems I edited it when I still was using Windows as my primary workstation OS... > I'll go and fix the script to understand ^M in slapd.conf. > > > Well you can say it isn't true but it still tried to write something in > > or create the /var/backups/slapd-2.1.30-3 directory. I don't know > > Hrm. I can't see how that can happen. When I get arround to implement > putting only the used functions into the maintainer scripts the code > should even get excluded from the postinst which should proof that it > isn't called. But maybe I am wrong, which would mean that I am entirely > stupid. > > Anyway, what I'd expect is that it tries to move /var/lib/ldap to > /var/backups/dc=arriesoft,dc=nl.ldabdb which will fail. Can you by > chance reproduce this failure and send me the output? > I will give it a try tomorrow and give more useful information. > > > I don't think the breakage in your Samba installation is related. Samba > > > is using the libldap2 libraries which should still be from 2.1.x on any > > > Debian system. So nothing has changed on that front. Not sure if that is > > > a good thing... :( > > > > I think it is. The breakage occured right after upgrading slapd and in > > the trace I get from smbd i seel some calls to SSL related functions. So > > it seems the change from gnutls to openssl triggers a bug in Samba (see > > http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=303272 ). > > Looks interesting. Maybe it is in fact related but in the way that > OpenSSL and GnuTLS do not really like each other. That is what i was thinking. It seems samba can connect 2/3 times but then it still segfaults. > Your slapd.conf has > > TLSCipherSuite HIGH After commenting this out samba still crashes. > I am not sure if the TLS patch will use this setting in any way. Maybe > the algorithm used by samba does not suffice for this setting and now > OpenLDAP is rejecting the connection, triggering a bug in libldap2 > or GnuTLS, more likely the first :( > > Debugging output from slapd about that connection could be helpful. Which info is need (or which loglevel combination? With loglevel 296 I did not see anything interesting.) I will downgrade slapd tomorrow to testing and see if samba starts working again, and then to a nice upgrade and send you the necessary info. Greetings Arjan Oosting
signature.asc
Description: Dit berichtdeel is digitaal ondertekend