Change logs for openldap source package in Cosmic

  • openldap (2.4.46+dfsg-5ubuntu1.2) cosmic; urgency=medium
    
      * Fix sysv-generator unit file by customizing parameters (LP: #1821343)
        - d/slapd-remain-after-exit.conf: Override RemainAfterExit to allow
          correct systemctl status for slapd daemon.
        - d/slapd.install: place override file in correct location.
    
     -- Heitor Alves de Siqueira <email address hidden>  Wed, 10 Apr 2019 09:50:13 -0300
  • openldap (2.4.46+dfsg-5ubuntu1.1) cosmic; urgency=medium
    
      * d/apparmor-profile: update apparmor profile to allow reading of
        files needed when slapd is behaving as a kerberos/gssapi client
        and acquiring its own ticket. (LP: #1783183)
    
     -- Andreas Hasenack <email address hidden>  Tue, 23 Oct 2018 10:06:32 -0300
  • openldap (2.4.46+dfsg-5ubuntu1) cosmic; urgency=medium
    
      * Merge from Debian unstable.  Remaining changes:
        - Enable AppArmor support:
          - d/apparmor-profile: add AppArmor profile
          - d/rules: use dh_apparmor
          - d/control: Build-Depends on dh-apparmor
          - d/slapd.README.Debian: add note about AppArmor
        - Enable GSSAPI support:
          - d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
            - Add --with-gssapi support
            - Make guess_service_principal() more robust when determining
              principal
          - d/configure.options: Configure with --with-gssapi
          - d/control: Added heimdal-dev as a build depend
          - d/rules:
            - Explicitly add -I/usr/include/heimdal to CFLAGS.
            - Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
        - Enable ufw support:
          - d/control: suggest ufw.
          - d/rules: install ufw profile.
          - d/slapd.ufw.profile: add ufw profile.
        - Enable nss overlay:
          - d/{patches/nssov-build,rules}: Apply, build and package the
            nss overlay.
        - d/{rules,slapd.py}: Add apport hook.
        - d/slapd.init.ldif: don't set olcRootDN since it's not defined in
          either the default DIT nor via an Authn mapping.
        - d/slapd.scripts-common:
          - add slapcat_opts to local variables.
          - Fix backup directory naming for multiple reconfiguration.
        - d/{slapd.default,slapd.README.Debian}: use the new configuration style.
        - d/rules: Enable -DLDAP_CONNECTIONLESS to build CLDAP (UDP) support
          in the openldap library, as required by Likewise-Open
        - Show distribution in version:
          - d/control: added lsb-release
          - d/patches/fix-ldap-distribution.patch: show distribution in version
        - d/libldap-2.4-2.symbols: Add symbols not present in Debian.
          - CLDAP (UDP) was added in 2.4.17-1ubuntu2
          - GSSAPI support was enabled in 2.4.18-0ubuntu2
    
    openldap (2.4.46+dfsg-5) unstable; urgency=medium
    
      * Restore slapd-smbk5pwd now that libldap is installable in unstable.
        This reverts the changes from -3 and -4.
    
    openldap (2.4.46+dfsg-4) unstable; urgency=medium
    
      * Disable building the smbk5pwd plugin temporarily.
    
    openldap (2.4.46+dfsg-3) unstable; urgency=medium
    
      * Build without heimdal temporarily to resolve BD-Uninstallable loop.
    
     -- Gianfranco Costamagna <email address hidden>  Wed, 09 May 2018 13:44:37 +0200
  • openldap (2.4.46+dfsg-2ubuntu1) cosmic; urgency=low
    
      * Merge from Debian unstable.  Remaining changes:
        - Enable AppArmor support:
          - d/apparmor-profile: add AppArmor profile
          - d/rules: use dh_apparmor
          - d/control: Build-Depends on dh-apparmor
          - d/slapd.README.Debian: add note about AppArmor
        - Enable GSSAPI support:
          - d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
            - Add --with-gssapi support
            - Make guess_service_principal() more robust when determining
              principal
          - d/configure.options: Configure with --with-gssapi
          - d/control: Added heimdal-dev as a build depend
          - d/rules:
            - Explicitly add -I/usr/include/heimdal to CFLAGS.
            - Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
        - Enable ufw support:
          - d/control: suggest ufw.
          - d/rules: install ufw profile.
          - d/slapd.ufw.profile: add ufw profile.
        - Enable nss overlay:
          - d/{patches/nssov-build,rules}: Apply, build and package the
            nss overlay.
        - d/{rules,slapd.py}: Add apport hook.
        - d/slapd.init.ldif: don't set olcRootDN since it's not defined in
          either the default DIT nor via an Authn mapping.
        - d/slapd.scripts-common:
          - add slapcat_opts to local variables.
          - Fix backup directory naming for multiple reconfiguration.
        - d/{slapd.default,slapd.README.Debian}: use the new configuration style.
        - d/rules: Enable -DLDAP_CONNECTIONLESS to build CLDAP (UDP) support
          in the openldap library, as required by Likewise-Open
        - Show distribution in version:
          - d/control: added lsb-release
          - d/patches/fix-ldap-distribution.patch: show distribution in version
        - d/libldap-2.4-2.symbols: Add symbols not present in Debian.
          - CLDAP (UDP) was added in 2.4.17-1ubuntu2
          - GSSAPI support was enabled in 2.4.18-0ubuntu2
    
    openldap (2.4.46+dfsg-2) unstable; urgency=medium
    
      * Remove version constraint from libldap-2.4-2 dependency on libldap-common.
    
    openldap (2.4.46+dfsg-1) unstable; urgency=medium
    
      * Move the repository to Salsa.
        Update debian/control Vcs-* fields.
      * Remove Matthijs Möhlmann from Uploaders. (Closes: #891308)
        Thank you Matthijs for your past contributions.
      * New upstream release.
        - fixed slapd out-of-sync issue with delta-MMR and memberof overlay
          (ITS#8444) (Closes: #877166)
      * Rebase patch no-AM_INIT_AUTOMAKE to apply cleanly.
      * Drop patch ITS8650-retry-gnutls_handshake-after-GNUTLS_E_AGAIN, applied
        upstream.
      * Really fix upgrades when the config contains backslash-escaped special
        characters. The previous fix was incomplete and didn't fully fix upgrades
        involving a database reload. (Closes: #864719)
      * Update Standards-Version to 4.1.4.
        - Change the Priority of libldap-2.4-2 and libldap-common to optional.
      * Change download URL in debian/watch to https. Fixes a Lintian info.
      * Override the binary-or-shlib-defines-rpath Lintian tag for slapd-smbk5pwd.
        The rpath is set by krb5-config.heimdal; see bug #868840.
    
     -- Gianfranco Costamagna <email address hidden>  Fri, 04 May 2018 10:19:24 +0200
  • openldap (2.4.45+dfsg-1ubuntu1) artful; urgency=low
    
      * Merge from Debian unstable.  Remaining changes:
        - Enable AppArmor support:
          - d/apparmor-profile: add AppArmor profile
          - d/rules: use dh_apparmor
          - d/control: Build-Depends on dh-apparmor
          - d/slapd.README.Debian: add note about AppArmor
        - Enable GSSAPI support:
          - d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
            - Add --with-gssapi support
            - Make guess_service_principal() more robust when determining
              principal
          - d/configure.options: Configure with --with-gssapi
          - d/control: Added heimdal-dev as a build depend
          - d/rules:
            - Explicitly add -I/usr/include/heimdal to CFLAGS.
            - Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
        - Enable ufw support:
          - d/control: suggest ufw.
          - d/rules: install ufw profile.
          - d/slapd.ufw.profile: add ufw profile.
        - Enable nss overlay:
          - d/{patches/nssov-build,rules}: Apply, build and package the
            nss overlay.
        - d/{rules,slapd.py}: Add apport hook.
        - d/slapd.init.ldif: don't set olcRootDN since it's not defined in
          either the default DIT nor via an Authn mapping.
        - d/slapd.scripts-common:
          - add slapcat_opts to local variables.
          - Fix backup directory naming for multiple reconfiguration.
        - d/{slapd.default,slapd.README.Debian}: use the new configuration style.
        - d/rules: Enable -DLDAP_CONNECTIONLESS to build CLDAP (UDP) support
          in the openldap library, as required by Likewise-Open
        - Show distribution in version:
          - d/control: added lsb-release
          - d/patches/fix-ldap-distribution.patch: show distribution in version
        - d/libldap-2.4-2.symbols: Add symbols not present in Debian.
          - CLDAP (UDP) was added in 2.4.17-1ubuntu2
          - GSSAPI support was enabled in 2.4.18-0ubuntu2
    
    openldap (2.4.45+dfsg-1) unstable; urgency=medium
    
      * New upstream release.
        - fixed a use-after-free in GnuTLS options handling
          (ITS#8385) (Closes: #820244) (LP: #1557248)
        - fixed unsafe concurrent SASL calls causing memory corruption
          (ITS#8648) (Closes: #860947) (LP: #1688575)
        - fixed syncrepl infinite looping with multi-master delta-syncrepl
          (ITS#8432) (Closes: #868753)
      * Rebase patches to apply cleanly:
        - do-not-second-guess-sonames
        - no-AM_INIT_AUTOMAKE
      * Drop patches applied upstream:
        - ITS-8554-kFreeBSD-is-like-BSD.patch
        - ITS-8644-wait-for-slapd-to-start-in-test064.patch
        - ITS-8655-paged-results-double-free.patch
      * Upgrade to debhelper compat level 10.
        - Depend on debhelper 10.
        - Stop enabling parallel and autoreconf explicitly. They are now enabled
          by default.
        - Drop dh-autoreconf from build-depends since debhelper requires it.
      * Add -Wno-format-extra-args to CFLAGS to reduce the noise in the build
        logs, as this warning is emitted on each use of the Debug() macro.
      * Drop libldap-2.4-4-dbg and slapd-dbg binary packages in favour of
        automatic dbgsym packages.
      * Update Standards-Version to 4.0.0; no changes required.
      * Drop Priority and Section from binary package stanzas when they only
        duplicate information from the source stanza.
      * Update Priority of slapd-smbk5pwd and libldap2-dev to optional to match
        the archive.
      * Remove retired developer, Roland Bauerschmidt, from Uploaders.
        (Closes: #856422)
      * Remove Timo Aaltonen from Uploaders, with his agreement.
      * debian/patches/ITS8650-retry-gnutls_handshake-after-GNUTLS_E_AGAIN.patch:
        If gnutls_handshake() returns EAGAIN, call it again. Fixes TLS handshake
        failures when the ServerHello message exceeds 16K.
        (ITS#8650) (Closes: #861838)
      * Drop time from Build-Depends. The upstream testsuite no longer calls it.
    
     -- Gianfranco Costamagna <email address hidden>  Fri, 28 Jul 2017 14:49:07 +0200