[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: slapd-ldap killed by a broken client (ITS#4117)



On Wed, 2005-11-16 at 15:10 +0100, Raphaël Ouazana-Sustowski wrote:

> It seems to work with 2.3.11, but I can't exactly reproduce my configuration:
> - if I launch slapd with -h "ldap://*:389 ldaps://*:636" I can't open any
> connection. My ldapsearch client is hanged in ldap_int_select. Note that I
> haven't any TLS directive in my slapd.conf (ok, it is strange, but it used
> to work in 2.2.28) [*]
> - if I launch slapd with -h "ldap://*:389 ldap://*:636"; (stupid, just for
> testing purpose), all works fine.

This has nothing to do with the original issue, you should discuss it on
the openldap-software mailing list and, in case evidence of a new bug
emerges, file another ITS.

In any case, I suggest you use "ldap:// ldaps://" to indicate ANY
interface and the default ports; moreover, I don't think you should use
"ldaps://" if you didn't properly configure TLS related stuff in
slapd.conf.  The fact that slapd does not work if you do may be odd, but
not unexpected.  And the fact that although being incorrect it used to
work with previous versions has never been a good argument.

p.




Ing. Pierangelo Masarati
Responsabile Open Solution

SysNet s.n.c.
Via Dossi, 8 - 27100 Pavia - ITALIA
http://www.sys-net.it
------------------------------------------
Office:   +39.02.23998309          
Mobile:   +39.333.4963172
Email:    pierangelo.masarati@sys-net.it
------------------------------------------