Logged in as guest
Viewing Contrib/4685 Full headers
Major security issue: yes no
Notes: replaces ITS#3953 needs cleanup for HEAD Notification:
Date: Mon, 25 Sep 2006 21:18:07 GMT From: sebastian.rieger@gwdg.de To: openldap-its@OpenLDAP.org Subject: Updated changelog overlay by Neil Dunbar
Full_Name: Sebastian Rieger Version: 2.3.27 OS: Linux URL: ftp://ftp.openldap.org/incoming/changelog-rieger-060925.c Submission from: (NULL) (84.132.193.1) Hello, I've updated Neil Dunbar's code that implements draft-good-ldap-changelog-03.txt. We use this code in our IDM environment (using Novell IDM3) since August (running 2.3.24). It's performing well. The resulting code is in the incoming folder of the ITS FTP. I've seen that there are also additions / patches for accesslog overlay evolving. Maybe this code offers some usable lines. I also fixed several memory leaks and changed the changelog to use a separate backend. Off course it uses config schema and integrates the changelog draft schema on its own. It does not add the changelog attribute to the root dse as mentioned in the draft, though. We add this usind the rootDSE config param and a suitable ldif, as IDM driver is looking for it in the rootdse as mentioned in the draft. Besides the new directive (changelog_db) and the need to define a separate changelog backend, configuration is the same as for Neil Dunbar's code. Bye, Sebastian Rieger
Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar Date: Tue, 20 Feb 2007 16:37:50 +0100 From: "Rieger, Sebastian" <sebastian.rieger@gwdg.de> To: <openldap-its@OpenLDAP.org> Cc: "Rieger, Sebastian" <sebastian.rieger@gwdg.de>
This is a multi-part message in MIME format. ------=_NextPart_000_026A_01C7550D.760C6C90 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable I updated the changelog overlay to work with OpenLDAP up to 2.3.34, and removed some bugs from the changelog purging routine. Several stress = tests were done using 2.3.34 so it should work without problems. To ease installation of the overlay I assembled a patch, that adds the overlay = to configure, configure.in and portable.hin: Patch can be found in: ftp://ftp.openldap.org/incoming/changelog-rieger-070220.c Updated Source for the overlay: ftp://ftp.openldap.org/incoming/changelog-rieger-070220-patch.gz I'm currently working on fixing the overlay to work with OpenLDAP CVS = HEAD where the registration of the schema seems to have changed. -- MfG Sebastian Rieger Gesellschaft f=FCr wissenschaftliche Datenverarbeitung mbH G=F6ttingen=20 Am Fassberg - 37077 G=F6ttingen Fon: +49 551 201 1878 -- Fax: +49 551 201 2150 Gesch=E4ftsf=FChrer: Prof. Dr. Bernhard Neumair Aufsichtsratsvorsitzender: Prof. Dr. Christian Griesinger Sitz der Gesellschaft: G=F6ttingen Registergericht: G=F6ttingen Handelsregister-Nr. B 598 Die digitale Unterschrift dieser Mail kann anhand des Zertifikats des = DFN =FCberpr=FCft werden: = https://ca.gwdg.de/certs/root-classic/root-ca-cert.der ------=_NextPart_000_026A_01C7550D.760C6C90 Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIXujCCBHUw ggNdoAMCAQICAQEwDQYJKoZIhvcNAQEFBQAwWzELMAkGA1UEBhMCREUxEzARBgNVBAoTCkRGTi1W ZXJlaW4xEDAOBgNVBAsTB0RGTi1QS0kxJTAjBgNVBAMTHERGTi1WZXJlaW4gUENBIENsYXNzaWMg LSBHMDEwHhcNMDUwMjI4MDAyOTM3WhcNMTMwNDI4MDAyOTM3WjBbMQswCQYDVQQGEwJERTETMBEG A1UEChMKREZOLVZlcmVpbjEQMA4GA1UECxMHREZOLVBLSTElMCMGA1UEAxMcREZOLVZlcmVpbiBQ Q0EgQ2xhc3NpYyAtIEcwMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOvNTUXjQCVx w87yo/67c+J0bhhl6sfVNVO87Jk2WMY/lPC/E1cmq6iOAe2fV10FhexSG2zIp8XqbrlPNN7s3sy/ 0jUQfHegDqWWuCDQfWLkdWHTiDhIfhcCTdLaXDRshAxE18zDJzKPu3EMeU/N5dju7/azQVi2wkzM fM9I5aARVcrYVH+OanfQo1+yCoQupE9XaGpZRCr2w1X6pf1v0JcqakuC/LBX9uk0IPtMz9Y6frOP AvCldCn8pWNdQrT6VPmJpI7zDCm6/PCAZy82cImzkfbxGpMVxNBxC3Zwgc4zT9Cn22e0Hms8Q3cm cr8hbFb3icuGnMGKp50e9L2eOokCAwEAAaOCAUIwggE+MB0GA1UdDgQWBBSDrjvMk+EkUnrpIE+D cKIq3XsvATAfBgNVHSMEGDAWgBSDrjvMk+EkUnrpIE+DcKIq3XsvATAPBgNVHRMBAf8EBTADAQH/ MIHHBgNVHR8Egb8wgbwwXKBaoFiGVmh0dHA6Ly9jZHAxLnBjYS5kZm4uZGUvZGZuLXBraS9jZXJ0 aWZpY2F0aW9uL3g1MDkvY2xhc3NpYy9nMS9kYXRhL2NybHMvcm9vdC1jYS1jcmwuY3JsMFygWqBY hlZodHRwOi8vY2RwMi5wY2EuZGZuLmRlL2Rmbi1wa2kvY2VydGlmaWNhdGlvbi94NTA5L2NsYXNz aWMvZzEvZGF0YS9jcmxzL3Jvb3QtY2EtY3JsLmNybDAOBgNVHQ8BAf8EBAMCAQYwEQYJYIZIAYb4 QgEBBAQDAgAHMA0GCSqGSIb3DQEBBQUAA4IBAQDaFaWOgZRQO/CaU+xUQPj3mgnJ5MJug0ad1d+L k+K1iTUp8r9fLxnamypzVeVrHFbtC5zk9lxx8qDMiDc6sd9HYRJNikJUme/EfHPkzlbn6hTXuL6+ ZKdCeK3qQHnltEjg/NLUIaU/bukFmhOk6NrnU5XNTKcEeOJ47t0K2EWWZ6rN3Ji0FU444hGO73tl C5t1ACWaMYFakmylmagwdZPIVnA3qKFmVRTPcz3Cel56UyA2U6n9qQR8zZzkltIwx2/6SHt2EqQN u3g6iDyOWzIfsb0bRVHmvHQx3KCUZb5JNy3iue8yIB6WMbKZ+eJuwZl1Q0PJ87BjsHYglO3JX+Oy MIIFhjCCBG6gAwIBAgIEBnsYQDANBgkqhkiG9w0BAQUFADBbMQswCQYDVQQGEwJERTETMBEGA1UE ChMKREZOLVZlcmVpbjEQMA4GA1UECxMHREZOLVBLSTElMCMGA1UEAxMcREZOLVZlcmVpbiBQQ0Eg Q2xhc3NpYyAtIEcwMTAeFw0wNTA0MTIwOTUzNTRaFw0wOTA0MTIwOTUzNTRaMIGcMQswCQYDVQQG EwJERTFCMEAGA1UEChM5R2VzZWxsc2NoYWZ0IGZ1ZXIgd2lzc2Vuc2NoYWZ0bGljaGUgRGF0ZW52 ZXJhcmJlaXR1bmcgbWJIMQswCQYDVQQLEwJDQTEcMBoGA1UEAxMTR1dERy1DQSBFYmVuZSAxIEcw MjEeMBwGCSqGSIb3DQEJARYPZ3dkZy1jYUBnd2RnLmRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A MIIBCgKCAQEA3y/2S6yGKZhpv+DwWTSH4/szbEB2yPEJUgZz5kaVId/17wKdRNKd9el03skx/ind 1IJ27YaoOybmRp5pwuNSAL7SEC2neEKcLCqkV+jDcLusV2mQ/ykgMs7No5csyhS6FxuUwBK18BlF E7tfraK3J6iyOJxzjFKB+3/ZWhasXnwEtzOUc5hRry9bTNYpyLueUa5DLR5nqIRwk1OWbx3IARbC RKrxdAupzwEAjWwz8ar2aDHgsBH41D7sfDY9wRxH04sW6K9D0BANEx+o8KhbsPQv6l0HQE7p0n6Y XQhUo5QhZ8GMfEiIh39sE1turDLut7I4bCZwrIjPT9gJqhFMWwIDAQABo4ICDjCCAgowHQYDVR0O BBYEFPP+0UOeITsrZQ3Y8arSBsKbVgajMB8GA1UdIwQYMBaAFIOuO8yT4SRSeukgT4Nwoirdey8B MA8GA1UdEwEB/wQFMAMBAf8wgccGA1UdHwSBvzCBvDBcoFqgWIZWaHR0cDovL2NkcDEucGNhLmRm bi5kZS9kZm4tcGtpL2NlcnRpZmljYXRpb24veDUwOS9jbGFzc2ljL2cxL2RhdGEvY3Jscy9yb290 LWNhLWNybC5jcmwwXKBaoFiGVmh0dHA6Ly9jZHAyLnBjYS5kZm4uZGUvZGZuLXBraS9jZXJ0aWZp Y2F0aW9uL3g1MDkvY2xhc3NpYy9nMS9kYXRhL2NybHMvcm9vdC1jYS1jcmwuY3JsMIHcBggrBgEF BQcBAQSBzzCBzDBkBggrBgEFBQcwAoZYaHR0cDovL2NkcDEucGNhLmRmbi5kZS9kZm4tcGtpL2Nl cnRpZmljYXRpb24veDUwOS9jbGFzc2ljL2cxL2RhdGEvY2VydHMvcm9vdC1jYS1jZXJ0LmNydDBk BggrBgEFBQcwAoZYaHR0cDovL2NkcDIucGNhLmRmbi5kZS9kZm4tcGtpL2NlcnRpZmljYXRpb24v eDUwOS9jbGFzc2ljL2cxL2RhdGEvY2VydHMvcm9vdC1jYS1jZXJ0LmNydDAOBgNVHQ8BAf8EBAMC AQYwDQYJKoZIhvcNAQEFBQADggEBADFx3Ji676DYFd/XIY9KcsNopLqtgF5Ixr2irPOPpZ/X/zta Gss3l18EdKCCBFqhwCrd2lFOfowbxnWZ1L+WRS/+0x4a8MZoAUWyfk+pLLgv3OucY4ZhAGP5F0XJ wLRlskcnLVvt3HFQ9JsEjHo45u/QiKbZJGFPVZb5elpphRtAVTiRisw5UTiV57m07vcJhUtrt6wh 7389cz2aYYdlViMZtuaE0Z+LlSElAe4/U6tOowoR+06qD
Date: Mon, 26 Feb 2007 20:22:38 -0100 From: Sebastian Rieger <sebastian@rieger.info> To: openldap-its@OpenLDAP.org CC: sebastian.rieger@gwdg.de Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar
I placed an updated version in ftp://ftp.openldap.org/incoming/changelog-rieger-070226.c <ftp://ftp.openldap.org/incoming/changelog-rieger-060925.c> that compiles and works with CVS HEAD Sebastian Rieger
Date: Mon, 23 Jul 2007 10:41:50 -0700 From: Quanah Gibson-Mount <quanah@zimbra.com> To: Sebastian Rieger <sebastian@rieger.info> Cc: openldap-its@openldap.org Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar
Hi Sebastian, Can you please follow up to this ITS with an IPR release, as detailed at: <http://www.openldap.org/devel/contributing.html> thanks! --Quanah -- Quanah Gibson-Mount Principal Software Engineer Zimbra, Inc -------------------- Zimbra :: the leader in open source messaging and collaboration
Date: Wed, 09 Jul 2008 23:09:59 +0200 From: Sebastian Rieger <sebastian@rieger.info> To: openldap-its@OpenLDAP.org CC: sebastian.rieger@gwdg.de Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar
since we're still using the overlay to synchronize our identities between OpenLDAP and Active Directory using Novell Identity Manager, I made a little update again that keeps up with latest OpenLDAP development in HEAD and finally includes some documentation that was initially written by Neil Dunbar. Thanks to Paul Turgyan I was able to fix some memory leaks that occured in specific situations when base64 encoded attributes were changed. As requested I also tried to get conform to the IPR policies that are required when contributing to OpenLDAP. I know that the changelog mechanism as described in the draft draft-good-ldap-changelog-03 is not new fashion - but some large dirctory servers and identity management products seem to stick to this "standard". You can find the updated versions in: for OpenLDAP 2.3.x (tested up to 2.3.42): ftp://ftp.openldap.org/incoming/rieger-changelog-23-pkg-080706.tgz for OpenLDAP 2.4.x (tested up to HEAD): ftp://ftp.openldap.org/incoming/rieger-changelog-24-pkg-080706.tgz I'll be glad for any feedback, Sebastian
Date: Fri, 16 Apr 2010 20:13:11 +0200 From: Sebastian Rieger <sebastian@rieger.info> To: openldap-its@OpenLDAP.org Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar
This is a cryptographically signed message in MIME format. --------------ms040209080804080304070307 Content-Type: multipart/alternative; boundary="------------020001050102090908040002" This is a multi-part message in MIME format. --------------020001050102090908040002 Content-Type: text/plain; charset=ISO-8859-15; format=flowed Content-Transfer-Encoding: quoted-printable Hi, it's been a while, but the changelog overlay is still necessary in our=20 environment, so I changed five lines in the code to keep up with the=20 current stable version of OpenLDAP. You can find the patch and the documentation in: ftp://ftp.openldap.org/incoming/rieger-changelog-2.4.21-pkg-100416.tgz <= ftp://ftp.openldap.org/incoming/rieger-changelog-23-pkg-080706.tgz> the patch and the overlay has been tested against OpenLDAP 2.4.21. Sebastian --------------020001050102090908040002 Content-Type: text/html; charset=ISO-8859-15 Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta http-equiv=3D"content-type" content=3D"text/html; charset=3DISO-885= 9-15"> </head> <body bgcolor=3D"#ffffff" text=3D"#000000"> Hi,<br> <br> it's been a while, but the changelog overlay is still necessary in our environment, so I changed five lines in the code to keep up with the current stable version of OpenLDAP.<br> <br> You can find the patch and the documentation in:<br> <pre><a href=3D"ftp://ftp.openldap.org/incoming/rieger-changelog-23-pkg-080706.t= gz">ftp://ftp.openldap.org/incoming/rieger-changelog-2.4.21-pkg-100416.tg= z</a> the patch and the overlay has been tested against OpenLDAP 2.4.21. </pre> Sebastian<br> </body> </html> --------------020001050102090908040002-- --------------ms040209080804080304070307 Content-Type: application/pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIWAjCC BwowggXyoAMCAQICAwCdWDANBgkqhkiG9w0BAQUFADCBjDELMAkGA1UEBhMCSUwxFjAUBgNV BAoTDVN0YXJ0Q29tIEx0ZC4xKzApBgNVBAsTIlNlY3VyZSBEaWdpdGFsIENlcnRpZmljYXRl IFNpZ25pbmcxODA2BgNVBAMTL1N0YXJ0Q29tIENsYXNzIDEgUHJpbWFyeSBJbnRlcm1lZGlh dGUgQ2xpZW50IENBMB4XDTA5MDkyNjAwMDAwMVoXDTEwMDkyNjIzNTk1OVowcTEeMBwGA1UE ChMVUGVyc29uYSBOb3QgVmFsaWRhdGVkMSkwJwYDVQQDEyBTdGFydENvbSBGcmVlIENlcnRp ZmljYXRlIE1lbWJlcjEkMCIGCSqGSIb3DQEJARYVc2ViYXN0aWFuQHJpZWdlci5pbmZvMIIB IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwtbXkuAbQ11bUAkNHp59cKjUVBRE0xNY F1wt9Yeb0HqnulERLuDAgSChPh1v2HoCwNtYlSrSbBaL6Hs2zXt/ATrUgkBi0FNuUAGVKubd sQN118tW1jMEaUmSsVO0vaj509jGL+81kkq0raPcqgQqvMwYs1ZShfH/WpkzKGUwvpthZxCG U1sGQPIgR7iiE2J6b9mb71D1QiGs9A2KcBBpTPUAleHz4QPG+x7LUzMuVzpZ51rTXd9T59Fv r3x4tsgLQ7JZgNPwQ1XOaIDdpC2FItDK9nNIvTkeYfo6+Ue456/ZHSCUkFzJNYZteWXux10k T4UKS5+jfv+CTVMeDR8iUQIDAQABo4IDjTCCA4kwCQYDVR0TBAIwADALBgNVHQ8EBAMCBLAw HQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMEMB0GA1UdDgQWBBTscNXjgXcy8YBjZv0h XzV2WlkSHTAgBgNVHREEGTAXgRVzZWJhc3RpYW5AcmllZ2VyLmluZm8wgagGA1UdIwSBoDCB nYAUU3Ltkpzg2ssBXHx+ljVO8tS4UYKhgYGkfzB9MQswCQYDVQQGEwJJTDEWMBQGA1UEChMN U3RhcnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2ln bmluZzEpMCcGA1UEAxMgU3RhcnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHmCAQ0wggFH BgNVHSAEggE+MIIBOjCCATYGCysGAQQBgbU3AQIBMIIBJTAuBggrBgEFBQcCARYiaHR0cDov L3d3dy5zdGFydHNzbC5jb20vcG9saWN5LnBkZjA0BggrBgEFBQcCARYoaHR0cDovL3d3dy5z dGFydHNzbC5jb20vaW50ZXJtZWRpYXRlLnBkZjCBvAYIKwYBBQUHAgIwga8wFBYNU3RhcnRD b20gTHRkLjADAgEBGoGWTGltaXRlZCBMaWFiaWxpdHksIHJlYWQgdGhlIHNlY3Rpb24gKkxl Z2FsIExpbWl0YXRpb25zKiBvZiB0aGUgU3RhcnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3Jp dHkgUG9saWN5IGF2YWlsYWJsZSBhdCBodHRwOi8vd3d3LnN0YXJ0c3NsLmNvbS9wb2xpY3ku cGRmMGMGA1UdHwRcMFowK6ApoCeGJWh0dHA6Ly93d3cuc3RhcnRzc2wuY29tL2NydHUxLWNy bC5jcmwwK6ApoCeGJWh0dHA6Ly9jcmwuc3RhcnRzc2wuY29tL2NydHUxLWNybC5jcmwwgY4G CCsGAQUFBwEBBIGBMH8wOQYIKwYBBQUHMAGGLWh0dHA6Ly9vY3NwLnN0YXJ0c3NsLmNvbS9z dWIvY2xhc3MxL2NsaWVudC9jYTBCBggrBgEFBQcwAoY2aHR0cDovL3d3dy5zdGFydHNzbC5j b20vY2VydHMvc3ViLmNsYXNzMS5jbGllbnQuY2EuY3J0MCMGA1UdEgQcMBqGGGh0dHA6Ly93 d3cuc3RhcnRzc2wuY29tLzANBgkqhkiG9w0BAQUFAAOCAQEARMqy5GWeKJXpUBwrSjtO0gWn XSZyW49x2M2Nne+zG6xXAf6We+gl4dpnktuVc3a8fk9syfjYHdRF5adWC/5E/rpq7SB3jMsA G8BfnOpQXzJlTNPda3YLcE328AtxGBAM+4HZSIBGDLeaLU0V+ZdTq6J+q+Z+vtsWtAe4gyIi w7kDbkJ8Q726Q4jW5AitmC7O/3JV7nZ3i5cboYRK6jduxSH7NRKa2SLqvQel7rfZDeYMzK9o PHXYgwkddPSrwaF/0Wtrkk3sKuswOzyQB6/4S4mkuT8bFuox4puIJwyi2LMQeuXmHN9Vny/9 Roo6FB32sgdjlZbzSTGblhFCaM9n9TCCBwowggXyoAMCAQICAwCdWDANBgkqhkiG9w0BAQUF ADCBjDELMAkGA1UEBhMCSUwxFjAUBgNVBAoTDVN0YXJ0Q29tIEx0ZC4xKzApBgNVBAsTIlNl Y3VyZSBEaWdpdGFsIENlcnRpZmljYXRlIFNpZ25pbmcxODA2BgNVBAMTL1N0YXJ0Q29tIENs YXNzIDEgUHJpbWFyeSBJbnRlcm1lZGlhdGUgQ2xpZW50IENBMB4XDTA5MDkyNjAwMDAwMVoX DTEwMDkyNjIzNTk1OVowcTEeMBwGA1UEChMVUGVyc29uYSBOb3QgVmFsaWRhdGVkMSkwJwYD VQQDEyBTdGFydENvbSBGcmVlIENlcnRpZmljYXRlIE1lbWJlcjEkM
Date: Fri, 23 Apr 2010 20:46:27 +0200 From: Sebastian Rieger <sebastian@rieger.info> To: openldap-its@OpenLDAP.org Subject: Re: (ITS#4685) Updated changelog overlay by Neil Dunbar
sorry... the last update was broken. I've uploaded a new version to: <ftp://ftp.openldap.org/incoming/rieger-changelog-2.4.21-pkg-100423.tgz> this version compiles and runs smoothly with 2.4.21. Also I fixed a minor memory leak. Any feedback is welcome ;)
______________ © Copyright 2013, OpenLDAP Foundation, info@OpenLDAP.org