|
openldap (2.6.10+dfsg-0ubuntu0.24.04.1) noble; urgency=medium
* New upstream version (LP: #2127665):
- 2.6.10:
- Added slapd microsecond timestamp format for local logging (ITS#10140)
- Fixed libldap ldap_result behavior with LDAP_MSG_RECEIVED (ITS#10229)
- Fixed lloadd handling of starttls critical (ITS#10323)
- Fixed slapd syncrepl when used with slapo-rwm (ITS#10290)
- Fixed slapd regression with certain searches (ITS#10307)
- Fixed slapo-autoca olcAutoCAserverClass object (ITS#10288)
- Fixed slapo-pcache caching behaviors (ITS#10270)
- 2.6.9:
- Fixed libldap TLS connection timeout handling (ITS#8047)
- Fixed libldap GnuTLS incompatible pointer type (ITS#10253)
- Fixed libldap OpenSSL set_ciphersuite error handling (ITS#10223)
- Fixed libldap to check for OpenSSL EVP_Digest* failure (ITS#10224)
- Fixed slapd cn=config disallowed modification of cn=schema (ITS#10256)
- Fixed slapd syncrepl assert during refresh at shutdown (ITS#10232)
- Fixed slapd syncrepl retry state during refreshDone (ITS#10234)
- Fixed slapd-ldap use of multi-precision add for op counters (ITS#10237)
- Fixed slapd-mdb idl intersection (ITS#10233)
- Fixed slapd-wt idl intersection (ITS#10233)
- Fixed slapo-memberof to omit dynamic values (ITS#10230)
- Fixed slapo-nestgroup leak in nestgroup_memberFilter (ITS#10249)
- Fixed slapo-translucent regression with subordinate databases (ITS#10248)
- Fixed slapo-translucent regression when requesting attributes (ITS#10272)
- Fixed slappw-argon2 defaults to be more secure (ITS#9827)
- 2.6.8:
- Fixed libldap exit handling with OpenSSL3 again (ITS#9952)
- Fixed libldap OpenSSL channel binding digest (ITS#10216)
- Fixed slapd handling of large uid/gids peercred auth (ITS#10211)
- Fixed slapd-asyncmeta/meta target structure allocations (ITS#10197)
- Fixed slapd-meta with dynlist (ITS#10164)
- Fixed slapd-meta binds when proxying internal op (ITS#10165)
- Added slapo-nestgroup overlay (ITS#10161)
- Added slapo-memberof 'addcheck' option (ITS#10167)
- Fixed slapo-accesslog startup initialization (ITS#10170)
- Fixed slapo-constraint double free on invalid attr (ITS#10204)
- Fixed slapo-dynlist with abandoned operations (ITS#10044)
- Build
- Fixed build with gcc14.x (ITS#10166)
- Fixed back-perl with clang15 (ITS#10177)
- Fixed to reduce systemd dependencies (ITS#10214)
- Contrib
- Added slapo-alias contrib module (ITS#10104, ITS#10182)
- Fixed slapo-autogroup to work with slapo-dynlist (ITS#10185)
- Fixed smbk5pwd implicit function declaration (ITS#10206)
- Documentation
- Fixed slapo-memberof exattr requirements (ITS#7400)
- Fixed slapo-memberof is no longer deprecated (ITS#7400)
- d/p/lp2090806...TLS-...timeout-handling: removed
[upstream in 2.6.9]
- d/p/smbk5pwd-implicit-declaration: removed
[upstream in 2.6.8]
- d/p/64-bit-time-t-compat: adjust for 2.6.10
- d/slapd.{install,manpages}: install new slapo-nestgroup overlay
[from 2.6.8+dfsg-1~exp2]
- d/slapd.manpages: add slapo-autogroup overlay
[from 2.6.8+dfsg-1~exp2]
* pbkdf2 iteration configuration support (LP: #2125685)
- d/p/lp2125685-pbkdf2-configurable-rounds: make iterations configurable
- d/p/lp2125685-pbkdf2-fix-iteration-arg: fix iteration argument index
- d/t/pbkdf2-contrib: test if pbkdf2 hashing rounds are adjustable
* Enable build of ppm password quality check module (LP: #2121816)
- d/rules: build ppm password quality module
- d/p/contrib-makefiles: add build adjustment from 2.6.9+dfsg-1~exp1 (#1039740)
- d/p/ppm-cross: cross-build patch from 2.6.8+dfsg-1~exp1 (#1079533)
- d/t/ppm-contrib: test ppm password quality module
- d/control: add build dependency on libcrack2-dev for ppm
- d/slapd-contrib.{examples,install,manpages}: add ppm
-- Jonas Jelten <email address hidden> Tue, 23 Sep 2025 18:26:39 +0200
|