Bug#892546: gosa: fails to decrypt openssl encrypted password

Wolfgang Schweer w.schweer at gmx.de
Sat Mar 10 12:08:42 UTC 2018


Package: gosa
Version: 2.7.4+reloaded3-3
Severity: important

After a fresh Debian Edu main server installation, GOsa² is unable to 
connect to LDAP; this error message is shown:

Fatal error

Error while connecting to LDAP: Could not bind to 
cn=gosa-admin,ou=ldap-access,dc=skole,dc=skolelinux,dc=no 
(unauthenticated bind (DN with no password) disallowed, while operating 
on using LDAP server ldap://ldap.intern)

It seems that the decryption via GOSAKEY in gosa.secrets is broken.

To be able to test other things, I got LDAP access working w/o 
encryption after running:

(1) cp /etc/gosa/gosa.conf.orig /etc/gosa/gosa.conf
(2) cat /dev/null > /etc/gosa/gosa.secrets
(3) service apache2 reload

Please check.

There are a few other issues with this release (setup gosa from scratch 
is broken w/ Apache in use, gosa postinst fails w/ DE GNOME and Lighttpd 
in use, using Lighttpd instead of Apache is broken due to missing 
D on php-cgi).

I'll file separate bugs once time allows. 

Wolfgang
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 963 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/debian-edu-pkg-team/attachments/20180310/5473653f/attachment.sig>


More information about the Debian-edu-pkg-team mailing list