Bug#506853: libgnutls26: 2.4.2-3 breaks OpenLDAP access

Stefan Soeffing soeffing at physik.uni-kl.de
Tue Nov 25 09:56:22 UTC 2008


Package: libgnutls26
Version: 2.4.2-3
Severity: important

After the upgrade from 2.4.2-1 to 2.4.2-3 access to an OpenLDAP server is broken. ldapwhoami says:
TLS: peer cert untrusted or revoked (0x2)
ldap_start_tls: Can't contact LDAP server (-1)

The certificate is valid until 2018 and was not revoked, everything works fine with the old version.
Unfortunately this breaks authentication via LDAP on all our machines, which caused me some trouble.

I had to revert to version 2.2.2-1 from snapshots.debian.net, since I didn't find the 2.4.2-1 version anywhere.

Thanks for all information concerning this.


- Stefan


-- System Information:
Debian Release: lenny/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.26-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages libgnutls26 depends on:
ii  libc6                  2.7-16            GNU C Library: Shared libraries
ii  libgcrypt11            1.4.1-1           LGPL Crypto library - runtime libr
ii  libgpg-error0          1.4-2             library for common error values an
ii  libopencdk10           0.6.6-1           Open Crypto Development Kit (OpenC
ii  libtasn1-3             1.4-1             Manage ASN.1 structures (runtime)
ii  zlib1g                 1:1.2.3.3.dfsg-12 compression library - runtime

libgnutls26 recommends no packages.

Versions of packages libgnutls26 suggests:
pn  gnutls-bin                    <none>     (no description available)

-- no debconf information





More information about the Pkg-gnutls-maint mailing list