Bug#368297: About the libgcrypt and OpenLDAP issue

Werner Koch wk at gnupg.org
Thu Apr 18 16:58:02 UTC 2013


On Tue, 16 Apr 2013 20:37, adam at adam-barratt.org.uk said:

> libgcrypt maintainers - any thoughts on this?

Did anything change since my comments from 2010?

OpenLDAP needs to get it right and it would even be better if all
applications would set up a their policy regarding their demand for
private key protection.  For instacne by setting up a custom memory
handler.

My current problem with OpenLDAP is that it can't be used anymore with
GnuTLS 3 because the OpenSSL emulation switched to GPLv3+ and thus no
software with GPLv2only parts is able to use OpenLDAP.  The
straightforward solution would be to change OpenLDAP to use the native
GNUTLS API and while at it also fix the libgcrypt initialization.


Shalom-Salam,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.



More information about the Pkg-gnutls-maint mailing list