[Pkg-openldap-devel] Bug#854436: openldap: please don't use tcp-wrappers with slapd

Arturo Borrero Gonzalez arturo at debian.org
Tue Feb 7 08:28:18 UTC 2017


Source: openldap
Severity: important

Dear openldap maintainers and contributors, thanks for your work with this
package.

Please, don't use tcp-wrappers with slapd.

It has been already known for a while that this technology is obsolete [0],
and may cause a false sense of security which is even worse.

In some environments, this may cause other issues, for example:

slapd[7408]: warning: cannot open /etc/hosts.allow: Too many open files
slapd[7408]: warning: cannot open /etc/hosts.deny: Too many open files
slapd[7408]: warning: cannot open /etc/hosts.allow: Too many open files
slapd[7408]: warning: cannot open /etc/hosts.deny: Too many open files
slapd[7408]: warning: cannot open /etc/hosts.allow: Too many open files
slapd[7408]: warning: cannot open /etc/hosts.deny: Too many open files


[0] https://lists.ubuntu.com/archives/ubuntu-users/2014-June/276215.html



More information about the Pkg-openldap-devel mailing list