Bug#1000821: openldap: Please consider building with openssl instead of gnutls

Matt Zagrabelny mzagrabe at d.umn.edu
Mon Nov 29 17:47:24 GMT 2021


Source: openldap
Version: 2.5.8+dfsg-1~exp1
Severity: normal

Greetings,

The freeradius (FR) LDAP module (rlm_ldap) makes use of openssl specific
functionality. When attempting to use rlm_ldap with Debian's FR, FR is unable
to make a TLS connection to the LDAP server.

I opened a debian bug (#976991) in December 2020 regrading this issue.

In that bug report it was discussed that a migration from gnutls to openssl
might be doable with the migration to the openldap version 2.5.

Would you please consider changing the build dependencies from gnutls to
openssl?

Thank you for your time and support of Debian and free software.


-- System Information:
Debian Release: bookworm/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 5.10.0-3-amd64 (SMP w/8 CPU threads)
Kernel taint flags: TAINT_FIRMWARE_WORKAROUND
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled



More information about the Pkg-openldap-devel mailing list