[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1030348: debian-edu-config: In gosa.conf use ldaps://ldap.intern in the LDAP-URI.



Hi Daniel,

thanks for filing this bug report!

On Fri, Feb 03, 2023 at 12:54:04PM +0100, Daniel Teichmann wrote:
> Package: debian-edu-config

which version of d-e-config is affected, bookworm or bullseye?

> in /etc/gosa/gosa.conf please access tjener's LDAP via LDAPS protocol
> instead of using ldap://localhost:389.
> 
> <referral URI="ldaps://ldap.intern/dc=skole,dc=skolelinux,dc=no"
> adminDn="cn=gosa-admin,ou=ldap-access,dc=skole,dc=skolelinux,dc=no"
> adminPassword="***" />
> 
> In some cases GOsa²'s code tries to issue a StartTLS operation which fails
> due to insufficient confidentiality. This can be observed when exporting the
> LDAP tree as a LDIF via the gosa-plugins-ldapmanager.
> 
> Also Tjener's LDAP should be referenced via its internal DNS name (says Mike
> Gabriel).

can you also maybe provide a patch please?


-- 
cheers,
	Holger

 ⢀⣴⠾⠻⢶⣦⠀
 ⣾⠁⢠⠒⠀⣿⡁  holger@(debian|reproducible-builds|layer-acht).org
 ⢿⡄⠘⠷⠚⠋⠀  OpenPGP: B8BF54137B09D35CF026FE9D 091AB856069AAA1C
 ⠈⠳⣄

"I know what you're thinking" used to be an idiom but now it's a business model.

Attachment: signature.asc
Description: PGP signature


Reply to: