OpenLDAP 2.4 Change Log
-OpenLDAP 2.4.43 Engineering
+OpenLDAP 2.4.45 Engineering
+ Added slapd support for OpenSSL 1.1.0 series (ITS#8353, ITS#8533)
+ Fixed libldap to fail ldap_result if the handle is already bad (ITS#8585)
+ Fixed libldap to expose error if user specified CA doesn't exist (ITS#8529)
+ Fixed libldap handling of Diffie-Hellman parameters (ITS#7506)
+ Fixed libldap GnuTLS use after free (ITS#8385)
+ Fixed slapd bconfig rDN escape handling (ITS#8574)
+ Fixed slapd sasl SEGV rebind in same session (ITS#8568)
+ Fixed slapd syncrepl filter handling (ITS#8413)
+ Fixed slapd syncrepl infinite looping mods with delta-sync MMR (ITS#8432)
+ Fixed slapd callback struct so older modules without writewait should function.
+ Custom modules may need to be updated for sc_writewait callback (ITS#8435)
+ Fixed slapd-ldap/meta broken LDAP_TAILQ macro (ITS#8576)
+ Fixed slapd-mdb so it passes ITS6794 regression test (ITS#6794)
+ Fixed slapd-meta uninitialized diagnostic message (ITS#8442)
+ Fixed slapo-accesslog to honor pauses during purge for cn=config update (ITS#8423)
+ Fixed slapo-relay to correctly initialize sc_writewait (ITS#8428)
+ Fixed slapo-unique with empty modifications (ITS#8266)
+ Build Environment
+ Added test065 for proxyauthz (ITS#8571)
+ Fix test008 to be portable (ITS#8414)
+ Fix its4336 regression test (ITS#8534)
+ Fix its4337 regression test (ITS#8535)
+ Fix regression tests to execute on all backends (ITS#8539)
+ Contrib
+ Added slapo-autogroup(5) man page (ITS#8569)
+ Added passwd missing conversion scripts for apr1 (ITS#6826)
+ Fixed contrib modules where the writewait callback was not correctly initialized (ITS#8435)
+ Fixed smbk5pwd to build with newer OpenSSL releases (ITS#8525)
+ Documentation
+ admin24 fixed tls_cipher_suite bindconf option (ITS#8099)
+ admin24 fixed typo cn=config to be slapd.d (ITS#8449)
+ admin24 fixed slapo-syncprov information to be curent (ITS#8253)
+ admin24 fixed typo in access control docs (ITS#7341, ITS#8391)
+ admin24 fixed minor typo in tuning guide (ITS#8499)
+ admin24 fixed information about the limits option (ITS#7700)
+ admin24 fixed missing options for syncrepl configuration (ITS#7700)
+ Fixed ldap.conf(5) missing information on SASL_NOCANON option (ITS#7177)
+ Fixed ldapsearch(1) information on the V[V] flag behavior (ITS#7177, ITS#6339)
+ Fixed slapd-config(5), slapd.conf(5) clarification on interval keyword for refreshAndPersist (ITS#8538)
+ Fixed slapo-ppolicy(5) to clearly note rootdn requirement (ITS#8565)
+ Fixed slapo-syncprov(5) documentation to be current (ITS#8253)
+ Fixed slapadd(8) manpage to note slapd-mdb (ITS#8215)
+ Fixed various minor grammar issues in the man pages (ITS#8544)
+ Fixed various typos (ITS#8587)
+
+OpenLDAP 2.4.44 Release (2016/02/05)
+ Fixed slapd-bdb/hdb missing olcDbChecksum config attr (ITS#8337)
+ Fixed slapd-mdb behavior with long lived read transactions (ITS#8226)
+ Fixed slapd-mdb cleanup after failed transaction (ITS#8360)
+ Fixed slapd-sql missing id_query/olcSqlIdQuery (ITS#8329)
+ Fixed slapo-accesslog callback initialization (ITS#8351)
+ Fixed slapo-ppolicy pwdMaxRecordedFailure must never be zero (ITS#8327)
+ Fixed slapo-syncprov abandon processing (ITS#8354)
+ Fixed slapo-syncprov ctxcsn snapshot on refresh (ITS#8281, ITS#8365)
+ Documentation
+ admin24 Stop linking to Berkeley DB downloads (ITS#8362)
+ admin24 Update documentation for LMDB preference
+
+OpenLDAP 2.4.43 Release (2015/11/30)
+ Fixed liblber remove obsolete assert (ITS#8240, ITS#8301)
+ Fixed libldap file URLs on windows (ITS#8273)
+ Fixed libldap microsecond timer for windows (ITS#8295)
+ Fixed slap tools minor one time memory leak (ITS#8082)
+ Fixed slapd to avoid redundant processing of abandon ops (ITS#8232)
+ Fixed slapd syncrepl SEGV when present list is NULL (ITS#8231, ITS#8042)
+ Fixed slapd segfault with invalid SASL URI (ITS#8218)
+ Fixed slapd configuration parser with unbalanced quotes (ITS#8233)
+ Fixed slapd syncrepl check with config db on windows (ITS#8277)
+ Fixed slapd with mod Increment and inherited attribute type (ITS#8289)
+ Fixed slapd-ldap SEGV after failed retry (ITS#8173)
+ Fixed slapd-ldap to skip client controls in ldap_back_entry_get (ITS#8244)
+ Fixed slapd-null to have an option to return a search entry (ITS#8249)
+ Fixed slapd-relay to correctly handle quoted options (ITS#8284)
+ Fixed slapo-accesslog delta-sync MMR with interrupted refresh phase (ITS#8281)
Fixed slapo-dds segfault when using slapo-memberof (ITS#8133)
Fixed slapo-ppolicy to allow purging of stale pwdFailureTime attributes (ITS#8185)
- Fixed slap-refint with subtree renames (ITS#8220)
+ Fixed slapo-ppolicy to release entry on failure (ITS#7537)
+ Fixed slapo-ppolicy to fall back to default policy if there is a parsing error (ITS#8234)
+ Fixed slapo-syncprov with interrupted refresh phase (ITS#8281)
+ Fixed slapo-refint with subtree renames (ITS#8220)
+ Fixed slapo-rwm missing olcDropUnrequested attribute (ITS#7889)
+ Fixed slapo-rwm parsing to avoid double-escaping rewrite rules (ITS#7964)
+ Build Environment
+ Fixed ldif-filter option parsing (ITS#8292)
+ Fixed slapd-tester EOL handling in test output for windows (ITS#8280)
+ Fixed slapd-tester executable suffix for windows (ITS#8216)
+ Fixed test061 timing issues (ITS#8297)
+ Contrib
+ Added libnettle support to pw-pbkdf2 (ITS#8198)
+ Fixed smbk5pwd compiler warnings with libnettle (ITS#8235)
+ Fixed passwd symbol collisions with other crypto libraries (ITS#8294)
+ Documentation
+ Updated guide to reflect changes to how TLS is handled with syncrepl (ITS#7897)
OpenLDAP 2.4.42 Release (2015/08/14)
Fixed liblber address length for CLDAP (ITS#8158)
Fixed libldap libfetch dependancy (ITS#6889)
Documentation
ldap_get_dn(3) add man page (ITS#6959)
- slapo-nssov(5) Fixed typo (ITS#6934)
slapd-backends(5) update recommended database backend (ITS#6904)
slapd-bdb(5) update recommended database backend (ITS#6904)
slapd-hdb(5) update recommended database backend (ITS#6904)
+ slapo-nssov(5) Fixed typo (ITS#6934)
admin24 update that cn=config is preferred (ITS#6905)
admin24 update information about indexes (ITS#6906)
admin24 fix --enable-wrappers option (ITS#6971)
+ admin24 fix typos (ITS#8562)
+ admin24 fix replication sections to include back-mdb (ITS#8563)
OpenLDAP 2.4.25 Release (2011/03/26)
Fixed ldapsearch pagedresults loop (ITS#6755)
Fixed slapd-null read controls support (ITS#5757)
Fixed slapd-sql value length with right index (ITS#5779)
Fixed slapo-chain/translucent back-config support (ITS#5736)
- Fixed slapo-chain segv with search references (ITS#5742)
+ Fixed slapo-chain SEGV with search references (ITS#5742)
Fixed slapo-collect compile with C89 (ITS#5747)
Added slapo-constraint support for LDAP URI constraints (ITS#5704)
Added slapo-constraint support for constraining rename (ITS#5703)
Fixed slapd overlay ordering when moving to slapd.d (ITS#5284)
Fixed slapd NULL printf (ITS#5264)
Fixed slapd NULL set values (ITS#5286)
- Fixed slapd segv with SASL/OTP (ITS#5259)
+ Fixed slapd SEGV with SASL/OTP (ITS#5259)
Fixed slapd timestamp race condition (ITS#5370)
Fixed slapd cn=config crash on delete (ITS#5343)
Fixed slapd cn=config global acls (ITS#5352)
Fixed slapd invalid entryUUID filter (ITS#5386)
Fixed slapd-bdb idlcache on adds (ITS#5086)
Fixed slapd-bdb crash with modrdn (ITS#5358)
- Fixed slapd-bdb segv with bdb4.6 (ITS#5322)
+ Fixed slapd-bdb SEGV with bdb4.6 (ITS#5322)
Fixed slapd-bdb modrdn to same dn (ITS#5319)
Fixed slapd-bdb MMR (ITS#5332)
Added slapd-bdb/slapd-hdb DB encryption (ITS#5359)