]> git.sur5r.net Git - openldap/log
openldap
12 years agoITS#7317 use SLEEP0 instead of 1 second sleep
Howard Chu [Tue, 3 Jul 2012 23:24:19 +0000 (16:24 -0700)]
ITS#7317 use SLEEP0 instead of 1 second sleep

12 years agoITS#7318
Quanah Gibson-Mount [Thu, 5 Jul 2012 20:44:10 +0000 (13:44 -0700)]
ITS#7318

12 years agoITS#7318 fix include: example
Howard Chu [Tue, 3 Jul 2012 23:17:06 +0000 (16:17 -0700)]
ITS#7318 fix include: example

12 years agoITS#7319
Quanah Gibson-Mount [Thu, 5 Jul 2012 20:39:11 +0000 (13:39 -0700)]
ITS#7319

12 years agoITS#7319 Always encode user DN in pwmod request.
Ted Cheng [Tue, 3 Jul 2012 23:12:22 +0000 (16:12 -0700)]
ITS#7319 Always encode user DN in pwmod request.

12 years agoITS#7312, ITS#7313, ITS#7314, ITS#7315, ITS#7316
Quanah Gibson-Mount [Tue, 26 Jun 2012 21:33:51 +0000 (14:33 -0700)]
ITS#7312, ITS#7313, ITS#7314, ITS#7315, ITS#7316

12 years agoITS#7316 MozNSS: do not retry when reading the pin from file
Jan Vcelak [Fri, 22 Jun 2012 07:41:18 +0000 (09:41 +0200)]
ITS#7316 MozNSS: do not retry when reading the pin from file

Avoid infinite loop if the pin in the password file is wrong.

12 years agoITS#7315 MozNSS: do not authenticate to a slot manually
Jan Vcelak [Fri, 22 Jun 2012 07:36:42 +0000 (09:36 +0200)]
ITS#7315 MozNSS: do not authenticate to a slot manually

We cannot rely on tc_certificate->slot value, the library will choose
the correct slot itself when needed. Just provide correct pin argument.

12 years agoITS#7314 MozNSS: lock whole init and clenaup process
Jan Vcelak [Mon, 18 Jun 2012 12:06:10 +0000 (14:06 +0200)]
ITS#7314 MozNSS: lock whole init and clenaup process

12 years agoITS#7313 MozNSS: store certificate object instead of nickname in in ctx
Jan Vcelak [Mon, 5 Mar 2012 16:04:51 +0000 (17:04 +0100)]
ITS#7313 MozNSS: store certificate object instead of nickname in in ctx

PEM certificates should not be referenced by nicknames, because the
nicknames are derived from basename of the cerificate file and in
general are not easy-predictable.

The code of Mozilla NSS backend depends on some aspects of PEM module
and tries to guess the nicknames correctly. In some cases the guessing
is wrong.

12 years agoITS#7312 MozNSS: context specific token description for certdb
Jan Vcelak [Thu, 31 May 2012 11:09:24 +0000 (13:09 +0200)]
ITS#7312 MozNSS: context specific token description for certdb

12 years agoITS#7293
Quanah Gibson-Mount [Tue, 26 Jun 2012 21:26:17 +0000 (14:26 -0700)]
ITS#7293

12 years agoITS#7293 make ldapava_free static
Howard Chu [Sat, 23 Jun 2012 12:41:39 +0000 (05:41 -0700)]
ITS#7293 make ldapava_free static

12 years agoITS#7293 fix typo in ldap_create_session_tracking_control() decl
Howard Chu [Sat, 23 Jun 2012 12:38:57 +0000 (05:38 -0700)]
ITS#7293 fix typo in ldap_create_session_tracking_control() decl

12 years agoITS#7302
Quanah Gibson-Mount [Fri, 22 Jun 2012 16:29:52 +0000 (09:29 -0700)]
ITS#7302

12 years agoITS#7302 fix mdb_dn2id_delete
Howard Chu [Fri, 22 Jun 2012 14:10:56 +0000 (07:10 -0700)]
ITS#7302 fix mdb_dn2id_delete

12 years agoITS#7294
Quanah Gibson-Mount [Fri, 22 Jun 2012 16:29:04 +0000 (09:29 -0700)]
ITS#7294

12 years agoITS#7294 reference RFC4526 instead of draft
Michael Stroeder [Fri, 15 Jun 2012 16:03:15 +0000 (09:03 -0700)]
ITS#7294 reference RFC4526 instead of draft

12 years agoITS#7298
Quanah Gibson-Mount [Fri, 22 Jun 2012 16:27:09 +0000 (09:27 -0700)]
ITS#7298

12 years agoITS#7298 fix PermissiveModify control parsing
Howard Chu [Fri, 15 Jun 2012 11:46:11 +0000 (04:46 -0700)]
ITS#7298 fix PermissiveModify control parsing

12 years agoITS#7303
Quanah Gibson-Mount [Fri, 22 Jun 2012 16:23:44 +0000 (09:23 -0700)]
ITS#7303

12 years agoTS#7303 tweak
Howard Chu [Tue, 12 Jun 2012 23:23:54 +0000 (16:23 -0700)]
TS#7303 tweak

12 years agoITS#7303 fix unneeded alias lookups
Howard Chu [Tue, 12 Jun 2012 23:16:07 +0000 (16:16 -0700)]
ITS#7303 fix unneeded alias lookups

12 years agoITS#7292 wording tweak
Quanah Gibson-Mount [Fri, 8 Jun 2012 22:02:23 +0000 (15:02 -0700)]
ITS#7292 wording tweak

12 years agoITS#7292
Quanah Gibson-Mount [Fri, 8 Jun 2012 22:00:07 +0000 (15:00 -0700)]
ITS#7292

12 years agoITS#7292 more accesslog,syncprov leaks
Howard Chu [Fri, 8 Jun 2012 14:33:59 +0000 (07:33 -0700)]
ITS#7292 more accesslog,syncprov leaks

12 years agoITS#7292 more syncprov control leaks
Howard Chu [Fri, 8 Jun 2012 12:09:45 +0000 (05:09 -0700)]
ITS#7292 more syncprov control leaks

12 years agoRevert "ITS#7292 plug memleak in control values"
Howard Chu [Fri, 8 Jun 2012 11:11:29 +0000 (04:11 -0700)]
Revert "ITS#7292 plug memleak in control values"

This reverts commit 9e3af2356ba3aee70682f2a328da73998ffab649.

12 years agoITS#7292 more syncprov leaks
Howard Chu [Thu, 7 Jun 2012 23:02:45 +0000 (16:02 -0700)]
ITS#7292 more syncprov leaks

12 years agoITS#7292 plug memleak in control values
Howard Chu [Thu, 7 Jun 2012 19:02:41 +0000 (12:02 -0700)]
ITS#7292 plug memleak in control values

12 years agoITS#7292 plug memleaks in accesslog,syncprov
Howard Chu [Thu, 7 Jun 2012 17:38:02 +0000 (10:38 -0700)]
ITS#7292 plug memleaks in accesslog,syncprov

12 years agoITS#7076, ITS#7291, ITS#7289, ITS#7290
Quanah Gibson-Mount [Thu, 7 Jun 2012 17:11:26 +0000 (10:11 -0700)]
ITS#7076, ITS#7291, ITS#7289, ITS#7290

12 years agoITS#7076 fix dup result messages on entry/searchref error
Howard Chu [Thu, 7 Jun 2012 12:43:13 +0000 (05:43 -0700)]
ITS#7076 fix dup result messages on entry/searchref error

12 years agoITS#7290 fix ldap_int_initialize() to set debug level
Howard Chu [Thu, 7 Jun 2012 12:15:04 +0000 (05:15 -0700)]
ITS#7290 fix ldap_int_initialize() to set debug level

12 years agoITS#7291 MozNSS: read pin from file file can cause infinite loop
Jan Vcelak [Wed, 6 Jun 2012 12:44:53 +0000 (14:44 +0200)]
ITS#7291 MozNSS: read pin from file file can cause infinite loop

The buffer allocated for reading password file has to be initialized
with zeros, or we need to append zero at the end of the file. Otherwise
we might read unitialized memory and consider it to be a password.

12 years agoITS#7289 MozNSS: cipher suite selection by name may be ignored
Tim Strobell (Contractor) [Mon, 4 Jun 2012 22:40:28 +0000 (18:40 -0400)]
ITS#7289 MozNSS: cipher suite selection by name may be ignored

12 years agoITS#7285, ITS#7287
Quanah Gibson-Mount [Tue, 5 Jun 2012 16:37:39 +0000 (09:37 -0700)]
ITS#7285, ITS#7287

12 years agoITS#7287 MozNSS: do not overwrite error in tlsm_verify_cert
Jan Vcelak [Mon, 28 May 2012 12:15:43 +0000 (14:15 +0200)]
ITS#7287 MozNSS: do not overwrite error in tlsm_verify_cert

12 years agoITS#7285 Mozilla NSS: default cipher suite always selected
Tim Strobell (Contractor) [Mon, 4 Jun 2012 21:50:23 +0000 (17:50 -0400)]
ITS#7285 Mozilla NSS: default cipher suite always selected

12 years agoMerge remote branch 'origin/mdb.master' into OPENLDAP_REL_ENG_2_4
Quanah Gibson-Mount [Tue, 5 Jun 2012 02:42:26 +0000 (19:42 -0700)]
Merge remote branch 'origin/mdb.master' into OPENLDAP_REL_ENG_2_4

12 years agoTweak prev commit, use first unused slot
Howard Chu [Sat, 2 Jun 2012 12:26:31 +0000 (05:26 -0700)]
Tweak prev commit, use first unused slot

12 years agoFix mdb_open, re-use closed dbi slots
Howard Chu [Sat, 2 Jun 2012 12:24:47 +0000 (05:24 -0700)]
Fix mdb_open, re-use closed dbi slots

12 years agoITS#7222
Quanah Gibson-Mount [Thu, 31 May 2012 18:10:28 +0000 (11:10 -0700)]
ITS#7222

12 years agoITS#7222 fix bdb/hdb cache hang under high load
Hrvoje [Thu, 31 May 2012 17:48:38 +0000 (10:48 -0700)]
ITS#7222 fix bdb/hdb cache hang under high load

12 years agoITS#7284
Quanah Gibson-Mount [Thu, 31 May 2012 17:22:13 +0000 (10:22 -0700)]
ITS#7284

12 years agoITS#7284 slappasswd: Add support loading a dynamically loadable module
SATOH Fumiyasu [Thu, 31 May 2012 04:13:41 +0000 (13:13 +0900)]
ITS#7284 slappasswd: Add support loading a dynamically loadable module

Add "-o module-path=<pathspec>" and "-o module-load=<filename>"
options to load a dynamically loadable password hash module
(e.g., slapd-sha2).

12 years agoITS#7271
Quanah Gibson-Mount [Wed, 30 May 2012 20:39:49 +0000 (13:39 -0700)]
ITS#7271

12 years agoITS#7271 Don't clobber SASL_NOCANON in clients/tools/common.c
W. Trevor King [Wed, 30 May 2012 16:39:54 +0000 (09:39 -0700)]
ITS#7271 Don't clobber SASL_NOCANON in clients/tools/common.c

12 years agoITS#7276
Quanah Gibson-Mount [Wed, 30 May 2012 20:38:46 +0000 (13:38 -0700)]
ITS#7276

12 years agoITS#7276 MozNSS: allow CA certdb together with PEM CA bundle file
Jan Vcelak [Fri, 18 May 2012 10:11:51 +0000 (12:11 +0200)]
ITS#7276 MozNSS: allow CA certdb together with PEM CA bundle file

Prior to this patch, if TLS_CACERTDIR was set to Mozilla NSS certificate
database and TLS_CACERT was set to a PEM bundle file with CA
certificates, the PEM file content was not loaded.

With this patch and the same settings, OpenLDAP can verify certificates
which are signed by CAs stored both in certdb and PEM bundle file.

12 years agoITS#7270
Quanah Gibson-Mount [Wed, 30 May 2012 20:27:21 +0000 (13:27 -0700)]
ITS#7270

12 years agoITS#7270 Protect accesses to ldap_int_hostname with a mutex.
Frederik Deweerdt [Fri, 11 May 2012 21:05:21 +0000 (14:05 -0700)]
ITS#7270 Protect accesses to ldap_int_hostname with a mutex.

Not protecting the accesses to ldap_int_hostname could lead to a double
free.

12 years agoITS#7279 init rc in mdb_idl_insert_keys
Howard Chu [Wed, 30 May 2012 12:09:31 +0000 (05:09 -0700)]
ITS#7279 init rc in mdb_idl_insert_keys

12 years agoAdditional fix for threaded slapadd
Howard Chu [Wed, 30 May 2012 02:46:17 +0000 (19:46 -0700)]
Additional fix for threaded slapadd

If slapadd'ing a config DB and tool-threads is set in the config LDIF,
the checks for slap_tool_thread_max will be invalid.

12 years agoITS#7269
Quanah Gibson-Mount [Wed, 30 May 2012 20:22:55 +0000 (13:22 -0700)]
ITS#7269
ITS#7278

12 years agoITS#7278 SHA-2: Add support salted SHA-2 password hashes
SATOH Fumiyasu [Thu, 24 May 2012 01:23:06 +0000 (10:23 +0900)]
ITS#7278 SHA-2: Add support salted SHA-2 password hashes

Support {SSHA256}, {SSHA384} and {SSHA512} hash schemes

12 years agoITS#7269 SHA2: Avoid "static char real_hash[]" to support multithread
SATOH Fumiyasu [Thu, 10 May 2012 11:26:16 +0000 (20:26 +0900)]
ITS#7269 SHA2: Avoid "static char real_hash[]" to support multithread

Remove sha*_hex_hash() and replace chk_sha*() with
libraries/liblutil/passwd.c:chk_sha1() implementation to
avoid a race condition.

12 years agoITS#7282
Quanah Gibson-Mount [Tue, 29 May 2012 23:10:50 +0000 (16:10 -0700)]
ITS#7282

12 years agoITS#7251
Quanah Gibson-Mount [Wed, 9 May 2012 19:42:01 +0000 (12:42 -0700)]
ITS#7251

12 years agoITS#7266
Quanah Gibson-Mount [Wed, 9 May 2012 19:38:27 +0000 (12:38 -0700)]
ITS#7266

12 years agoITS#7267
Quanah Gibson-Mount [Wed, 9 May 2012 19:36:54 +0000 (12:36 -0700)]
ITS#7267

12 years agoSHA2: Make slapd-sha2 module portable
SATOH Fumiyasu [Tue, 8 May 2012 06:35:32 +0000 (15:35 +0900)]
SHA2: Make slapd-sha2 module portable

contrib/slapd-modules/passwd/sha2/sha2.[ch] need portable.h and
some macros to be portable source.

contrib/slapd-modules/passwd/sha2/slapd-sha2.c:hash_sha*() must
declare "struct berval digest" before a statement for K&R C,
and must replace C++ "// foo"-style comments with C style.

12 years agoITS#7253
Quanah Gibson-Mount [Wed, 9 May 2012 19:35:46 +0000 (12:35 -0700)]
ITS#7253

12 years agoITS#7253 add a note about Criticality and RFC4510
Howard Chu [Fri, 20 Apr 2012 14:23:25 +0000 (07:23 -0700)]
ITS#7253 add a note about Criticality and RFC4510

12 years agoMerge remote branch 'origin/mdb.master' into OPENLDAP_REL_ENG_2_4
Quanah Gibson-Mount [Wed, 9 May 2012 19:24:54 +0000 (12:24 -0700)]
Merge remote branch 'origin/mdb.master' into OPENLDAP_REL_ENG_2_4

12 years agoITS#7266 fix rebalance for LEAF2 pages
Howard Chu [Wed, 9 May 2012 18:24:25 +0000 (11:24 -0700)]
ITS#7266 fix rebalance for LEAF2 pages

12 years agoMore freelist tweaks, avoid referencing freed page
Howard Chu [Wed, 9 May 2012 05:17:17 +0000 (22:17 -0700)]
More freelist tweaks, avoid referencing freed page

12 years agoFurther clarification of mdb_open()
Howard Chu [Sun, 6 May 2012 02:41:45 +0000 (19:41 -0700)]
Further clarification of mdb_open()

12 years agoITS7225->ITS7255
Quanah Gibson-Mount [Thu, 3 May 2012 15:03:30 +0000 (08:03 -0700)]
ITS7225->ITS7255

12 years agoITS#7225
Quanah Gibson-Mount [Thu, 3 May 2012 14:54:09 +0000 (07:54 -0700)]
ITS#7225

12 years agoITS#7255 in mdb_tool_entry_modify use the existing global txn
Howard Chu [Wed, 2 May 2012 20:32:06 +0000 (13:32 -0700)]
ITS#7255 in mdb_tool_entry_modify use the existing global txn

12 years agoReturn to RE
Quanah Gibson-Mount [Thu, 3 May 2012 14:53:20 +0000 (07:53 -0700)]
Return to RE

12 years agoITS#7251 fix Apple/Windows shared mutex naming
Howard Chu [Wed, 18 Apr 2012 22:59:54 +0000 (15:59 -0700)]
ITS#7251 fix Apple/Windows shared mutex naming

12 years agoPrep for release
Quanah Gibson-Mount [Wed, 18 Apr 2012 19:18:17 +0000 (12:18 -0700)]
Prep for release

12 years agoITS#7240
Quanah Gibson-Mount [Wed, 18 Apr 2012 18:19:54 +0000 (11:19 -0700)]
ITS#7240

12 years agoITS#7240 note option inheritance behavior
Howard Chu [Wed, 18 Apr 2012 10:09:53 +0000 (03:09 -0700)]
ITS#7240 note option inheritance behavior

12 years agomore on ITS#6656
Pierangelo Masarati [Tue, 17 Apr 2012 19:50:39 +0000 (21:50 +0200)]
more on ITS#6656

12 years agoITS#7245
Quanah Gibson-Mount [Mon, 16 Apr 2012 17:55:30 +0000 (10:55 -0700)]
ITS#7245

12 years agoITS#7245 fix slap_parse_sync_cookie invocation
Howard Chu [Mon, 16 Apr 2012 14:36:43 +0000 (07:36 -0700)]
ITS#7245 fix slap_parse_sync_cookie invocation

12 years agoITS#7088
Quanah Gibson-Mount [Thu, 12 Apr 2012 16:54:12 +0000 (09:54 -0700)]
ITS#7088

12 years agoITS#7088 fix deadlock on write operations that do not need to be logged (please check)
Pierangelo Masarati [Thu, 12 Apr 2012 16:03:43 +0000 (18:03 +0200)]
ITS#7088 fix deadlock on write operations that do not need to be logged (please check)

12 years agoITS#7224
Quanah Gibson-Mount [Thu, 12 Apr 2012 16:50:52 +0000 (09:50 -0700)]
ITS#7224

12 years agoITS#7224 check *_names pointer before dereferencing
Pierangelo Masarati [Mon, 9 Apr 2012 22:46:06 +0000 (00:46 +0200)]
ITS#7224 check *_names pointer before dereferencing

12 years agolibmdb: midl.h namespace cleanup.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:14 +0000 (07:34 +0200)]
libmdb: midl.h namespace cleanup.

Prefix ID, NOID, ID2, IDL, ID2L with 'MDB_'.
Also drop bdb from file description.

12 years agolibmdb: Simplify pick_meta() from read_meta().
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:14 +0000 (07:34 +0200)]
libmdb: Simplify pick_meta() from read_meta().

Put one call in #if MDB_DEBUG. Move DPRINTF(Using meta page #) there.

12 years agolibmdb: Simplify mdb_default_cmp. No real change.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:14 +0000 (07:34 +0200)]
libmdb: Simplify mdb_default_cmp. No real change.

12 years agolibmdb: signed meets unsigned warning cleanup
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: signed meets unsigned warning cleanup

12 years agolibmdb: MDB_FDATASYNC code cleanup.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: MDB_FDATASYNC code cleanup.

Define MDB_FDATASYNC() instead of redefining fdatasync().

12 years agolibmdb: Add C++ 'extern "C" {}' to *.h
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: Add C++ 'extern "C" {}' to *.h

12 years agolibmdb: Don't open datafile twice when not needed.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: Don't open datafile twice when not needed.

If the database is opened with MDB_RDONLY or MDB_NOSYNC,
instead use the same file descriptor for me_mfd and me_fd.

Also factor out Windows/Unix error handling after open.

12 years agolibmdb: Set close-on-exec flag on lockfile
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: Set close-on-exec flag on lockfile

12 years agolibmdb: Do not use the MDB_txbody.mtb_txnid field.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
libmdb: Do not use the MDB_txbody.mtb_txnid field.

Get txn->mt_txnid from the meta page instead.  Otherwise it
and txn->mt_toggle could become inconsistent, since read-only
txns fetched both from MDB_txbody without mutex proteciton.

12 years agoFix MDB_DEBUG in last ITS#7299 commit.
Hallvard Furuseth [Thu, 12 Apr 2012 05:34:13 +0000 (07:34 +0200)]
Fix MDB_DEBUG in last ITS#7299 commit.

Make DPRINTF usable in if-else.  Silence signed vs unsigned warning.

12 years agoITS#6656
Quanah Gibson-Mount [Wed, 11 Apr 2012 18:44:52 +0000 (11:44 -0700)]
ITS#6656

12 years agoITS#6598 make control global
Pierangelo Masarati [Tue, 10 Apr 2012 22:47:10 +0000 (00:47 +0200)]
ITS#6598 make control global

12 years agoITS#6656 keep loginfo mutex-protected
Pierangelo Masarati [Tue, 10 Apr 2012 22:15:36 +0000 (00:15 +0200)]
ITS#6656 keep loginfo mutex-protected

12 years agoITS#6656 make reqEntryUUID searchable
Pierangelo Masarati [Tue, 10 Apr 2012 21:12:41 +0000 (23:12 +0200)]
ITS#6656 make reqEntryUUID searchable

12 years agoITS#7229 more mdb_page_split tweaks
Howard Chu [Tue, 10 Apr 2012 21:05:05 +0000 (14:05 -0700)]
ITS#7229 more mdb_page_split tweaks

Also add mdb_debug/mdb_debug_start to toggle debug output at runtime

12 years agoITS#6656 add reqEntryUUID to logs of write ops
Pierangelo Masarati [Tue, 10 Apr 2012 20:37:47 +0000 (22:37 +0200)]
ITS#6656 add reqEntryUUID to logs of write ops

12 years agoITS#7210 fix check for freelist changes
Howard Chu [Tue, 10 Apr 2012 02:24:47 +0000 (19:24 -0700)]
ITS#7210 fix check for freelist changes

Was being fooled before because the newly malloc'd block had
the same address as the previously freed block.