]>
git.sur5r.net Git - openldap/log
Pierangelo Masarati [Wed, 14 Apr 2010 21:37:03 +0000 (21:37 +0000)]
allow strict adherence to RFC4370 wrt/ control criticality (ITS#6523)
Pierangelo Masarati [Wed, 14 Apr 2010 20:26:24 +0000 (20:26 +0000)]
serial can be longer than ber_int_t (ITS#6460)
Pierangelo Masarati [Wed, 14 Apr 2010 17:01:39 +0000 (17:01 +0000)]
properly initialize acl_attrval_style (ITS#6520)
Howard Chu [Tue, 13 Apr 2010 23:28:35 +0000 (23:28 +0000)]
ITS#6519 don't replicate purge deletes
Kurt Zeilenga [Tue, 13 Apr 2010 22:17:29 +0000 (22:17 +0000)]
happy belated New Year
Hallvard Furuseth [Tue, 13 Apr 2010 21:23:10 +0000 (21:23 +0000)]
Forced commit - previous (rev 1.169) was ITS#6474, not 6467
Pierangelo Masarati [Tue, 13 Apr 2010 07:37:59 +0000 (07:37 +0000)]
union of operation-specific data in LDIFRecord (ITS#6194, by Rich Megginson)
Pierangelo Masarati [Tue, 13 Apr 2010 07:36:34 +0000 (07:36 +0000)]
fix libraries order to build with --enable-dynamic (ITS#6517)
Pierangelo Masarati [Tue, 13 Apr 2010 05:03:34 +0000 (05:03 +0000)]
use slab memory as much as possible
Howard Chu [Mon, 12 Apr 2010 20:21:13 +0000 (20:21 +0000)]
Cleanup prev commit
Pierangelo Masarati [Mon, 12 Apr 2010 18:01:37 +0000 (18:01 +0000)]
handle ordered values as appropriate (ITS#6516)
Pierangelo Masarati [Mon, 12 Apr 2010 16:24:01 +0000 (16:24 +0000)]
don't free before use
Pierangelo Masarati [Mon, 12 Apr 2010 07:44:56 +0000 (07:44 +0000)]
use slab allocation
Pierangelo Masarati [Mon, 12 Apr 2010 04:06:13 +0000 (04:06 +0000)]
move getpassphrase inside tool_bind; make sure password is always malloc'd and freed
Pierangelo Masarati [Mon, 12 Apr 2010 03:42:29 +0000 (03:42 +0000)]
free LDIF handler in case of failure
Howard Chu [Mon, 12 Apr 2010 03:21:05 +0000 (03:21 +0000)]
In tmp_rsa_cb, new API is in 0.9.8 inclusive, not exclusive
Howard Chu [Mon, 12 Apr 2010 03:04:02 +0000 (03:04 +0000)]
ITS#6488 update from nss-ldapd to nss-pam-ldapd, refer to nss-pam-ldapd
home page instead of bundling the full code
Howard Chu [Mon, 12 Apr 2010 02:44:28 +0000 (02:44 +0000)]
ITS#6432 updated MozNSS context and PEM support
Pierangelo Masarati [Mon, 12 Apr 2010 02:28:40 +0000 (02:28 +0000)]
fix previous commit
Pierangelo Masarati [Mon, 12 Apr 2010 02:01:55 +0000 (02:01 +0000)]
(ITS#6194) Patch - Enhancement - provide LDIF support as libldif
Pierangelo Masarati [Mon, 12 Apr 2010 00:08:11 +0000 (00:08 +0000)]
backout unintended commit commit
Pierangelo Masarati [Mon, 12 Apr 2010 00:06:45 +0000 (00:06 +0000)]
fix previous commit
Pierangelo Masarati [Sat, 10 Apr 2010 04:36:44 +0000 (04:36 +0000)]
fix previous commit (completely screwed, sorry)
Pierangelo Masarati [Sat, 10 Apr 2010 04:02:46 +0000 (04:02 +0000)]
add support for allowedChildClasses, allowedChildClassesEffective: the former basically consists of all structural objectClasses, the latter is identical if the user can write 'children', absent otherwise
Pierangelo Masarati [Sat, 10 Apr 2010 01:25:21 +0000 (01:25 +0000)]
document idassert-passthru (ITS#456)
Pierangelo Masarati [Sat, 10 Apr 2010 00:11:03 +0000 (00:11 +0000)]
make room for further modules
Pierangelo Masarati [Fri, 9 Apr 2010 22:47:55 +0000 (22:47 +0000)]
honor X-ORDERED in olcDbIdAssertAuthzFrom; add olcDbIdAssertPassthru (ITS#6456); note: breaks binary compatibility with module back-meta.la
Howard Chu [Fri, 9 Apr 2010 18:30:29 +0000 (18:30 +0000)]
ITS#6510 ignore referrals on Bind response
Pierangelo Masarati [Thu, 8 Apr 2010 19:51:18 +0000 (19:51 +0000)]
more on ITS#6507
Pierangelo Masarati [Thu, 8 Apr 2010 17:24:44 +0000 (17:24 +0000)]
keep attrs count consistent (ITS#6508)
Pierangelo Masarati [Thu, 8 Apr 2010 17:16:38 +0000 (17:16 +0000)]
don't set dummy cookie when dealing with last database (ITS#6507)
Pierangelo Masarati [Thu, 8 Apr 2010 00:27:18 +0000 (00:27 +0000)]
don't mix code and declarations
Pierangelo Masarati [Wed, 7 Apr 2010 00:53:36 +0000 (00:53 +0000)]
do not assume that someone parsed the paged results response; in case, re-parse (ITS#6507)
Pierangelo Masarati [Tue, 6 Apr 2010 22:04:58 +0000 (22:04 +0000)]
make sure cookies are set/reset as appropriate when a page ends at database boundaries (ITS#6507)
Pierangelo Masarati [Tue, 6 Apr 2010 20:33:05 +0000 (20:33 +0000)]
detect misplaced entries in glued databases (ITS#6506)
Pierangelo Masarati [Fri, 2 Apr 2010 19:15:42 +0000 (19:15 +0000)]
rework temporary malloc of glued controls (fixes ITS#6504); fix glued paged results
Howard Chu [Wed, 31 Mar 2010 06:22:06 +0000 (06:22 +0000)]
ITS#6501 zero lockobjs
Kurt Zeilenga [Fri, 26 Mar 2010 14:05:47 +0000 (14:05 +0000)]
ldap_parse_result should always free result when freeit is true.
Pierangelo Masarati [Tue, 23 Mar 2010 20:33:06 +0000 (20:33 +0000)]
increment counter (ITS#6497)
Pierangelo Masarati [Mon, 22 Mar 2010 21:50:32 +0000 (21:50 +0000)]
handle valid non-entry internal search responses (ITS#6481)
Pierangelo Masarati [Mon, 22 Mar 2010 21:48:25 +0000 (21:48 +0000)]
check for NULL backend (ITS#6490)
Gavin Henry [Thu, 18 Mar 2010 20:12:50 +0000 (20:12 +0000)]
(ITS#6493) Broken link in online openldap administrator's guide
Ralf Haferkamp [Mon, 15 Mar 2010 15:07:45 +0000 (15:07 +0000)]
Make TlsOptions available in LDAPConnection
Ralf Haferkamp [Mon, 15 Mar 2010 14:51:40 +0000 (14:51 +0000)]
be more verbose on StartTLS errors
Howard Chu [Sat, 13 Mar 2010 21:41:51 +0000 (21:41 +0000)]
Fix prev commit
Kurt Zeilenga [Thu, 11 Mar 2010 20:27:46 +0000 (20:27 +0000)]
draft-zeilenga-ldap-txn-xx now published as RFC 5805
Howard Chu [Wed, 10 Mar 2010 22:25:42 +0000 (22:25 +0000)]
Fix for CB_TAIL with cached results
Howard Chu [Thu, 4 Mar 2010 00:16:49 +0000 (00:16 +0000)]
ITS#5195 - use connection's ssf for auxprop lookup
Howard Chu [Wed, 3 Mar 2010 23:56:30 +0000 (23:56 +0000)]
ITS#6433 add mechs for generating SHA2 hashes
Howard Chu [Wed, 3 Mar 2010 23:36:29 +0000 (23:36 +0000)]
ITS#6484 don't bypass other overlays' entry_release handler
Howard Chu [Wed, 3 Mar 2010 20:47:25 +0000 (20:47 +0000)]
ITS#6486 - avoid explicit moduleload in examples
Howard Chu [Wed, 3 Mar 2010 19:30:58 +0000 (19:30 +0000)]
Fix compare checking in pam_authz
Howard Chu [Wed, 3 Mar 2010 00:47:28 +0000 (00:47 +0000)]
Lookup user DN in pam_authz if it was not provided
Howard Chu [Wed, 3 Mar 2010 00:15:04 +0000 (00:15 +0000)]
Fix pam_authz parameter input
Howard Chu [Tue, 2 Mar 2010 21:45:25 +0000 (21:45 +0000)]
ITS#6473 fail delta-sync when unknown attrs are received
Howard Chu [Tue, 2 Mar 2010 21:29:32 +0000 (21:29 +0000)]
ITS#6484 - cache DB needs to release its own entries
Pierangelo Masarati [Mon, 22 Feb 2010 21:53:38 +0000 (21:53 +0000)]
ignore non-critical control with unrecognized flags (ITS#6480)
Ralf Haferkamp [Fri, 19 Feb 2010 14:02:32 +0000 (14:02 +0000)]
Bring back destructor, to keep ABI compatibile (at least for now)
Ralf Haferkamp [Thu, 18 Feb 2010 16:46:23 +0000 (16:46 +0000)]
Example for TlsOptions usage
Ralf Haferkamp [Thu, 18 Feb 2010 16:24:41 +0000 (16:24 +0000)]
exclude some internal structs from documentation
Ralf Haferkamp [Thu, 18 Feb 2010 16:23:40 +0000 (16:23 +0000)]
TlsOptions documentation
Ralf Haferkamp [Thu, 18 Feb 2010 16:22:49 +0000 (16:22 +0000)]
Hide internal use only constructor
Pierangelo Masarati [Wed, 17 Feb 2010 20:08:07 +0000 (20:08 +0000)]
fix return
Ralf Haferkamp [Tue, 16 Feb 2010 17:48:14 +0000 (17:48 +0000)]
method to renew the tlsctx
Ralf Haferkamp [Tue, 16 Feb 2010 17:47:05 +0000 (17:47 +0000)]
Make TlsOptions accessible per connection
Ralf Haferkamp [Tue, 16 Feb 2010 17:44:22 +0000 (17:44 +0000)]
use const where appropriate
Ralf Haferkamp [Tue, 16 Feb 2010 15:20:05 +0000 (15:20 +0000)]
removed buggy destructor, use default instead
Ralf Haferkamp [Tue, 16 Feb 2010 15:17:53 +0000 (15:17 +0000)]
fixed start_tls() error handling
Ralf Haferkamp [Tue, 16 Feb 2010 11:55:33 +0000 (11:55 +0000)]
silenced compiler warning
Ralf Haferkamp [Tue, 16 Feb 2010 11:55:05 +0000 (11:55 +0000)]
uninitialized variable
Ralf Haferkamp [Mon, 15 Feb 2010 17:24:45 +0000 (17:24 +0000)]
automake changes for TlsOptions
Ralf Haferkamp [Mon, 15 Feb 2010 17:17:42 +0000 (17:17 +0000)]
New class "TlsOptions" to handle TLS/SSL related settings
Ralf Haferkamp [Mon, 15 Feb 2010 17:07:46 +0000 (17:07 +0000)]
tab<->spaces cleanup
Ralf Haferkamp [Mon, 15 Feb 2010 15:25:47 +0000 (15:25 +0000)]
ITS#6467, use memcpy instead for strcpy when copying across array
boundaries. To account for stricter checks when using -D_FORTIFY_SOURCE=2
with GCC 4.5
Pierangelo Masarati [Fri, 12 Feb 2010 08:55:34 +0000 (08:55 +0000)]
reduce code duplication
Ralf Haferkamp [Fri, 5 Feb 2010 11:49:49 +0000 (11:49 +0000)]
ITS#6469, don't touch op_attrs when updatedn is modifying contextCSN
Howard Chu [Thu, 4 Feb 2010 04:11:17 +0000 (04:11 +0000)]
Add minimal doc for pbind overlay. Note both chain and pbind are built in
to back-ldap.
Howard Chu [Thu, 4 Feb 2010 01:59:58 +0000 (01:59 +0000)]
Add pbind proxybind overlay. Just intercepts Bind requests on a regular DB
and proxies them to a remote server.
Howard Chu [Thu, 4 Feb 2010 01:02:51 +0000 (01:02 +0000)]
ConnTTL, NetworkTimeout, and ProtocolVersion were missing from the
config OC, thus inaccessible from cn=config
Rein Tollevik [Tue, 2 Feb 2010 15:51:32 +0000 (15:51 +0000)]
ITS#6468: Implement bi_access_allowed.
Ralf Haferkamp [Tue, 2 Feb 2010 14:43:21 +0000 (14:43 +0000)]
ITS#6465, don't unparse empty uri string
Howard Chu [Sat, 30 Jan 2010 23:32:50 +0000 (23:32 +0000)]
ITS#6466 certificateListValidate: Empty Sequence-of is legal
Kurt Zeilenga [Fri, 29 Jan 2010 23:11:24 +0000 (23:11 +0000)]
Set res parameter to NULL upon ldap_search_ext_s entry. Likewise for friends.
Note in manual that res parameter should be freed regardless of return value
of ldap_search_ext_s (or friends).
Pierangelo Masarati [Sun, 24 Jan 2010 19:16:57 +0000 (19:16 +0000)]
skip the serial, whatever its length (ITS#6460)
Ralf Haferkamp [Fri, 22 Jan 2010 18:01:25 +0000 (18:01 +0000)]
plugged one time memory leak (found with valgrind)
Ralf Haferkamp [Thu, 21 Jan 2010 13:33:21 +0000 (13:33 +0000)]
Plugged memory leak. Syncentry wasn't free'd when sending
LDAP_SYNC_NEW_COOKIE intermediate results. (ITS#6459)
Pierangelo Masarati [Mon, 18 Jan 2010 15:00:40 +0000 (15:00 +0000)]
implement support for selective iteration in slaptools (ITS#6442)
Pierangelo Masarati [Mon, 18 Jan 2010 14:52:41 +0000 (14:52 +0000)]
sync with code
Hallvard Furuseth [Fri, 15 Jan 2010 18:53:13 +0000 (18:53 +0000)]
Gentler message when falling back to ch_malloc
Howard Chu [Mon, 11 Jan 2010 22:14:15 +0000 (22:14 +0000)]
dn2id_lock is no longer needed
Rein Tollevik [Wed, 6 Jan 2010 13:55:35 +0000 (13:55 +0000)]
ITS#6441 cyrus-sasl 2.1.24 auxprop_lookup plugin returns status.
Hallvard Furuseth [Wed, 6 Jan 2010 09:14:08 +0000 (09:14 +0000)]
ITS#6437 FORCED COMMIT: 1.62's Ensure Align >= sizeof(ber_len_t) anticipated
1.64 sl_malloc()'s size=(size +...+ Align-1 + !size)... to make room for tail.
Hallvard Furuseth [Tue, 5 Jan 2010 23:31:14 +0000 (23:31 +0000)]
ITS#6437: Fix pool version misalignment: It aligned heads, not returned blocks
Hallvard Furuseth [Tue, 5 Jan 2010 23:14:14 +0000 (23:14 +0000)]
ITS#6437, move structs slab_object and slab_heap from slap.h to sl_malloc.c
Hallvard Furuseth [Tue, 5 Jan 2010 22:11:24 +0000 (22:11 +0000)]
ITS#6437, save space: Do not allocate the tail, except if size==0.
Store a tail only in freed blocks. (Alignment ensures there will
be room.) Put the freed mark in next block's head.
Hallvard Furuseth [Tue, 5 Jan 2010 19:40:28 +0000 (19:40 +0000)]
ITS#6437 cleanup (noop patch): Join SLAP_NO_SL_MALLOC code with identical
ctx==NULL code. Add enum No_sl_malloc to avoid #ifdef SLAP_NO_SL_MALLOC.
Hallvard Furuseth [Tue, 5 Jan 2010 19:25:28 +0000 (19:25 +0000)]
ITS#6437, follow up previous fixes:
Ensure Align >= sizeof(ber_len_t), to clarify the code's requirements.
Rearrange a slap_sl_malloc() branch to factor out ch_malloc fallbacks.
Fix range check (ptr+size >= endptr) -> (size >= endptr-ptr). Fix debug msg.
Howard Chu [Tue, 5 Jan 2010 03:50:10 +0000 (03:50 +0000)]
ITS#6438 check for redundant syncops_free() ?
Hallvard Furuseth [Sat, 2 Jan 2010 23:42:31 +0000 (23:42 +0000)]
Add comments
Hallvard Furuseth [Sat, 2 Jan 2010 22:53:22 +0000 (22:53 +0000)]
ITS#6437, slap_sl_calloc():
Check count*size overflow. Omit slap_sl_malloc failure check, it cannot fail.