https://bugs.openldap.org/show_bug.cgi?id=7130
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |RESOLVED
Resolution|--- |SUSPENDED
--- Comment #6 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
patches welcome
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=6426
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=6426
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |SUSPENDED
Status|UNCONFIRMED |RESOLVED
--- Comment #9 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
patches welcome
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=6065
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=6065
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |RESOLVED
Resolution|--- |SUSPENDED
--- Comment #5 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
patches welcome
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=5796
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=5796
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |RESOLVED
Resolution|--- |SUSPENDED
--- Comment #14 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
patches welcome
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=5096
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=5096
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |SUSPENDED
Status|UNCONFIRMED |RESOLVED
--- Comment #7 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
patches welcome
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8768
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|IN_PROGRESS |RESOLVED
Resolution|--- |TEST
Keywords|OL_2_5_REQ |
--- Comment #6 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
Commits:
• d1e874c6
by Ondřej Kuzník at 2020-06-23T16:06:09+00:00
ITS#8768 Introduce delcsn into our syncrepl cookies
• 182ec30a
by Ondřej Kuzník at 2020-06-23T16:06:09+00:00
ITS#8768 Accept delcsn from the server
• e24a6bf5
by Ondřej Kuzník at 2020-06-23T16:06:09+00:00
ITS#8768 Do not update main CSN during delete phase
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=6467
Issue 6467 depends on issue 8768, which changed state.
Issue 8768 Summary: Syncprov shouldn't send a new cookie at the end of delete phase
https://bugs.openldap.org/show_bug.cgi?id=8768
What |Removed |Added
----------------------------------------------------------------------------
Status|IN_PROGRESS |RESOLVED
Resolution|--- |TEST
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8701
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Target Milestone|--- |2.5.0
Keywords| |OL_2_5_REQ
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8701
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|WONTFIX |---
Status|VERIFIED |CONFIRMED
Ever confirmed|0 |1
--- Comment #4 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
We will be implementing this.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8603
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|IN_PROGRESS |RESOLVED
Keywords|has_patch, IPR_OK, |
|OL_2_5_REQ |
Resolution|--- |TEST
--- Comment #6 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• 42d72389
by Brett Sheffield at 2020-06-23T10:31:08+01:00
ITS#8603 Add ldif_open_mem()
ldif_open_mem() is the fmemopen(3) equivalent of ldif_open() which opens
an ldif steam from memory, rather than from a file.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8701
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
See Also| |https://bugs.openldap.org/s
| |how_bug.cgi?id=9279
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8889
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Summary|debugging/logging |Clarify default loglevel
| |and consistently use
| |debug/logging as
| |appropriate
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9020
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Keywords|OL_2_5_REQ |
Status|UNCONFIRMED |RESOLVED
--- Comment #5 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
Commits:
• 58c97882
by Quanah Gibson-Mount at 2020-06-22T20:44:12+00:00
Issue#9020 - Use consistent namespaces for overlays
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8204
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Keywords|OL_2_5_REQ |
Status|IN_PROGRESS |RESOLVED
--- Comment #5 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• ee7502ac
by Sergio Gelato at 2020-06-22T17:27:30+00:00
ITS#8204 Remove bias towards the first record in RFC2782 shuffle
implementation.
Prior to this change, given two records of weight 1 the algorithm would
return them in the order (0,1) with 100% probability instead of the
desired 50%. This was due to an off-by-one error in the range test.
srv_rand() returns a float in the range [0.0, 1.0[, so r is an integer in the
range [0, total[. The correct probability for record 0 to be chosen is
a[0].weight/total, not (a[0].weight+1)/total.
• 8006ee58
by Sergio Gelato at 2020-06-22T17:27:30+00:00
ITS#8204 Improved RFC2782 shuffle when several, but not all, records have
weight 0.
The fallback to a straight Fisher-Yates shuffle needs to occur whenever the
sum of the *remaining* weights is zero, or else the remaining records will
not be reordered. Testing only once at the beginning covers the case when
all weights are zero, and obviously no shuffling is needed when only one
weight is zero; but other weight combinations are possible, such as (1, 0, 0).
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=7796
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|IN_PROGRESS |RESOLVED
Resolution|--- |TEST
Keywords|OL_2_5_REQ |
--- Comment #11 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• 79960723
by Ondřej Kuzník at 2020-06-22T09:28:26+01:00
ITS#7796 Move 'not indexed' messages to loglevel filter
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8949
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|IN_PROGRESS |RESOLVED
Keywords|OL_2_5_REQ |
--- Comment #2 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• 71560032
by Ondřej Kuzník at 2020-06-21T22:53:14+00:00
ITS#8949 Check eblock exists before freeing
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8473
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|UNCONFIRMED |RESOLVED
Keywords|OL_2_5_REQ |
--- Comment #3 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• e5105e70
by Ondřej Kuzník at 2020-06-21T22:53:14+00:00
ITS#8473 Mark olcPlugin as ordered
• 6b46232a
by Ondřej Kuzník at 2020-06-21T22:53:14+00:00
ITS#8473 Implement ordering stable (de)registration
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8140
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|CONFIRMED |RESOLVED
Keywords|OL_2_5_REQ |
Resolution|--- |TEST
--- Comment #6 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• 0d0d5072
by Quanah Gibson-Mount at 2020-06-21T22:04:46+00:00
ITS#8140 - Update bind operations to note bind_ssf vs overall connection ssf
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8434
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Keywords|OL_2_5_REQ |
Status|IN_PROGRESS |RESOLVED
--- Comment #4 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
• 57b0ed90
by Ondřej Kuzník at 2020-06-21T18:55:09+00:00
ITS#8434 Allow cleanup at the end of a failed back-config add
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9276
Issue ID: 9276
Summary: OpenLdap with OpenSSL compliance with FIPS 140.2
Product: OpenLDAP
Version: 2.4.50
Hardware: All
OS: All
Status: UNCONFIRMED
Severity: normal
Priority: ---
Component: libraries
Assignee: bugs(a)openldap.org
Reporter: pasumarthivijaykumar(a)gmail.com
Target Milestone: ---
Hi Team,
Can we know OpenLdap versions with OpenSSL compliant with FIPS 140.2
standards.?
FYI..
https://stackoverflow.com/questions/9876590/making-openldap-fips-140-2-vali…
Regards,
Vijay Kumar
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9156
--- Comment #11 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
Draft 10 adds another way of expiring passwords (pwdEndTime) but that is not
included in expiry warning calculation. It might be worth clarifying whether it
should or should not be taken into consideration.
Neither is maxIdle but we don't really get a chance to exercise it as this is
already done in a "non-idle" context.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8215
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Target Milestone|--- |2.5.0
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8753
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|UNCONFIRMED |RESOLVED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8753
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|FIXED |---
Status|VERIFIED |UNCONFIRMED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9160
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|UNCONFIRMED |RESOLVED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9160
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|FIXED |---
Status|VERIFIED |UNCONFIRMED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8730
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|UNCONFIRMED |RESOLVED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8730
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|FIXED |---
Status|VERIFIED |UNCONFIRMED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8215
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |TEST
Status|UNCONFIRMED |RESOLVED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8215
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|VERIFIED |UNCONFIRMED
Ever confirmed|1 |0
Resolution|FIXED |---
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8215
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|PARTIAL |FIXED
Status|RESOLVED |VERIFIED
--- Comment #6 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
There is no BDB any more.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8730
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
Resolution|TEST |FIXED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9160
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|TEST |FIXED
Status|RESOLVED |VERIFIED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8753
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|RESOLVED |VERIFIED
Resolution|TEST |FIXED
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=7796
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |IN_PROGRESS
Ever confirmed|0 |1
--- Comment #10 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
I guess it's more specific to the filter loglevel so changed accordingly. Part
of merge request https://git.openldap.org/openldap/openldap/-/merge_requests/80
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8949
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |IN_PROGRESS
Ever confirmed|0 |1
--- Comment #1 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
Added a patch for this to
https://git.openldap.org/openldap/openldap/-/merge_requests/78
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8603
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Ever confirmed|0 |1
Status|UNCONFIRMED |IN_PROGRESS
--- Comment #5 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
Patch is part of the merge request here:
https://git.openldap.org/openldap/openldap/-/merge_requests/80
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8204
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Ever confirmed|0 |1
Status|UNCONFIRMED |IN_PROGRESS
--- Comment #4 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
Patch is part of the merge request here:
https://git.openldap.org/openldap/openldap/-/merge_requests/80
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8491
--- Comment #1 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
There is no dedicated slapdelete binary in master (yet?) as slapmodify can
already do that.
I guess it might be useful to provide one as it would be easier for people to
use than crafting a delete ldif.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8603
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Keywords| |IPR_OK
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8603
--- Comment #4 from brett(a)gladserv.com <brett(a)gladserv.com> ---
Thanks Quanah.
"""
Copyright 2014, 2017 Brett Sheffield
Redistribution and use in source and binary forms, with or without
modification,
are permitted only as authorized by the OpenLDAP Public License.
I have not assigned rights and/or interest in this work to any party.
"""
https://www.openldap.org/devel/contributing.html#notice
On 2020-06-10 15:15, openldap-its(a)openldap.org wrote:
> https://bugs.openldap.org/show_bug.cgi?id=8603
>
> --- Comment #3 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
> Hi Brett,
>
> Thanks for the contribution. However it is missing an appropriate assignment
> of rights statement as noted at
> https://www.openldap.org/devel/contributing.html#notice
>
> If you can add such a statement to this ITS that would be appreciated.
>
> Regards,
> Quanah
>
> --
> You are receiving this mail because:
> You reported the issue.
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8140
Quanah Gibson-Mount <quanah(a)openldap.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|UNCONFIRMED |CONFIRMED
Assignee|bugs(a)openldap.org |quanah(a)openldap.org
Ever confirmed|0 |1
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8603
--- Comment #3 from Quanah Gibson-Mount <quanah(a)openldap.org> ---
Hi Brett,
Thanks for the contribution. However it is missing an appropriate assignment
of rights statement as noted at
https://www.openldap.org/devel/contributing.html#notice
If you can add such a statement to this ITS that would be appreciated.
Regards,
Quanah
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=8434
Ondřej Kuzník <ondra(a)mistotebe.net> changed:
What |Removed |Added
----------------------------------------------------------------------------
Ever confirmed|0 |1
Status|UNCONFIRMED |IN_PROGRESS
--- Comment #3 from Ondřej Kuzník <ondra(a)mistotebe.net> ---
Code to implement this is in a merge request here:
https://git.openldap.org/openldap/openldap/-/merge_requests/79
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9274
Issue ID: 9274
Summary: sample-mdb.txt SIGSEGV
Product: LMDB
Version: 0.9.22
Hardware: All
OS: All
Status: UNCONFIRMED
Severity: normal
Priority: ---
Component: liblmdb
Assignee: bugs(a)openldap.org
Reporter: txtoth(a)gmail.com
Target Milestone: ---
Running on centos7. Installed lmdb, lmdb-libs and lmdb-devel version 0.9.22-2
from the EPEL repo. Copied code from:
https://github.com/LMDB/lmdb/blob/mdb.master/libraries/liblmdb/sample-mdb.t…
Compiled:
gcc -g -o sample-mdb -llmdb sample-mdb.c
gdb sample-mdb
(gdb) r
Program received signal SIGSEGV, Segmentation fault.
0x00007ffff79c2d91 in mdb_txn_renew0 () from /lib64/liblmdb.so.0.0.0
(gdb) where
#0 0x00007ffff79c2d91 in mdb_txn_renew0 () from /lib64/liblmdb.so.0.0.0
#1 0x00007ffff79c4454 in mdb_txn_begin () from /lib64/liblmdb.so.0.0.0
#2 0x0000000000400b29 in main (argc=1, argv=0x7fffffffe0d8) at sample-mdb.c:34
(gdb)
--
You are receiving this mail because:
You are on the CC list for the issue.
https://bugs.openldap.org/show_bug.cgi?id=9273
Issue ID: 9273
Summary: Socket leak when RST is received from LDAP Server
Product: OpenLDAP
Version: 2.3
Hardware: x86_64
OS: Linux
Status: UNCONFIRMED
Severity: normal
Priority: ---
Component: libraries
Assignee: bugs(a)openldap.org
Reporter: 30973971(a)qq.com
Target Milestone: ---
Hi
I use OpenLDAP client for TLS connections with the LDAP server. We see socket
leak happens when Authenticating with LDAP Servers.
From fd_end_480F.txt which monitors the fd open by our process, we can see
996/997/998/999 are new sockets
lrwx------ 1 root root 64 May 27 17:37 996 -> socket:[2054679952]
lrwx------ 1 root root 64 May 27 17:37 997 -> socket:[2054685915]
lrwx------ 1 root root 64 May 27 17:37 998 -> socket:[2054677956]
lrwx------ 1 root root 64 May 27 17:37 999 -> socket:[2054679950]
Search 996 in strace_480F.txt, get these logs in the end of the search.
10.65.85.71 is the ip address of LDAP server.
4086 17:38:59 socket(PF_INET, SOCK_STREAM, IPPROTO_IP) = 996 <0.000015>
4086 17:38:59 fcntl64(996, F_SETFD, FD_CLOEXEC) = 0 <0.000010>
4086 17:38:59 setsockopt(996, SOL_SOCKET, SO_KEEPALIVE, [1], 4) = 0 <0.000011>
4086 17:38:59 setsockopt(996, SOL_TCP, TCP_NODELAY, [1], 4) = 0 <0.000011>
4086 17:38:59 fcntl64(996, F_GETFL) = 0x2 (flags O_RDWR) <0.000011>
4086 17:38:59 fcntl64(996, F_SETFL, O_RDWR|O_NONBLOCK) = 0 <0.000010>
4086 17:38:59 connect(996,
{sa_family=AF_INET, sin_port=htons(636), sin_addr=inet_addr("10.65.85.71")},
16) = -1 EINPROGRESS (Operation now in progress) <0.000028>
4086 17:38:59 poll([{fd=996, events=POLLOUT|POLLERR|POLLHUP}], 1, 5000) = 1
([{fd=996, revents=POLLOUT}]) <0.000732>
4086 17:38:59 poll([{fd=996, events=POLLOUT|POLLERR|POLLHUP}], 1, 5000) = 1
([{fd=996, revents=POLLOUT}]) <0.000732>
4086 17:38:59 getpeername(996, {sa_family=AF_INET, sin_port=htons(636),
sin_addr=inet_addr("10.65.85.71")}
, [16]) = 0 <0.000027>
4086 17:38:59 fcntl64(996, F_GETFL) = 0x802 (flags O_RDWR|O_NONBLOCK)
<0.000025>
4086 17:38:59 fcntl64(996, F_SETFL, O_RDWR) = 0 <0.000025>
4086 17:38:59 write(996,
"\26\3\3\0}\1\0\0y\3\3^\316\245\263OO\0\\A\254V\223\247S\267\230\3537\207\201C"...,
130) = 130 <0.000020>
4086 17:38:59 read(996, <unfinished ...>
4086 17:38:59 read(996,
"\2\0\0M\3\3^\316\245\263\271\272z\2\222c_z\177t\347o<\204\333C\372+\\\322A\205"...,
4175) = 4175 <0.000013>
4086 17:38:59 getpeername(996,
{sa_family=AF_INET, sin_port=htons(636), sin_addr=inet_addr("10.65.85.71")}
, [16]) = 0 <0.000011>
4086 17:38:59 write(996,
"\26\3\3\0\7\v\0\0\3\0\0\0\26\3\3\0\206\20\0\0\202\0\200\272\16\205^\261\314S\20\365"...,
202) = 202 <0.000023>
4086 17:38:59 read(996, <unfinished ...>
4086 17:38:59 read(996, "\1", 1) = 1 <0.000027>
4086 17:38:59 read(996, "\26\3\3\0(", 5) = 5 <0.000024>
4086 17:38:59 read(996,
"\0\0\0\0\0\0\0\0\222\255$g\302\212\"\37\347\5\232\273g\376\326\367\274M^K\332\321\2077"...,
40) = 40 <0.000025>
4086 17:38:59 write(996,
"\26\3\3\0\242\1\0\0\236\3\3^\316\245\263\337\20\223cX\326\255U\352\374\207\t\36776G\316"...,
167) = 167 <0.000016>
4086 17:38:59 read(996, 0xac2189b, 5) = -1 ECONNRESET (Connection reset by
peer) <0.001126>
Receive ECONNRESET when do read(996), but didn't see close(996) after read(996)
996 was closed when a subprocess is created (subprocess and parent process
share the handle, this mean 996 is still open at 17:39)
15716 17:39:00 close(996) = 0 <0.000011>
4081 17:39:00 <... vfork resumed> ) = 15716 <0.042404>
996 was closed when another subprocess is created (subprocess and parent
process share the same handle, this means that 996 is still open at 17:44)
330 17:44:00 close(996) = 0 <0.000011>
330 17:44:00 execve("/nas/http/scripts/MOD_SEC/getcas",
["/nas/http/scripts/Mod_SEC/ge"..., "-type", "logout", "-host", "22.126.26.10",
"-server_name", "22.126.26.10", "-scheme", "https", "-local", "true"], [/* 147
vars */] <unfinished ...>
4084 17:44:00 <... vfork resumed> ) = 330 <0.039188>
Would you please let me know if this a known issue or a bug?
--
You are receiving this mail because:
You are on the CC list for the issue.