[ubuntu/hirsute-proposed] openldap 2.4.56+dfsg-1ubuntu1 (Accepted)
Paride Legovini
paride.legovini at canonical.com
Mon Jan 4 15:46:15 UTC 2021
openldap (2.4.56+dfsg-1ubuntu1) hirsute; urgency=medium
* Merge with Debian unstable. Remaining changes:
- Enable AppArmor support:
+ d/apparmor-profile: add AppArmor profile
+ d/rules: use dh_apparmor
+ d/control: Build-Depends on dh-apparmor
+ d/slapd.README.Debian: add note about AppArmor
- Enable GSSAPI support (first added in 2.4.18-0ubuntu2):
+ d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
- Add --with-gssapi support
- Make guess_service_principal() more robust when determining
principal
+ d/configure.options: Configure with --with-gssapi
+ d/control: Added heimdal-dev as a build depend
+ d/rules:
- Explicitly add -I/usr/include/heimdal to CFLAGS.
- Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
+ d/libldap-2.4-2.symbols: add symbols for GSSAPI support
This should be dropped when the soname changes.
- Enable ufw support:
+ d/control: suggest ufw.
+ d/rules: install ufw profile.
+ d/slapd.ufw.profile: add ufw profile.
- Enable nss overlay:
+ d/rules:
- add nssov to CONTRIB_MODULES
- add sysconfdir to CONTRIB_MAKEVARS
+ d/slapd.install: install nssov overlay
+ d/slapd.manpages: install slapo-nssov(5) man page
+ d/p/contrib-makefiles: given the change in 2.4.47+dfsg-3 regarding
Debian bug #919136, we also have to patch the nssov makefile
accordingly and thus update this patch.
- d/{rules,slapd.py}: Add apport hook.
- Add support for CLDAP (UDP) support, back then required by
likewise-open (first enabled in 2.4.17-1ubuntu2):
+ d/rules: Enable -DLDAP_CONNECTIONLESS
+ d/libldap-2.4-2.symbols: add symbols for CLDAP (UDP)
This should be dropped when the soname changes.
- debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because
of test timing issue.
- d/rules: better regexp to match the Maintainer tag in d/control,
needed in the Ubuntu case because of XSBC-Original-Maintainer
(Closes #960448, LP #1875697)
* d/apparmor-profile: use abstractions/ssl_keys instead of manual rules,
allows letsencrypt to work. Thanks to Paul McEnery (LP: #1909748)
Date: Mon, 04 Jan 2021 16:18:57 +0100
Changed-By: Paride Legovini <paride.legovini at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Christian Ehrhardt <christian.ehrhardt at canonical.com>
https://launchpad.net/ubuntu/+source/openldap/2.4.56+dfsg-1ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 04 Jan 2021 16:18:57 +0100
Source: openldap
Architecture: source
Version: 2.4.56+dfsg-1ubuntu1
Distribution: hirsute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Paride Legovini <paride.legovini at canonical.com>
Launchpad-Bugs-Fixed: 1909748
Changes:
openldap (2.4.56+dfsg-1ubuntu1) hirsute; urgency=medium
.
* Merge with Debian unstable. Remaining changes:
- Enable AppArmor support:
+ d/apparmor-profile: add AppArmor profile
+ d/rules: use dh_apparmor
+ d/control: Build-Depends on dh-apparmor
+ d/slapd.README.Debian: add note about AppArmor
- Enable GSSAPI support (first added in 2.4.18-0ubuntu2):
+ d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
- Add --with-gssapi support
- Make guess_service_principal() more robust when determining
principal
+ d/configure.options: Configure with --with-gssapi
+ d/control: Added heimdal-dev as a build depend
+ d/rules:
- Explicitly add -I/usr/include/heimdal to CFLAGS.
- Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
+ d/libldap-2.4-2.symbols: add symbols for GSSAPI support
This should be dropped when the soname changes.
- Enable ufw support:
+ d/control: suggest ufw.
+ d/rules: install ufw profile.
+ d/slapd.ufw.profile: add ufw profile.
- Enable nss overlay:
+ d/rules:
- add nssov to CONTRIB_MODULES
- add sysconfdir to CONTRIB_MAKEVARS
+ d/slapd.install: install nssov overlay
+ d/slapd.manpages: install slapo-nssov(5) man page
+ d/p/contrib-makefiles: given the change in 2.4.47+dfsg-3 regarding
Debian bug #919136, we also have to patch the nssov makefile
accordingly and thus update this patch.
- d/{rules,slapd.py}: Add apport hook.
- Add support for CLDAP (UDP) support, back then required by
likewise-open (first enabled in 2.4.17-1ubuntu2):
+ d/rules: Enable -DLDAP_CONNECTIONLESS
+ d/libldap-2.4-2.symbols: add symbols for CLDAP (UDP)
This should be dropped when the soname changes.
- debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because
of test timing issue.
- d/rules: better regexp to match the Maintainer tag in d/control,
needed in the Ubuntu case because of XSBC-Original-Maintainer
(Closes #960448, LP #1875697)
* d/apparmor-profile: use abstractions/ssl_keys instead of manual rules,
allows letsencrypt to work. Thanks to Paul McEnery (LP: #1909748)
Checksums-Sha1:
a3f6132609e2562ebeab81f72c9928b95cc24f09 3155 openldap_2.4.56+dfsg-1ubuntu1.dsc
b1eb2b52c251c63b0a43d5e6f0953fec7270927c 5054166 openldap_2.4.56+dfsg.orig.tar.gz
9bbeffd3a663eebe1857e2e453a1d63cc577b359 182140 openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
2f6f3ff56280f6eb05d7dd94c6b049cee9223a4b 7355 openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Checksums-Sha256:
f65da508484b8e75e683fff7ea0fa7f54ce4c7afe0d6ce0cca8c0c074e04de99 3155 openldap_2.4.56+dfsg-1ubuntu1.dsc
868bf5a6b2c6ed4b525b88cb725f5782657c3a95dd27cb09525ab47e8d736d81 5054166 openldap_2.4.56+dfsg.orig.tar.gz
b4b0aa02ca63393cb123793902b7e236c5a43f127bac13363571136225033f34 182140 openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
e9ed60b26ad198fdc02e6ea4b93749a294370c6a29aa868948775b9089a24260 7355 openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Files:
0c2abfc7981023971fbb94fa016c0300 3155 net optional openldap_2.4.56+dfsg-1ubuntu1.dsc
d52e91ef6a4d867802ea1ce8189d09f9 5054166 net optional openldap_2.4.56+dfsg.orig.tar.gz
ef7931a89ce28dedc1033012a819a997 182140 net optional openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
40b29d075216aab677528965dec79ad7 7355 net optional openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Original-Maintainer: Debian OpenLDAP Maintainers <pkg-openldap-devel at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----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=Cvpt
-----END PGP SIGNATURE-----
More information about the Hirsute-changes
mailing list