[ubuntu/hirsute-proposed] openldap 2.4.56+dfsg-1ubuntu1 (Accepted)

Paride Legovini paride.legovini at canonical.com
Mon Jan 4 15:46:15 UTC 2021


openldap (2.4.56+dfsg-1ubuntu1) hirsute; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - Enable AppArmor support:
      + d/apparmor-profile: add AppArmor profile
      + d/rules: use dh_apparmor
      + d/control: Build-Depends on dh-apparmor
      + d/slapd.README.Debian: add note about AppArmor
    - Enable GSSAPI support (first added in 2.4.18-0ubuntu2):
      + d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
        - Add --with-gssapi support
        - Make guess_service_principal() more robust when determining
          principal
      + d/configure.options: Configure with --with-gssapi
      + d/control: Added heimdal-dev as a build depend
      + d/rules:
        - Explicitly add -I/usr/include/heimdal to CFLAGS.
        - Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
      + d/libldap-2.4-2.symbols: add symbols for GSSAPI support
      This should be dropped when the soname changes.
    - Enable ufw support:
      + d/control: suggest ufw.
      + d/rules: install ufw profile.
      + d/slapd.ufw.profile: add ufw profile.
    - Enable nss overlay:
      + d/rules:
        - add nssov to CONTRIB_MODULES
        - add sysconfdir to CONTRIB_MAKEVARS
      + d/slapd.install: install nssov overlay
      + d/slapd.manpages: install slapo-nssov(5) man page
      + d/p/contrib-makefiles: given the change in 2.4.47+dfsg-3 regarding
        Debian bug #919136, we also have to patch the nssov makefile
        accordingly and thus update this patch.
    - d/{rules,slapd.py}: Add apport hook.
    - Add support for CLDAP (UDP) support, back then required by
      likewise-open (first enabled in 2.4.17-1ubuntu2):
      + d/rules: Enable -DLDAP_CONNECTIONLESS
      + d/libldap-2.4-2.symbols: add symbols for CLDAP (UDP)
      This should be dropped when the soname changes.
    - debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because
      of test timing issue.
    - d/rules: better regexp to match the Maintainer tag in d/control,
      needed in the Ubuntu case because of XSBC-Original-Maintainer
      (Closes #960448, LP #1875697)
  * d/apparmor-profile: use abstractions/ssl_keys instead of manual rules,
    allows letsencrypt to work. Thanks to Paul McEnery (LP: #1909748)

Date: Mon, 04 Jan 2021 16:18:57 +0100
Changed-By: Paride Legovini <paride.legovini at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Christian Ehrhardt  <christian.ehrhardt at canonical.com>
https://launchpad.net/ubuntu/+source/openldap/2.4.56+dfsg-1ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 04 Jan 2021 16:18:57 +0100
Source: openldap
Architecture: source
Version: 2.4.56+dfsg-1ubuntu1
Distribution: hirsute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Paride Legovini <paride.legovini at canonical.com>
Launchpad-Bugs-Fixed: 1909748
Changes:
 openldap (2.4.56+dfsg-1ubuntu1) hirsute; urgency=medium
 .
   * Merge with Debian unstable. Remaining changes:
     - Enable AppArmor support:
       + d/apparmor-profile: add AppArmor profile
       + d/rules: use dh_apparmor
       + d/control: Build-Depends on dh-apparmor
       + d/slapd.README.Debian: add note about AppArmor
     - Enable GSSAPI support (first added in 2.4.18-0ubuntu2):
       + d/patches/gssapi.diff, thanks to Jerry Carter (Likewise):
         - Add --with-gssapi support
         - Make guess_service_principal() more robust when determining
           principal
       + d/configure.options: Configure with --with-gssapi
       + d/control: Added heimdal-dev as a build depend
       + d/rules:
         - Explicitly add -I/usr/include/heimdal to CFLAGS.
         - Explicitly add -I/usr/lib/<multiarch>/heimdal to LDFLAGS.
       + d/libldap-2.4-2.symbols: add symbols for GSSAPI support
       This should be dropped when the soname changes.
     - Enable ufw support:
       + d/control: suggest ufw.
       + d/rules: install ufw profile.
       + d/slapd.ufw.profile: add ufw profile.
     - Enable nss overlay:
       + d/rules:
         - add nssov to CONTRIB_MODULES
         - add sysconfdir to CONTRIB_MAKEVARS
       + d/slapd.install: install nssov overlay
       + d/slapd.manpages: install slapo-nssov(5) man page
       + d/p/contrib-makefiles: given the change in 2.4.47+dfsg-3 regarding
         Debian bug #919136, we also have to patch the nssov makefile
         accordingly and thus update this patch.
     - d/{rules,slapd.py}: Add apport hook.
     - Add support for CLDAP (UDP) support, back then required by
       likewise-open (first enabled in 2.4.17-1ubuntu2):
       + d/rules: Enable -DLDAP_CONNECTIONLESS
       + d/libldap-2.4-2.symbols: add symbols for CLDAP (UDP)
       This should be dropped when the soname changes.
     - debian/patches/fix_test_timing.patch: fix FTBFS on riscv64 because
       of test timing issue.
     - d/rules: better regexp to match the Maintainer tag in d/control,
       needed in the Ubuntu case because of XSBC-Original-Maintainer
       (Closes #960448, LP #1875697)
   * d/apparmor-profile: use abstractions/ssl_keys instead of manual rules,
     allows letsencrypt to work. Thanks to Paul McEnery (LP: #1909748)
Checksums-Sha1:
 a3f6132609e2562ebeab81f72c9928b95cc24f09 3155 openldap_2.4.56+dfsg-1ubuntu1.dsc
 b1eb2b52c251c63b0a43d5e6f0953fec7270927c 5054166 openldap_2.4.56+dfsg.orig.tar.gz
 9bbeffd3a663eebe1857e2e453a1d63cc577b359 182140 openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
 2f6f3ff56280f6eb05d7dd94c6b049cee9223a4b 7355 openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Checksums-Sha256:
 f65da508484b8e75e683fff7ea0fa7f54ce4c7afe0d6ce0cca8c0c074e04de99 3155 openldap_2.4.56+dfsg-1ubuntu1.dsc
 868bf5a6b2c6ed4b525b88cb725f5782657c3a95dd27cb09525ab47e8d736d81 5054166 openldap_2.4.56+dfsg.orig.tar.gz
 b4b0aa02ca63393cb123793902b7e236c5a43f127bac13363571136225033f34 182140 openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
 e9ed60b26ad198fdc02e6ea4b93749a294370c6a29aa868948775b9089a24260 7355 openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Files:
 0c2abfc7981023971fbb94fa016c0300 3155 net optional openldap_2.4.56+dfsg-1ubuntu1.dsc
 d52e91ef6a4d867802ea1ce8189d09f9 5054166 net optional openldap_2.4.56+dfsg.orig.tar.gz
 ef7931a89ce28dedc1033012a819a997 182140 net optional openldap_2.4.56+dfsg-1ubuntu1.debian.tar.xz
 40b29d075216aab677528965dec79ad7 7355 net optional openldap_2.4.56+dfsg-1ubuntu1_source.buildinfo
Original-Maintainer: Debian OpenLDAP Maintainers <pkg-openldap-devel at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
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=Cvpt
-----END PGP SIGNATURE-----


More information about the Hirsute-changes mailing list