[ubuntu/noble-proposed] openldap 2.6.10+dfsg-0ubuntu0.24.04.1 (Accepted)

Jonas Jelten jonas.jelten at canonical.com
Wed Jan 14 16:50:36 UTC 2026


openldap (2.6.10+dfsg-0ubuntu0.24.04.1) noble; urgency=medium

  * New upstream version (LP: #2127665):
    - 2.6.10:
      - Added slapd microsecond timestamp format for local logging (ITS#10140)
      - Fixed libldap ldap_result behavior with LDAP_MSG_RECEIVED (ITS#10229)
      - Fixed lloadd handling of starttls critical (ITS#10323)
      - Fixed slapd syncrepl when used with slapo-rwm (ITS#10290)
      - Fixed slapd regression with certain searches (ITS#10307)
      - Fixed slapo-autoca olcAutoCAserverClass object (ITS#10288)
      - Fixed slapo-pcache caching behaviors (ITS#10270)

    - 2.6.9:
      - Fixed libldap TLS connection timeout handling (ITS#8047)
      - Fixed libldap GnuTLS incompatible pointer type (ITS#10253)
      - Fixed libldap OpenSSL set_ciphersuite error handling (ITS#10223)
      - Fixed libldap to check for OpenSSL EVP_Digest* failure (ITS#10224)
      - Fixed slapd cn=config disallowed modification of cn=schema (ITS#10256)
      - Fixed slapd syncrepl assert during refresh at shutdown (ITS#10232)
      - Fixed slapd syncrepl retry state during refreshDone (ITS#10234)
      - Fixed slapd-ldap use of multi-precision add for op counters (ITS#10237)
      - Fixed slapd-mdb idl intersection (ITS#10233)
      - Fixed slapd-wt idl intersection (ITS#10233)
      - Fixed slapo-memberof to omit dynamic values (ITS#10230)
      - Fixed slapo-nestgroup leak in nestgroup_memberFilter (ITS#10249)
      - Fixed slapo-translucent regression with subordinate databases (ITS#10248)
      - Fixed slapo-translucent regression when requesting attributes (ITS#10272)
      - Fixed slappw-argon2 defaults to be more secure (ITS#9827)

    - 2.6.8:
      - Fixed libldap exit handling with OpenSSL3 again (ITS#9952)
      - Fixed libldap OpenSSL channel binding digest (ITS#10216)
      - Fixed slapd handling of large uid/gids peercred auth (ITS#10211)
      - Fixed slapd-asyncmeta/meta target structure allocations (ITS#10197)
      - Fixed slapd-meta with dynlist (ITS#10164)
      - Fixed slapd-meta binds when proxying internal op (ITS#10165)
      - Added slapo-nestgroup overlay (ITS#10161)
      - Added slapo-memberof 'addcheck' option (ITS#10167)
      - Fixed slapo-accesslog startup initialization (ITS#10170)
      - Fixed slapo-constraint double free on invalid attr (ITS#10204)
      - Fixed slapo-dynlist with abandoned operations (ITS#10044)
      - Build
        - Fixed build with gcc14.x (ITS#10166)
        - Fixed back-perl with clang15 (ITS#10177)
        - Fixed to reduce systemd dependencies (ITS#10214)
      - Contrib
        - Added slapo-alias contrib module (ITS#10104, ITS#10182)
        - Fixed slapo-autogroup to work with slapo-dynlist (ITS#10185)
        - Fixed smbk5pwd implicit function declaration (ITS#10206)
      - Documentation
        - Fixed slapo-memberof exattr requirements (ITS#7400)
        - Fixed slapo-memberof is no longer deprecated (ITS#7400)

    - d/p/lp2090806...TLS-...timeout-handling: removed
      [upstream in 2.6.9]
    - d/p/smbk5pwd-implicit-declaration: removed
      [upstream in 2.6.8]
    - d/p/64-bit-time-t-compat: adjust for 2.6.10
    - d/slapd.{install,manpages}: install new slapo-nestgroup overlay
      [from 2.6.8+dfsg-1~exp2]
    - d/slapd.manpages: add slapo-autogroup overlay
      [from 2.6.8+dfsg-1~exp2]
  * pbkdf2 iteration configuration support (LP: #2125685)
    - d/p/lp2125685-pbkdf2-configurable-rounds: make iterations configurable
    - d/p/lp2125685-pbkdf2-fix-iteration-arg: fix iteration argument index
    - d/t/pbkdf2-contrib: test if pbkdf2 hashing rounds are adjustable
  * Enable build of ppm password quality check module (LP: #2121816)
    - d/rules: build ppm password quality module
    - d/p/contrib-makefiles: add build adjustment from 2.6.9+dfsg-1~exp1 (#1039740)
    - d/p/ppm-cross: cross-build patch from 2.6.8+dfsg-1~exp1 (#1079533)
    - d/t/ppm-contrib: test ppm password quality module
    - d/control: add build dependency on libcrack2-dev for ppm
    - d/slapd-contrib.{examples,install,manpages}: add ppm

Date: Tue, 23 Sep 2025 18:26:39 +0200
Changed-By: Jonas Jelten <jonas.jelten at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Andreas Hasenack <andreas.hasenack at canonical.com>
https://launchpad.net/ubuntu/+source/openldap/2.6.10+dfsg-0ubuntu0.24.04.1
-------------- next part --------------
Format: 1.8
Date: Tue, 23 Sep 2025 18:26:39 +0200
Source: openldap
Built-For-Profiles: noudeb
Architecture: source
Version: 2.6.10+dfsg-0ubuntu0.24.04.1
Distribution: noble
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jonas Jelten <jonas.jelten at canonical.com>
Launchpad-Bugs-Fixed: 2121816 2125685 2127665
Changes:
 openldap (2.6.10+dfsg-0ubuntu0.24.04.1) noble; urgency=medium
 .
   * New upstream version (LP: #2127665):
     - 2.6.10:
       - Added slapd microsecond timestamp format for local logging (ITS#10140)
       - Fixed libldap ldap_result behavior with LDAP_MSG_RECEIVED (ITS#10229)
       - Fixed lloadd handling of starttls critical (ITS#10323)
       - Fixed slapd syncrepl when used with slapo-rwm (ITS#10290)
       - Fixed slapd regression with certain searches (ITS#10307)
       - Fixed slapo-autoca olcAutoCAserverClass object (ITS#10288)
       - Fixed slapo-pcache caching behaviors (ITS#10270)
 .
     - 2.6.9:
       - Fixed libldap TLS connection timeout handling (ITS#8047)
       - Fixed libldap GnuTLS incompatible pointer type (ITS#10253)
       - Fixed libldap OpenSSL set_ciphersuite error handling (ITS#10223)
       - Fixed libldap to check for OpenSSL EVP_Digest* failure (ITS#10224)
       - Fixed slapd cn=config disallowed modification of cn=schema (ITS#10256)
       - Fixed slapd syncrepl assert during refresh at shutdown (ITS#10232)
       - Fixed slapd syncrepl retry state during refreshDone (ITS#10234)
       - Fixed slapd-ldap use of multi-precision add for op counters (ITS#10237)
       - Fixed slapd-mdb idl intersection (ITS#10233)
       - Fixed slapd-wt idl intersection (ITS#10233)
       - Fixed slapo-memberof to omit dynamic values (ITS#10230)
       - Fixed slapo-nestgroup leak in nestgroup_memberFilter (ITS#10249)
       - Fixed slapo-translucent regression with subordinate databases (ITS#10248)
       - Fixed slapo-translucent regression when requesting attributes (ITS#10272)
       - Fixed slappw-argon2 defaults to be more secure (ITS#9827)
 .
     - 2.6.8:
       - Fixed libldap exit handling with OpenSSL3 again (ITS#9952)
       - Fixed libldap OpenSSL channel binding digest (ITS#10216)
       - Fixed slapd handling of large uid/gids peercred auth (ITS#10211)
       - Fixed slapd-asyncmeta/meta target structure allocations (ITS#10197)
       - Fixed slapd-meta with dynlist (ITS#10164)
       - Fixed slapd-meta binds when proxying internal op (ITS#10165)
       - Added slapo-nestgroup overlay (ITS#10161)
       - Added slapo-memberof 'addcheck' option (ITS#10167)
       - Fixed slapo-accesslog startup initialization (ITS#10170)
       - Fixed slapo-constraint double free on invalid attr (ITS#10204)
       - Fixed slapo-dynlist with abandoned operations (ITS#10044)
       - Build
         - Fixed build with gcc14.x (ITS#10166)
         - Fixed back-perl with clang15 (ITS#10177)
         - Fixed to reduce systemd dependencies (ITS#10214)
       - Contrib
         - Added slapo-alias contrib module (ITS#10104, ITS#10182)
         - Fixed slapo-autogroup to work with slapo-dynlist (ITS#10185)
         - Fixed smbk5pwd implicit function declaration (ITS#10206)
       - Documentation
         - Fixed slapo-memberof exattr requirements (ITS#7400)
         - Fixed slapo-memberof is no longer deprecated (ITS#7400)
 .
     - d/p/lp2090806...TLS-...timeout-handling: removed
       [upstream in 2.6.9]
     - d/p/smbk5pwd-implicit-declaration: removed
       [upstream in 2.6.8]
     - d/p/64-bit-time-t-compat: adjust for 2.6.10
     - d/slapd.{install,manpages}: install new slapo-nestgroup overlay
       [from 2.6.8+dfsg-1~exp2]
     - d/slapd.manpages: add slapo-autogroup overlay
       [from 2.6.8+dfsg-1~exp2]
   * pbkdf2 iteration configuration support (LP: #2125685)
     - d/p/lp2125685-pbkdf2-configurable-rounds: make iterations configurable
     - d/p/lp2125685-pbkdf2-fix-iteration-arg: fix iteration argument index
     - d/t/pbkdf2-contrib: test if pbkdf2 hashing rounds are adjustable
   * Enable build of ppm password quality check module (LP: #2121816)
     - d/rules: build ppm password quality module
     - d/p/contrib-makefiles: add build adjustment from 2.6.9+dfsg-1~exp1 (#1039740)
     - d/p/ppm-cross: cross-build patch from 2.6.8+dfsg-1~exp1 (#1079533)
     - d/t/ppm-contrib: test ppm password quality module
     - d/control: add build dependency on libcrack2-dev for ppm
     - d/slapd-contrib.{examples,install,manpages}: add ppm
Checksums-Sha1:
 45c53638baf28a6175058b6f9358bdf21f627bd9 3653 openldap_2.6.10+dfsg-0ubuntu0.24.04.1.dsc
 fedb1576cd4dcfe9838d6ac4b00592698a97b086 3754560 openldap_2.6.10+dfsg.orig.tar.xz
 b894272f2698235b3fa76132a5d58a0fccd2544a 191132 openldap_2.6.10+dfsg-0ubuntu0.24.04.1.debian.tar.xz
 235fedf0719a7eb7d1c8bcd36f5d0a24547eec17 7544 openldap_2.6.10+dfsg-0ubuntu0.24.04.1_source.buildinfo
Checksums-Sha256:
 63be3643ff4157d84ef8bd9763fb7252695ceaea46773277600377417ecd21de 3653 openldap_2.6.10+dfsg-0ubuntu0.24.04.1.dsc
 e871102bda1e42155fd4d6be4825a297e1c593cb0907b84fc7dde888dc847877 3754560 openldap_2.6.10+dfsg.orig.tar.xz
 91bdd643954645ce8ba51152516831ce4dcb497a222b88a5df847c4780e5f79e 191132 openldap_2.6.10+dfsg-0ubuntu0.24.04.1.debian.tar.xz
 0e6f2347a036ba25b02199085d777848735362e68385fd62d9ba8f8912d98cbf 7544 openldap_2.6.10+dfsg-0ubuntu0.24.04.1_source.buildinfo
Files:
 dfc4994e56512e0229e57f4fed5ccd12 3653 net optional openldap_2.6.10+dfsg-0ubuntu0.24.04.1.dsc
 4cd7308803ad2c7eb3168be97e76ccf6 3754560 net optional openldap_2.6.10+dfsg.orig.tar.xz
 1f50bfc6f4959b1442b4eacd2ec4bdfb 191132 net optional openldap_2.6.10+dfsg-0ubuntu0.24.04.1.debian.tar.xz
 299b5b7d0005aaf5b3caeee4014d9f73 7544 net optional openldap_2.6.10+dfsg-0ubuntu0.24.04.1_source.buildinfo
Original-Maintainer: Debian OpenLDAP Maintainers <pkg-openldap-devel at lists.alioth.debian.org>
Vcs-Git: https://git.launchpad.net/~ahasenack/ubuntu/+source/openldap
Vcs-Git-Commit: e060f3d2fc86417958c3d91cfd87efc03eb2d2f9
Vcs-Git-Ref: refs/heads/lp2112527-backport-2.6.10-noble


More information about the noble-changes mailing list