Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 28 Aug 2009 15:40:47 -0700
From:      Xin LI <delphij@delphij.net>
To:        Matthew Hambley <matthew@aether.demon.co.uk>
Cc:        ports@FreeBSD.ORG, delphij@FreeBSD.ORG
Subject:   Re: FreeBSD Port: openldap-server-2.4.17
Message-ID:  <4A985CEF.4030309@delphij.net>
In-Reply-To: <4A96CE78.8050305@aether.demon.co.uk>
References:  <4A96CE78.8050305@aether.demon.co.uk>

next in thread | previous in thread | raw e-mail | index | archive | help
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,

Matthew Hambley wrote:
> I've been banging my head on the wall which is OpenLDAP and Kerberos for
> a week now. As far as I can tell I need to create the environment
> variable KRB5_KTNAME to specify the keytab I want to use. If I do this
> and start slapd manually things work.
> 
> Unfortunately there seems no way of specifying this so the slapd startup
> script does so. I've tried hacking the script myself but to no avail. I
> see one person out there once had the same problem but got no replies
> explaining how this was best resolved.
> 
> Given that this hadn't been fixed in the years of the ports lifetime I
> imagine there must be a good reason for its continued absence. I just
> can't work out what it is.

I think this is a bug and has to be fixed.  Could you please try the
attached patch?  It will add a new knob to rc.conf ("slapd_krb5_ktname")
which will emulate the export.

Cheers,
- --
Xin LI <delphij@delphij.net>	http://www.delphij.net/
FreeBSD - The Power to Serve!
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.12 (FreeBSD)

iEYEARECAAYFAkqYXO4ACgkQi+vbBBjt66B6bwCgpY/2IvykApKITgL/pmsJL8XQ
MeQAoIcoySbNG9nrpYdJAIgHa2PS/r+9
=k4WO
-----END PGP SIGNATURE-----



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4A985CEF.4030309>