Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 177152 - net-dns/bind-9.3.4-r2 crash with segment fault when using ldap group with ssl start_tls in ldap.conf
Summary: net-dns/bind-9.3.4-r2 crash with segment fault when using ldap group with ssl...
Status: RESOLVED NEEDINFO
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: [OLD] Server (show other bugs)
Hardware: AMD64 Linux
: High normal (vote)
Assignee: Konstantin Arkhipov (RETIRED)
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2007-05-05 11:14 UTC by Chan Min Wai
Modified: 2007-06-02 20:38 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Chan Min Wai 2007-05-05 11:14:24 UTC
bind-9.3.4-r2 crash with segment fault when using ldap group in nsswitch.conf
and under ldap.conf enable ssl start_tls



Reproducible: Always

Steps to Reproduce:
Please help to configure the ldap as show on 
http://gentoo-wiki.com/HOWTO_LDAP_SAMBA_PDC/Basic_Setup#.2Fetc.2Fnsswitch.conf
(Using the alternative configuration, without touching pam.d)

You will need to configure 
1. openldap (/etc/openldap/slapd.conf & /etc/openldap/lapd.conf)
2. nsswitch.conf
3. ldap.conf + ldap.secret
(Skip samba configuration, we don't need that but still you will need to populate your ldap database)
Continue on 
http://gentoo-wiki.com/HOWTO_LDAP_SAMBA_PDC_Security_Upgrade
To give your openldap security upgrade

**Changes that make things Fail**
If you enable ssl start_tls under /etc/ldap.conf
restart name will fail but if that is comment it will run without problem.


Actual Results:  
/lib/rcscripts/sh/rc-daemon.sh: line 231: 23274 Segmentation fault      /sbin/start-stop-daemon '--start' '--quiet' '--pidfile' '/chroot/dns/var/run/named/named.pid' '--exec' '/usr/sbin/named' '--' '-u' 'named' '-n' '2' '-t' '/chroot/dns' 


Expected Results:  
named should restart without issue

Portage 2.1.2.2 (default-linux/amd64/2006.1/server, gcc-4.1.1, glibc-2.5-r0, 2.6.20-gentoo-r7 x86_64)
=================================================================
System uname: 2.6.20-gentoo-r7 x86_64 Intel(R) Xeon(R) CPU            3040  @ 1.86GHz
Gentoo Base System release 1.12.9
Timestamp of tree: Wed, 02 May 2007 23:20:01 +0000
ccache version 2.4 [enabled]
dev-lang/python:     2.4.3-r4
dev-python/pycrypto: 2.0.1-r5
dev-util/ccache:     2.4-r7
sys-apps/sandbox:    1.2.17
sys-devel/autoconf:  2.13, 2.61
sys-devel/automake:  1.4_p6, 1.5, 1.6.3, 1.7.9-r1, 1.8.5-r3, 1.9.6-r2, 1.10
sys-devel/binutils:  2.16.1-r3
sys-devel/gcc-config: 1.3.15-r1
sys-devel/libtool:   1.5.22
virtual/os-headers:  2.6.17-r2
ACCEPT_KEYWORDS="amd64"
AUTOCLEAN="yes"
CBUILD="x86_64-pc-linux-gnu"
CFLAGS="-O2 -march=nocona -fomit-frame-pointer -pipe -falign-functions=64"
CHOST="x86_64-pc-linux-gnu"
CONFIG_PROTECT="/etc /var/bind"
CONFIG_PROTECT_MASK="/etc/env.d /etc/gconf /etc/php/apache1-php5/ext-active/ /etc/php/apache2-php5/ext-active/ /etc/php/cgi-php5/ext-active/ /etc/php/cli-php5/ext-active/ /etc/revdep-rebuild /etc/terminfo"
CXXFLAGS="-O2 -march=nocona -fomit-frame-pointer -pipe -falign-functions=64"
DISTDIR="/usr/portage/distfiles"
FEATURES="buildpkg candy ccache distlocks fixpackages metadata-transfer sandbox sfperms strict"
GENTOO_MIRRORS="ftp://mirror.pacific.net.au/linux/Gento ftp://gg3.net/pub/linux/gentoo/ http://gentoo.channelx.biz/ ftp://ftp.jaist.ac.jp/pub/Linux/Gentoo/ http://gentoo.osuosl.org/ ftp://distro.ibiblio.org/pub/linux/distributions/gentoo/ ftp://ftp.gtlib.gatech.edu/pub/gentoo ftp://mirror.iawnet.sandia.gov/pub/gentoo/ ftp://ftp.ussg.iu.edu/pub/linux/gentoo ftp://ftp.ucsb.edu/pub/mirrors/linux/gentoo/ ftp://gentoo.chem.wisc.edu/gentoo/ http://cudlug.cudenver.edu/gentoo/ ftp://gentoo.mirrors.pair.com/ ftp://gentoo.mirrors.tds.net/gentoo ftp://gentoo.netnitco.net/pub/mirrors/gentoo/source/ ftp://ftp.ndlug.nd.edu/pub/gentoo/ http://open-systems.ufl.edu/mirrors/gentoo ftp://gentoo.llarian.net/pub/gentoo ftp://mirror.datapipe.net/gentoo ftp://mirror.usu.edu/mirrors/gentoo/ ftp://lug.mtu.edu/gentoo ftp://mirror.mcs.anl.gov/pub/gentoo/ ftp://gentoo.cites.uiuc.edu/pub/gentoo/ ftp://ftp.wwc.edu/pub/mirrors/ftp.gentoo.org ftp://mirror.utdlug.org/linux/distributions/gentoo/ ftp://gentoo.inode.at/source/ ftp://gd.tuwien.ac.at/opsys/linux/gentoo/ ftp://ftp.planetmirror.com/pub/gentoo/ ftp://mirror.pacific.net.au/linux/Gentoo ftp://mirror.isp.net.au/pub/gentoo/ ftp://fido.online.kz/gentoo/pub ftp://ftp.isu.edu.tw/pub/Linux/Gentoo ftp://ftp.twaren.net/Linux/Gentoo/ ftp://ftp.ncnu.edu.tw/Linux/Gentoo/ "
LANG="en_US.UTF-8"
LC_ALL="en_US.UTF-8"
LDFLAGS="-Wl,-O1 -Wl,--enable-new-dtags -Wl,--sort-common -s"
MAKEOPTS="-j3"
PKGDIR="/usr/portage/packages"
PORTAGE_RSYNC_OPTS="--recursive --links --safe-links --perms --times --compress --force --whole-file --delete --delete-after --stats --timeout=180 --exclude=/distfiles --exclude=/local --exclude=/packages --filter=H_**/files/digest-*"
PORTAGE_TMPDIR="/var/tmp"
PORTDIR="/usr/portage"
PORTDIR_OVERLAY="/usr/portage/local/layman/sunrise /usr/local/portage"
SYNC="rsync://rsync.asia.gentoo.org/gentoo-portage"
USE="acl amd64 apache2 bash-completion berkdb bitmap-fonts cjk cli cracklib crypt cups curl dri fortran gd gdbm gif gpm iconv imagemagick imap iodbc ipv6 isdnlog javascript jpeg kerberos ldap libedit libg++ logrotate mad maildir mailwrapper mbox memlimit mhash midi mime mysql ncurses nls nptl nptlonly objc odbc ogg pam pcre perl png posix postgres ppds pppd python readline reflection samba sasl session slp snmp sockets spl ssl tcpd test tetex truetype truetype-fonts type1-fonts unicode usb vhosts xml xmlrpc xorg zlib" ALSA_CARDS="ali5451 als4000 atiixp atiixp-modem bt87x ca0106 cmipci emu10k1x ens1370 ens1371 es1938 es1968 fm801 hda-intel intel8x0 intel8x0m maestro3 trident usb-audio via82xx via82xx-modem ymfpci" ALSA_PCM_PLUGINS="adpcm alaw asym copy dmix dshare dsnoop empty extplug file hooks iec958 ioplug ladspa lfloat linear meter mulaw multi null plug rate route share shm softvol" ELIBC="glibc" INPUT_DEVICES="keyboard mouse evdev" KERNEL="linux" LCD_DEVICES="bayrad cfontz cfontz633 glk hd44780 lb216 lcdm001 mtxorb ncurses text" USERLAND="GNU" VIDEO_CARDS="apm ark ati chips cirrus cyrix dummy fbdev glint i128 i810 mga neomagic nv rendition s3 s3virge savage siliconmotion sis sisusb tdfx tga trident tseng v4l vesa vga via vmware voodoo"
Unset:  CTARGET, EMERGE_DEFAULT_OPTS, INSTALL_MASK, LINGUAS, PORTAGE_COMPRESS, PORTAGE_COMPRESS_FLAGS, PORTAGE_RSYNC_EXTRA_OPTS

============
net-nds/openldap-2.3.30-r2  USE="berkdb crypt ipv6 kerberos odbc perl readline samba sasl slp ssl tcpd "
net-dns/bind-9.3.4-r2  USE="berkdb ipv6 ldap mysql odbc postgres ssl"
Comment 1 Konstantin Arkhipov (RETIRED) gentoo-dev 2007-06-02 20:38:03 UTC
can you try 9.4.1 please?