See here's the deal... Yes, the problem seems to occur with starttls being enabled but given the choice...
- libnss-ldap - libpam-ldap - nscd or - libnss-ldapd - libpam-ldapd - nslcd The first one fails if starttls is used to connect to the ldap server The second one fails to respect 'pam_check_host_attr yes' setting So I have problems no matter what I do. It's time for Ubuntu to clean this up as I was able to function w/ Lucid (libnss-ldap/libpam- ldap/nscd) but have only 2 lousy choices in Precise -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/423252 Title: NSS using LDAP+SSL breaks setuid applications like su, sudo, apache2 suexec, and atd To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu-release-notes/+bug/423252/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs