For me both workarounds in the release notes aren't very usable, unfortunately. 
I can't use libnss-ldapd as the pam_check_host_attr and pam_check_service_attr 
options in libnss-ldap are essential for me, but as Ian Gordon wrote 
libnss-ldapd doesn't support these.
The other solution (nscd) is usable, but only as long as nscd doesn't crash. 
The past told us nscd isn't the most stable daemon in the world unfortunately.

-- 
NSS using LDAP+SSL breaks setuid applications like su and sudo
https://bugs.launchpad.net/bugs/423252
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in ubuntu.

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to