Authenticating groups via LDAP

Josip Rodin joy at entuzijast.net
Sat May 22 22:20:10 CEST 2010


On Sat, May 22, 2010 at 10:22:12AM -0400, John Dennis wrote:
> Alan I didn't see any open bugs on this, should we open one? Is this a  
> planned modification for 2.2? I recall some discussion of this a while  
> back on the mailing list. I suppose changing this is 2.1 would be a  
> version violation. But it has such serious negative consequences I  
> wonder if we shouldn't bite the bullet and change it in 2.1.9 before  
> more people get bitten by this. But to be honest I'm not sure which is  
> worse, an unexpected config file change on upgrade or mysterious  
> *silent* failures after upgrade.
>
> I think the RPM spec file (and the deb files) could include a script  
> which would detect the an old modules directory layout and convert it to  
> modules-{available,enabled} layout automatically during a package 
> upgrade.

The deb package maintenance scripts can and will do the same.

> Also, I was just looking at our RPM spec file and I noticed that files  
> in /etc/raddb/sites-enabled (which should just be symlinks) are marked  
> as config(noreplace) which means RPM will leave backup files there  
> instead of treating sites-enabled as just a collection of symlinks to be  
> left alone. I think this represents a packaging bug on my end. However I  
> noticed the suse freeradius.spec file in the freeradius-server tarballs  
> also have the exact same config(noreplace) in raddb/sites-enabled so  
> that packaging bug seems universal.

We had the same problem in Debian packages at one point, but we unmarked
them as conffiles already.

-- 
     2. That which causes joy or happiness.



More information about the Freeradius-Users mailing list