lists.arthurdejong.org
RSS feed

RE: [PATCH][RFC] set socket timeout for SSL handshake

[Date Prev][Date Next] [Thread Prev][Thread Next]

RE: [PATCH][RFC] set socket timeout for SSL handshake



[...]

> I've committed your patch with some modifications:
> - use the timelimit option
> - use LDAP_OPT_CONNECT_CB instead of LDAP_OPT_X_TLS_CONNECT_CB (this
>   also works and should cover more problematic cases) 

I did get reproducible segfaults when using LDAP_OPT_CONNECT_CB instead of 
LDAP_OPT_X_TLS_CONNECT_CB, but that may be due to the fact, that I was 
registering both callbacks at the same time.

It is quite easy to reproduce, use netcat to listen on :ldaps and configure 
nslcd to connect to it. If it doesn't segfault, it was because of me using both 
callbacks simultaneously.

[...]

> Thanks very much for your testing and patch!

And thanks for applying it.

        Stefan
-- 
To unsubscribe send an email to
nss-pam-ldapd-users-unsubscribe@lists.arthurdejong.org or see
http://lists.arthurdejong.org/nss-pam-ldapd-users