Speaking of more updates...

	This issue still hasn't been truly resolved:

Lorenzo Catucci released a couple of patches to deal with this but they were "rejected" by RHEL because they supposedly broke compatibility with other utilities. From reading the latest comments in the bug report (, especially #16, it appears that this is because the patch causes saslauthd to hang up if it doesn't receive rhost info, which it wouldn't from utilities that haven't been modified to send it. Perhaps the patch could be rewritten so that saslauthd doesn't _expect_ rhost, but still allows it, so it won't hang up if not given that info. Some later comments (notably #20) remark that this is an issue with other auth schemes besides pam.

In any case, it would be awesome to have this updated at the source (here), and to have it work - right now, without rhost logging capability, DDoS banners like fail2ban can't use saslauthd info (at least not with pam).

						--- Amir

At 10:57 AM -0700 10/12/2012, Howard Chu wrote:
Alexey Melnikov wrote:
On 09/10/2012 23:10, Howard Chu wrote:
Speaking of new releases, I'd like to see some feedback/movement on
these patches...
If you add/update makefiles, the process would be much quicker. (And if
you are not sure, ask).
This one is in GIT already.

Ah, I wasn't aware there was a git repo, I was still looking at CVS.

I'll sync up with git and provide Makefiles/etc for the MDB patch shortly.

  -- Howard Chu
  CTO, Symas Corp. 
  Director, Highland Sun
  Chief Architect, OpenLDAP

