Software drama online

>> So that means OpenLDAP on Debian is still not recommended if you don't compile your own OpenSSL and OpenLDAP.

Since they're committed to using GnuTLS, yes. Unfortunately for the Debian community, just because software is released under the GPL doesn't say anything about its quality.

More tasty tidbits in this thread, entitled GNUTLS considered harmful.

Meantime, if you run OpenLDAP, don't upgrade to lenny.

