Re: OpenLDAP syncrepl woes

2011-11-16 Thread Howard Chu
Jeffrey Crawford wrote: I'm trying to stabilize our openldap server farm before going live and am finding that despite the contextCSN matching between providers and replicas, the actual content of the server is getting out of sync. This is most prominent when we are testing our population

Re: SASL passthrough - multiple domains

2011-11-16 Thread Liam Gretton
On 15/11/2011 17:09, Clément OUDOT wrote: I did not do it with Kerberos, but achieve it with LDAP behind saslauthd. See this tutorial: http://ltb-project.org/wiki/documentation/general/sasl_delegation Perfect! Thanks. That's worked nicely. As an aside, I've seen lots of debates here about

Re: trigger script on change to db

2011-11-16 Thread E.S. Rosenberg
Thanks! For now I wrote a script that compares the contextCSN of the root object, but I am definitely going to play around with that backend when I get the chance. All the best, Eli 2011/11/14 Michael Ströder mich...@stroeder.com Howard Chu wrote: Michael Ströder wrote: E.S. Rosenberg

Re: Read/Write Replication setup

2011-11-16 Thread xsun
Sorry but I did not understand what is your problem. If you want to write on your 'slave' and want that change propagated to all your servers, then you should search at slapd.conf manual for the updateref option. On Wed, Nov 16, 2011 at 12:08 PM, benoit ldap.ben...@gmail.com wrote: Hello, I

Re: OpenLDAP syncrepl woes

2011-11-16 Thread Jeffrey Crawford
On Wed, Nov 16, 2011 at 12:09 AM, Howard Chu h...@symas.com wrote: Jeffrey Crawford wrote: I'm trying to stabilize our openldap server farm before going live and am finding that despite the contextCSN matching between providers and replicas, the actual content of the server is getting out of

Re: Read/Write Replication setup

2011-11-16 Thread benoit
Hello Matheus, i don't want to propagate change to the master server and schema: i can't (no write access permission to it). I want my slave to continue replicate from the master and to be able to add new objects and add new attributes to existing one. thank you 2011/11/16 xsun

Re: OpenLDAP syncrepl woes

2011-11-16 Thread Jeffrey Crawford
On Wed, Nov 16, 2011 at 7:40 AM, Jeffrey Crawford jeffr...@ucsc.edu wrote: On Wed, Nov 16, 2011 at 12:09 AM, Howard Chu h...@symas.com wrote: Jeffrey Crawford wrote: I'm trying to stabilize our openldap server farm before going live and am finding that despite the contextCSN matching between

Re: OpenLDAP syncrepl woes

2011-11-16 Thread Howard Chu
Jeffrey Crawford wrote: On Wed, Nov 16, 2011 at 12:09 AM, Howard Chuh...@symas.com wrote: There are known bugs in syncrepl delete handling. ITS#7052 is probably relevant here. The fix will be in 2.4.27. Any idea when it will be released? The release branch has been ready to go for a few

Re: trigger script on change to db

2011-11-16 Thread E.S. Rosenberg
2011/11/14 Michael Ströder mich...@stroeder.com Howard Chu wrote: Michael Ströder wrote: E.S. Rosenberg wrote: I was wondering is it possible to set a slapd syncprov consumer to trigger a script when it receives changes to the db (updates of specific attributes). You might want to

Re: OpenLDAP syncrepl woes

2011-11-16 Thread Jeffrey Crawford
On Wed, Nov 16, 2011 at 1:27 PM, Howard Chu h...@symas.com wrote: Jeffrey Crawford wrote: On Wed, Nov 16, 2011 at 7:40 AM, Jeffrey Crawfordjeffr...@ucsc.edu  wrote: On Wed, Nov 16, 2011 at 12:09 AM, Howard Chuh...@symas.com  wrote: Jeffrey Crawford wrote: I'm trying to stabilize our

Re: Read/Write Replication setup

2011-11-16 Thread Jeffrey Crawford
I think you may actually want is slapo-translucent, Basically it's aproxy overlay with added local data on top of a bdb or hdb backend On Wed, Nov 16, 2011 at 8:27 AM, benoit ldap.ben...@gmail.com wrote: Hello Matheus, i don't want to propagate change to the master server and schema: i can't