Re: Multi-master replication (ldap_sasl_bind_s failed)

2013-12-16 Thread Artur Nike
I run slap2 for: /usr/sbin/slapd -h ldap://slap2:389 -d 16383 -u openldap -g openldap 52aef96c =do_syncrepl rid=004 ldap_create ldap_url_parse_ext(ldap://ldap1:389) ldap_sasl_bind_s ldap_sasl_bind ldap_send_initial_request ldap_new_connection 1 1 0 ldap_int_open_connection

Re: Design for large openldap deployments

2013-12-16 Thread Clément OUDOT
2013/12/13 Michael Ströder mich...@stroeder.com On Fri, 13 Dec 2013 18:40:02 +0100 (CET) Christian Kratzer ck-li...@cksoft.de wrote - Allow writes to those edge sites for the purpososes of slapo_ppolicy, slapo_lastbind and password changes. Note that with OpenLDAP operational

Re: Linux kernel performance regressions

2013-12-16 Thread Howard Chu
Aris Setyawan wrote: Is this mean, that we can't use all of CPU's power with 3.12 kernel? It looks like the bug may have been fixed in 3.12.4 or 3.12.5. At least, I haven't seen it happen again after upgrading. On 12/11/13, Howard Chu h...@symas.com wrote: Original Message

Re: Storing graph data structure with MDB_FIXEDMAP

2013-12-16 Thread Howard Chu
Aris Setyawan wrote: If you want to create a record which has fields referencing the addresses of other fields within the same record, that is the goal for FIXEDMAP but this feature requires the relocation functions, which currently are not implemented. Is in the future, this feature will be

Replicate cn=config between masters and slaves?

2013-12-16 Thread Karsten Heymann
Hi, when setting up a cluster with 1+x masters and 1+x slaves, is it possible to use a single cn=config replicated between all of these? Or do masters and slaves need to have different settings anyhow. I'd like not to have to manage schema information and acls in two places. Best, Karsten

Re: Replicate cn=config between masters and slaves?

2013-12-16 Thread Christian Kratzer
Hi, On Mon, 16 Dec 2013, Karsten Heymann wrote: Hi, when setting up a cluster with 1+x masters and 1+x slaves, is it possible to use a single cn=config replicated between all of these? Or do masters and slaves need to have different settings anyhow. I'd like not to have to manage schema

Question about openLDAP proxy to MSAD

2013-12-16 Thread Alex Samad - Yieldbroker
Hi I am using openldap to sit in front of MS AD. So that servers in the DMZ can access information in MS AD and in openldap. My problem is that MS AD sends back referrals and using referrals = ignore fails. Is there anything in the olcLDAPConfig that I set to stop referrals and/or set it to