[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP slurp problem



Hello,
thank you p.
I've changed host name in replica statement between different database
so now the configuration is ok for my openldap-2.0.27-8 on RH9.
Master/slave replication is ok and no more overhead is present!

thanks to all
      Mario

*** attached configuration for master and slave ***

######## START OF MASTER slapd.conf
# removed previous stuff from original file ;-)
######## 1st database
database        ldbm
suffix          "dc=domain1,dc=it"
rootdn          "cn=Manager,dc=domain1,dc=it"
# Cleartext passwords, especially for the rootdn, should
# be avoided.  See slappasswd(8) and slapd.conf(5) for details.
# Use of strong authentication encouraged.
rootpw          mypasswd
# rootpw                {crypt}ijFYNcSNctBYg
# The database directory MUST exist prior to running slapd AND
# should only be accessible by the slapd/tools. Mode 700 recommended.
directory       /var/lib/ldap/domain1-it
# Indices to maintain
index   objectClass,uid,uidNumber,gidNumber,memberUid   eq
index   cn,mail,surname,givenname                       eq,subinitial
index   sambaSID                                        eq
index   sambaPrimaryGroupSID                            eq
index   sambaDomainName                                 eq
index   default                                         sub

# hostname is important to avoid replica overhead
replica host=slave:389
        binddn="cn=Manager,dc=domain1,dc=it"
        bindmethod=simple credentials=mypasswd

replogfile /var/lib/ldap/replication.log

######## 2nd database
database        ldbm
suffix          "dc=domain2,dc=it"
rootdn          "cn=Manager,dc=domain2,dc=it"
# Cleartext passwords, especially for the rootdn, should
# be avoided.  See slappasswd(8) and slapd.conf(5) for details.
# Use of strong authentication encouraged.
rootpw          mypasswd
# rootpw                {crypt}ijFYNcSNctBYg
# The database directory MUST exist prior to running slapd AND
# should only be accessible by the slapd/tools. Mode 700 recommended.
directory       /var/lib/ldap/domain2-it
# Indices to maintain
index   objectClass,uid,uidNumber,gidNumber,memberUid   eq
index   cn,mail,surname,givenname                       eq,subinitial
index   sambaSID                                        eq
index   sambaPrimaryGroupSID                            eq
index   sambaDomainName                                 eq
index   default                                         sub

# hostname is important to avoid replica overhead
replica host=SLAVE:389
        binddn="cn=Manager,dc=domain2,dc=it"
        bindmethod=simple credentials=mypasswd

replogfile /var/lib/ldap/replication.log
######## END OF MASTER slapd.conf

######## START OF SLAVE slapd.conf
# removed previous stuff from original file ;-)
######## 1st database
database        ldbm
suffix          "dc=domain1,dc=it"
rootdn          "cn=Manager,dc=domain1,dc=it"
# Cleartext passwords, especially for the rootdn, should
# be avoided.  See slappasswd(8) and slapd.conf(5) for details.
# Use of strong authentication encouraged.
rootpw          mypasswd
# rootpw                {crypt}ijFYNcSNctBYg
# The database directory MUST exist prior to running slapd AND 
# should only be accessible by the slapd/tools. Mode 700 recommended.
directory       /var/lib/ldap/domain1-it
# Indices to maintain
index   objectClass,uid,uidNumber,gidNumber,memberUid   eq
index   cn,mail,surname,givenname                       eq,subinitial
index   sambaSID                                        eq
index   sambaPrimaryGroupSID                            eq
index   sambaDomainName                                 eq
index   default                                         sub

updatedn "cn=Manager,dc=domain1,dc=it"

######## 2nd database
database        ldbm
suffix          "dc=domain2,dc=it"
rootdn          "cn=Manager,dc=domain2,dc=it"
# Cleartext passwords, especially for the rootdn, should
# be avoided.  See slappasswd(8) and slapd.conf(5) for details.
# Use of strong authentication encouraged.
rootpw          mypasswd
# rootpw                {crypt}ijFYNcSNctBYg
# The database directory MUST exist prior to running slapd AND
# should only be accessible by the slapd/tools. Mode 700 recommended.
directory       /var/lib/ldap/domain2-it
# Indices to maintain
index   objectClass,uid,uidNumber,gidNumber,memberUid   eq
index   cn,mail,surname,givenname                       eq,subinitial
index   sambaSID                                        eq
index   sambaPrimaryGroupSID                            eq
index   sambaDomainName                                 eq
index   default                                         sub

updatedn "cn=Manager,dc=domain2,dc=it"
######## END OF SLAVE slapd.conf



---------- Initial Header -----------

>From      : "Pierangelo Masarati" ando@sys-net.it
To          : "tetenen" tetenen@libero.it
Cc          : "openldap-software" openldap-software@openldap.org
Date      : Fri, 21 Jan 2005 15:02:07 +0100 (CET)
Subject : Re: LDAP slurp problem

> 
> > My systems are both RH9, one for master and one for slave with the same
> > kind of
> > installation.
> > In particular:
> > #> rpm -q openldap
> > openldap-2.0.27-8
> >
> > do you have any suggestion to avoid this overhead?
> 
> Besides upgrading to 2.2.20, as I said earlier in this thread you have to
> make the hostnames in the replica statement different at least with
> respect to the case; e.g.
> 
> database ldbm
> suffix "dc=domain1"
> replica host="slave:389"
> # ...
> 
> database ldbm
> suffix "dc=domain2"
> replica host="SLAVE:389"
> # ...
> 
> note the difference? "slave:389" vs. "SLAVE:389".  This works in 2.2,
> don't know in 2.0 though.
> 
> p.
> 
> -- 
> Pierangelo Masarati
> mailto:pierangelo.masarati@sys-net.it
> 
> 
>     SysNet - via Dossi,8 27100 Pavia Tel: +390382573859 Fax: +390382476497
> 
> 



____________________________________________________________
6X velocizzare la tua navigazione a 56k? 6X Web Accelerator di Libero!
Scaricalo su INTERNET GRATIS 6X http://www.libero.it