[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: 2.4.16: sizelimit broken due to ors_slimit is set to SLAPD_DEFAULT_SIZELIMIT



On Sunday 14 June 2009, Quanah Gibson-Mount wrote:

> You don't show what sizelimit is in place on the *provider* which is what
> would determine how syncrepl is affected.
>
> --Quanah


Hmm, seems it was a bit late in the evening.

This is a provider config snippet, I've taken a mirror as the syncrepl 
provider.

I've tried to cut out irrelevant lines, with less success as you see.
Sorry for the confusion.

Bye
Christian

Now the complete configuration:

include         /etc/openldap/schema/core.schema
include         /etc/openldap/schema/cosine.schema
include         /etc/openldap/schema/inetorgperson.schema
include         /etc/openldap/schema/rfc2307bis.schema
include         /etc/openldap/schema/samba.schema
include         /etc/openldap/schema/misc.schema
include         /etc/openldap/schema/openssh-lpk.schema
include         /etc/openldap/schema/radius.schema
include         /etc/openldap/schema/egr.schema
include         /etc/openldap/schema/mozillaabpersonalpha.schema
include         /etc/openldap/schema/dhcp.schema

pidfile         /var/run/openldap/slapd.pid
argsfile        /var/run/openldap/slapd.args

TLSCertificateFile /etc/openldap/ssl/ldap.pem
TLSCertificateKeyFile /etc/openldap/ssl/ldap.pem
TLSCACertificateFile /etc/openldap/ssl/ca.crt
TLSVerifyClient never

loglevel  none
serverID 2
security ssf=256
disallow bind_anon
require authc

database bdb
suffix "dc=foo,dc=bar"
rootdn "cn=Manager,dc=foo,dc=bar"
rootpw secret
directory /var/lib/openldap-data
checkpoint 32 30
sizelimit unlimited

index objectclass,entryCSN,entryUUID eq

overlay syncprov
syncprov-checkpoint 100 10
syncprov-sessionlog 100
syncprov-reloadhint TRUE

syncrepl rid=123
        provider=ldap://isc01.foo.bar
        starttls=yes
        tls_reqcert=never
        type=refreshAndPersist
        retry="5 5 60 +"
        searchbase="dc=foo,dc=bar"
        scope=sub
        schemachecking=on
        bindmethod=simple
        binddn="cn=syncrepl,ou=dsa,dc=foo,dc=bar"
        credentials=secret

mirrormode on


### ACL ###
#
[snip]




-- 
"Without music to decorate it, time is just a bunch of boring production
 deadlines or dates by which bills must be paid."
        --- Frank Vincent Zappa