[Date Prev][Date Next] [Chronological] [Thread] [Top]

syncrepl with accesslog not replicating

I am facing a problem with OpenLDAP-2.4.23. That is I am trying to setup
a delta replication based on accesslog. Although the accesslog database
contains new entries and the log database is successfully read, no
replication ever takes place, while a setup without accesslog replicates successfully.
An excerpt from the systemlogs:

slapd[19170]: conn=1050 fd=20 ACCEPT from IP= (IP=
slapd[19170]: conn=1050 op=0 EXT oid=
slapd[19170]: conn=1050 op=0 STARTTLS
slapd[19170]: conn=1050 op=0 RESULT oid= err=0 text=
slapd[19170]: conn=1050 fd=20 TLS established tls_ssf=256 ssf=256
slapd[19170]: conn=1050 op=1 BIND dn="" method=163
slapd[19170]: conn=1050 op=1 BIND authcid="cn=replicator,o=avci,c=de" authzid="cn=replicator,o=avci,c=de"
slapd[19170]: conn=1050 op=1 BIND dn="cn=replicator,o=avci,c=de" mech=EXTERNAL sasl_ssf=0 ssf=256
slapd[19170]: conn=1050 op=1 RESULT tag=97 err=0 text=
slapd[19170]: conn=1050 op=2 SRCH base="cn=log" scope=2 deref=0 filter="(&(objectClass=auditWriteObject)(reqResult=0))"
slapd[19170]: conn=1050 op=2 SRCH attr=reqDN reqType reqMod reqNewRDN reqDeleteOldRDN reqNewSuperior entryCSN
slapd[19170]: conn=1050 op=2 SEARCH RESULT tag=101 err=0 nentries=7 text=
slapd[19170]: conn=1050 op=3 UNBIND
slapd[19170]: conn=1050 fd=20 closed

A ldapsearch -Y EXTERNAL -ZZ -H ldap://localhost -b cn=log -s one "(&(objectClass=auditWriteObject)(reqResult=0))"
provides the expected results, an example

# 20101129144212.000003Z, log
dn: reqStart=20101129144212.000003Z,cn=log
objectClass: auditModify
reqStart: 20101129144212.000003Z
reqEnd: 20101129144212.000004Z
reqType: modify
reqSession: 1007
reqAuthzID: cn=admanager,o=avci,c=de
reqControls: {0}{2.16.840.1.113730.3.4.18 controlValue "646O3K636O3N61646N616O
reqDN:: Y249U2Now6RmZXIgV29sZmdhbmcsb3U9YWRyZXNzYnVjaCxvPWF2Y2ksYz1kZQ==
reqResult: 0
reqMod: sn:- Wolfgang
reqMod: sn:+ Schaefer
reqMod: entryCSN:= 20101129144212.353910Z#000000#000#000000
reqMod: modifiersName:= cn=admanager,o=avci,c=de
reqMod: modifyTimestamp:= 20101129144212Z

The relevant config files can be found here:
Provider slapd.conf: http://pastebin.de/12273
Consumer slapd.conf: http://pastebin.de/12275


Dieter Kl�| Systemberatung
sip: 7770535@sipgate.de 

Attachment: pgpw0PKKgHylw.pgp
Description: PGP signature