-----Original Message----- From: Pierangelo Masarati [mailto:ando@sys-net.it] Sent: Saturday, October 13, 2007 2:19 AM To: mhardin@symas.com Cc: openldap-its@openldap.org Subject: Re: (ITS#5185) assertion failure in back-meta when the remote directory does not answer a bind request within the time allotted
ando@sys-net.it wrote:
Does this happen when binding as the rootdn of the back-meta instance, or as a regular user? If it occurs when binding as the rootdn, then I think I know where the problem is. In that case, apart from me fixing the problem (working at it...), you should also use "pseudoroot-bind-defer yes".
I partially take it back: the above recommendation is correct; however, the problem I suspected for the rootdn case is also present for regular binds. I've committed to HEAD a fix for this problem. Please test.
Thanks for the prompt response, Ando. I've put the fix into production and I'll let you know how it goes. This problem only surfaces every few days when AD doesn't respond to a bind request, so will be at least Thursday or Friday before I can confirm it did the trick.
I've also taken your advice and set pseudoroot-bind-defer yes.
Thanks,
-Matt
Matthew Hardin Symas Corporation- The LDAP Guys http://www.symas.com
p.
Ing. Pierangelo Masarati OpenLDAP Core Team
SysNet s.r.l. via Dossi, 8 - 27100 Pavia - ITALIA http://www.sys-net.it
Office: +39 02 23998309 Mobile: +39 333 4963172 Email: pierangelo.masarati@sys-net.it