Hello,

 

I have configured a proxy LDAP with cache but when I try to do request with paged results, I can see this error message in logs:

 

Oct  7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SRCH base="dc=***,dc=***,dc=****,dc=**" scope=2 deref=0 filter="(&(memberOf=cn=gg-oab-pa-openstack,ou=profils applicatifs,ou=groupes de securite \28gg\29,ou=***,dc=***,dc=***,dc=***,dc=***)(objectClass=person)(?SAMACCOUNTNAME=*))"

Oct  7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SRCH attr=samaccountname userPassword userAccountControl mail description

Oct  7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1: critical pagedResults control disabled with proxy cache.

Oct  7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1: critical control "1.2.840.113556.1.4.1339" not supported.

Oct  7 14:07:55 ldap-cache slapd[18615]: send_ldap_result: conn=1017 op=1 p=3

Oct  7 14:07:55 ldap-cache slapd[18615]: send_ldap_result: err=12 matched="" text=""

Oct  7 14:07:55 ldap-cache slapd[18615]: send_ldap_response: msgid=2 tag=101 err=12

Oct  7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SEARCH RESULT tag=101 err=12 nentries=0 text=

 

When the cache is not configured, all requests are OK and return results

 

Here is the configuration used:

dn: olcDatabase=ldap,cn=config

objectClass: olcDatabaseConfig

objectClass: olcLDAPConfig

olcDatabase: ldap

olcSuffix: dc=ad-***,dc=***,dc=***,dc=**

olcRootDN: cn=compte_service,OU=***,dc=***,dc=***,dc=***,dc=***

olcRootPW: password

olcDbURI: "ldap://ad.local"

olcDbChaseReferrals: FALSE

olcDbNoRefs: FALSE

olcDbNoUndefFilter: FALSE

olcDbACLBind: bindmethod=simple binddn="cn= ***,OU=***,dc=***,dc=*,dc=***,dc=***" credentials="password"

olcLimits: * size.prtotal=unlimited size.pr=1000 size.hard=5000

 

dn: olcOverlay=pcache,olcDatabase={2}ldap,cn=config

objectClass: olcOverlayConfig

objectClass: olcPcacheConfig

olcOverlay: pcache

olcPcache: hdb 100000 1 1000 100

olcPcacheAttrset: 0 *

olcPcacheTemplate: "(sn=)" 0 3600 0 0 0

olcPcacheTemplate: "(memberof=)" 0 3600

 

dn: olcDatabase=hdb,olcOverlay={0}pcache,olcDatabase={2}ldap,cn=config

objectClass: olcHdbConfig

objectClass: olcPcacheDatabase

olcDatabase: hdb

olcDbDirectory: /var/lib/ldap

olcDbCacheSize: 200

olcDbIndex: objectClass eq

olcDbIndex: cn  pres,eq,sub

 

I tried to add size.pr option to the Cache database but it seems to not be supported.

 

So does proxy cache support the use of paged results ?

 

 

Regards,

 

cid:image001.gif@01CBF2E5.34FD28F0

 

Laurent PERRIN

Service Infra aux Projets

Orange Applications for Business
SCE/OAB/DPO/DSPM/IOP

tel. +33 4 37 24 62 85

Mob : 07 84 12 78 79

laurent2.perrin@orange.com
139 rue Vendôme 69006 Lyon
www.orange-business.com

 

cid:image002.gif@01CBF2E5.34FD28F0

 

_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.