Hello,
I have configured a proxy LDAP with cache but when I try to do request with paged results, I can see this error message in logs:
Oct 7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SRCH base="dc=***,dc=***,dc=****,dc=**" scope=2 deref=0 filter="(&(memberOf=cn=gg-oab-pa-openstack,ou=profils applicatifs,ou=groupes de securite \28gg\29,ou=***,dc=***,dc=***,dc=***,dc=***)(objectClass=person)(?SAMACCOUNTNAME=*))"
Oct 7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SRCH attr=samaccountname userPassword userAccountControl mail description
Oct 7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1: critical pagedResults control disabled with proxy cache.
Oct 7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1: critical control "1.2.840.113556.1.4.1339" not supported.
Oct 7 14:07:55 ldap-cache slapd[18615]: send_ldap_result: conn=1017 op=1 p=3
Oct 7 14:07:55 ldap-cache slapd[18615]: send_ldap_result: err=12 matched="" text=""
Oct 7 14:07:55 ldap-cache slapd[18615]: send_ldap_response: msgid=2 tag=101 err=12
Oct 7 14:07:55 ldap-cache slapd[18615]: conn=1017 op=1 SEARCH RESULT tag=101 err=12 nentries=0 text=
When the cache is not configured, all requests are OK and return results
Here is the configuration used:
dn: olcDatabase=ldap,cn=config
objectClass: olcDatabaseConfig
objectClass: olcLDAPConfig
olcDatabase: ldap
olcSuffix: dc=ad-***,dc=***,dc=***,dc=**
olcRootDN: cn=compte_service,OU=***,dc=***,dc=***,dc=***,dc=***
olcRootPW: password
olcDbURI: "ldap://ad.local"
olcDbChaseReferrals: FALSE
olcDbNoRefs: FALSE
olcDbNoUndefFilter: FALSE
olcDbACLBind: bindmethod=simple binddn="cn= ***,OU=***,dc=***,dc=*,dc=***,dc=***" credentials="password"
olcLimits: * size.prtotal=unlimited size.pr=1000 size.hard=5000
dn: olcOverlay=pcache,olcDatabase={2}ldap,cn=config
objectClass: olcOverlayConfig
objectClass: olcPcacheConfig
olcOverlay: pcache
olcPcache: hdb 100000 1 1000 100
olcPcacheAttrset: 0 *
olcPcacheTemplate: "(sn=)" 0 3600 0 0 0
olcPcacheTemplate: "(memberof=)" 0 3600
dn: olcDatabase=hdb,olcOverlay={0}pcache,olcDatabase={2}ldap,cn=config
objectClass: olcHdbConfig
objectClass: olcPcacheDatabase
olcDatabase: hdb
olcDbDirectory: /var/lib/ldap
olcDbCacheSize: 200
olcDbIndex: objectClass eq
olcDbIndex: cn pres,eq,sub
I tried to add size.pr option to the Cache database but it seems to not be supported.
So does proxy cache support the use of paged results ?
Regards,
Laurent PERRIN
Service
Infra aux Projets
Orange Applications for Business
SCE/OAB/DPO/DSPM/IOP
tel. +33 4 37 24 62 85
Mob : 07 84 12 78 79
laurent2.perrin@orange.com
139 rue Vendôme 69006 Lyon
www.orange-business.com
_________________________________________________________________________________________________________________________ Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration, Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci. This message and its attachments may contain confidential or privileged information that may be protected by law; they should not be distributed, used or copied without authorisation. If you have received this email in error, please notify the sender and delete this message and its attachments. As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified. Thank you.