[ 
https://issues.apache.org/jira/browse/HADOOP-10626?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14292339#comment-14292339
 ] 

Jason Hubbard commented on HADOOP-10626:
----------------------------------------

Hi Aaron.  Yes, that's exactly it, this will limit what is returned instead of 
returning everything which helps performance since only the groupNameAttr is 
used in the search.  I've rebased to trunk and included the comments you 
suggested with the new patch.  Thanks for the help.

> Limit Returning Attributes for LDAP search
> ------------------------------------------
>
>                 Key: HADOOP-10626
>                 URL: https://issues.apache.org/jira/browse/HADOOP-10626
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: security
>    Affects Versions: 2.3.0
>            Reporter: Jason Hubbard
>            Assignee: Jason Hubbard
>              Labels: easyfix, newbie, performance
>         Attachments: HADOOP-10626.patch, HADOOP-10626.patch
>
>
> When using Hadoop Ldap Group mappings in an enterprise environment, searching 
> groups and returning all members can take a long time causing a timeout.  
> This causes not all groups to be returned for a user.  Because the first 
> search only searches for the user dn and the second search retrieves the 
> group member attribute, we only need to return the group member attribute on 
> the search speeding up the search.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to