Hi,
I test openthinclient in an environment of more or less 15000 user  
objects in Active Directory. We have as well significant number of  
groups, which are nested and many of them contain as well big amount  
of objects. I specify this AD as a secondary LDAP just for reading  
information about users and groups.

First problem appears with the GUI, which hangs on trying to display  
list of users. List would be too big and in fact it is never  
displayed. But this issue is not so critical, I managed to configure  
things just using a standard LDAP client (ldp).

Serious issue I've met appears when I try to logon on the thin client.  
I logon with the domain account, which is member of few groups, where  
some of them have big number of members. In the log of the client I  
can see that it tries to recursively go through all the groups my  
account is member of. And here it hangs for few minutes and then logs  
the warning that it reached maximum number of members.
In fact I do not really need client to be aware of group membership of  
my users. I use integration with AD to have SSO for RDP only.
Is there any way to block this recursive lookup?

Thanks for some suggestions,
Rafal

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
The Open Source Thin Client Solution http://openthinclient.org
[email protected]
https://lists.sourceforge.net/lists/listinfo/openthinclient-user

Reply via email to