Re: (ITS#8023) slappasswd with sha2 overlay can generate hashes but not salted hashes

2015-01-13 Thread quanah
could be at this point. We make a few modifications to OpenLDAP, but nothing affecting the pw-sha2 module, which we use as-is. --Quanah -- Quanah Gibson-Mount Platform Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#8023) slappasswd with sha2 overlay can generate hashes but not salted hashes

2015-01-13 Thread quanah
that a salted hash is generated. --Quanah It's interesting to see that it does work under certain conditions then. It appears that your OpenLDAP installation is part of a Zimbra installation. Does Zimbra make any modifications to OpenLDAP, or is it just built on top of it? Either way, I think I'm

Re: (ITS#8023) slappasswd with sha2 overlay can generate hashes but not salted hashes

2015-01-13 Thread quanah
hope this helps to clarify. Yes, thank you. So I'm using 2.4.39. There were some minor changes to slapd-sha2 in 2.4.40. I will see if I can reproduce the issue with current RE24. --Quanah -- Quanah Gibson-Mount Platform Architect Zimbra, Inc. Zimbra :: the leader

Re: (ITS#8019) LDAP Replication By attribute

2015-01-07 Thread quanah
. Usage questions belong on the openldap-techni...@openldap.org list. I would note that the version you reference is extremely old, and it would be advised as your first step to upgrade to a current OpenLDAP release. --Quanah -- Quanah Gibson-Mount Platform Architect Zimbra, Inc

Re: (ITS#8017) Enhancement: Limit core dump size

2015-01-05 Thread quanah
for request: In cases where very large caches are used and slapd crashes, the size of the core dump files can exceed the available disk space. Core dump size is controlled by the kernel already, via sysctl. Why does one need an option to slapd for this? -- Quanah Gibson-Mount Platform Architect

Re: (ITS#8009) SUBSTR caseIgnoreIA5SubstringsMatch for *Record in cosine schema

2014-12-19 Thread quanah
collision with separate DNS schema files adding them. Ciao, Michael. [1] http://tools.ietf.org/html/rfc4524#appendix-A.4 This sounds like a 2.5 feature request then. We can keep it in mind for that. 2.4 is for bugfixes and regressions only. --Quanah -- Quanah Gibson-Mount Platform Architect

Re: (ITS#8009) SUBSTR caseIgnoreIA5SubstringsMatch for *Record in cosine schema

2014-12-19 Thread quanah
--On Friday, December 19, 2014 11:29 PM +0100 Michael Str=C3=B6der=20 mich...@stroeder.com wrote: 2.4 is for bugfixes and regressions only. See above. -- Quanah Gibson-Mount Platform Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#8005) crash when multiple olcDbURI are defined for chaining

2014-12-15 Thread quanah
. Please test using current RE24 code. --Quanah -- Quanah Gibson-Mount Platform Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#8005) crash when multiple olcDbURI are defined for chaining

2014-12-15 Thread quanah
. --Quanah -- Quanah Gibson-Mount Platform Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7989) wrong search results scope one with mdb backend

2014-12-01 Thread quanah
--On Monday, December 01, 2014 4:04 PM + dab1...@gmail.com wrote: Full_Name: Dmitry Bakshaev Version: 2.4.38, 2.4.40 OS: gentoo linux URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (87.249.250.7) Duplicate of ITS#7975, fixed in master, closing. --Quanah -- Quanah

(ITS#7982) Add tls cipher suite, protocol to ldapsearch debug logging

2014-11-14 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.40 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (76.14.70.124) Support for logging the TLS protocol and cipher suite being used was added for slapd connections in ITS#7683. However, there's no way from the client side

Re: (ITS#7957) [LMDB] critical error after compacting an empty database

2014-10-02 Thread quanah
fixed in mdb.master --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7951) slapd deadlocks during mod operation

2014-09-25 Thread quanah
modification operation. Subsequent read or write operations hang from all clients until slapd restart. Upgrade to OpenLDAP 2.4.40, use back-mdb with a 64-bit OS, and dump the deprecated and useless back-hdb/bdb. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc

(ITS#7949) Slapd deadlocks on connection

2014-09-24 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.40 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.64.214) After deploying OpenLDAP 2.4.40, slapd becomes completely unresponsive, and every thread but the daemon is deadlocked Thread 10 (Thread 0x7fc4c7ba2700

Re: (ITS#7949) Slapd deadlocks on connection

2014-09-24 Thread quanah
--On Wednesday, September 24, 2014 10:39 PM + qua...@openldap.org wrote: Full_Name: Quanah Gibson-Mount Version: 2.4.40 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.64.214) Never mind, due to a code change that affected a feature backport I have

Re: (ITS#7945) attribute 'olcPPolicyDefault' not allowed(openldap password policy)

2014-09-22 Thread quanah
openldap's function about the password policy and to define the olcPPolicyDefault , a problem has occurted?? The ITS system is for reporting bugs, not asking usage questions. Use the openldap-technical list for asking questions. This ITS will be closed. -- Quanah Gibson-Mount Server

Re: (ITS#7939) Unable to filter on (objectClass=glue)

2014-09-16 Thread quanah
--On Wednesday, September 17, 2014 1:11 AM + qua...@openldap.org wrote: When trying to find a set of broken entries, I found that it is impossible to filter on objectClass=glue: Never mind, the entries aren't even valid ldap entries. Closing this ITS. -- Quanah Gibson-Mount Server

(ITS#7940) Glue entry creation creates entries that cannot be found via ldapsearch filters

2014-09-16 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) Found this at a customer site. They loaded an LDIF file that had the child of an entry, but not the entry itself. slapadd then created a glue entry

Re: (ITS#7935) fails to convert slapd.conf including schema with + in name

2014-09-08 Thread quanah
be alphanumeric. Noted to update the documentation with this restriction. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7929) memberof overlay supresses accesslog olcAccessLogOps = all

2014-09-04 Thread quanah
--On Thursday, September 04, 2014 10:11 AM + vark...@suse.com wrote: Full_Name: Peter Varkoly Version: 2.4.26, 2.4.39 Hello, Can you please test using the current RE24 code? There have been significant updates made to the overlay interactions since 2.4.39. Thanks! --Quanah

Re: (ITS#7926) modifying olcListenerThreads crashes slapd

2014-08-25 Thread quanah
--On Monday, August 25, 2014 9:53 PM + qua...@openldap.org wrote: Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 3.13 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) After modifying olcListenerThreads for a running slapd, the process died and I

Re: (ITS#7919) slapd would not start with back-ldap database

2014-08-14 Thread quanah
--On Thursday, August 14, 2014 7:43 AM + die...@dkluenter.de wrote: Answering b), Yes I confirm, that this can be reproduced with=20 openldap-OPENLDAP_REL_ENG_2_4-b046124 As noted by Howard, your configuration is invalid. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc

Re: (ITS#7919) slapd would not start with back-ldap database

2014-08-13 Thread quanah
we're planning on 2.4.40 to be the final release for 2.4 b) If you are able to reproduce this with current RE24, please provide an example configuration that causes the issue. test020 passes w/o issue. Thanks --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc

Re: (ITS#7916) ppolicy doesn't set pwdAccountLockedTime

2014-08-06 Thread quanah
of your massively out of date packages. For (a), I suggest packages from either Symas or the LTB project if you are not able to build OpenLDAP yourself. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open

Re: (ITS#7915) pcache and translucent crashes OL

2014-08-04 Thread quanah
--On Monday, August 04, 2014 1:04 AM + nvout...@gmail.com wrote: Full_Name: Nikos Voutsinas Version: 2.4.39 OS: Debian This looks like a duplicate of ITS#7587. Can you please re-test with current code from RE24 where this is fixed? Thanks! --Quanah -- Quanah Gibson-Mount Server

Re: (ITS#7915) pcache and translucent crashes OL

2014-08-04 Thread quanah
test current RE24. Thanks! --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7911) Seg faults in ldap_int_thread_pool_wrapper

2014-07-30 Thread quanah
, if you are using slapo-rwm. That fix is now in the RE24 source tree. Can you re-sync and retest? Thanks! --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7908) slapo-sssvlv objectClass incomplete

2014-07-28 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) The slapo-sssvlv module defines 3 attributes for configuration usage: olcSssVlvMax olcSssVlvMaxKeys olcSssVlvMaxPerConn However, the objectClass

(ITS#7890) Drop support for BDB 6.0.20 and later

2014-07-02 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) Due to licensing changes made to BerkeleyDB by Oracle, it is now incompatible for use with OpenLDAP. Support for BDB 6.0.20 and later should be rejected

Re: (ITS#7874) Replication Debian Ubuntu ( PROBLEM )

2014-06-05 Thread quanah
a sane build. In any case, this is not a bug report. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7852) problems in memberof overlay

2014-05-12 Thread quanah
2.4.23 build shipped by RHEL is utterly broken. I strongly advise you obtain a working build. If you are unable to build OpenLDAP yourself, you can obtain a working build from Symas or the LTB project. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc

Re: (ITS#6939) slapd double free corruption with olcTlsCipherSuite and GnuTLS

2014-05-08 Thread quanah
Thanks, marked duplicate and closed. --Quanah --On May 8, 2014 at 9:42:07 PM + r...@nardis.ca wrote: I think this might be a duplicate of ITS#7500. -- Quanah Gibson-Mount Server Architect Zimbra, Inc Zimbra :: the leader in open source messaging

(ITS#7849) MMR can lose track of its serverID, go into loop

2014-05-07 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (107.207.38.73) 2 reports now of MMR (delta-syncrepl specifically at this point) going into endless loops replicating changes. In both cases, it appears that all

Re: (ITS#7845) slapd debug in the background

2014-05-07 Thread quanah
questions to the openldap-techni...@openldap.org list. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7847) syncrepl attrs should allow to explicitly exclude attributes

2014-05-05 Thread quanah
to submit a doc patch, thanks. I see it documented: quanah@zre-ldap001:~/src/openldap/openldap-2-4/doc/man/man5$ grep exattrs * slapd-config.5:.B [exattrs=attr list] slapd-config.5:.B exattrs slapd-config.5:attributes, and \fBattrsonly\fP and \fBexattrs\fP are unset by default. slapo-dds.5:exattrs

Re: (ITS#7848) openldap n-way multi-master replication

2014-05-05 Thread quanah
built and linked package of OpenLDAP, such as the builds from Symas or the LTB project. Thanks. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7723) slapd crashes on multi core machines if a search request is *immediately* followed by an unbind

2014-04-29 Thread quanah
time using the RHEL/CentOS build of OpenLDAP. Get a real build from Symas or the LTB project. --Quanah -- Quanah Gibson-Mount Server Architect Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7500) libldap starttls crashes if invalid GnuTLS cipher suite string

2014-04-08 Thread quanah
--On April 9, 2014 at 1:55:26 AM + r...@nardis.ca wrote: Hi, This ITS says fixed in master and appears to be in 2.5 as well. However 2.4 seems to still be affected. Is this fix a candidate for 2.4? It will be in 2.4.40 and is now in RE24. Thanks for catching that. --Quanah

(ITS#7827) Typo in slapacl can causes unclean database

2014-03-25 Thread quanah
Full_Name: Quanah Gibson-Mount Version: openldap master OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) As reported in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=741248, slapacl when used with a base that is not contained in the OpenLDAP

Re: (ITS#7822) Segmentation fault while modifying olcDbMaxSize

2014-03-21 Thread quanah
, the cn=config.ldif from slapcat. Hoping it could help for resolution. Please provide the full backtrace in the ITS --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7817) Wrong if condition for string length

2014-03-11 Thread quanah
referring to? This is a bit vague. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7817) Wrong if condition for string length

2014-03-11 Thread quanah
expand upon your report? What source code, for example, you're referring to? This is a bit vague. Never mind. ;) Your reply came through like a new ITS. :P --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging

Re: (ITS#7812) Applictaion going down due to Ldap Break down and Restart is required

2014-03-05 Thread quanah
of an ancient unsupported version of OpenLDAP. --Quanah -- Quanah Gibson-Mount Principal Software Engineer Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

RE: (ITS#7805) fatal region error detected; run recovery

2014-02-27 Thread quanah
. If you wish to continue using the utterly broken and outdated packages provided by RedHat, then you need to file tickets with RedHat for support. Regards, Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging

Re: (ITS#7805) fatal region error detected; run recovery

2014-02-26 Thread quanah
build of OpenLDAP. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7802) Global overlays are unusable with cn=config

2014-02-20 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) Global overlays (such as pw-sha2 from contrib) are unusable with cn=config. This is because the module is loaded after the bootstrap of cn=config.ldif

Re: (ITS#7802) Global overlays are unusable with cn=config

2014-02-20 Thread quanah
--On Friday, February 21, 2014 1:22 AM + qua...@openldap.org wrote: Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 3.11 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) steps to reproduce: [zimbra@fishfood ~]$ ldapmodify -x -H ldapi:/// -D cn

(ITS#7795) manage access right needs better description

2014-01-31 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) The documentation in the Admin guide and the man pages for the manage ACL setting has virtual no documentation. The only definitive statement is a very

Re: (ITS#7795) manage access right needs better description

2014-01-31 Thread quanah
--On Friday, January 31, 2014 6:08 PM +0100 Pierangelo Masarati pierangelo.masar...@polimi.it wrote: On 01/31/2014 05:49 PM, qua...@openldap.org wrote: Full_Name: Quanah Gibson-Mount Version: 2.4.39 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125

Re: (ITS#7795) manage access right needs better description

2014-01-31 Thread quanah
=pwdHistory by group=cn=all-mighty admins,dc=example,dc=com =zm by * none AFAIK this also applies to altering other operational attributes by using Relax Rules control. Maybe you can take this as a start for a more general text. Great example, thanks! --Quanah -- Quanah Gibson-Mount

Re: (ITS#7795) manage access right needs better description

2014-01-31 Thread quanah
attributes are manageable [09:08] hyc createtimestamp, modifytimestamp, creatorsname, modifiersname, entryUUID, entryTTL [09:09] hyc otherwise, the relax control is useless [09:09] hyc hm, the ppolicy opattrs are also manageable -- Quanah Gibson-Mount Architect - Server Zimbra, Inc

Re: (ITS#7778) Index and derived attribute bug

2014-01-10 Thread quanah
to ensure that the problem was not LMDB related). hbf ITS#7778: Broken in 2.4.37 by 96f35c08944a ITS#7329 optimize index update for simple add. -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7775) LMDB terminates Postfix daemon process without logfile record

2014-01-07 Thread quanah
with the dev team to get a new release out in the next week or so. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7776) Bulk user add on ldap server

2014-01-02 Thread quanah
are running out of locks, lockers, or lock objects. I would advise setting an appropriate debugging level and looking for errors originating from Berkeley DB. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging

Re: (ITS#7760) query of a field with alias returns a different attribute name from requested

2013-12-05 Thread quanah
ancient ITSes about this same issue, I suggest digging them out. --Quanah -- Quanah Gibson-Mount Principal Software Engineer Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

(ITS#7758) slapcat exports entire databases when given a non-existent base

2013-12-04 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.35 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) If the root of the primary database is , and you try and export a base that doesn't exist via slapcat, the entire database is exported (i.e., it acts like

Re: (ITS#7758) slapcat exports entire databases when given a non-existent base

2013-12-04 Thread quanah
--On Wednesday, December 04, 2013 6:52 PM -0800 Howard Chu h...@symas.com wrote: qua...@openldap.org wrote: Full_Name: Quanah Gibson-Mount Version: 2.4.35 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) If the root of the primary database

Re: (ITS#7743) bdb_idl_intersection() seems to expand the search candidates unnecessarily

2013-11-11 Thread quanah
. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7743) bdb_idl_intersection() seems to expand the search candidates unnecessarily

2013-11-11 Thread quanah
) (210.143.35.12) back-bdb is deprecated, I suggest you use back-mdb instead. Hm, I see the same bit exists for back-mdb too at line 720ish. Oh well. :P --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging

Re: (ITS#7741) Incorrect indexing of entryDN

2013-11-06 Thread quanah
, telling there is no such entry. What makes you feel there is a bug present? Nothing in your report indicates the presence of a bug. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-11-02 Thread quanah
--On Friday, November 01, 2013 10:39 PM +0400 Dmitrii Fonariuk dmitrii.fonar...@gmail.com wrote: hi Quanah, it's a good news! unfortunately I can't test the changes now. Tuesday I rebuild the source with patch, do the tests and report to you. thank you for your efforts. You will also

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-11-01 Thread quanah
--On Friday, November 01, 2013 10:00 AM +0400 Dmitrii Fonariuk dmitrii.fonar...@gmail.com wrote: Hi Quanah. I have syncrepl configured on cn=config only for replication cn=schema (searchbase=cn=schema,cn=config) not for all cn=config. ok. i has remove syncrepl from cn=config, but nothing

(ITS#7737) missing matching rule for olcDbEnvFlags

2013-11-01 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.37 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) olcDbEnvFlags is missing a matching rule, which makes modifications to change individual flags painful.

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-10-31 Thread quanah
, then please provide the valgrind trace with the unstripped slapd with debugging symbols. Please provide the script(s) you are using as well. Thanks! --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-10-30 Thread quanah
to run slapd under oprofile (without tcmalloc) to show the existence of any leaks. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7736) back-mdb corrupts during write operations

2013-10-30 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.37 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) Found after upgrading to OpenLDAP 2.4.37 + the last two commits to liblmdb: 527168fe mdb_search_candidates: id=1 first=77 last=77 slapd

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-10-29 Thread quanah
for different servers. State is numericString attribute. How are you determining there is a memory leak? Are you using an alternative memory allocator like tcmalloc instead of glibc? --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader

Re: (ITS#7735) Memory leaks on Multi-Master replications

2013-10-29 Thread quanah
tcmalloc and report back.=20 --Quanah =20 2013/10/29 Quanah Gibson-Mount qua...@zimbra.com --On Tuesday, October 29, 2013 10:45 AM + dmitrii.fonar...@gmail.com w= rote: =20 Full_Name: Dmitrii Fonariuk Version: 2.4.37 OS: RHEL6.x86_64 URL: ftp://ftp.openldap.org/incoming/ Submission from

Re: (ITS#7730) Error:passwd: Authentication token manipulation error

2013-10-19 Thread quanah
-techni...@openldap.org. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7705) mdb back-end segfaults sporadically with paged searches

2013-10-18 Thread quanah
7fe2b63ad6a1 sp 7fdeb4f0d540 error 6 in back_mdb-2.4.so.2.9.2[7fe2b6392000+34000] Please provide a useful bug report. I.e., get a stack trace from gdb, as noted in: http://www.openldap.org/faq/data/cache/59.html Sample data/testcase/configs always welcome as well. --Quanah -- Quanah

Re: (ITS#7726) how to config kerberos with openldap via clear passwords?

2013-10-18 Thread quanah
list). This ITS will be closed. I would also strongly advise you to upgrade to a current openldap release. 2.4.23 is years old. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra, Inc. Zimbra :: the leader in open source messaging and collaboration

RE: (ITS#7717) Sudden memory increase leading to Master LDAP crash

2013-10-15 Thread quanah
to Master LDAP crash -Message d'origine- De : Quanah Gibson-Mount [mailto:qua...@zimbra.com] Envoyé : lundi 7 octobre 2013 16:56 À : marcon.br...@free.fr; openldap-its@openldap.org Objet : Re: (ITS#7717) Sudden memory increase leading to Master LDAP crash --On Thursday, October 03

Re: (ITS#7710) contextCSN values not updated by internal non-replicated ops

2013-10-10 Thread quanah
now in master. Thanks. These tests are passing now. @Quanah: Would be nice if this last fix could be also ported to RE24. Thanks in advance. Not particularly necessary to make requests like this. I read all ITS mail and commit traffic. --Quanah -- Quanah Gibson-Mount Architect - Server

Re: (ITS#7719) configure delayed response time

2013-10-08 Thread quanah
stack. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Architect - Server Zimbra Software, LLC Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7716) slapd crashes after search immediately followed by (abandon+) unbind

2013-10-07 Thread quanah
need to report this issue with RedHat. Otherwise, I suggest upgrading to the latest release. If you don't feel comfortable building OpenLDAP yourself, you can easily use the packages from the LTB project: http://ltb-project.org/wiki/download#openldap This ITS will be closed. Regards, Quanah

Re: (ITS#7711) Cannot include the radius.schema

2013-09-27 Thread quanah
to use the software. Usage questions should be asked via the openldap-techni...@openldap.org mailing list. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra Software, LLC Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7709) mdb back-end segfaults sporadically with paged searches

2013-09-24 Thread quanah
) (129.128.11.113) Please stop repeatedly creating new ITSes for your issue. This is the 3rd one you've created. Thanks. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra Software, LLC Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7705) mdb back-end segfaults sporadically with paged searches

2013-09-23 Thread quanah
. Was this database created with OpenLDAP 2.4.36 back-mdb, or did it originate with a previous release of OpenLDAP? --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra Software, LLC Zimbra :: the leader in open source messaging and collaboration

RE: (ITS#7698) Multiple Paged search requests on one connection fail

2013-09-17 Thread quanah
top-posting. With openldap, you have two choices. I don't know which draft you are referring to, so I can't say if either conforms with what the other directory servers do. slapo-auditlog slapo-accesslog Pick your path. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra Software, LLC

RE: (ITS#7698) Multiple Paged search requests on one connection fail

2013-09-17 Thread quanah
haven't spent time reading the documentation. OpenLDAP has had a changelog since at least OpenLDAP 2.3, if you enable it. I use it for auditing changes all the time. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra Software, LLC Zimbra :: the leader in open source

Re: (ITS#7693) ProxyCache Problems

2013-09-13 Thread quanah
the LTB packages I pointed you at. They don't replace the existing ldap libraries, etc, on the server. They install into their own location (/usr/local I believe). Then you don't have to build it yourself, and you can actually be on something current. --Quanah -- Quanah Gibson-Mount Lead

Re: (ITS#7693) ProxyCache Problems

2013-09-12 Thread quanah
numerous problems. If you cannot build OpenLDAP yourself, then I would suggest the packages from the LTB project, which have OpenLDAP builds of 2.4.36 for both RHEL5 and RHEL6: http://ltb-project.org/wiki/download#openldap --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra, Inc

Re: (ITS#7694) cldap fails with IPv6 due to wrong size sockaddr

2013-09-12 Thread quanah
) is broken for IPv6 for current versions of openldap. Tested with version 2.4.35 2.4.35 is not the current version of OpenLDAP, 2.4.36 is. There were fixes to CLDAP made in 2.4.36. Please test against 2.4.36 and report back, thanks. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra

Re: (ITS#7694) cldap fails with IPv6 due to wrong size sockaddr

2013-09-12 Thread quanah
the changes log. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7691) syncrepl does not work with names start with depth

2013-09-11 Thread quanah
with name starting with depth is created at master, the record will not be sync to slave using syncrepl. The other records are ok. For e.g. cn=depth-maker,ou=people,dc=tt,dc=com or cn=depth,ou=people,dc=tt,dc=com Provide your configuration minus passwords. --Quanah -- Quanah Gibson-Mount Lead

Re: (ITS#7691) syncrepl does not work with names start with depth

2013-09-11 Thread quanah
version is Openldap 2.3.40 on sunOS Syncrepl in 2.3.40 is known to be broken. I would advise you to upgrade it to 2.4.36. This ITS will be closed as invalid. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra, Inc Zimbra :: the leader in open source messaging

Re: (ITS#7674) Configure Mirror Mode Replication

2013-08-27 Thread quanah
. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra, Inc Zimbra :: the leader in open source messaging and collaboration

Re: (ITS#7657) Alias dereferencing with MDB slow compared with BDB

2013-08-08 Thread quanah
--On August 8, 2013 5:12:50 PM +0100 Mark Cairney mark.cair...@ed.ac.uk wrote: Hi Quanah, I've transferred one of the nodes to back-hdb and the performance appears to broadly match back-bdb. Is there a simple test I can perform to confirm that it is indeed using back-hdb

Re: (ITS#7650) Multi-master replication deadlock with TLS

2013-07-26 Thread quanah
/download#openldap are quite good. This ITS will be closed. If you can reproduce the problem on a *current* version of OpenLDAP linked to a *known good* TLS implementation, feel free to open a new report. --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra, Inc Zimbra

Re: (ITS#7641) slapd crashes in slapd_free_controls when syncrepl enabled and plugins in use

2013-07-18 Thread quanah
and plugins are in use. The crash is caused by an invalid free in the slapi overlay; it only occurs on the provider in a syncrepl setup. This is the backtrace: Didn't you already report this in ITS#7636? Why are you opening an new ITS? --Quanah -- Quanah Gibson-Mount Lead Engineer Zimbra

Re: (ITS#7641) slapd crashes in slapd_free_controls when syncrepl enabled and plugins in use

2013-07-18 Thread quanah
are you opening an new ITS? --Quanah This is a different crash with a different cause and completely different backtrace. As far as I can tell there were two separate crashes related to syncrepl with slapi plugins enabled. The one I reported in ITS#7636 was constant and easily reproducible

Re: (ITS#7640) LDAP_OPT_CONNECT_ASYNC

2013-07-12 Thread quanah
questions to openldap-techni...@openldap.org. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Sr. Member of Technical Staff Zimbra, Inc A Division of VMware, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7604) back-mdb abort after searching modrdn'd enry

2013-05-22 Thread quanah
Full_Name: Quanah Gibson-Mount Version: RE24 5/14/2013 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) Searching on an entry that has been renamed via modrdn can trigger an abort. It appears that modrdn periodically fails causing random corruption

Re: (ITS#7597) migration of sunone 5.2 to openldap 2.4

2013-05-22 Thread quanah
help on -technical, but results may vary. This ITS will be closed. --Quanah -- Quanah Gibson-Mount Sr. Member of Technical Staff Zimbra, Inc A Division of VMware, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7590) admin24 incorrectly says back-bdb is recommended

2013-05-13 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.35 OS: linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.58.125) H3: Overview The {{bdb}} backend to {{slapd}}(8) is the recommended primary backend for a normal {{slapd}} database. Which stopped being true

(ITS#7574) slapo-unique not enforcing uniqueness

2013-04-12 Thread quanah
Full_Name: Quanah Gibson-Mount Version: RE24 4/12/2013 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.39.181) In current RE24, when using the back-mdb backend, uniqueness is no longer enforced. This worked correctly up until at least 2.4.33. dn: olcOverlay

Re: (ITS#7566) ldapadd slower on Linux than BSD

2013-04-08 Thread quanah
database ? My DB is 5.6GB in size after load is complete. --Quanah -- Quanah Gibson-Mount Sr. Member of Technical Staff Zimbra, Inc A Division of VMware, Inc. Zimbra :: the leader in open source messaging and collaboration

(ITS#7565) unacceptable growth on delete with back-mdb

2013-04-05 Thread quanah
Full_Name: Quanah Gibson-Mount Version: 2.4.35 OS: Linux 2.6 URL: ftp://ftp.openldap.org/incoming/ Submission from: (NULL) (75.111.39.181) With back-mdb, if you add a large number of users to the database (via ldapadd), and then delete them (via ldapmodify), the DB explodes in size. After

Re: (ITS#7566) ldapadd slower on Linux than BSD

2013-04-05 Thread quanah
(2.4.35). In any case, I don't see a bug report here? It sounds more like you're asking for tuning advice? I would ask what filesystem you are using (ext2? ext4?) etc. For ext4, I had to modify dirty_bytes to keep the Debian/Ubuntu flush process from killing load performance. --Quanah

Re: (ITS#7566) ldapadd slower on Linux than BSD

2013-04-05 Thread quanah
--On Friday, April 05, 2013 8:52 PM -0600 - lidutu l...@ualberta.ca wrote: Hi Quanah, I have started doing tests with Gentoo Linux running openldap 2.4.35, glibc 2.16 and linux kernel 3.4, 3.8 and 3.9-rc5. I have tried ext2, ext4, reiserfs and jfs. Ldapadd is still very slow compared

<    1   2   3   4   5   6   7   8   9   10   >