Re: DB2 & LDAP

From: Eftychios Eftychiou (efty@UCY.AC.CY)
Date: Mon Mar 24 2003 - 08:02:18 EST


Hi Alberto,
Yes, It is an IBM Directory Service, and the LDAP will be used for
authentication services only. There are no other services running
on this machine (it is a freshly installed AIX 5200).
DB2 is not used for anything else. The "nis2ldap" command was used to
migrate the user info from the flat files into DB2, and that was it.
The plan is to stop NIS services (which I currently use for user
authentication) and move to LDAP, to achieve user authentication on
windows machines as well.
The machine behaves ok when it is started up (without any db2 and ldap
services running). When DB2 is started, that's when the memory usage
shoots up.
Many thanks for your input so far,
reards,
efty . . .
______________________________________________________________________
Eftychios Eftychiou | Computer Center
I.T.Officer | University of Cyprus
Tel...... +357-22-892135 (ext.2135) | P.O.Box 537
Fax...... +357-22-756082 | 1678 Nicosia
E-mail... efty@ucy.ac.cy | CYPRUS
_______________________________________|______________________________
           _o
         _`\<,_
........(_)/ (_)

On Fri, 21 Mar 2003, Alberto Cozer wrote:

> Hi,
>
> What LDAP solution are you talking about? IBM Directory?
>
> First of all you must know how many concurrent LDAP connections you have.
> What is the purpose of your LDAP server? Authentication only? Usually
> authentication only does not consume too much memory, unless your LDAP is
> poorly configured or your DB2 is badly installed. An 512 MB memory machine
> with one processor should handle at least 300 concurrent connections.
>
> It does not seem to be an LDAP server problem. What does IBM DB2 Sizing
> team said to you?
>
> Depending on the use of your LDAP server you can change from DB2
> Enterprise to Workgroup. Workgroup will certainly not use too much memory.
> 2 GB seems to be too much memory for an LDAP solution. If you need an
> memory upgrade I don't think you will need too much. I have deployed an
> IBM Directory solution for a customer in Brazil in 2001 for the
> authentication of 7 million users (~700 concurrent connections) and we had
> two machines (HA only) running LDAP talking with two other server running
> DB2 (HA only). The DB2 servers had 1 GB each and the LDAP servers had 512
> MB each.
>
> In the beginning we had performance problems that were solved placing 1
> more processor on each machine (since VMSTAT shown us an average of 2
> processes allways waiting on the line) and changing the DB2 servers SCSI
> bus for a dual-channel faster one and configuring our disks for RAID0
> (since IOSTAT shown us an I/O jam).
>
> It seems that probably your DB2 is consuming too much memory
> unnecessarily. Are you using this DB2 to something else? Have you tried
> installing it on a separate machine? What does your vmstat and iostat
> outputs are showing?
>
> The last question is: are you 100% sure that there is no other application
> or operation making troubles in this machine?
>
> Best regards,
>
> Alberto.
>
> Alberto Cozer
> Security Outsource Director, Future Technologies Digital Security
> IBM Certified AIX System Specialist
> Checkpoint Certified Security Expert, CCSE NG
> acozer@fti.com.br
> http://www.fti.com.br
>
>
>
>
>
> Eftychios Eftychiou <efty@UCY.AC.CY>
> Sent by: IBM AIX Discussion List <aix-l@Princeton.EDU>
> 21/03/2003 10:49
> Please respond to IBM AIX Discussion List
>
> To: aix-l@Princeton.EDU
> cc:
> Subject: DB2 & LDAP
>
>
> Hi *,
>
> Do any of you out there have experiences with memory requirements for
> running DB2 and LDAP?
>
> I have a 6F1 with 512MB memory and 2GB of paging space, AIX5200 + latest
> fixes, DB2 and LDAP. After the install of DB2 and LDAP, the machine has
> become dead slow: it takes ages to respond to telnet or ftp sessions, and
> the memory usage shows 100%, with approx 0-45% usage of the paging space
> as well.
>
> IBM informs me that the only solution is to install at least 2GB of
> memory, but before I proceed, I would like to find out if there is
> another solution, e.g. fine-tuning of DB2 and/or LDAP to work with the
> existing memory size.
>
> Any comments?
> thnx,
> efty . . .
> ______________________________________________________________________
> Eftychios Eftychiou | Computer Center
> I.T.Officer | University of Cyprus
> Tel...... +357-22-892135 (ext.2135) | P.O.Box 537
> Fax...... +357-22-756082 | 1678 Nicosia
> E-mail... efty@ucy.ac.cy | CYPRUS
> _______________________________________|______________________________
> _o
> _`\<,_
> ........(_)/ (_)
>
>
>
> *********************************************************
> Future Technologies Seguranca Digital
>
> Esta mensagem e de responsabilidade de seu autor.
> Seu conteudo nao reflete necessariamente a opiniao da
> empresa.
> *********************************************************
>
>
>
> ____________________________________________________________
> This email and any files transmitted have been checked using UCY's Antivirus Machine.
>



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 22:16:41 EDT