SUMMARY ldapclient server failover?

From: Jeff Wasilko (jeffw@smoe.org)
Date: Tue Feb 10 2004 - 11:29:44 EST


On Mon, Feb 02, 2004 at 04:16:24PM -0500, Jeff Wasilko wrote:
> Is anyone using ldapclient for authentication with multiple
> LDAP servers? Have you tested failover from one server to another?
>
> We're in the midst of trying to move from NIS+ to LDAP, since Sun has
> indicated that NIS+ is on the way out. We're running Solaris 9 with MU4.
>
> We have 2 LDAP servers, with replication from the master to the slave.
> Our clients are configured to use both of them. However, we've found that
> it takes over 10 minutes for the client to switch from a failed LDAP server
> to another.

It turns out this is a new bug. I don't have the bug or
escalation information yet, but there is an easy workaround:

> If you have a profile set as follows:
>
> authenticationMethod: none;simple
>
> Then it takes 10 minutes to fail over to the 2nd directory server in the
> defaultServerList.
>
> If you have just:
>
> authenticationMethod: simple
>
> Then the client will fail over almost immediately.

-j
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:28:01 EDT