[Samba] Samba Standalone Server LDAP Issue

April 16th, 2012 - 02:50 pm ET by Michael Arndt | Report spam
Hello List,

i have a Samba Problem that is related to Sambas ldap behaviour.


Problem:

The standalone server ( no DC !!)
tries to write an attribute to an write only ldap Slave
is sent via WAN to the master write ldap. The problem results from the fact
that samba never goes back to the "local" slave ldap to the "local" slave ldap
so each samba request goes over an international slow interconnect.

Result: local samba server very slow

any hints if it is possible to implement an workaround ?

-to avoid the write access to ldap
-or to get samba back to local ldap slave after accessing the master

For the interested the cause of the try to write an Attribute seems to
be documented here and in the source:-)

http://web.archiveorange.com/archiv...ATWth7brhv

Server role: ROLE_STANDALONE

here is the rebind:


[2012/04/16 18:05:45.972476, 5] lib/smbldap.c:1556(smbldap_modify)
smbldap_modify: dn => [sambaDomainName=KAIRO,l=Kairo,dc=org,o«C]


that triggers an LDAP WAN connect:

26020 17:00:58.034331 connect(26, {sa_family¯_INET, sin_port=htons(636),
sin_addr=inet_addr("10.128.9.44")}, 16) = 0



head of samba.conf because of Workgroup / Standalone Server

global]
netbios name = Kairo
server string = ABC Kairo
workgroup = kai
interfaces = em1 127.0.0.1
bind interfaces only = Yes
local master = yes
preferred master = yes
domain master = yes
domain logons = no
wins support = yes

i ask on this list, because customer statement is, that with the "old"
samba this behaviour was different / better, no performance problem
whatsoever.

due to different reasons i cannot easily verifiy this statement by reactivatin
/ tracing the "old version" for same issue

version new: samba-3.5.10-114.el6.x86_64
version old: samba-3.0.20b-3.3

thx for tips
Micha

To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/options/samba
email Follow the discussionReplies 1 replyReplies Make a reply

Similar topics

Replies

#1 Gaiseric Vandal
April 16th, 2012 - 03:50 pm ET | Report spam
Why is the LDAP server write-only?

On 04/16/12 14:48, Michael Arndt wrote:
Hello List,

i have a Samba Problem that is related to Sambas ldap behaviour.


Problem:

The standalone server ( no DC !!)
tries to write an attribute to an write only ldap Slave
is sent via WAN to the master write ldap. The problem results from the fact
that samba never goes back to the "local" slave ldap to the "local" slave ldap
so each samba request goes over an international slow interconnect.

Result: local samba server very slow

any hints if it is possible to implement an workaround ?

-to avoid the write access to ldap
-or to get samba back to local ldap slave after accessing the master

For the interested the cause of the try to write an Attribute seems to
be documented here and in the source:-)

http://web.archiveorange.com/archiv...ATWth7brhv

Server role: ROLE_STANDALONE

here is the rebind:

[2012/04/16 18:05:45.972476, 5] lib/smbldap.c:1556(smbldap_modify)
smbldap_modify: dn => [sambaDomainName=KAIRO,l=Kairo,dc=org,o«C]


that triggers an LDAP WAN connect:

26020 17:00:58.034331 connect(26, {sa_family¯_INET, sin_port=htons(636),
sin_addr=inet_addr("10.128.9.44")}, 16) = 0



head of samba.conf because of Workgroup / Standalone Server

global]
netbios name = Kairo
server string = ABC Kairo
workgroup = kai
interfaces = em1 127.0.0.1
bind interfaces only = Yes
local master = yes
preferred master = yes
domain master = yes
domain logons = no
wins support = yes

i ask on this list, because customer statement is, that with the "old"
samba this behaviour was different / better, no performance problem
whatsoever.

due to different reasons i cannot easily verifiy this statement by reactivatin
/ tracing the "old version" for same issue

version new: samba-3.5.10-114.el6.x86_64
version old: samba-3.0.20b-3.3

thx for tips
Micha




To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/options/samba
email Follow the discussion Replies Reply to this message
Help Create a new topicReplies Make a reply
Search Make your own search