sawyl: (A self portrait)
[personal profile] sawyl
Finally getting my act together to sort out LDAP, I got the server going but discovered a couple of problems whilst trying to get Linux to use it for authentication — essentially, I was able to look up users with some commands, e.g. finger and getent passwd etc, worked but when I tried to obtain information on individual accounts using id or a targeted getent it failed to work.

I eventually traced the problems back to a combination of nscd and a lack of indices on the LDAP databases. Shutting down the caching daemon allowed me to use the slapd log events to see what was going on, at which point I was able to see what I needed to add to slapd.conf and to build the new indices with slapindex. With that done, I restarted nscd and found that both forward and reverse lookups worked exactly as expected.

Exactly? Well, not quite. I enabled LDAP support on the storage appliances, only for the Lustre metadata servers to take themselves down for an unexpected reboot — not something that was mentioned in the documentation, but which is apparently mentioned in a later version of the software...

Profile

sawyl: (Default)
sawyl

August 2018

S M T W T F S
   123 4
5 6 7 8910 11
12131415161718
192021222324 25
262728293031 

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Feb. 5th, 2026 04:22 pm
Powered by Dreamwidth Studios