|
Re: slow group membership lookup: msg#00023ldap.padl.nss
On 14. sep. 2006, at 03.00, Joe Lin wrote: I am using nss-ldap to resolve users and groups using ldap. However, nss_ldap has support for the initgroups_dyn interface to allow swift group lookups by username. If your system lacks this or a compability layer, it has to revert to reading all the groups from the database to determine membership. This really does not work very well with even a modest number of groups, so if there is no way of getting this to work on your system, I would either drop having per-user groups in the directory, or disable ldap group lookups in nsswich.conf and hope for future support :-) -- Frode Nordahl |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: slow group membership lookup: 00023, Tony Earnshaw |
|---|---|
| Next by Date: | Re: -bash: [: : integer expression expected: 00023, Daniel Cross |
| Previous by Thread: | Re: slow group membership lookupi: 00023, Tony Earnshaw |
| Next by Thread: | Re: slow group membership lookup: 00023, Archur |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |