server guide has incorrect information for sync replication
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Ubuntu Server Guide |
Fix Released
|
Undecided
|
Andreas Hasenack |
Bug Description
The following guide has information on how to configure delta-sync replication with OpenLDAP, but has a few issues https:/
a) This modification is incorrect:
# syncrepl Provider for primary db
dn: olcOverlay=
changetype: add
objectClass: olcOverlayConfig
objectClass: olcSyncProvConfig
olcOverlay: syncprov
olcSpNoPresent: TRUE
As noted in the slapo-syncprov(5) man page, setting NOPRESENT to TRUE is only valid on an accesslog databse NOT the primary database. The valid options for the primary database are the checkpoint and sessionlog options
b) The guide makes no mention of setting a proper sessionlog value for the syncprov overlay. This is critical for avoiding a known bug in sync replication (https:/
c) The guide uses the rootdn for the replication configuration. This is not the recommended way to set up replication in OpenLDAP and can cause issues. A replication specific DN that is NOT a rootdn should be used for replication instead.
Thanks!
Regards,
Quanah
Changed in serverguide: | |
assignee: | nobody → Andreas Hasenack (ahasenack) |
status: | Confirmed → In Progress |
Thanks for filing this. We are updating the server guide for the next LTS, and I linked this bug to that section.