[Samba] Samba Standalone Server LDAP Issue

Michael Arndt michael.arndt at berlin.de
Mon Apr 16 12:48:37 MDT 2012


Hello List,

i have a Samba Problem that is related to Sambas ldap behaviour.


Problem:

The standalone server ( no DC !!)
tries to write an attribute to an write only ldap Slave
is sent via WAN to the master write ldap. The problem results from the fact
that samba never goes back to the "local" slave ldap to the "local" slave ldap
 so each samba request goes over an international slow interconnect.

Result: local samba server very slow

any hints if it is possible to implement an workaround ?

-to avoid the write access to ldap
-or to get samba back to local ldap slave after accessing the master

For  the interested the cause of the try to write an Attribute seems to
be documented here and in the source:-)

http://web.archiveorange.com/archive/v/WEFLnYpTeFATWth7brhv

Server role: ROLE_STANDALONE

here is the rebind:

> [2012/04/16 18:05:45.972476,  5] lib/smbldap.c:1556(smbldap_modify)
>    smbldap_modify: dn =>  [sambaDomainName=KAIRO,l=Kairo,dc=org,o=ABC]
 that triggers an LDAP WAN connect:

26020 17:00:58.034331 connect(26, {sa_family=AF_INET, sin_port=htons(636),
sin_addr=inet_addr("10.128.9.44")}, 16) = 0



head of samba.conf because of Workgroup / Standalone Server

global]
        netbios name = Kairo
        server string = ABC Kairo
        workgroup = kai
        interfaces = em1 127.0.0.1
        bind interfaces only = Yes
        local master = yes
        preferred master = yes
        domain master = yes
        domain logons = no
        wins support = yes

i ask on this list, because customer statement is, that with the "old"
samba this behaviour was different / better, no performance problem
whatsoever.

due to different reasons  i cannot easily verifiy  this statement by reactivatin
/ tracing the "old version" for same issue

version new: samba-3.5.10-114.el6.x86_64
version old: samba-3.0.20b-3.3

thx for tips
Micha



More information about the samba mailing list