The number of “userPassword;vucsn-#####;deleted:” for these three particular users is apparently so high that it makes the object too big to import into a new replica. Is there a way to verify that these are being trimmed like they should? Does this behavior have something to do with the replica’s “Purge Delay” value? Is there a way to find date and time from the vucsn number? Is there a way to manually purge these entries, or to shorten the interval between trimmings? Thanks From: Rich Megginson [mailto:rmeggins@xxxxxxxxxx] On 09/03/2013 08:47 AM, Wick, Samson wrote:
Is there a good place I can go to educate myself on what a “vucsn” actually means, and possibly why I have hundreds of thousands of them for userPassword in my initialization files?
Thanks From: Rich Megginson [mailto:rmeggins@xxxxxxxxxx] On 08/30/2013 01:24 PM, Wick, Samson wrote:
rpm -q 389-ds-base In attempting to stand up a new consumer in our environment, the process of allowing the supplier to initialize the consumer directly would corrupt the consumer irrevocably. I have ruled out firewalls, SSL issues etc. When attempting to initialize via an ldif, I get errors on three user accounts more or less identical to this: WARNING: skipping entry “uid=<etc…..>” ending line 296901 of file “<path to my ldif file>” REASON: entry too large (15503712 bytes) for the buffer size (8388608 bytes) When I examine the ldif file that the supplier created, the three user objects it’s complaining about all have +/- 100,000 entries like this: userPassword;vucsn-520b35cb000000010000;deleted: {SSHA256}5WJ9hosO3JO9VLa32nqxmGjn3XoShD1c1g+abekZDCFTX1MM187Bjg== Each line has a different hash. But most of the other user objects only have a couple of these lines. Clearly 100k+ password changes is a little excessive and it’s something I’ll need to look into, but in the meantime, can anyone help me figure out what has caused all of these to remain in the directory, and what can I do to clean them up? Thanks, Samson -- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users |
-- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users