Oops, about the slowness : it is really fast. The pts information is cached. Actually, you will likely use ptexpire a lot when setting your groups at first, to reset the cache.
On 8 20, 2009 8:10 PM, "Wil Cooley" <wcooley@xxxxxxxxxxx> wrote:On Wed, 2009-08-19 at 15:33 +0300, Evgeniy Arbatov wrote: > Dear list, > > I want to ask your advic...
Do I understand correctly from this discussion and the sparse mention of
this in the documentation that the LDAP ptloader module can be used to
manage group ACLs with "auth_mech=pts/pts_module=ldap", instead of
"auth_mech=unix/unix_group_enable=1"?
Does this solve the slowness caused by UNIX groups in LDAP?
Does "auth_mech" affect anything else?
I have heretofore ignored mention of the pts/ptloader stuff because I
was under the impression that it was entirely AFS-related, which I have
no infrastructure for, but if this is the way to enable groups in LDAP
without the slowness, then I need to look more closely at this.
Wil
--
Wil Cooley <wcooley@xxxxxxxxxxx>
----
Cyrus Home Page: http://cyrusimap.web.cmu.edu/
Cyrus Wiki/FAQ: http://cyrusimap.web.cmu.edu/twiki
List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html
---- Cyrus Home Page: http://cyrusimap.web.cmu.edu/ Cyrus Wiki/FAQ: http://cyrusimap.web.cmu.edu/twiki List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html