Sun Microsystems, Inc.  Oracle System Handbook - ISO 7.0 May 2018 Internal/Partner Edition
   Home | Current Systems | Former STK Products | EOL Systems | Components | General Info | Search | Feedback

Asset ID: 1-72-1558741.1
Update Date:2018-05-25
Keywords:

Solution Type  Problem Resolution Sure

Solution  1558741.1 :   Sun Storage 7000 Unified Storage System: LDAP Users Are Unable To Login To The BUI And CLI  


Related Items
  • Sun ZFS Storage 7320
  •  
  • Sun Storage 7210 Unified Storage System
  •  
  • Oracle ZFS Storage ZS3-BA
  •  
  • Oracle ZFS Storage ZS5-4
  •  
  • Oracle ZFS Storage ZS3-2
  •  
  • Sun Storage 7410 Unified Storage System
  •  
  • Oracle ZFS Storage ZS3-4
  •  
  • Sun ZFS Storage 7420
  •  
  • Oracle ZFS Storage ZS5-2
  •  
  • Sun Storage 7310 Unified Storage System
  •  
  • Oracle ZFS Storage ZS4-4
  •  
  • Sun ZFS Storage 7120
  •  
  • Sun Storage 7110 Unified Storage System
  •  
Related Categories
  • PLA-Support>Sun Systems>DISK>ZFS Storage>SN-DK: 7xxx NAS
  •  


LDAP user lookups take several minutes on a ZFS appliance

In this Document
Symptoms
Changes
Cause
Solution
References


Created from <SR 3-7169810551>

Applies to:

Sun ZFS Storage 7320 - Version All Versions to All Versions [Release All Releases]
Sun ZFS Storage 7420 - Version All Versions to All Versions [Release All Releases]
Sun ZFS Storage 7120 - Version All Versions to All Versions [Release All Releases]
Sun Storage 7410 Unified Storage System - Version All Versions to All Versions [Release All Releases]
Sun Storage 7310 Unified Storage System - Version All Versions to All Versions [Release All Releases]
7000 Appliance OS (Fishworks)

Symptoms

To discuss this information further with Oracle experts and industry peers, we encourage you to review, join or start a discussion in the My Oracle Support Community - Disk Storage ZFS Storage Appliance

 The customer used LDAP credentials to log into his ZFS appliance.  Logins would take > 2 minutes.

Changes

The customer had added a group_search string into his  Configuration -> Services -> LDAP  configuration

Cause

The customer was using Windows LDAP (Active Directory) as his Unix LDAP server.

The LDAP client on the appliance performed a "search group by member" operation which was unknown to Windows LDAP.

Windows LDAP returned everything possible for a group search, causing it to time out several times.

 

Solution

The group_search string was not necessary to login to the appliance.

The group_search string was removed from the LDAP configuration and that resolved the issue.

 

 

 

***Checked for relevance on 25-MAY-2018***

References

<BUG:16770575> - LDAP USER LOGINS VIA SSH TAKE >= 3MIN

Attachments
This solution has no attachment
  Copyright © 2018 Oracle, Inc.  All rights reserved.
 Feedback