You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@ambari.apache.org by "Hadoop QA (JIRA)" <ji...@apache.org> on 2015/04/17 13:46:58 UTC

[jira] [Commented] (AMBARI-10513) ambari-server sync-ldap fails if there are too many users in the LDAP server (more than 1000?)

    [ https://issues.apache.org/jira/browse/AMBARI-10513?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14499699#comment-14499699 ] 

Hadoop QA commented on AMBARI-10513:
------------------------------------

{color:red}-1 overall{color}.  Here are the results of testing the latest attachment 
  http://issues.apache.org/jira/secure/attachment/12726131/AMBARI-10513_01.patch
  against trunk revision .

    {color:green}+1 @author{color}.  The patch does not contain any @author tags.

    {color:green}+1 tests included{color}.  The patch appears to include 1 new or modified test files.

    {color:green}+1 javac{color}.  The applied patch does not increase the total number of javac compiler warnings.

    {color:green}+1 release audit{color}.  The applied patch does not increase the total number of release audit warnings.

    {color:red}-1 core tests{color}.  The test build failed in ambari-server 

Test results: https://builds.apache.org/job/Ambari-trunk-test-patch/2381//testReport/
Console output: https://builds.apache.org/job/Ambari-trunk-test-patch/2381//console

This message is automatically generated.

> ambari-server sync-ldap fails if there are too many users in the LDAP server (more than 1000?)
> ----------------------------------------------------------------------------------------------
>
>                 Key: AMBARI-10513
>                 URL: https://issues.apache.org/jira/browse/AMBARI-10513
>             Project: Ambari
>          Issue Type: Bug
>          Components: ambari-server
>    Affects Versions: 2.0.0
>            Reporter: Emil Anca
>            Assignee: Emil Anca
>             Fix For: 2.1.0
>
>         Attachments: AMBARI-10513_01.patch
>
>
> ambari-server setup-ldap was performed against QE AD server, which has more than 2000 users.
> [root@c6401 ~]# ambari-server sync-ldap --all
> Using python  /usr/bin/python2.6
> Syncing with LDAP...
> Enter Ambari Admin login: admin
> Enter Ambari Admin password:
> Syncing all.......ERROR: Exiting with exit code 1.
> REASON: Caught exception running LDAP sync. [LDAP: error code 4 - Sizelimit Exceeded]; nested exception is javax.naming.SizeLimitExceededException: [LDAP: error code 4 - Sizelimit Exceeded]; remaining name 'CN=Users,DC=scl42,DC=hortonworks,DC=com'
> Dilli Arumugam told me that Ranger (formerly known as XASecure) also hit a similar issue: BUG-23578.
> BUG-31217: Attempting to sync LDAP that contains > 1000 entities fails.
> Problem: If your directory contains > 1000 users, attempts to sync-ldap users and groups to Ambari will fail. There is a limit of 1000 to the number of entities Ambari can process.
> Solution: Perform the sync-ldap using the --users and --groups option to limit the amount of entities to be under 1000 and perform the sync in batches.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)