Univention Bugzilla – Bug 48988
Use LDAP Post Read Control for all writes in sync_to_ucs
Last modified: 2021-09-16 15:52:40 CEST
For Bug #43628 we extended UDM to support the passing of the LDAP Post Read Control to allow the modifier to see the value of e.g. entryCSN directly after the modification. We should use that in the S4-Connector for all writes to OpenLDAP. Currently it's only used for the NTSecurityDescriptor. The benefit of this is, that we reduce the ping-pong of changes when a change originates from Samba/AD. With the control, the S4-Connector can identify which changes reported from the Listener are simply hist own and can be ignored. Unfortunately AD (and Samba) currenlty don't support that control as yet, so the effect of this is probably not a massive percentage in speedup. But it makes a massive difference for staccato-like changes from the Samba side: We had reports of Admins changing user names, mistyping, and fixing in typical human interaction speed -- and then the S4-Connector interferred and overwrote their changes. That would be avoided by the proposed change.
The post-read-control has been activated for all objects in Bug #52358. *** This bug has been marked as a duplicate of bug 52358 ***
Verified - problem has been fixed with Bug #52358
(In reply to Florian Best from comment #1) > The post-read-control has been activated for all objects in Bug #52358. > > *** This bug has been marked as a duplicate of bug 52358 *** REOPEN: That was reverted.