Univention Bugzilla – Bug 46728
Add syncprov module to slapd.conf to serve to syncrepl consumers
Last modified: 2021-05-14 16:34:19 CEST
It would be nice to have syncrepl enabled by default in slapd.conf. I'm currently in contact with a customer who wants to connect a service, that uses syncrepl to replicate user objects, to our LDAP. Slapd throws the following error when that service tries to replicate: slap_global_control: unrecognized control: 1.3.6.1.4.1.4203.1.9.1.1 I've put the following config into slapd.conf to activate syncprov: ''' moduleload syncprov.so overlay syncprov syncprov-checkpoint 100 10 syncprov-sessionlog 100 ''' It works perfectly afterwards See also https://www.openldap.org/doc/admin24/replication.html Chapter 18.3 "Configuring the different replication types"
FYI: Adding this to the slapd.conf on the master should be simple and without side effects (LDAP ACLs apply). Adding it to all other domaincontrollers too would require us to assign to each server a so called "rid" (syncrepl-terminology), which should be a unique number in the range 0-999. At least that's required if those servers are supposed to communicate with each other via syncrepl at some point in the future. In Valentins' test the Master automatically defaulted to rid=000.
This issue has been filed against UCS 4.3. UCS 4.3 is out of maintenance and many UCS components have changed in later releases. Thus, this issue is now being closed. If this issue still occurs in newer UCS versions, please use "Clone this bug" or reopen it and update the UCS version. In this case please provide detailed information on how this issue is affecting you.