HP UX Identity Security Software manual Nsslapd-referralmode Referral mode

Models: UX Identity Security Software

1 272
Download 272 pages 6.51 Kb
Page 54
Image 54

NOTE:

To use SSL and TLS communications, the referral attribute should be in the form ldaps://server-location.

Start TLS does not support referrals.

For more information on managing referrals, see the "Configuring Directory Databases" chapter in the HP-UX Directory Server administrator guide.

Parameter

Description

Entry DN

cn=config

Valid Values

Any valid LDAP URL in the form ldap://server-location

Default Value

 

Syntax

DirectoryString

Example

nsslapd-referral: ldap://ldap.example.com

2.3.1.82 nsslapd-referralmode (Referral mode)

When set, this attribute sends back the referral for any request on any suffix.

Parameter

Description

Entry DN

cn=config

Valid Values

Any valid LDAP URL in the form >ldap://server-location

Default Value

 

Syntax

DirectoryString

Example

nsslapd-referralmode: ldap://ldap.example.com

2.3.1.83 nsslapd-reservedescriptors (Reserved file descriptors)

This attribute specifies the number of file descriptors that Directory Server reserves for managing non-client connections, such as index management and managing replication. The number of file descriptors that the server reserves for this purpose subtracts from the total number of file descriptors available for servicing LDAP client connections (See “nsslapd-maxdescriptors (Maximum file descriptors)”).

Most installations of Directory Server should never need to change this attribute. However, consider increasing the value on this attribute if all the following are true:

The server is replicating to a large number of consumer servers (more than 10), and/or the server is maintaining a large number of index files (more than 30).

The server is servicing a large number of LDAP connections.

There are error messages reporting that the server is unable to open file descriptors (the actual error message differs depending on the operation that the server is attempting to perform), but these error messages are not related to managing client LDAP connections.

Increasing the value on this attribute may result in more LDAP clients being unable to access the directory. Therefore, the value on this attribute is increased, also increase the value on the nsslapd-maxdescriptorsattribute. It may not be possible to increase the nsslapd-maxdescriptorsvalue if the server is already using the maximum number of file descriptors that the operating system allows a process to use; see the operating system documentation for details. If this is the case, then reduce the load on the server by causing LDAP

54 Core server configuration reference

Page 54
Image 54
HP UX Identity Security Software Nsslapd-referralmode Referral mode, Nsslapd-reservedescriptors Reserved file descriptors