hadoop-common-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Jason Hubbard (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (HADOOP-10626) Limit Returning Attributes for LDAP search
Date Mon, 26 Jan 2015 20:17:35 GMT

    [ https://issues.apache.org/jira/browse/HADOOP-10626?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14292339#comment-14292339
] 

Jason Hubbard commented on HADOOP-10626:
----------------------------------------

Hi Aaron.  Yes, that's exactly it, this will limit what is returned instead of returning everything
which helps performance since only the groupNameAttr is used in the search.  I've rebased
to trunk and included the comments you suggested with the new patch.  Thanks for the help.

> Limit Returning Attributes for LDAP search
> ------------------------------------------
>
>                 Key: HADOOP-10626
>                 URL: https://issues.apache.org/jira/browse/HADOOP-10626
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: security
>    Affects Versions: 2.3.0
>            Reporter: Jason Hubbard
>            Assignee: Jason Hubbard
>              Labels: easyfix, newbie, performance
>         Attachments: HADOOP-10626.patch, HADOOP-10626.patch
>
>
> When using Hadoop Ldap Group mappings in an enterprise environment, searching groups
and returning all members can take a long time causing a timeout.  This causes not all groups
to be returned for a user.  Because the first search only searches for the user dn and the
second search retrieves the group member attribute, we only need to return the group member
attribute on the search speeding up the search.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message