[LightDM] lightdm and sssd with ldap

François Dagorn Francois.Dagorn at univ-rennes1.fr
Wed Oct 8 00:10:19 PDT 2014


And finally, FYI, I think there is a problem to run both sssd and
lightdm (but other dm too) :

- facing a huge ldap directory
- configured lightdm with /greeter-hide-users=true/
- sssd with /enumerate=false/

then lightdm hangs

- so we tried sssd with /enumerate=true/ and still lightdm/greeter-hide-users=true /
- it runs well, but with sssd default values, every 120 sec the cache is refreshed and
  our ldap server get overloaded (a bit difficult to realize because with only one workstation
  for testing, the load problem is not present).
- as a bonus, we have 120 workstations running and with sssd /enum_cache_timeout/ left with the
  default, roughly, every second there is a worstation doing cache enumerations requests
  (for info about all users) .

Currently, I hope to have fixed the problem by setting /enum_cache_timeout /to 10 hours/.../

Yesterday, Jakub Hrozek (sssd developper)  wrote me the following :

>> Wow, if they rely on getpwent() and friends, then I would call lightdm
>> broken, sorry.. I guess using something like utmp and providing a button
>> to type in the username would be much better..

*Hope this help.*
*Cheers.*

-- 
François
Université de Rennes

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freedesktop.org/archives/lightdm/attachments/20141008/a49dcdd9/attachment.html>


More information about the LightDM mailing list