[prev in list] [next in list] [prev in thread] [next in thread] 

List:       forgerock-opendj
Subject:    [Opendj] Enable/disable backend in control panel?
From:       ludovic.poitou () forgerock ! com (Ludovic Poitou)
Date:       2011-09-26 7:41:16
Message-ID: 8C7744C4-7E65-41DF-AD76-63E4DE6D6EF9 () forgerock ! com
[Download RAW message or body]

Hi Peter,

Yes, authentication information in the Control Panel is cached, as connections are \
not kept forever. This is why, one can stop / restart the directory server and still \
be re-authenticated.

Ludo

On Sep 25, 2011, at 9:33 , Mark Craig wrote:

> Hi,
> 
> Maybe somebody who has actually read the control-panel code could answer this \
> question more authoritatively. :-) 
> My guess is that the control panel sets up a context to authenticate including the \
> DN and password you provide, and then keeps that object with the credentials around \
> in memory until you exit the control panel. When I tail the access log while \
> control-panel is running I see searches every few seconds, as if the control panel \
> were polling the config, binding with the username-password credentials provided. \
> For example: 
> ...
> [25/Sep/2011:09:09:51 +0200] DISCONNECT conn=0 reason="Client Disconnect"
> [25/Sep/2011:09:10:16 +0200] CONNECT conn=0 from=192.168.0.12:64947 \
> to=192.168.0.12:4444 protocol=LDAPS [25/Sep/2011:09:10:16 +0200] BIND REQ conn=0 \
> op=0 msgID=1 type=SIMPLE dn="cn=Directory Manager" [25/Sep/2011:09:10:16 +0200] \
> BIND RES conn=0 op=0 msgID=1 result=0 authDN="cn=Directory Manager,cn=Root \
> DNs,cn=config" etime=15 [25/Sep/2011:09:10:16 +0200] SEARCH REQ conn=0 op=1 msgID=2 \
>                 base="cn=config" scope=baseObject filter="(objectclass=*)" \
>                 attrs="1.1"
> ...
> 
> Now that the subject comes up, I think you can increase the polling interval using \
> View > Refresh options... It's actually nice to see that option is there, because \
> it's annoying to have the control panel constantly dumping a bunch of noisy \
> messages into the access log while I'm tailing the access log to understand how \
> something is happening. 
> Regards,
> Mark
> 
> 2011/9/24 Major P?ter <majorpetya at sch.bme.hu>
> Hi,
> 
> thanks, looks like using the Manage Entries the backend can be reenabled.
> BTW is that ok, that once you are authenticated in the control panel,
> you can stop/restart the DS as many times you want and you still stay
> logged in?
> 
> Peter
> 
> On 2011-09-24 21:42, Mark Craig wrote:
> > Hi Peter,
> > 
> > Maybe with Manage Entries > Base DN: All Base DNs to see the
> > configuration entries, on the entry under cn=config > backendName, you
> > could set the attribute ds-cfg-enabled: FALSE, then save changes. I
> > don't think there a more direct way.
> > 
> > If you have the control panel open, that still might be quicker than typing:
> > 
> > $ /path/to/OpenDJ/bin/dsconfig -p 4444 -h `hostname` -D "cn=Directory
> > Manager" -w password set-backend-prop --backend-name backendName --set
> > enabled:false -X -n
> > 
> > Regards,
> > Mark
> > 
> > 2011/9/24 Major P?ter <majorpetya at sch.bme.hu <mailto:majorpetya at \
> > sch.bme.hu>> 
> > Hi,
> > 
> > is there a way to enable/disable backends using the control panel? If
> > so, how?
> > 
> > Thanks,
> > Peter
> > _______________________________________________
> > OpenDJ mailing list
> > OpenDJ at forgerock.org <mailto:OpenDJ at forgerock.org>
> > https://lists.forgerock.org/mailman/listinfo/opendj
> > 
> > 
> > 
> > 
> > _______________________________________________
> > OpenDJ mailing list
> > OpenDJ at forgerock.org
> > https://lists.forgerock.org/mailman/listinfo/opendj
> _______________________________________________
> OpenDJ mailing list
> OpenDJ at forgerock.org
> https://lists.forgerock.org/mailman/listinfo/opendj
> 
> _______________________________________________
> OpenDJ mailing list
> OpenDJ at forgerock.org
> https://lists.forgerock.org/mailman/listinfo/opendj

- - -
	

 	Ludovic Poitou - ForgeRock France SAS
e: ludovic.poitou at forgerock.com
t: +33 625 14 96 92
w: www.forgerock.com
blog: http://ludopoitou.wordpress.com


-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.forgerock.org/pipermail/opendj/attachments/20110926/ae0c7723/attachment.html \
                
-------------- next part --------------
A non-text attachment was scrubbed...
Name: forgerocklogo.png
Type: image/png
Size: 7117 bytes
Desc: not available
Url : http://lists.forgerock.org/pipermail/opendj/attachments/20110926/ae0c7723/attachment.png \



[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic