Optimizing IdP's performance

Chad La Joie lajoie at itumi.biz
Mon Aug 1 15:53:08 BST 2011


I'll have to ask Dan, the developer of the LDAP library, I thought he
had already moved to using a pool for the DN searching.

On Mon, Aug 1, 2011 at 10:46, Manuel Haim <haim at hrz.uni-marburg.de> wrote:
> Chad,
>
> thank you for your response and helpful recommendations.
>
>> I *strongly* discourage people from simply creating the DN from given
>> input from the user.  It's a very brittle setup and I would remove any
>> such suggestion added to the wiki.  If that extra search, done via
>> pooled connections, is such a onerous amount of work then the problem
>> is with your LDAP.
>
> Well, yes. However, it seems that the SearchDnResolver does not make use
> of pooled connections yet. In our setup, this not only impaired the
> latency, but also resulted in less logins per second (compared to using
> a static DN). Is connection pooling planned here for a future release?
>
> -Manuel
>
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
>



-- 
Chad La Joie
www.itumi.biz
trusted identities, delivered


More information about the users mailing list