DataConnector Delay

Mr. Christopher Bland chris at fdu.edu
Wed Dec 28 21:52:25 EST 2016


Hi Scott,

Thanks for the feedback.  I forgot about caching.  I have enabled it, so we’ll see how it goes.  

Amidst my research on this issue I came across <RequestedAttribute> for metadata.  Since I only use memberOf for certain SPs my though was adding the RequestedAttribute to the SPs I control would eliminate the memberOf query from executing and thus speed up session processing.  Is my understanding of using RequestedAttribute in my SP metadata correct?

-Chris


> On Dec 28, 2016, at 9:26 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> 
> On 12/28/16, 9:10 PM, "users on behalf of Mr. Christopher Bland" <users-bounces at shibboleth.net on behalf of chris at fdu.edu> wrote:
> 
>> I think I need to give you a little more detail on why this is important to me, perhaps there’s another way to skin this cat.  I
>> have spent a lot of time recently tuning our system because response times were horrible.  This 3-6 second delay is
>> often doubled
> 
> Even allowing that the IdP has little or nothing to do with the LDAP search response time (which is true), if you're doubling that, then you're obviously not caching the results.
> 
>> Normal AD/LDAP queries come back in microseconds.
> 
> Not the one you're asking it to do, apparently. The IdP doesn't have any control over what search you ask it to do, and the search takes what it takes.
> 
> -- Scott
> 
> 
> -- 
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net



More information about the users mailing list