LDAP syncrepl replicates only part of the database
I have an LDAP server (master) providing the user database etc for the linux hosts and a slave server that copies/refreshes its database as a slave from the master via syncrepl. Both are running RHEL 6.5 and a pretty recent version of openldap (2.4.23-32)
Question: syncrepl is working fine for a part of the tree, but not all branches.
When I perform a manual ldapsearch with the information from the syncrepl section (see below) I get the full database.
Why does the syncrepl@slave get less information than the ldapsearch client?
There is no error messages or any other log entry mentioning why the transfer stops.
This is the syncrepl definition on the slave (DC,DN,credentials etc changed)
syncrepl rid=125
provider=ldaps://master.example.com
type=refreshOnly
retry="10 3"
interval=00:00:01:00
searchbase="dc=example,dc=com"
filter="(objectclass=*)"
scope=sub
schemachecking=off
bindmethod=simple
binddn="cn=manager,dc=example,dc=com"
credentials="secret"
|