From owner-freebsd-stable@FreeBSD.ORG Mon Apr 25 10:59:21 2005 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 17CE816A4CE for ; Mon, 25 Apr 2005 10:59:21 +0000 (GMT) Received: from obh.snafu.de (obh.snafu.de [213.73.92.34]) by mx1.FreeBSD.org (Postfix) with ESMTP id 7F91143D2F for ; Mon, 25 Apr 2005 10:59:20 +0000 (GMT) (envelope-from ob@gruft.de) Received: from ob by obh.snafu.de with local (Exim 4.50 (FreeBSD)) id 1DQ1J9-0006hv-GC for freebsd-stable@freebsd.org; Mon, 25 Apr 2005 12:59:19 +0200 Date: Mon, 25 Apr 2005 12:59:19 +0200 From: Oliver Brandmueller To: freebsd-stable@freebsd.org Message-ID: <20050425105919.GA95908@e-Gitt.NET> Mail-Followup-To: freebsd-stable@freebsd.org Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.5.9i Sender: Oliver Brandmueller Subject: nss_ldap / top startup X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 25 Apr 2005 10:59:21 -0000 Hi, I have some servers running running on 5.4-STABLE as of Apr 5th. I use nss_ldap for a userbase of currently about 24000 accounts (will be growing to approx 60000 in the next weeks). I don't use pam_ldap currently, because users only need to login by IMAP, POP, SMTP and FTP, for all of these services daemons are used which natively auth against the LDAP server. The more accounts there are in the LDAP directory, the longer the startup of "top" takes. With the current userbase top takes about 3-4 seconds to start (on a mostly idle Dual Xeon 2.8GHz with fast disks and local slapd). The startup time is not any different, sometimes I feel (did not try to measure) it's even longer, if I use "top -u" to not map uids. The running processes are only from a few uids, all the LDAP users usually don't have processes running under thier IDs. Any ideas, why this is happening? Will I need 10 seconds, when there are 60000 accounts in LDAP? :-) - Oliver -- | Oliver Brandmueller | Offenbacher Str. 1 | Germany D-14197 Berlin | | Fon +49-172-3130856 | Fax +49-172-3145027 | WWW: http://the.addict.de/ | | Ich bin das Internet. Sowahr ich Gott helfe. | | Eine gewerbliche Nutzung aller enthaltenen Adressen ist nicht gestattet! |