[SERVER-55316] Disconnect LDAP connections out of line Created: 18/Mar/21 Updated: 29/Oct/23 Resolved: 20/May/21 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | None |
| Affects Version/s: | None |
| Fix Version/s: | 4.2.15, 4.4.7, 5.0.0-rc0 |
| Type: | Bug | Priority: | Major - P3 |
| Reporter: | Benjamin Caimano (Inactive) | Assignee: | Mark Benvenuto |
| Resolution: | Fixed | Votes: | 3 |
| Labels: | post-rc0 | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||||||||||||||||||||||||||
| Backwards Compatibility: | Fully Compatible | ||||||||||||||||||||||||||||||||
| Operating System: | ALL | ||||||||||||||||||||||||||||||||
| Backport Requested: |
v5.0, v4.2
|
||||||||||||||||||||||||||||||||
| Sprint: | Security 2021-05-03, Security 2021-05-17, Security 2021-05-31 | ||||||||||||||||||||||||||||||||
| Participants: | |||||||||||||||||||||||||||||||||
| Case: | (copied to CRM) | ||||||||||||||||||||||||||||||||
| Description |
|
We currently invoke OpenLDAPConnection::disconnect() inline in the OpenLDAPConnection destructor. (We do a simliar thing for windows.) Unfortunately, this means that we invoke synchronous networking under a mutex if the handle is destroyed in returnConnection() here. We should schedule this disconnect call out of line instead so that we do not hold that mutex for a long period of time. |
| Comments |
| Comment by Githook User [ 21/Jun/21 ] |
|
Author: {'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}Message: (cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5) |
| Comment by Githook User [ 24/May/21 ] |
|
Author: {'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}Message: (cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5) |
| Comment by Githook User [ 24/May/21 ] |
|
Author: {'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}Message: (cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5) |
| Comment by Githook User [ 19/May/21 ] |
|
Author: {'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}Message: |
| Comment by Bruce Lucas (Inactive) [ 19/Mar/21 ] |
|
Symptoms of this issue may include a 15-minute delay in LDAP-related operations like saslStart and serverStatus (LDAP connection pool setting) after a problem with a connection to the LDAP server, as well as a 15-minute delay attempting to reconnect to the server. |