[SERVER-55316] Disconnect LDAP connections out of line Created: 18/Mar/21  Updated: 29/Oct/23  Resolved: 20/May/21

Status: Closed
Project: Core Server
Component/s: None
Affects Version/s: None
Fix Version/s: 4.2.15, 4.4.7, 5.0.0-rc0

Type: Bug Priority: Major - P3
Reporter: Benjamin Caimano (Inactive) Assignee: Mark Benvenuto
Resolution: Fixed Votes: 3
Labels: post-rc0
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Backports
Depends
is depended on by SERVER-56183 Prevent LDAP connection pool from sta... Closed
Problem/Incident
causes SERVER-59456 Start the LDAPReaper threadpool Closed
Related
related to SERVER-57233 Reap LDAP connections inline if multi... Closed
related to SERVER-56183 Prevent LDAP connection pool from sta... Closed
Backwards Compatibility: Fully Compatible
Operating System: ALL
Backport Requested:
v5.0, v4.2
Sprint: Security 2021-05-03, Security 2021-05-17, Security 2021-05-31
Participants:
Case:

 Description   

We currently invoke OpenLDAPConnection::disconnect() inline in the OpenLDAPConnection destructor. (We do a simliar thing for windows.) Unfortunately, this means that we invoke synchronous networking under a mutex if the handle is destroyed in returnConnection() here. We should schedule this disconnect call out of line instead so that we do not hold that mutex for a long period of time.



 Comments   
Comment by Githook User [ 21/Jun/21 ]

Author:

{'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}

Message: SERVER-55316 Disconnect LDAP connections out of line

(cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5)
Branch: v4.2
https://github.com/10gen/mongo-enterprise-modules/commit/62b93726271d5429633f9b8f3f996edd6a31118c

Comment by Githook User [ 24/May/21 ]

Author:

{'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}

Message: SERVER-55316 Disconnect LDAP connections out of line

(cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5)
Branch: v4.4
https://github.com/10gen/mongo-enterprise-modules/commit/1bc114dd7080d4061f96fe4bc5e4ccb7758fb476

Comment by Githook User [ 24/May/21 ]

Author:

{'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}

Message: SERVER-55316 Disconnect LDAP connections out of line

(cherry picked from commit 145df754a8dd7813b6a0d57341dbad6ce9090fb5)
Branch: v5.0
https://github.com/10gen/mongo-enterprise-modules/commit/0d49dea3df9bc032a5fb5e2b3d8e014702fb291c

Comment by Githook User [ 19/May/21 ]

Author:

{'name': 'Mark Benvenuto', 'email': 'mark.benvenuto@mongodb.com', 'username': 'markbenvenuto'}

Message: SERVER-55316 Disconnect LDAP connections out of line
Branch: master
https://github.com/10gen/mongo-enterprise-modules/commit/145df754a8dd7813b6a0d57341dbad6ce9090fb5

Comment by Bruce Lucas (Inactive) [ 19/Mar/21 ]

Symptoms of this issue may include a 15-minute delay in LDAP-related operations like saslStart and serverStatus (LDAP connection pool setting) after a problem with a connection to the LDAP server, as well as a 15-minute delay attempting to reconnect to the server.

Generated at Thu Feb 08 05:36:07 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.