[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Removing unused schemas - recommended?
- To: openldap-technical@openldap.org
- Subject: Removing unused schemas - recommended?
- From: Chris Neilson <crusty.chris@gmail.com>
- Date: Fri, 05 Dec 2014 12:02:14 +1300
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject :content-type:content-transfer-encoding; bh=QKSMUPKFIfgG/RYQs46L+9BJfo1WlhppdkCemeMmG64=; b=lbZ2Btl4XD0jgqr0xsCzxk1/sQRQi2WRWPInmt7jLCA0rba7a2VO8fLN5BixoyrIBR zuh4ev7pG8wmRpzbsq/5iZ6sWAeU0CTHDfU7NeOwrJp+JuuUYrDRf7zLULn0qgZ9kX4i nB1nhHVQnnagK6MIo2R0V2jDZLQTCCEYTlVpKTumF+lbM3NClIasgtOd4YGHRYjt5SQg V8rInwg+o8YjXF3s0q8KRTLBOzoO66iQLJ7c2B+VaAvxmsvx0ZebPUxfZTC+CDEOLbHg lD40GyE8Gh4IQYgc/X56v3shXExIMCEi7B6fxrS99x8XrJH96CxMf2qwgz5Xa9XelbZL stdA==
- User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.3.0
Im having a few issues wrapping my head around how schemas should be
implemented.
If I do a default install of openldap (2.4.23) on CentOS 6 the following
schemas are automatically included:
cn={0}corba.ldif
cn={1}core.ldif
cn={2}cosine.ldif
cn={3}duaconf.ldif
cn={4}dyngroup.ldif
cn={5}inetorgperson.ldif
cn={6}java.ldif
cn={7}misc.ldif
cn={8}nis.ldif
cn={9}openldap.ldif
cn={10}ppolicy.ldif
cn={11}collective.ldif
I assume this is done because it allows for a fairly flexible directory
that Just Works for nearly everyone.
However, many of these schemas contain attributes that I do not use, in
fact I can cut down the list of schemas that contain attributes I
knowingly use to the following list:
cn={0}core.ldif
cn={1}cosine.ldif
cn={2}inetorgperson.ldif
cn={3}nis.ldif
cn={4}customschema.ldif
My issue is that I am not sure if there is any benefit for removing the
unused schemas (i.e. I could have just added my customschema as
cn={12}customschema.ldif to the default install but I was worried there
would be a performance penalty or security issue with including the
unused schemas).
Is it advisable to remove unused schemas? Does including unused schemas
result in any sort of performance penalty (e.g. while booting or when
doing searches)?
If I want to use syncrepl to replicate my data do I have to have the
exact same list of schemas in the same order on the consumer (i.e. does
the number in the curly braces matter)? If I add a schema to a consumer
does it have to be added to the provider as well even if the attributes
it contains are unused?