Bug 707574

Summary: SSSD's async resolver only tries the first nameserver in /etc/resolv.conf
Product: Red Hat Enterprise Linux 5 Reporter: Stephen Gallagher <sgallagh>
Component: sssdAssignee: Stephen Gallagher <sgallagh>
Status: CLOSED ERRATA QA Contact: Chandrasekar Kannan <ckannan>
Severity: urgent Docs Contact:
Priority: urgent    
Version: 5.7CC: benl, dpal, grajaiya, jgalipea, kbanerje, msvoboda, prc
Target Milestone: rc   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: sssd-1.5.1-35.el5 Doc Type: Bug Fix
Doc Text:
When the first DNS entry defined in the /etc/resolv.conf file was unreachable, SSSD failed to connect to any subsequent DNS server to resolve the SRV record. This caused SSSD to permanently operate in offline mode. This bug has been fixed and SSSD is now able to connect to an alternate server if the primary server is down.
Story Points: ---
Clone Of: 703624 Environment:
Last Closed: 2011-07-21 11:45:58 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On: 703624, 748835    
Bug Blocks:    

Comment 2 Kaushik Banerjee 2011-05-27 10:34:49 UTC
1. Tested with 2 unreachable nameservers at the beginning in resolv.conf.
2. Enable debug logs and restart SSSD.
3. Enumeration and auth works fine.
# time ssh -l puser1 localhost
puser1@localhost's password: 
Last login: Fri May 27 16:01:41 2011 from localhost.localdomain
Could not chdir to home directory /export/puser1: No such file or directory
-sh-3.2$ logout
Connection to localhost closed.

real	0m37.972s
user	0m0.004s
sys	0m0.004s

Comment 4 Kaushik Banerjee 2011-05-27 10:36:51 UTC
# rpm -qi sssd | head
Name        : sssd                         Relocations: (not relocatable)
Version     : 1.5.1                             Vendor: Red Hat, Inc.
Release     : 35.el5                        Build Date: Wed 25 May 2011 08:03:59 PM IST
Install Date: Thu 26 May 2011 03:52:52 PM IST      Build Host: x86-008.build.bos.redhat.com
Group       : Applications/System           Source RPM: sssd-1.5.1-35.el5.src.rpm
Size        : 3486777                          License: GPLv3+
Signature   : (none)
Packager    : Red Hat, Inc. <http://bugzilla.redhat.com/bugzilla>
URL         : http://fedorahosted.org/sssd/
Summary     : System Security Services Daemon

Comment 5 Miroslav Svoboda 2011-07-15 13:31:40 UTC
    Technical note added. If any revisions are required, please edit the "Technical Notes" field
    accordingly. All revisions will be proofread by the Engineering Content Services team.
    
    New Contents:
When the first DNS entry defined in the /etc/resolv.conf file was unreachable, SSSD failed to connect to any subsequent DNS server to resolve the SRV record. This caused SSSD to permanently operate in offline mode. This bug has been fixed and SSSD is now able to connect to an alternate server if the primary server is down.

Comment 6 errata-xmlrpc 2011-07-21 11:45:58 UTC
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on therefore solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.

http://rhn.redhat.com/errata/RHSA-2011-0975.html