OID 11g DIP AD to OID Synchronization Performance is Very Slow or Fails for Some Users. DIP Log Errors May Include: [LDAP: error code 32 - New Parent not found.] | [LDAP: error code 20 - uniquemember attribute has duplicate value.] (Doc ID 2244716.1)

Last updated on MARCH 16, 2017

Applies to:

Oracle Internet Directory - Version 11.1.1 and later
Information in this document applies to any platform.

Symptoms

User entries are either not getting synchronized or are very slow to sync into Oracle Internet Directory (OID) 11g from Microsoft (MS) Active Directory (AD).

DIP log with Log Level debug set to All may include errors such as:

[2017-01-25T11:31:26.922+05:30] [wls_ods1] [ERROR] [DIP-10226] [oracle.dip.AD2OID] [tid: oracle.ldap.odip.web.DIPSyncWriterThread] [userId: ] [ecid: 0000LbK5GjrEOP^5xVS4yW1OY3Py000001,1:25097] [APP: DIP#11.1.1.2.0] Exception doing ModRDN operation for entry : cn=my user,ou=myou,cn=prod,dc=mycompany,dc=com.[[
javax.naming.NameNotFoundException: [LDAP: error code 32 - New Parent not found.]; Remaining name: 'cn=my user,ou=myou,cn=prod,dc=mycompany,dc=com'

.....

[2017-01-25T11:26:06.005+05:30] [wls_ods1] [ERROR] [DIP-10007] [oracle.dip.AD2OID] [tid: AD2OID] [userId: ] [ecid: 0000LbK5GjrEOP^5xVS4yW1OY3Py000001,0] [APP: DIP#11.1.1.2.0] error in execution of Agent thread: AD2OID[[
ODIException: Error Modifying Entry in Directory
at oracle.ldap.odip.gsi.LDAPWriter.checkNReplace(LDAPWriter.java:1180)
at oracle.ldap.odip.gsi.LDAPWriter.checkNReplace(LDAPWriter.java:981)
at oracle.ldap.odip.gsi.LDAPWriter.modifyRadd(LDAPWriter.java:940)
at oracle.ldap.odip.gsi.LDAPWriter.performWriteChanges(LDAPWriter.java:438)
at oracle.ldap.odip.gsi.LDAPWriter.writeChanges(LDAPWriter.java:268)
at oracle.ldap.odip.web.DIPSyncWriterThread.run(DIPSyncWriterThread.java:71)
Caused by: javax.naming.directory.AttributeInUseException: [LDAP: error code 20 - uniquemember attribute has duplicate value.]; Remaining name: 'cn=my groups,ou=groups,ou=my ou,dc=mycompany,dc=com'
at com.sun.jndi.ldap.LdapCtx.mapErrorCode(LdapCtx.java:3063)
at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:3025)
at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:2832)
at com.sun.jndi.ldap.LdapCtx.c_modifyAttributes(LdapCtx.java:1470)
at com.sun.jndi.toolkit.ctx.ComponentDirContext.p_modifyAttributes(ComponentDirContext.java:267)
at com.sun.jndi.toolkit.ctx.PartialCompositeDirContext.modifyAttributes(PartialCompositeDirContext.java:184)
at javax.naming.directory.InitialDirContext.modifyAttributes(InitialDirContext.java:183)
at oracle.ldap.odip.gsi.LDAPWriter.checkNReplace(LDAPWriter.java:1127)
... 5 more

]]

 

Changes

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms