openstack group list returns sometimes empty list with LDAP

asked 2019-09-02 10:46:20 -0600

smutel


Our domain is setup with LDAP groups.
Sometimes the command openstack group list returns empty result without any error (just one blank line).
Sometimes the command returns the list of groups.
I sourced the same openstack config files.
The error appears randomly when I type the command several times.

Any idea where this could come from ?


To me it sounds like a network issue, but have you tried running openstack --debug group list and compare the output from a successful command vs. an empty response?

eblock ( 2019-09-04 04:09:42 -0600 )

1 answer

Sort by ยป oldest newest most voted

answered 2019-09-04 04:34:25 -0600

smutel


I answer to my own question.
LDAP is reachable from a VIP round robin to several LDAP server.
In one server a LDAP rule denied the access for the user to the openstack specific OU.
We changed the rule and now it works fine.


