IdM/IPA LDAP and Red Hat Directory Server/RHDS replication halt, error Can't locate CSN number in the changelog (DB rc=-30988)

Solution Verified - Updated -

Issue

This is a report about a LDAP replication halt with error similar to this message:

[28/Sep/2016:11:27:03 +0300] agmt="cn=meTo<hostname>" (<hostname>:<PORT>) - Can't locate CSN <csn number> in the changelog (DB rc=-30988). If replication stops, the consumer may need to be reinitialized.
  • The CSN number is similar to example 57eb7dbc000000600000.

  • During the problem there is no more LDAP replication from a master or supplier, this can happen with RHDS 10 or in the context of IdM / IPA.

  • IPA usually cannot replicate any changes and will report errors.

  • The error can happen either the main LDAP backend userroot or with the PKI LDAP backend of IPA cn=masterAgreement1-hostname-fqdn-pki-tomcat. Or any replicated database in Red Hat Directory Server.

Environment

  • Red Hat Directory Server (RHDS) 10
  • Red Hat Enterprise Linux (RHEL) 7.2 and 7.3
  • Red Hat Enterprise Linux (RHEL) 6
  • Red Hat Identity Management (IPA) 4.2 , 4.3, 4.4
    • 389-ds-base-1.3.4.0-33 until version 1.3.5.10-15.el7_3
  • Red Hat Identity Management (IPA) 3
    • 389-ds-base-1.2.11.15-75

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content