IdM/IPA LDAP and Red Hat Directory Server/RHDS replication halt, error Can't locate CSN number in the changelog (DB rc=-30988)

Solution Verified - Updated -


This is a report about a LDAP replication halt with error similar to this message:

[28/Sep/2016:11:27:03 +0300] agmt="cn=meTo<hostname>" (<hostname>:<PORT>) - Can't locate CSN <csn number> in the changelog (DB rc=-30988). If replication stops, the consumer may need to be reinitialized.
  • The CSN number is similar to example 57eb7dbc000000600000.

  • During the problem there is no more LDAP replication from a master or supplier, this can happen with RHDS 10 or in the context of IdM / IPA.

  • IPA usually cannot replicate any changes and will report errors.

  • The error can happen either the main LDAP backend userroot or with the PKI LDAP backend of IPA cn=masterAgreement1-hostname-fqdn-pki-tomcat. Or any replicated database in Red Hat Directory Server.


  • Red Hat Directory Server (RHDS) 10
  • Red Hat Enterprise Linux (RHEL) 7.2 and 7.3
  • Red Hat Enterprise Linux (RHEL) 6
  • Red Hat Identity Management (IPA) 4.2 , 4.3, 4.4
    • 389-ds-base- until version
  • Red Hat Identity Management (IPA) 3
    • 389-ds-base-

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In