LDAP-UX Client Services B.04.00 Administrator's Guide

Administering LDAP-UX Client Services
Client Daemon Performance
Chapter 4128
group Frequent file system
access may request
information about
groups that own
particular files.
Caching greatly
reduces this impact.
Removing a
member of a group
may not be visible
to the file system,
until after the
cache expires.
During this
window, a user
may be able to
access files or
other resources
based on his/her
group
membership,
which had been
revoked.
netgroup netgroups can be
heavily used for
determining network
file system access
rights or user login
rights. Caching this
information greatly
reduces this impact
Similar to groups,
since netgroups
are used to control
access to
resources,
modification of
these rights may
not appear until
after cache
information has
expired. Users
may be allowed or
denied login even
their rights should
allow / deny
access,
Table 4-2 (Continued)
Map Name Benefits
Example
Side-Effect