Alan Baugher

Monitor the Identity Suite IM Notify Queue

Discussion created by Alan Baugher Employee on Feb 28, 2018
Latest reply on Apr 5, 2018 by Alan Baugher

Team,

 

During testing of a large explore operation of endpoints/userstore with millions of records, if the IM Callback feature is enabled, we will see "audit" events sent to the IMPD Notify DSA (part of the IM Callback process).

 

If we wish to monitor progress, we can use various tools, e.g. ldap client tools or the IM VST.

 

One nice single command line is use of CA Directory's dxsearch binary (a "robust" version of "ldapsearch" type), and the switch to monitor a count.

 

 watch -n 2 "dxsearch -h `hostname` -p 20398 -c -x -D "eTDSAContainerName=DSAs,eTNamespaceName=CommonObjects,dc=etadb" -w "Password01" -b dc=notify,dc=etadb dxEntryCount | grep dxEntryCount"

 

This process will show the total count under the notify DSA, and with a time-stamp to allow an accurate metric on how quickly the IME tier is processing these "audit" events, to be stored into the IM TP table, so they may be viewed with the IM VST (view submitted task) in the IM UI.

 

 

 

 

Ref:  Counting Entries - CA Directory - 12.0.14 - CA Technologies Documentation 

 

 

If the default log level of "INFO" is not require for audit events, this IM Callback process may be disabled, or reduced down to "ERROR" messages; to speed up the processing.

 

 

Restart the im_ps  service, to use this new log level.

 

Entries that are already in the notify DSA will still be processed.

Outcomes