-
Bug
-
Resolution: Not a bug
-
High
-
3
-
Severity 3 - Minor
-
Issue Summary
Provisioning users with certain application access does not add them to the default access groups for that application
Steps to Reproduce
- Provision a user from an external IDP. The user is part of a provisioned group that grants access to a certain application
Expected Results
If the user is granted access to that application (via the group membership), then the user should also be added to the default application access group for that application (jira-users or confluence-users by default)
Actual Results
The user is only part of the provisioned group, hence having access to the application, but not to the bits that are protected by additional permissions granted to the default access groups
Workaround
Manually adding each user to the default application access group
- duplicates
-
ACCESS-604 Grant users synced from identity providers via SCIM application access by default
- Gathering Interest
- relates to
-
JSDCLOUD-12954 Provisioned accounts should have Customer access by default
- Closed
- mentioned in
-
Page Failed to load
-
Page Failed to load
-
Page Failed to load
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
-
Page Loading...
[ACCESS-1767] Provisioning users with certain application access does not add them to the default access groups for that application
Remote Link | New: This issue links to "Page (Confluence)" [ 895774 ] |
Resolution | New: Not a bug [ 12 ] | |
Status | Original: Gathering Impact [ 12072 ] | New: Closed [ 6 ] |
Support reference count | Original: 2 | New: 3 |
Support reference count | Original: 63 | New: 2 |
Component/s | Original: Directory - Manage product access [ 48696 ] | |
Component/s | New: Group Sync [ 66416 ] | |
Key |
Original:
|
New:
|
Project | Original: Identity [ 16810 ] | New: Atlassian Access [ 18910 ] |
Support reference count | Original: 62 | New: 63 |
Labels | New: RIBS-SHORT |
It's disappointing that this ticket has been closed. We've released an app to fix this issue, Admin Automation, and to solve other challenging and time consuming admin tasks. The app will sync users from any groups (e.g. a group from an IdP) into the default product access groups.
Hopefully it can help some of the people on this thread!
-Kieren
Co-Founder @ Smol Software | Ex-Atlassian