Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-11926

LDAP performance degrades the more LDAP groups a user belongs too

    XMLWordPrintable

Details

    Description

      Upon enabling LDAP integration for users and groups it appears the more LDAP groups a users belongs too the slower each confluence page request takes to complete. Using the performance profile feature it seems Confluence retrieves a list of all groups a user belongs to (even though only 1 or 2 of these exist in Confluence) and checks them to see if the user should have access. Can this is changed so Confluence checks if a user belongs to the defined access groups instead of the other way around and therefore the number of groups a user belongs to does not matter?

      To prove this i've created two users; one belonging to just one group and the other belonging to twenty groups. The performacne profile output shows page requests for the user with twenty groups take about 60-70% longer to complete.

      Attachments

        Issue Links

          Activity

            People

              matt@atlassian.com Matt Ryall
              3aec2c29ca88 Mike Robins
              Votes:
              17 Vote for this issue
              Watchers:
              16 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: