Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-35436

LDAP directory read only with local groups should support mixed memberships.

    XMLWordPrintable

Details

    • We collect Confluence feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      NOTE: This suggestion is for Confluence Server. Using Confluence Cloud? See the corresponding suggestion.

      Problem:

      When creating an LDAP directory type connector with LDAP Permissions set to Read Only, with Local Groups, you can't include members into groups that are pulled from the LDAP.

      Steps to reproduce:

      1. Create a connector directory and set it to read-only with local groups;
      2. Find a group that was pulled from the LDAP and attempt to include other members, it will throw the following message:
        2014-10-29 16:57:35,371 ERROR [http-bio-8090-exec-274] [bucket.user.DefaultUserAccessor] addMembership Failed to add 'test-user' as a member of 'LDAP-group'
         -- url: /confluence/admin/users/adduserstogroup.action | userName: admin | referer: https://ironman/confluence/admin/users/domembersofgroupsearch.action?membersOfGroupTerm=LDAP-group | action: adduserstogroup
        com.atlassian.user.EntityException: com.atlassian.crowd.exception.OperationNotPermittedException: com.atlassian.crowd.exception.ApplicationPermissionException: Could not add user test-user to group LDAP-group in directory Active Directory server because the directory or group is read-only.
        

      Suggestion:

      We should allow mixed memberships composed by the list of group members pulled from the LDAP, plus members included manually within Confluence web interface.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              wzanchet William Zanchet (Inactive)
              Votes:
              1 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: