-
Bug
-
Resolution: Unresolved
-
Low
-
None
-
8.0.2, 7.19.17
-
3
-
Severity 2 - Major
-
2
-
Summary
When users are filtered out/synchronized from Confluence and re-synchronized back into Confluence, they will lose their Local Group Membership.
Environment
- Confluence 8.0.2
- All types of LDAP directory
Steps to Reproduce
- Add a connection to LDAP in Confluence Admin >> User Directories with the Read Only, with Local Groups option
- Sync the directory and make sure that LDAP users are created in Confluence
- Add 1 LDAP user to a local group (membership)
- Change the User filter or Base DN such that the previously synchronized user cannot be pulled
- Rerun the synchronization
- The user will be marked as disabled (when you search for the user)
- Rerun the synchronization, this time user will be moved under "unsync from directory" tab and no longer be searched as per the expected functionality
- Now change the filter back to the original value and perform a Full sync again
- This time users are enabled again and can be searched
- Check the user groups no longer include the local groups
No Workaround is available for now
- mentioned in
-
Page Failed to load
Hello Atlassian Team,
we are also affected and with a large number of users from the Active Directory, the effort required for subsequent correction is very high.
I hope there will be an update here soon, but the categorisation as bug and low does not bode well.
Best regards