Uploaded image for project: 'Crowd Data Center'
  1. Crowd Data Center
  2. CWD-1857

User Added autmatically to crowd directory when user try to access an application managed in crowd

      User is added automatically to Crowd directory which is an Delegated LDAP authenticated directory when user try to access an application which is managed by Crowd.

      More Explanation:
      User is currently not a member of application "Y" which has Delegated LDAP directory "X". But when he try to access that application "Y" using his LDAP credentials he is added to that directory "X" automatically.

            [CWD-1857] User Added autmatically to crowd directory when user try to access an application managed in crowd

            joe added a comment -

            I believe this is the same underlying problem as CWD-2650. I'm closing this as that ticket has more details.

            joe added a comment - I believe this is the same underlying problem as CWD-2650 . I'm closing this as that ticket has more details.

            What I want to say is that the user which is not member of Application 'Y' and Directory 'X', if try to access 'Y' is should not be added to 'X' automatically but it should be added to 'X' by crowd administrator.

            Let me clear the point with this example:

            I added JIRA as an application to Crowd and the directory configured for this application is Delegated authentication directory which is integrated to LDAP server. Now a new person try to access JIRA using his LDAP credential but as he is not a member of the directory/Application(JIRA) and he will fail to login, but if you we go and search that person in the application Directory inside crowd we can see that he has been added to that directory automatically, but he still not be able to login because he is not part of jira-user group which crowd admin have to do manually ( we are using crowd version 1.6.1 - Planning to migrate to 2.*).

            So my issue is that person details shouldn't be added to the directory once he tries to login to an application managed by crowd

            I hope my point is clear now

            Gaurav Tomer added a comment - What I want to say is that the user which is not member of Application 'Y' and Directory 'X', if try to access 'Y' is should not be added to 'X' automatically but it should be added to 'X' by crowd administrator. Let me clear the point with this example: I added JIRA as an application to Crowd and the directory configured for this application is Delegated authentication directory which is integrated to LDAP server. Now a new person try to access JIRA using his LDAP credential but as he is not a member of the directory/Application(JIRA) and he will fail to login, but if you we go and search that person in the application Directory inside crowd we can see that he has been added to that directory automatically, but he still not be able to login because he is not part of jira-user group which crowd admin have to do manually ( we are using crowd version 1.6.1 - Planning to migrate to 2.*). So my issue is that person details shouldn't be added to the directory once he tries to login to an application managed by crowd I hope my point is clear now

            Just to be clear here, what you are saying is that you do not want users to be added to Directory 'X', is this correct?

            Justin Koke added a comment - Just to be clear here, what you are saying is that you do not want users to be added to Directory 'X', is this correct?

            Please let me know the solution for this

            Gaurav Tomer added a comment - Please let me know the solution for this

              Unassigned Unassigned
              70fae826d4c8 Gaurav Tomer
              Affected customers:
              0 This affects my team
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved:

                  Estimated:
                  Original Estimate - 1h
                  1h
                  Remaining:
                  Remaining Estimate - 1h
                  1h
                  Logged:
                  Time Spent - Not Specified
                  Not Specified