Uploaded image for project: 'Crowd Data Center'
  1. Crowd Data Center
  2. CWD-2723

Group Name attribute change behavior in Delegated Authentication Directory

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: Low Low
    • None
    • 2.3.4
    • None
    • None

      Description

      When there is a Group Name Attribute change in Delegated Authentication Directory, instead of updating an existing group's name to use the new attribute, Crowd creates another group with that alternate Group Name (So there will be some sort of a duplicate group).

      How to Reproduce

      1. Create a user, with cn=UserA in LDAP.
      2. Create a group, with cn=GroupA, description=GroupAcopy, member=cn=UserA in LDAP
      3. Set up a Delegated Auth Directory in Crowd Console >> Directories >> Add Directory to sync Group memberships, and assign the Group Name Attribute to cn.
      4. Login as UserA into Crowd, which will automatically create the group, GroupA in Crowd as well.
      5. Update the Group Name Attribute in the Delegated Auth Directory Configuration in Crowd to description, this time.
      6. Login as UserA again

      Notice that there will be another group called GroupAcopy created in Crowd, with the old group, GroupA still there (2 groups instead of 1). Expected behavior would be that Crowd will update GroupA to GroupAcopy (since it's a name attribute change).

              Unassigned Unassigned
              fsim Foo Sim (Inactive)
              Votes:
              3 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: