- 
    Suggestion 
- 
    Resolution: Fixed
- 
    None
- 
    None
When a user attempts to login through an account that is managed remotely (LDAP or Crowd), JIRA / emb crowd should synchronise the user's details (username, display name, email and group memberships).
You only need to add new group memberships for groups that have already been synchronised - it is OK to ignore others.
The group synchronisation should happen before we check for permission to log in - the user may have recently been added or removed from the required group.
See https://jira.atlassian.com/browse/JRA-26882 for some background
- causes
- 
                    CWD-3694 Crowd attempts to create a duplicate user if a successfully authenticates with a RemoteCrowdDirectory during synchronisation -         
- Closed
 
-         
- 
                    CWD-4197 Improve authentication performance when copying groups on login - Closed
 
- has a derivative of
- 
                    CWD-3696 Full LDAP does not respect "User Membership Attribute" during login -         
- Closed
 
-         
- 
                    JRASERVER-36555 Full LDAP does not respect "User Membership Attribute" during login -         
- Closed
 
-