-
Suggestion
-
Resolution: Fixed
-
None
-
None
When a user attempts to login through an account that is managed remotely (LDAP or Crowd), JIRA / emb crowd should synchronise the user's details (username, display name, email and group memberships).
You only need to add new group memberships for groups that have already been synchronised - it is OK to ignore others.
The group synchronisation should happen before we check for permission to log in - the user may have recently been added or removed from the required group.
See https://jira.atlassian.com/browse/JRA-26882 for some background
- causes
-
CWD-3694 Crowd attempts to create a duplicate user if a successfully authenticates with a RemoteCrowdDirectory during synchronisation
- Closed
-
CWD-4197 Improve authentication performance when copying groups on login
- Closed
- has a derivative of
-
CWD-3696 Full LDAP does not respect "User Membership Attribute" during login
- Closed
-
JRASERVER-36555 Full LDAP does not respect "User Membership Attribute" during login
- Closed