Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Confluence and Active Directory

Davey Jones July 16, 2019

I currently have Confluence synced with AD. The issue I am having is that as a confluence admin when I add a user to a group it is then mirrored into the group in AD. This is clearly a security issue as Confluence should not be able to make any changes on AD. My question is whether this is due to misconfiguration and if so how can it be fixed? 

1 answer

1 accepted

1 vote
Answer accepted
Mikael Sandberg
Community Champion
July 16, 2019

Hi @Davey Jones,

Welcome to Atlassian Community.

Based on your description it sounds like your user directory is setup with Read/Write permissions in the AD. You can setup a directory with three different permission settings; Read-only, Read-only with internal groups and Read/Write. I always recommend against using Read/Write and in most cases I use Read-only with internal groups so I can control on the application level who have access to it.

Davey Jones July 16, 2019

Ok so that's an AD side configuration not a Confluence config?

Mikael Sandberg
Community Champion
July 16, 2019

The configuration is in Confluence, and to change it you need to log in using a user that is not part of that user directory, normally you have an admin account that is part of the internal directory. You can then change the permission settings on the AD directory.

Davey Jones July 16, 2019

Great thanks for the help!

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events