In our crowd instance we have groups for jira, fisheye, confluence administration and use. They are all available in the JIRA group picker even when we set the Allow all to authenticate to false and specify which groups can authenticate in JIRA.
Other then creating a separate directory in crowd for each application, is there a setting that can be used so only the groups that can be used to authenticate through crowd are brought into JIRA? Or just to be able to select which groups are brought into JIRA?
For example we have confluence-admin as a group to control who can administer confluence, I don't need the confluence-admin group to show up in a group picker for a JIRA issue.