Looking for some input on syncing Jira v.7.6.2 / Confluence 7.8.0 with AD.
At implementation stage "someone" configured LDAP user directory to retrieve users and groups only from cn=users,dc=domain,dc=local.
I tried adding a new connection to second DC with additional user and group DNs specified. As directories are checked in order, if the user or group would not be found in the first directory, since it was moved, it would be found in the second (same domain).
The problem is, all Jira/Confluence users are members of some local Jira groups. As the user is moved from one OU to another, these local group memberships are lost. Even if the user is moved back to the original OU.
Is there a way to preserve local (and AD) group memberships as the user is moved from one OU to another?
I did not have the courage to edit the original user directory settings (remove "cn=users"), just in case that it would mess up these local memberships too.
Any advice/help/info would be great!