User Directory Config:
- LDAP (Active Directory) is first
- Jira Internal Directory is second.
The issue is that one particular account; when it first logs into Jira via OpenID Connect SSO (Keycloak - LDAP - Active Directory), the account is added to the internal directory and his groups don't match the groups in LDAP.
When we change his groups in the Internal Directory; as soon as he logs out and in; the groups gets reverted.
We have deleted the account in Jira from the Internal Directory but as soon as the account logs in; it's added back to the Internal Directory. [ The account does not have any activity in Jira. ]
Other new users stay in the LDAP directory and no issues with group membership...
Any ideas?