I'm trying to find user accounts that haven't been used in a long time. I found this KB article, which cointains an SQL query to list users with last login time in Crowd, I have just one problem with it: The numbers are odd.
According to Crowd we currently have 451 users (they come from an Active Directory and an OpenLDAP server).
Running the query as it is given in the KB article returns 49 users with a last login timestamp.
Running a simpler query to list all users (SELECT user_name FROM cwd_user) returns 125 users.
How can I interpret these numbers? Are 451 the users that could possibly log in because they are in an allowed group, but only 49 users actually have logged in?
The returned users are from both directory sources.
The Crowd instance is used by JIRA, Confluence, FishEye and Apache basic auth.