Hi - so we have Jira (7.1) ,Confluence(5.9.6), Bit-bucket(4.6.2) and Crucible all running well in production for over 2 years with ~ 25 active users.
All authentication is handled by Jira Internal Directory. I want to keep everything the same (logins, names,issues, projects etc) except AD does the initial login authentication. Groups and permissions need to stay with Jira.
Internal Directory usernames are firstname.lastname
I have setup our AD as a 2nd User Directory and can successfully test a user (all greens) using firstname.lastname
LDAP permissions are Read Only
I feel im close to moving AD above Jira in the directory order but just want a couple of thing clarifying.
My questions:
- Have i setup the above correctly in that both internal Jira and domain AD use the same username format (firstname.lastname), which should allow users to be authenticated by AD - but still use the local Jira groups and permissions schemes already setup.
- Do i need to do anything with Confluence, Bit-bucket & Crucible ? Will they still point to Jira and as long as Jira is authenticating to AD, the user will be authenticated as usual ? Or do i need to point them all at AD separately ?
Thanks for any help.