You're on your way to the next level! Join the Kudos program to earn points and save your progress.
Level 1: Seed
25 / 150 points
Next: Root
1 badge earned
Challenges come and go, but your rewards stay with you. Do more to earn more!
What goes around comes around! Share the love by gifting kudos to your peers.
Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!
Join now to unlock these features and more
The Atlassian Community can help you and your team get more value out of Atlassian products and practices.
In re-setting up the user provisioning (in a new Azure Atlassian Cloud app) I apparently managed to sync everything from AD, including shared mailbox "users," other non-staff user accounts and every group in the directory. Gak. Shake-fist.
The question now is - how do I effectively REMOVE all of this? (cleanup on Aisle 8, please)
I can manually remove groups - a pita, but do-able. But I can't seem to remove users - they're all "managed by my identity provider."
If I nuke the App in Azure AD and remove the directory in Atlassian Access, will that allow me to remove all of this excess baggage I didn't want/mean to add?
FWIW - I set up the app to include only a single group with 1 user. Yet, I managed to slurp in it all.
Hrumph for learning the hard way. Thanks in advance for your insights.
Hi @Jennifer Osborn ,
Unfortunately removing the app in Azure AD and deleting the directory won't remove the accounts on the Atlassian side. If you remove all of these non-"users" from the app in Azure AD, then the accounts will get deactivated on the Atlassian side (so at least you won't get billed for them)
If you would like to fully clean them up, you will need to delete the accounts on the Atlassian side. It's not possible to do this in bulk or via API as far as I know, but it can't hurt to contact Atlassian support as we may have an internal way to do it.
>I set up the app to include only a single group with 1 user. Yet, I managed to slurp in it all.
Hmm, I'm not an Azure AD expert so I'm not sure what could have caused this. I'm looking at the "Tip" on this page and perhaps this was the cause? https://docs.microsoft.com/en-us/azure/active-directory/app-provisioning/define-conditional-rules-for-provisioning-user-accounts
Hi Dave! Thank you for the response.
I've manually (sigh) removed the full directory of groups, and with a little patience (I'm not sure what changed) I was able to delete the user/service accounts that had no business in our Atlassian Access suite.
It was a time consuming, "click each user, delete, confirm, confirm, return to list, repeat," but it's done.
Feature request - bulk management in Access :)
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.