Can I force user password changes via confluence to OpenLDAP to bind as the user

I have a confluence server that authenticates against an OpenLDAP server.  This is working fine, it obeys the groups, obeys the users, lets users change their password, etc.

This is also where the problem comes in, when changing passwords it doesn't seem to be behaving the same way a ldappasswd command would, it is allowing users to override the password policy for instance (length, complexity).  Those are being enforced when I run ldappasswd or passwd on a general linux machine.  

I assume this is happening because the query is being executed as the bind user, which has access to change the userPassword field without going through the pwpolicy module.

Is there a way to have Confluence bind as the user vs the binddn for password changes?  That should fix that problem.

1 answer

0 vote
Boris Berenberg Community Champion Jun 12, 2015

I don't think that this is currently possible. The simplest workaround would be to use a bind user that can not bypass the pwpolicy module. Long term, it may be best to file a suggestion against Confluence and Crowd for this.

Suggest an answer

Log in or Sign up to answer
Atlassian Community Anniversary

Happy Anniversary, Atlassian Community!

This community is celebrating its one-year anniversary and Atlassian co-founder Mike Cannon-Brookes has all the feels.

Read more
Community showcase
Kesha Thillainayagam
Posted Apr 13, 2018 in Confluence

We want to hear how your non-technical teams are using Confluence!

Hi Community! Kesha (kay-sha) from the Confluence marketing team here! Can you share stories with us on how your non-technical (think Marketing, Sales, HR, legal, etc.) teams are using Confluen...

1,389 views 24 10
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you