How do I limit permitted users to certain security group(s) in Active Directory?

I feel like I am missing something here...

I have read through all the documentation more than once. I have configured and tested LDAP connectors to my domain. But for the life of me I can't figure out: How do I limit which Active Directory users can log into Confluence and which cannot? It seems I can only limit the users via a OU, not a security group.

There are 1000s of users on the network but I only have 100 licenses, so how do I keep the wrong people from sigining in and gobling up my license seats?

1 answer

1 accepted

Hello Neil, you can accomplish that a predefined group of users is the only one to sync with Confluence, or set rules for which will be read into the application and repercute into the license count. A good start is following the steps in this documentation and craft a filter that fits your needs.

Hope this helps.

Hi Nell, to complement Guilherme's answer, here is an example of filter that returns only the users that are members of the group confluence_users (including nested members):


You can see more details of how to restrict the LDAP scope here.

I hope it helps.


Suggest an answer

Log in or Sign up to answer
Community showcase
Posted Feb 06, 2019 in Confluence

Try out the new editing experience

Hi team, I’m Avinoam, a product manager on Confluence Cloud, and today I’m really excited to let the Community know that all customers can now try out the new editing experience and see some of the ...

1,027 views 51 8
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you