We have an on-premise install on 7.13, using LDAP for our users. We are planning to migrate to the cloud version.
When it was originally set up, they simply had the entire 'user' directory/container synced, which unfortunately synced a lot of users who shouldn't be in there, like service accounts and such.
cn=users,dc=subdomain,dc=domain,dc=com
The above is what is in the base DN field.
I have the following questions:
- All of our users are simply in an AD container called 'Users', how can we sort this out better? Can we create a Security group called 'confluence_users' and add all the users that we want to sync to that group?
- If so, how would we enter it all into the DN fields? I tried this several times but I couldn't find the correct combination to work. I checked the help page but it didn't help.
- If we do this and do the migration, can we then abandon the LDAP sync and switch to an invite-only system for our users, where an admin invites/adds a user's company e-mail and they join the wiki? We're not large enough that LDAP sync warrants the extra cost of Atlassian Access.
Thanks!