LDAP User Group Membership Issues

michael_islek September 22, 2017

"ldap.user.group": "memberOf" and enabled "When finding the user's group membership".

In addition, we also selected "Update group memberships when logging in " to "Every time the user logs in "

 However the groups that are listed as memberOf are ignored. Only POSFIX group id is used to associate the user.

Because of that we can't control that should have access to JIRA. Your help would be greatly appreciated.

2 answers

0 votes
Lars Olav Velle
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
September 22, 2017

The update group memberships every time a user logs in is only an option when using Crowd as user directory if I remember correctly. 

When using Crowd as s user directory the memberOf is not an option either.

Perhaps you can show us the Directory Configuration Summary available on the user directories list?

-Lars

0 votes
somethingblue
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
September 22, 2017

Hi Michael,

  • What Directory Type are you using?
  • What are the LDAP Permissions?
  • Is this connected to CROWD?

The first thing to check according to is to make sure Enable Nested Groups checkbox is not selected under Advanced or JIRA will "ignore the Use the User Membership Attribute option and will use the members attribute on the group for the search."

A screenshot of the configuration would be helpful in getting to the bottom of this as well.

Cheers,

Branden

Suggest an answer

Log in or Sign up to answer