I want to impliment a second LDAP authentication directory to another domain and to avoid the issues of users with the same name would like to use a domain suffix for the users login.
Currently I have users across both LDAP directories with the same samaccountname which means the LDAP auth directory with the higest priority wins.
Is this possible - or should I be looking at another route? If so, which path should I follow.
Hi Sean, changing the LDAP attribute used for usernames in JIRA seems the best path to follow. Some companies decide to use the mail attribute, instead of sAMAccountName.
There only two things you should pay attention when changing the attribute, it should always return an unique value (two LDAP objects retuning the same username would break the synchronization) and it can't return a null value.
I hope it helps.
Cheers
We currently use the sAMAccountName attribute. I wonder if I look at using the users UPN which would then avoid this issue. Is anyone using this attribute?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.