Internal directory with LDAP authentication

I want to impliment a second LDAP authentication directory to another domain and to avoid the issues of users with the same name would like to use a domain suffix for the users login.

Currently I have users across both LDAP directories with the same samaccountname which means the LDAP auth directory with the higest priority wins.

Is this possible - or should I be looking at another route? If so, which path should I follow.

2 answers

This widget could not be displayed.

We currently use the sAMAccountName attribute. I wonder if I look at using the users UPN which would then avoid this issue. Is anyone using this attribute?

This widget could not be displayed.

Hi Sean, changing the LDAP attribute used for usernames in JIRA seems the best path to follow. Some companies decide to use the mail attribute, instead of sAMAccountName.

There only two things you should pay attention when changing the attribute, it should always return an unique value (two LDAP objects retuning the same username would break the synchronization) and it can't return a null value.

I hope it helps.

Cheers

Suggest an answer

Log in or Sign up to answer
Community showcase
Posted Tuesday in Jira

What modern development practices are at the heart of how your team delivers software?

Hey Community mates! Claire here from the Software Product Marketing team. We all know software development changes rapidly, and it's often tough to keep up. But from our research, we've found the h...

168 views 1 3
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you