permissions required for Microsoft Active Directory

bec wilson April 23, 2012

Does anyone know what permissions are required for the user which is used to syncronize with Active Directory? Members of "Domain Users" only do not have the ability to syncronize the directoy. The only way it will work is with "Domain Admins" group which is not the right way to go about it.

thanks,

-ryan

2 answers

1 accepted

1 vote
Answer accepted
Rodrigo Girardi Adami
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
November 25, 2012

Hello,

I'm not an AD administrator however I can state that you must use an users that has permission to bind the tree and retrieve the AD tree to confluence side. In other words: If you use some AD user that can "see" all the tree, you should be okay.

However if you want to read and write in the AD tree, then you must set confluence with an AD user that can read and write the whole tree. :)

Hope that helps!

Regards,

Rodrigo Girardi Adami

0 votes
BernardoA
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
January 7, 2013

The user that the application will use when connecting to the directory serve must be permission, so basically as mentioned in the last comment " If you use some AD user that can "see" all the tree, you should be okay."

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events