Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Confluence LDAP integration clarification

Sanu Soman May 1, 2013

Hi All,

Currently we have three user direcrtories configured in our confluence, via order, JIRA user directory (using both users and groups from JIRA), internal directory and LDAP directory.

In this case, suppose I change the directory order and making LDAP in first, then internal and then JIRA user directory will make any permission issues to current users and groups?

Now onwards if we have write access in LDAP (depends on configuration) then new users (add users option in confluence) will create in LDAP or if not having enough permission then it will create users in internal directoy as by order? Is this views correct?

Please help. Many thanks in advance.

4 answers

0 votes
J. Caldwell
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
May 2, 2013

So...here's something to think about...LDAP with delgated stuff. It's what I prefer to use. Uses LDAP for auth, but if you aren't using AD groups or something of the sort, you end up with a lot of folks that may not be inactivated and chewing up your license count. The Local with LDAP setup gives you more flexibility, plus if you add AD groups, you can also add Group memebership bits later.

0 votes
LucasA
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
May 1, 2013

Hello there,

Note that Confluence will ever read directories from top to the botom, without mixing the user permissions. If you have different permissions to the same account in different directories, only the first one will be considered.

About the user creations, only the selected direcotory will be used for.

Lucas Lima

Atlassian Support

0 votes
Sanu Soman May 1, 2013

Thanks Zulfadli for the response.

0 votes
Zul NS _Atlassian_
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
May 1, 2013

I'm not particularly sure on the second question, haven't really tried giving permission to LDAP for JIRA to write on. Regarding the first question though, there shouldn't be any permission issues to the users if there isn't any duplicate users in the first place. If duplicate users are found in the database, then there would have been some issues with the groups.

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events