Hello community,
We are implementing Azure SSO login for Jira. Azure does not have the samAccountName attribute and uses the User Principal Name (UPN) email address to authenticate. The problem is Jira considering the existing user with LDAP username "samAccountName" and Azure AD user with username "UPN" as different and creating a duplicate account we are looking at using the email address "UPN" instead of the samAccountName as the account name in Jira. Can anyone have an idea or a solution to migrate LDAP to Azure AD?
I used the AD explorer to find the attribute with the email address. I change the configuration from the LDAP to this new attribute resync the user directory and it was working perfectly and all users can now login using email.
Please take a look at Radiant Logic.
https://www.radiantlogic.com/solutions/cloud-sso-provisioning/provision-to-cloud-directories/
Are you open to a quick chat?
--Vince
vhendrickson@radiantlogic.com
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi!
you are not quite saying which plugin you are using to do SAML authentication on Jira Server. Usually, you need a 3rd Party plugin.
Should you be using our plugins: https://marketplace.atlassian.com/search?query=saml%20resolution%20gmbh
Then here is the setup guide for Azure AD including User Sync: https://wiki.resolution.de/doc/saml-sso/latest/jira/setup-guides-for-saml-sso/azure-ad/azure-ad-with-user-sync
And here is the Migration Guide to migrate from LDAP (samAccountName to Azure UPN): https://wiki.resolution.de/doc/saml-sso/latest/jira/setup-guides-for-saml-sso/microsoft-ad-fs/migration-scenarios/migrate-ldap-to-azure-ad-and-rename-users-using-user-sync
If you don't use our plugins it may be useful if you share what solution you are using.
Cheers,
Chris
P.S. Full disclosure, I work for resolution, a marketplace vendor.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.