New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
LDAP: Teams not synching #2177
Comments
I just tried synching a group without special characters, only letters, and it didn't work as well. So that wasn't it. I tried moving up the Group Base DN to the root of the AD, that didn't help either. Edit: If it matters, the CN of the user is on the form "John Doe (JDOE)" Edit2: Another note, the service user I'm using for Portainer, is the same I'm using for Jenkins where group-lookup works fine. |
Found the culprit! The issue is that the CN on the form "John Doe (JDOE)" fails for some reason. Now, to find the source of this discrepancy.. |
I'm not too strong at LDAP stuff, but is it possible that the parentheses would need to be escaped here: And if so, does anyone know how to escape those parentheses? |
Based on:
Sorry for the horrible formatting of the table, on cellphone. I will see if I can whip up a PR soon. |
When users log in using LDAP, they are not assigned the teams that matches their AD groups.
Steps to reproduce the issue:
I set the following attributes on the LDAP settings:
I copy-pasted the DNs from LDAP Admin, so I'm pretty sure those values don't have typos.
One thing of note, the AD Group has _ and - in the name, which might cause some encoding issue?
I don't see anything in Portainer's stdout.
Edit: Group Name is USR_ADM_Dev-Environment
Technical details:
The text was updated successfully, but these errors were encountered: