Uploaded image for project: 'COmanage'
  1. COmanage
  2. CO-2905

OIS with CO Group Mapping provision not invoked for groups

    XMLWordPrintable

Details

    Description

      During a full sync for an OIS with CO Group Mapping capabilities the function

      syncOrgIdentityToCoPerson()

      in the CoPipeline.php model is invoked. That function does synchronize CO Group Memberships if the OIS has CO Group Mapping capabilities and so it is possible for there to be changes in CO Group Memberships. The function will invoke manual provisioning before returning but only for the CO Person record and not for any related CO Groups where the memberships have changed.

      As a consequence the LDAP Provisioner does not reprovision either the groupOfNames nor posixGroup object classes and their attributes tracking memberships become out of sync with the isMemberOf attribute on the person record.

      Attachments

        Activity

          People

            shayna.atkinson@at.internet2.edu Shayna Atkinson
            scott.koranda@at.internet2.edu Scott Koranda
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: