Uploaded image for project: 'Grouper'
  1. Grouper
  2. GRP-1552

PSPNG - LDAP-Attribute Provisioning - Authoritative for all values

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 2.3.0.patch
    • Fix Version/s: 2.3.0.patch
    • Component/s: provisioning
    • Labels:
      None

      Description

      When PSPNG is provisioning an ldap attribute, it removes values as memberships and groups are deleted, however, the full-sync process will only delete unknown values that match a prefix. This only works completely if all the provisioned values have a common prefix.

      When PSPNG has full control of the target attribute, then it should be configurable to delete all unknown values, regardless of prefix.

      This should be configurable with:
      changeLog.consumer.pspng_attributes.allProvisionedValuesPrefix=*

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              bert.beelindgren@at.internet2.edu Bert Bee-Lindgren
              Reporter:
              bert.beelindgren@at.internet2.edu Bert Bee-Lindgren
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Smart Checklist