It's all about the answers!

Ask a question

Is there any way to restrict the list for 'import users'?


Chris Cawthorne (962819) | asked Nov 24 '08, 11:52 a.m.
RTC 1.0.0 + db2 + LDAP (bluepages)

The 'import users' function allows you to search for users, but it appears to search the entire ldap directory - is there any way to configure this such that it only searches the ldap groups that have been defined to Jazz?

3 answers



permanent link
Balaji Krish (1.8k12) | answered Nov 24 '08, 5:43 p.m.
JAZZ DEVELOPER
No, it will only use the base user DN information to search for users. So, you might

Can you tell us more about your user case. The import dialog must be used to import one or 2 specific users into the repository. To do the bulk import, we have a LDAP nightly sync task. The LDAP sync task runs every night at 1AM and syncs up the records in LDAP registry with the user information in Jazz repository. Note that the LDAP sync task only imports / syncs up users that are members of the 4 Jazz groups.

--- Balaji
Jazz Server Team

RTC 1.0.0 + db2 + LDAP (bluepages)

The 'import users' function allows you to search for users, but it appears to search the entire ldap directory - is there any way to configure this such that it only searches the ldap groups that have been defined to Jazz?

permanent link
Chris Cawthorne (962819) | answered Nov 25 '08, 11:18 a.m.
The LDAP nightly sync task has never worked for us. Originally this may have been because a lot of our users have multiple intranet addresses, but now it could be because we use nested bluegroups. Whatever the cause of the problem, I can't think of any reason why it would be desirable for import to search the whole of the bluepages directory - in fact, it would seem to be completely un-desirable. If the nightly sync task can manage to only search the correct groups, I would have thought we'd want to make the import function do the same thing.

permanent link
Daniel Cox (4261168) | answered Nov 25 '08, 5:06 p.m.
In advanced properties in the server admin you can modify the "Find Users by Any Name Query", Find Users by Name Query", and "Find Users by User Id Query". These are just LDAP filters so you can add additional criteria by which to limit which users are seen. For example if your directory has a "division" assigned to each user you could add criteria to this filter to only return users in that division.

Unfortunately there is no way to limit which users are shown based on group membership if you are not running on Active Directory. Other directories do not have group search built into a single filter string.

Your answer


Register or to post your answer.


Dashboards and work items are no longer publicly available, so some links may be invalid. We now provide similar information through other means. Learn more here.