You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[RFE] Automatically detect users were deleted in LDAP and provide a mechanism to remove anything they "owned" in ManageIQ and determine if the user should be deleted on our side
#22804
Open
jrafanie opened this issue
Dec 6, 2023
· 1 comment
If my user owned a vm and a template in ManageIQ and then my user is deleted in LDAP, ManageIQ doesn't detect this deletion so we have resources that are owned and a user who cannot login.
We should detect ldap users that are no longer valid and hook into ManageIQ/manageiq-ui-classic#8986 to provide a way to transition any owned resources to another owner, such as their group. We also should decide if the user should be deleted at that point or if it makes sense to keep it around for a time period.
The text was updated successfully, but these errors were encountered:
I would leave the user id in the system to ensure you can have clear "audit trail" but being able to manage it / transition to new user sounds reasonable.
If my user owned a vm and a template in ManageIQ and then my user is deleted in LDAP, ManageIQ doesn't detect this deletion so we have resources that are owned and a user who cannot login.
We should detect ldap users that are no longer valid and hook into ManageIQ/manageiq-ui-classic#8986 to provide a way to transition any owned resources to another owner, such as their group. We also should decide if the user should be deleted at that point or if it makes sense to keep it around for a time period.
The text was updated successfully, but these errors were encountered: