Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[RFE] Automatically detect users were deleted in LDAP and provide a mechanism to remove anything they "owned" in ManageIQ and determine if the user should be deleted on our side #22804

Open
jrafanie opened this issue Dec 6, 2023 · 1 comment

Comments

@jrafanie
Copy link
Member

jrafanie commented Dec 6, 2023

If my user owned a vm and a template in ManageIQ and then my user is deleted in LDAP, ManageIQ doesn't detect this deletion so we have resources that are owned and a user who cannot login.

We should detect ldap users that are no longer valid and hook into ManageIQ/manageiq-ui-classic#8986 to provide a way to transition any owned resources to another owner, such as their group. We also should decide if the user should be deleted at that point or if it makes sense to keep it around for a time period.

@ifwatts
Copy link

ifwatts commented Dec 7, 2023

I would leave the user id in the system to ensure you can have clear "audit trail" but being able to manage it / transition to new user sounds reasonable.

@Fryguy Fryguy added this to Roadmap Jun 12, 2024
@Fryguy Fryguy moved this to To do in Roadmap Jun 12, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
Status: To do
Development

No branches or pull requests

3 participants