Periodic orphaned accounts update mechanism does not seem to detect orphaned users

Created on 20 April 2022, over 2 years ago
Updated 17 January 2024, 9 months ago

We're using the LDAP module for a client's website to authenticate employees. All 'active' users are placed in a group (ex 'ou=group,dc=some,dc=domain,dc=com') and then moved to another group when they leave the company.

The SERVER is configured to look for the group DN under Server > Users > Base DNs for LDAP users, groups, and other entries.

When the user is moved to another group he can no longer log in (the authentication fails, I assume because LDAP can't find the user in the group). So far so good.

The USER SETTINGS are configured to run the Periodic orphaned accounts update mechanism and 'perform no action, but email [a] list of orphaned accounts'

We tested this setting by creating a new (active) account in LDAP, logging in, then moving the user outside the group and running the cron job multiple times but aren't receiving any email that lists orphaned accounts.

(We've also tested if the site is able to send email, and this is the case :))

πŸ’¬ Support request
Status

Fixed

Version

4.0

Component

Code

Created by

πŸ‡³πŸ‡±Netherlands roderickgadellaabsl

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Merge Requests

Comments & Activities

Not all content is available!

It's likely this issue predates Contrib.social: some issue and comment data are missing.

Production build 0.71.5 2024