[go: up one dir, main page]

Group sync DN matching may not be as smart as it could be

Zendesk issue: https://gitlab.zendesk.com/agent/tickets/16252

In this customer's case, some user DNs contain weird spaces such as uid=johndoe, ou=people , dc=example,dc=com. Meanwhile, group's uniqueMember attributes do not contain these spaces. Consequently, our group sync searches turn up no valid users to add to the group membership. Can we do something to parse the DNs using Ruby Net/LDAP so that this works? @jacobvosmaer suspects we might be doing a simple string match when we should be doing a DN parse. We need to dig in and see.