LDAP Synchronisation Problem: Password Changes Not Reflected & Group Search Non-functional
There are two key problems with LDAP synchronization in Defguard:
1. When changing a user's password in Active Directory, the change is not reflected in Defguard. Similarly, changes made in Defguard are not updated in Active Directory.
2.Group synchronization is not working at all; group data is not being properly synced between Active Directory and Defguard.
Steps to Reproduce
- Change a user's password in Active Directory.
- Check if the updated password works in Defguard.
- Change the user's password in Defguard and verify if the change is reflected in Active Directory.
- Attempt to sync groups between Active Directory and Defguard.
Expected Behavior
- Password changes in Active Directory should be reflected in Defguard, and vice versa.
- Group data should synchronize properly between Active Directory and Defguard.
Actual Behavior
- Password changes are not synchronized between Active Directory and Defguard.
- Group synchronization does not work at all.
Defguard Version: 1.1.4 Host OS: Debian 12 LDAP Provider: Windows Active Directory LDAP Server: Windows Server 2022
LDAP support has been recently reworked, along with an AD integration. The first alpha builds featuring these changes will be pre-released this week. While these builds may not yet be fully production-ready, we would appreciate any feedback.
@av3tisyan We have released 1.3 alpha with two way ldap / Active Directory synchronization.