defguard icon indicating copy to clipboard operation
defguard copied to clipboard

LDAP Synchronisation Problem: Password Changes Not Reflected & Group Search Non-functional

Open av3tisyan opened this issue 11 months ago • 2 comments

There are two key problems with LDAP synchronization in Defguard:

1. When changing a user's password in Active Directory, the change is not reflected in Defguard. Similarly, changes made in Defguard are not updated in Active Directory.

2.Group synchronization is not working at all; group data is not being properly synced between Active Directory and Defguard.

Steps to Reproduce

  1. Change a user's password in Active Directory.
  2. Check if the updated password works in Defguard.
  3. Change the user's password in Defguard and verify if the change is reflected in Active Directory.
  4. Attempt to sync groups between Active Directory and Defguard.

Expected Behavior

  1. Password changes in Active Directory should be reflected in Defguard, and vice versa.
  2. Group data should synchronize properly between Active Directory and Defguard.

Actual Behavior

  1. Password changes are not synchronized between Active Directory and Defguard.
  2. Group synchronization does not work at all.

Defguard Version: 1.1.4 Host OS: Debian 12 LDAP Provider: Windows Active Directory LDAP Server: Windows Server 2022

Image

av3tisyan avatar Jan 18 '25 18:01 av3tisyan

LDAP support has been recently reworked, along with an AD integration. The first alpha builds featuring these changes will be pre-released this week. While these builds may not yet be fully production-ready, we would appreciate any feedback.

t-aleksander avatar Mar 31 '25 11:03 t-aleksander

@av3tisyan We have released 1.3 alpha with two way ldap / Active Directory synchronization.

teon avatar Apr 02 '25 18:04 teon