collectives icon indicating copy to clipboard operation
collectives copied to clipboard

Group members are not able to view/access collective

Open ronnybremer opened this issue 9 months ago • 6 comments

Describe the bug A local NC group filled with a few accounts is added to a collective. After 1h, the members of the group are still not seeing the collective. Adding a single member from the group works within a few minutes.

To Reproduce Steps to reproduce the behavior:

  1. Create a new collective
  2. Add "group1" to the member list
  3. Wait 1h
  4. Login as user of group1, the collective does not show up
  5. Add user1 (which is a member of group1) directly to the collective
  6. wait a few minutes
  7. observe the collective showing up for user1

Expected behavior Adding a group to a collective should automatically grant the selected permissions to each group member, adding / removing them as the group membership changes.

Screenshots If applicable, add screenshots to help explain your problem.

Server details:

  • Collectives app version: 2.16.1
  • Nextcloud version: 30.0.5
  • PHP Version: 8.2
  • Database: MySQL 8

Client details:

  • OS: CentOS
  • Browser: Safari
  • Browser version:
  • Device: MacBook
Logs

Nextcloud log (data/nextcloud.log)

Insert your Nextcloud log here

Browser log

Insert your browser log here, this could for example include:

a) The javascript console log
b) The network log
c) ...

ronnybremer avatar Mar 05 '25 16:03 ronnybremer

Same with imported LDAP groups.

thekk1 avatar Mar 18 '25 14:03 thekk1

Same with imported LDAP groups.

See #1598

ronnybremer avatar Mar 18 '25 15:03 ronnybremer

Same with imported LDAP groups.

See #1598

Nope, not the same problem. Circles is deprecated in NC v30, we have the new App Teams installed. I can add the LDAP group to the collectives without any problem and have no error message in logs.

It's "only" and exact on point the problem as described in this issue here.

thekk1 avatar Mar 18 '25 15:03 thekk1

Nope, not the same problem. Circles is deprecated in NC v30, we have the new App Teams installed. I can add the LDAP group to the collectives without any problem and have no error message in logs.

It's "only" and exact on point the problem as described in this issue here.

Got it, thanks for the clarification.

So I assume group members in general are not processed correctly when granting the permission to a collective.

ronnybremer avatar Mar 18 '25 16:03 ronnybremer

Same here not using LDAP. Fresh installed Nextcloud 31.0.2.1 Collectives 2.16.1 Teams 31.0.0 Mariadb and Fpm+Nginx, php8.4

n3storm avatar Apr 04 '25 06:04 n3storm

A few related symptoms of the same issue, maybe:

  • the fact that in the first line at the top of the Collective page, displaying members of the collective, will only list regular members and name of the groups, and not the names of the group members (at least for LDAP groups, AFAICS)
  • a similar issue lies in the "team overview" page (apps/contacts/circle/...) in the Teams app, which only lists groups and not members of these groups.

Hth,

olberger avatar Apr 12 '25 15:04 olberger

Same with NC 30.0.11 and Teams 30.0.0

Silbergrauer13 avatar May 29 '25 08:05 Silbergrauer13

Dear all, could you please run the following occ commands to see whether this solves the problems for you:

occ circles:sync
occ circles:memberships --all

mejo- avatar Jun 30 '25 15:06 mejo-

Thx @mejo-. About these commands:

occ circles:sync
occ circles:memberships --all

in principle, should they be running somehow in the background, normally, or a similar sync mechanism, i.e. what's their purpose, and why do you think this should help ?

Btw, what kind of diagnosis should we get when running these ? The second one seems only to display suff on the console, right ?

Thanks in advance.

olberger avatar Sep 01 '25 15:09 olberger

Both commands make sure that the representation of users and user groups in circles gets refreshed. In the past they sometimes fixed issues with missing members from LDAP groups, so I had hope that it fixes your problem as well.

mejo- avatar Sep 08 '25 10:09 mejo-

Closing due to lack of information.

mejo- avatar Oct 08 '25 20:10 mejo-

@mejo- Thank you for the reminder, I did those tasks and forgot to report in here...

Both commands successfully synced the membership of some LDAP members into the circles. I will keep on running them once a week for the next couple of months to see, if any more "updated" accounts appear. So far, it was stable.

ronnybremer avatar Oct 09 '25 08:10 ronnybremer