LDAP for authentication only

Graeme Mitchell July 30, 2015

I would like to use LDAP for authentication only in our JIRA instance.  In other words, I would like to create my user accounts and manage group ownership in JIRA, but I would like to match the JIRA user account to an AD user so that it authenticates using the same username and password from the active directory server.  Is this possible?

1 answer

0 votes
Bryan Trummer - ReleaseTEAM
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 30, 2015

Yes this is possible and is currently what I do in my current instance. Make sure you add Microsoft Active Directory and it will give you the option on setup if you would like JIRA to be read only to LDAP. Don't select that and you will be able to add the users into JIRA and make sure their username and email match what is in LDAP.

Graeme Mitchell July 30, 2015

"Read-only, with local groups" option? "Read / Write" is the other option but this will write back to LDAP so I guess not that one. When I did this in the past (admittedly in V5 of Jira, we're 6.4.3 now), it ended up pulling the whole user base in AD into Jira, which I don't want as this is hundreds of thousands of users. I cannot easily filter the AD DN in anyway because the users have no common association. I want to just create the user myself and have it link to their AD account.

Bryan Trummer - ReleaseTEAM
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
July 30, 2015

Read-only with local groups is correct. I believe there is an option for it to import the users or not. Sorry I am doing this based off memory but if you could give me a screenshot I could take a look at the options.

Suggest an answer

Log in or Sign up to answer