Inedo Community Forums Forums
    • Recent
    • Tags
    • Popular
    • Login

    Welcome to the Inedo Forums! Check out the Forums Guide for help getting started.

    If you are experiencing any issues with the forum software, please visit the Contact Form on our website and let us know!

    Feature Suggestion - Allow AD users to be added to built-in groups

    Scheduled Pinned Locked Moved Support
    4 Posts 2 Posters 21 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K Offline
      kc_2466
      last edited by

      It would be useful to allow Active Directory users to be added to built in groups, so that group management can be controlled locally within ProGet.

      atrippA 1 Reply Last reply Reply Quote 0
      • atrippA Offline
        atripp inedo-engineer @kc_2466
        last edited by

        Hi @kc_2466,

        Thanks for the suggestion; we've had this request in the past but don't believe it's a good fit.

        It ought to be trivial to add a group to the AD/LDAP server, so it doesn't make sense to add a "quasi-group" feature on the ProGet end. That would increase complexity and could introduce unbehavior that is challenging to support and troubleshoot.

        We haven't seen other products doing something like this, likely for these reasons.

        Cheers,
        Alana

        1 Reply Last reply Reply Quote 0
        • K Offline
          kc_2466
          last edited by

          The reason it's desirable is that although it's easy to get AD groups added, they are administered by a central department within the company, so each time we wish to add or remove somebody from a ProGet group, the change has to be requested, and this takes some time.

          Other products we use such as TeamCity and Jira allow this. Also the system we used before ProGet allowed it :-)

          atrippA 1 Reply Last reply Reply Quote 0
          • atrippA Offline
            atripp inedo-engineer @kc_2466
            last edited by

            Hi @kc_2466 ,

            Understood, that was the same reason given before.

            Our products' AD/LDAP integration works different than JIRA/TeamCity (live lookup vs sync) so it's just not that simple.

            We're not willing to add complexity to work-around "dumb" organizational policies -- what you described is the whole point of AD/LDAP (centrally administered access).

            It's possible to delegate group administration in AD, but if they don't want to do that... I guess they are okay with you just creating less-secure built-in users until they get around to completing their tickets ;)

            Thanks,
            Alana

            1 Reply Last reply Reply Quote 1

            Hello! It looks like you're interested in this conversation, but you don't have an account yet.

            Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

            With your input, this post could be even better 💗

            Register Login
            • 1 / 1
            • First post
              Last post
            Inedo Website Home • Support Home • Code of Conduct • Forums Guide • Documentation