/build/static/layout/Breadcrumb_cap_w.png

LDAP User Smart Label not Removing

I have a User LDAP Label that looks at group membership to block access to our User Console installers. Trouble is if a user is removed from the security group, the label is not removed after the next Active Directory discovery. The labels get added with no issue. I have 5 of these for different software groups. Here is an example of 1 of them.

(memberOf=CN=KACE_Project,OU=KACE Groups,OU=Groups,OU=company,DC=domain,DC=net)

Any ideas where I've gone wrong or if this is something to do with KACE?

1 Comment   [ + ] Show comment
  • I think LDAP labels are only evaluated on the K1 users when they log in to the user portal....

    They are not evaluated on import of a new user, they are not evaluated on updating user via import, they are not evaluated when the user sends in an email... and not evaluated when something happens on the AD side...

    evluated=checking for updates\changes


    Source:
    https://support.quest.com/kace-systems-management-appliance/kb/131519 - Channeler 6 years ago

Answers (1)

Posted by: JasonEgg 6 years ago
Red Belt
0
LDAP imports not being able to update roles nor labels is a major issue for me as well. Here is the feature request on uservoice: https://kace.uservoice.com/forums/82699-k1000/suggestions/2173655-dynamic-ldap-lookups-to-assign-users-to-roles

Don't be a Stranger!

Sign up today to participate, stay informed, earn points and establish a reputation for yourself!

Sign up! or login

Share

 
This website uses cookies. By continuing to use this site and/or clicking the "Accept" button you are providing consent Quest Software and its affiliates do NOT sell the Personal Data you provide to us either when you register on our websites or when you do business with us. For more information about our Privacy Policy and our data protection efforts, please visit GDPR-HQ