[ 
https://issues.apache.org/jira/browse/OAK-1823?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15262596#comment-15262596
 ] 

angela commented on OAK-1823:
-----------------------------

to me the {{syncAllUsers}} call looks rather troublesome given the fact that a 
given external identity provider may contain a lot more users than need to be 
synchronized into the repo... and i would expect the same to be true for 
groups. so, i am not sure if additionally adding {{syncAllGroups}} is really 
desirable... in fact i'd rather suggest that we reconsider also 
{{syncAllUsers}} in the future.

> Expose a method via JMX to sync all external groups
> ---------------------------------------------------
>
>                 Key: OAK-1823
>                 URL: https://issues.apache.org/jira/browse/OAK-1823
>             Project: Jackrabbit Oak
>          Issue Type: Wish
>          Components: auth-external
>            Reporter: Konrad Windszus
>
> With OAK-1711 a JMX interface for syncing Users was provided. It would be 
> great if that could be extended to sync groups only.
> Usually ACLs are set on groups and with the help of the group.extrafilter 
> OSGi attribute from the LdapIdentityProvider OSGi config that would restrict 
> easily the groups which are imported.
> Syncing all users is usually too much, as in most of the cases only few users 
> will actually leverage Oak.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to