[
https://issues.apache.org/jira/browse/OAK-1823?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15262596#comment-15262596
]
angela commented on OAK-1823:
-----------------------------
to me the {{syncAllUsers}} call looks rather troublesome given the fact that a
given external identity provider may contain a lot more users than need to be
synchronized into the repo... and i would expect the same to be true for
groups. so, i am not sure if additionally adding {{syncAllGroups}} is really
desirable... in fact i'd rather suggest that we reconsider also
{{syncAllUsers}} in the future.
> Expose a method via JMX to sync all external groups
> ---------------------------------------------------
>
> Key: OAK-1823
> URL: https://issues.apache.org/jira/browse/OAK-1823
> Project: Jackrabbit Oak
> Issue Type: Wish
> Components: auth-external
> Reporter: Konrad Windszus
>
> With OAK-1711 a JMX interface for syncing Users was provided. It would be
> great if that could be extended to sync groups only.
> Usually ACLs are set on groups and with the help of the group.extrafilter
> OSGi attribute from the LdapIdentityProvider OSGi config that would restrict
> easily the groups which are imported.
> Syncing all users is usually too much, as in most of the cases only few users
> will actually leverage Oak.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)