Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-980

User sync does not delete users if they do not exist anymore

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Critical
    • Resolution: Fixed
    • 0.6.0, 0.5.3
    • 3.0.0, 2.2.0
    • usersync

    Description

      usersync for all sources creates users and groups, but does not delete them from Ranger's database if these users and groups do not exists anymore in the original source.

      So if you have for example a user called "bob" and bob leaves the company his access rights will continue to exist in Ranger. If a new employee comes in that is also "bob" he is immediately granted the same access as the previous employee. This creates security incidents.

      In a reasonable complex company it cannot be expected that another user administration is being taken care of, while deletion could and should happen automatically.

      Attachments

        Issue Links

          Activity

            People

              spolavarapu Sailaja Polavarapu
              bolke Bolke de Bruin
              Votes:
              5 Vote for this issue
              Watchers:
              21 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: