dbeaver / dbeaver/cloudbeaver

SAML - users not deleted

Open
#3,485 2 comments 0 reactions 0 assignees View on GitHub
AS ee xf:administration xf:authentication
Dominant language
TypeScript
Stars
5.1k
Forks
563
Avg merge
3d 9h
Merged PRs (30d)
59

Description

Hi,

We are using SAML for SSO with Azure AD. We can't use Azure AD integration as it fails if user has more than 100 groups in AD.

Everything works fine with SAML but Cloudbeaver is not contacting Azure to check if existing users in configured Azure groups (CB Teams) are still present in Azure.

As a result, if user accessed CB one time, when he was added in proper AD group, then he will be visible in CB as active user forever, doesn't matter if user was deleted from allowed group or was fully removed from AD.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.