By: Jesús JM user 25 Jul 2019 at 4:46 a.m. CDT

3 Responses
Jesús JM gravatar
Hi everyone, I've set up Gluu to connect with an Active Directory server using Cache Refresh feature. The AD user data is being synchronized successfully. I was wondering if this feature allows the reverse process, i.e. update user data in Gluu and push these changes to AD/LDAP backend server. Thank you. Kind regards, Jesús

By Aliaksandr Samuseu staff 29 Jul 2019 at 7:30 p.m. CDT

Aliaksandr Samuseu gravatar
Hi, Jesús. There is no such feature at the moment which would reflect changes you make to user entries via Gluu's web UI (I suppose that's what you mean) to your backend (remote) LDAP server. There is [custom scripts feature](https://gluu.org/docs/ce/3.1.6/authn-guide/customauthn/) which allow you to implement custom logic, triggered at certain events (like user authentication or Cache Refresh pull attempt). So, for example, if your backend directory provides a REST API which could be called from one of those scripts, or you can modify it via LDAP protocol, perhaps you could develop a script that serves your needs. May be my collegues will provide better suggestion, but to the best of my knowledge that's about it. Could you describe a use case where such feature would shine? You are also free to create a feature request [at Github](https://github.com/GluuFederation), if you wish.

By Aliaksandr Samuseu staff 23 Aug 2019 at 4:21 p.m. CDT

Aliaksandr Samuseu gravatar
Hi, Jesús. Closing this one due to inactivity. You'll still be able to post in it if you'll decide you need further assistance with this one.

By Jesús JM user 26 Aug 2019 at 3:50 a.m. CDT

Jesús JM gravatar
Hi Aliaksandr, Thank you for your feedback. I was not able to address this issue during these weeks, so apologies for not replying. The use case I was thinking about is using Gluu as a unique user management tool. Active Directory credentials will be used as the user information for several services, not only those related to Microsoft applications. I was wondering if Gluu could be used as the interface to allow users manage their passwords by themselves, without the need to access a Windows OS-based machine. This use case is also motivated by the fact that Active Directory doesn't provide a built-in password self restoring service. I was trying to use Gluu for this purpose instead of searching for a new 3rd party app. Please let me know what do you think.