Administration
LDAP settings
Groups
8 min
you can view and manage security groups that passwork loads from ldap in the groups tab of ldap settings each group can have one of the following values in the status field bound n roles indicates the number of groups matched with the group on the synchronization docid pxk9fb7fvvvppaqcy7ku tab deleted means that after executing the dn request, the group was not uploaded into passwork or was deleted on the ldap server an empty status field means that a group loaded, but no role was matched with it user authorization can be restricted if the restriction is enabled, a user will only be able to log in and register if they belong to one of the activated groups the pop up button allows for a quick view of the users in the group security groups load from ldap in the following sequence passwork authorizes on the ldap server through an account with the user data entered on the authorization page a group search request is sent to the ldap server using default or edited dn and search filter the request result is received and groups are uploaded from the ldap server into passwork if you change the dn group search request or delete a group that was previously used on the ldap server, deleted groups and groups that were not found will receive a deleted status when you perform a search again on the groups tab, you can find the settings that passwork will use when loading a list of security groups from ldap distinguished name specify the distinguished name (dn) to define which part of the ldap tree passwork should use for importing example dn filter the filter is used to determine what kind of data should be retrieved from the ldap server example passwork allows you to add an additional dn and query filter in order to retrieve groups from two separate ldap tree structures to add an additional dn and query filter, click the add dn and filter button located below the main filter field this will display fields for entering the data adding additional dn and filters allows you to enhance group search and management capabilities, providing more flexible system configuration for example, if security groups are located in multiple ldap trees, adding an extra dn and query filter for each tree helps avoid the time consuming and resource intensive process of loading the entire structure you can learn more about how filters work and see syntax examples in the section dn filters docid\ dqjvzjfou7haiux vqhcl group list refresh select an interval from the list to update the ldap group list, or disable automatic updates for the automatic group list update to work, background tasks docid\ yfbv3nwxjyj7casf5uhii must be configured in passwork