Provisioning (LDAP Groups): Detailed logging improvements

XMLWordPrintable

    • Type: Improvement
    • Resolution: Unresolved
    • Priority: Minor
    • None
    • Affects Version/s: 5.13.5
    • Component/s: provisioning
    • None

      In trying to analyze grouper-provisioning behavior, we have detailed logging enabled and this gives us attribute-by-attribute changes. For Entitlement provisioning, we have what we need, but for Group Provisioning, it is much harder to analyze for two reasons:

      1) Group deletion logs a membership-deletion for every member in the target system

      2) Membership changes (ins member/del member) are logged with just the member info and not the group identity. (The group involved in the 'ins member/del member' is logged before the list of membership changes, but that can be a very long list and hard to analyze.

       

      For example:

       

            Assignee:
            Chris Hyzer (upenn.edu)
            Reporter:
            Bert Bee-Lindgren
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: