AEM Ldap Integration module: How does option "expire" work?
Hello,
I’m facing an issue with the ldap module of AEM:
1. Precondition:
In configuration for a default sync handler, the values for expiring ldap groups and ldap users is 30m (30 minutes).
2. Timepoint 24-07-23 10:00:00 :
UserA has logged in into AEM and his user object contains the group memberships “sug-example-group-a” and “sug-example-group-b”. These groups allow him to get access to content folder “/content/sites/folder_ab” and not for folder “/content/sites/folder_cd”.
- In AEM the existing group “sug-example-group-a” contains a reference to this user.
- In AEM the existing group “sug-example-group-b” contains a reference to this user.
- In AEM the existing group “sug-example-group-c” contains no reference to this user.
3. Timepoint 24-07-23: 11:15:00 :
UserA has logged in into AEM and his user object contains the group memberships “sug-example-group-a” and “sug-example-group-b”. These groups allow him to get access to content folder “/content/sites/folder_ab” and not for folder “/content/sites/folder_cd”.
- In AEM the existing group “sug-example-group-a” contains a reference to this user.
- In AEM the existing group “sug-example-group-b” contains a reference to this user.
- In AEM the existing group “sug-example-group-c” contains no reference to this user.
4. Timepoint 24-07-2023 10:10:00 :
The connected Active Directory has been updated for this user with a new group membership called “sug-example-group-c”. This group allows UserA to get access to content folder “/content/sites/folder_cd” in AEM.
My expectation at time point 24-07-23: 11:15:00 :
UserA has logged in and the user object contains the recently added group membership and the group object for “sug-example-group-c” contains a reference to him. But it doesn’t.
My question: What do I need to make this scenario work? And what does "expiring ldap groups and ldap users" mean?
Note: If I start the synchronization manually, by calling the Jmx service, the objects in AEM will be updated correctly. I’m using SP 16 and 17.
Thanks, in advanced