AEM Cloud, Closed user group (CUG) IDP sync for groups
Hi,
We are trying to setup CUG on our AEM Cloud instance. We are bumping into a problem wherein the AEM Publish instance is unable to synchronize group information (of a user) from IDP. AEM publisher authenticates user directly with Azure IDP, which sends information like first name, group etc to AEM publisher. Somehow, the publisher is unable to process/save the group information (but is able to save firstname, lastname). However, this works well on the author instance and we are able to see the group information along with user profile in /home/users. Since it works well on author but not on publisher, I don't think there is any issue with IDP configuration.
The key differentiator between author and publisher is that the author authenticates user with Adobe IMS that internally synchronizes users from IDP; whereas the publisher is directly connector to authorize users with the IDP.
Another difference between author and publisher is - If I login multiple times on author (different sessions), a new authorizable node is created in /home/user, whereas, on author the same user node is synchronized upon subsequent logins.
Would be great to get insights into this behavior and get some solution around this topic.
Thanks!
