Support Questions
Find answers, ask questions, and share your expertise

Hue only syncs hue's superusers groups from LDAP

Expert Contributor


I'm having the following issue, I've configured ldap backend for hue, and my groups are not syncing correctly on login when the user doesn't have superuser status and doesn't promp any error or warn in logs.

If I use /usr/lib/hue/build/env/bin/hue sync_ldap_users_and_groups then all current users get sync, I thought that could be permisions problems with desktop.db file but after try giving it 777 the problem persist.

I've the following configuration in hue.ini:


    # The search base for finding users and groups

    # URL of the LDAP server

    # A PEM-format file containing certificates for the CA's that
    # Hue will trust for authentication over TLS.
    # The certificate for the CA that signed the
    # LDAP server certificate must be included among these certificates.
    # See more here
    ## ldap_cert=
    ## use_start_tls=true
    # Distinguished name of the user to bind as -- not necessary if the LDAP server
    # supports anonymous searches

    # Password of the bind user -- not necessary if the LDAP server supports
    # anonymous searches

    # Pattern for searching for usernames -- Use <username> for the parameter
    # For use when using LdapBackend for Hue authentication
    ## ldap_username_pattern="uid=<username>,ou=People,dc=mycompany,dc=com"

    # Create users in Hue when they try to login with their LDAP credentials
    # For use when using LdapBackend for Hue authentication

    # Synchronize a users groups when they login

    # Ignore the case of usernames when searching for existing users in Hue.

    # Force usernames to lowercase when creating new users from LDAP.
    ## force_username_lowercase=false

    # Use search bind authentication.

    # Choose which kind of subgrouping to use: nested or suboordinate (deprecated).
    # Define the number of levels to search for nested members.

    # Whether or not to follow referrals


      # Base filter for searching for users

      # The username attribute in the LDAP schema


      # Base filter for searching for groups

      # The username attribute in the LDAP schema

Any help about what may be the problem?

Thank you in advance.


New Contributor

Hi Was @Juan Manuel Nieto , were you able to resolve this ?