Entra group sync not applying permissions

Hi all, we’re onboarding to SQC from a very old version of SQS (10.2 :scream: ).

In SQS we have group sync working where a user is added to the appropriate Entra group, the matching group in SQS had the required permissions, the user signs in to Sonar, is assigned to the group and inherits the permissions of that group.

We have configured SQC in the same way, with the group sync and permissions assigned to the matching groups in SQC. The users are being assigned to the correct group but are not inheriting permissions from the group.

e.g. we have a user in the SonarCloud-Project-Admins group, which has the following permissions:

  • Administer Quality Gates
  • Administer Quality Profiles
  • Execute Analysis
  • Create Projects

The user is correctly assigned to the group when they sign in, but they are unable to administer the project, e.g. modify the Analysis Scope.

Let me know if you need any further information. Many thanks :slight_smile:

Hi,

Welcome to the community!

This isn’t actually a permission that falls under those you’ve listed.

If this is at the project level, then the user would need Project Administer. If it’s at the global level, then the user would need Administer Organization.

 
HTH,
Ann

Hi Ann, thanks for the reply. We do not have “Project Administrator” as an available permission to set. We would prefer not to add all our developers with “Organisation Administrator”, but allow them to configure their projects as they need.

We have SQC Enterprise, my account is both an Enterprise Owner and Organisation Administrator.

Oh, is the permissions templates I need to be looking at, apologies.

1 Like

Hi,

Yes, and to do that, they’ll need Project Administration privileges.

 
HTH,
Ann