- Remove the memberOf-only restriction from docs, UI help text, and FAQ;
both reverse lookup (memberOf) and forward lookup (Group member
attribute) are now supported
- Document the new "Group member attribute" filter field, including when
to use forward vs reverse lookup
- Clarify that forward lookup is only available via synchronized filters,
not manually-created synchronized groups
- Rename "Synchronize" button to "Discover LDAP groups" to make clear it
only runs group discovery (phase 1), not member synchronization
- Document that the Discover LDAP groups button does not sync members;
point to the rake task for a full manual sync
- Expand troubleshooting: login attribute mismatch, missing/empty
required attributes
- Replace packaged-installation-specific rake command with
installation-agnostic form; link to console setup docs
- Clarify Enterprise cloud availability and recommend SAML/SCIM as
more secure alternatives when LDAP exposure to the internet is
undesirable
- Fix grammar, double spaces, and stale phrasing throughout