HI
luke123 Logging in with an AD account however works as intended and all users automatically obtain the acl user group "user" as defined. Also when using doku.php?do=check it shows that the user is indeed in the "user" group, but no ad groups are listed. Should they be listed?
authsplit takes passwords from one source, and group membership from another source. The setting explained on https://forum.dokuwiki.org/d/17041-authad-and-local-admin-user/3, which I understand you use, does this :
─── authchained
├── authsplit
│ ├── Primary (password)
│ │ └── authldap
│ └── secondary (groups, realname, email)
│ └── authplain
└── authplain
In this case, DW will use only the locally defined groups. This would explain why you don't get AD groups. If you want to use the AD groups, then you don't need authsplit. Just use authchain with authad, authplain. For users defined in authplain, it is possible to make them member of one or more groups that have the same name as your AD groups. For example :
localadmin:PASSWORDFIELDHIDDEN:Real Administratator:me@example.com:user,ADgroup1,ADgroup2
The user localadmin will be a member of groups "user", "ADgroup1", and "ADgroup2".
Now it seems you also have some trouble with _
and space in group name. I can't help with that. Sorry.