Block a user
Support multiple LDAP groups per role
So a user can have access to multiple safes. A group can have access to multiple safes. But a user can't be a member of more than one group. That seems ok to me.
Support multiple LDAP groups per role
If we remove GroupId as a Foreign Key constraint on the users table, and create a new user-to-group mapping table, then a user can be a member of multiple groups.
Currently, a user can be a…