Skip to content

[8.19] fix(sharepoint): add compact site-group DLS mode to reduce ACL memory (#4396) - #4501

Merged
Jan-Kazlouski-elastic merged 1 commit into
8.19from
backport/8.19/pr-4396
Sep 18, 2026
Merged

Jan-Kazlouski-elastic merged 1 commit into
8.19from
backport/8.19/pr-4396

Conversation

@Jan-Kazlouski-elastic

@Jan-Kazlouski-elastic Jan-Kazlouski-elastic commented Sep 18, 2026 •

Copy link
Copy Markdown
Contributor

Backported from #4396

Part of https://github.com/elastic/chat-program/issues/47.

Auto-backport to 8.19 failed with cherry-pick conflicts because this branch still uses the monolithic connectors/sources/sharepoint_online.py layout (not the sharepoint/sharepoint_online/ package on main). Changes were manually adapted from #4396; behaviour matches the merged main PR.

Adds expand_site_group_members (default true) for compact site-group DLS tokens on documents, ACL-sync membership indexing, and identity enrichment when compact mode is enabled.

Backport notes

Test plan

  • CI green
  • pytest tests/sources/test_sharepoint_online.py -k "site_group or guest_user or compact"

Release Note

SharePoint Online document-level security can store compact site-group tokens on documents instead of expanding every site group member onto each record, reducing memory use for large site groups. Disable Expand site group members to enable compact mode. The default preserves the previous behavior. Changing the setting requires a full content sync and access control sync.

Backport #4396 for the monolithic 8.19 SharePoint Online connector layout.
@Jan-Kazlouski-elastic
Jan-Kazlouski-elastic merged commit fc1835a into 8.19 Sep 18, 2026
5 checks passed
@Jan-Kazlouski-elastic
Jan-Kazlouski-elastic deleted the backport/8.19/pr-4396 branch September 18, 2026 13:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants