User Federation Not Synchronizing LDAP Users to RH-SSO
Issue
-
We successfully synchronized ldap user federation users with object class
testpersonwhere attributeuuidis mandatory. We later added another object classtestidwhere attributeuuidis optional. We observe that when a new user is created under objectclasstestperson, we can successfully sync the user into RH SSO. However, any user with object classtestidis showing duplicate ID and sync issue. -
When we create a user in redhat directory and try synchronizing changed users in redhatSSO we get the following in the RH-SSO server.log
WARN [org.keycloak.storage.ldap.LDAPStorageProviderFactory] (default task-7) User with ID 'ccccccc-faffffff-9a3333ddd' is not updated during sync as he already exists in Keycloak database but is not linked to federation provider '
Environment
- Red Hat Single Sign-On (RH-SSO)
- 7
- LDAP
- User Federation
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.