<div dir="ltr">By the way, do you have further information regarding that SPI you mentioned?<div><br></div><div>I was looking at the source code but I couldn't derive much from it, I don't know exactly how I should implement my own provider, and how do I tell keycloak to use mine instead of its own.</div>
</div><div class="gmail_extra"><br><br><div class="gmail_quote">On Thu, May 15, 2014 at 11:05 AM, Rodrigo Sasaki <span dir="ltr"><<a href="mailto:rodrigopsasaki@gmail.com" target="_blank">rodrigopsasaki@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">That's quite alright at the moment.<div><br></div><div>We have seen the roadmap and if it stays around the announced dates, there shouldn't be a problem for us here.</div>
</div><div class="gmail_extra"><div><div class="h5">
<br><br><div class="gmail_quote">On Thu, May 15, 2014 at 11:03 AM, Bill Burke <span dir="ltr"><<a href="mailto:bburke@redhat.com" target="_blank">bburke@redhat.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
FYI, Keycloak will be very slow until we start our performance work<br>
(scheduled for Beta-2). Right now, every login/logout/token action is<br>
all DB hits. We don't cache anything at the moment!<br>
<div><br>
On 5/15/2014 7:02 AM, Rodrigo Sasaki wrote:<br>
> I am very interested in importing the whole database. It seems to be the<br>
> cleanest way to do what we want to do here, and migrate to keycloak<br>
> completely.<br>
><br>
> Are there any guidelines on how to do this? Nonetheless I will look into<br>
> the SPI you mentioned, might come in handy sometime.<br>
><br>
><br>
> On Thu, May 15, 2014 at 5:13 AM, Stian Thorgersen <<a href="mailto:stian@redhat.com" target="_blank">stian@redhat.com</a><br>
</div><div>> <mailto:<a href="mailto:stian@redhat.com" target="_blank">stian@redhat.com</a>>> wrote:<br>
><br>
> At the moment we have an Authentication SPI that will let you easily<br>
> authenticate users with your existing database of users. The first<br>
> time a new user logs in using this approach a user will be pulled in<br>
> to the Keycloak database. There's no documentation for this feature<br>
> yet, but look at the SPI at<br>
> <a href="https://github.com/keycloak/keycloak/tree/master/authentication/authentication-api" target="_blank">https://github.com/keycloak/keycloak/tree/master/authentication/authentication-api</a><br>
> and the implementation that uses the Keycloak model itself to<br>
> authenticate at<br>
> <a href="https://github.com/keycloak/keycloak/tree/master/authentication/authentication-model" target="_blank">https://github.com/keycloak/keycloak/tree/master/authentication/authentication-model</a>.<br>
><br>
> In the future we plan to provide a Sync SPI that will take this one<br>
> step further and let you sync users (and roles) to/from an existing<br>
> database.<br>
><br>
> However, if you plan to completely replace your current<br>
> authentication system the cleanest solution may be to import your<br>
> current user database into Keycloak once and for all. If you're<br>
> interested in this approach let me know.<br>
><br>
> ----- Original Message -----<br>
> > From: "Rodrigo Sasaki" <<a href="mailto:rodrigopsasaki@gmail.com" target="_blank">rodrigopsasaki@gmail.com</a><br>
</div><div>> <mailto:<a href="mailto:rodrigopsasaki@gmail.com" target="_blank">rodrigopsasaki@gmail.com</a>>><br>
> > To: <a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a><br>
> <mailto:<a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a>><br>
> > Sent: Wednesday, 14 May, 2014 8:52:07 PM<br>
> > Subject: [keycloak-user] Migrating Users Database<br>
> ><br>
> > Hi,<br>
> ><br>
> > I'm trying to replace my current authentication system with<br>
> Keycloak, but I<br>
> > have one problem. I already have a database of users, populated with<br>
> > millions of records, and I wanted to make it work with Keycloak.<br>
> ><br>
> > What would be the best approach on this scenario? Should I<br>
> migrate everything<br>
> > to the Keycloak tables, or try to make Keycloak understand my current<br>
> > database?<br>
> ><br>
> > Is there any recommendation on this matter? And if there is, some<br>
> explanation<br>
> > or documentation?<br>
> ><br>
> > Thanks!<br>
> ><br>
> > --<br>
> > Rodrigo Sasaki<br>
> ><br>
> > _______________________________________________<br>
> > keycloak-user mailing list<br>
</div>> > <a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a> <mailto:<a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a>><br>
<div>> > <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
><br>
><br>
><br>
><br>
> --<br>
> Rodrigo Sasaki<br>
><br>
><br>
> _______________________________________________<br>
> keycloak-user mailing list<br>
> <a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a><br>
> <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
><br>
<br>
--<br>
</div><span><font color="#888888">Bill Burke<br>
JBoss, a division of Red Hat<br>
<a href="http://bill.burkecentral.com" target="_blank">http://bill.burkecentral.com</a><br>
</font></span><div><div>_______________________________________________<br>
keycloak-user mailing list<br>
<a href="mailto:keycloak-user@lists.jboss.org" target="_blank">keycloak-user@lists.jboss.org</a><br>
<a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
</div></div></blockquote></div><br><br clear="all"><div><br></div></div></div><span class="HOEnZb"><font color="#888888">-- <br><div dir="ltr"><font face="Times New Roman">Rodrigo Sasaki</font><div></div></div>
</font></span></div>
</blockquote></div><br><br clear="all"><div><br></div>-- <br><div dir="ltr"><font face="Times New Roman">Rodrigo Sasaki</font><div></div></div>
</div>