<html>
<head>
<meta content="text/html; charset=windows-1252"
http-equiv="Content-Type">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<div class="moz-cite-prefix">Hi,<br>
<br>
I agree that performance of LDAP (and UserFederationProvider in
general) have some space for improvements. I've created JIRA for
it: <a class="moz-txt-link-freetext" href="https://issues.jboss.org/browse/KEYCLOAK-838">https://issues.jboss.org/browse/KEYCLOAK-838</a> . Feel free to
add more points.<br>
<br>
Marek<br>
<br>
On 8.11.2014 04:09, prab rrrr wrote:<br>
</div>
<blockquote
cite="mid:1111890366.379948.1415416166970.JavaMail.yahoo@jws100205.mail.ne1.yahoo.com"
type="cite">
<div style="color:#000; background-color:#fff;
font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial,
Lucida Grande, sans-serif;font-size:16px">
<div><span></span></div>
<div id="yui_3_16_0_1_1415414881609_2298" dir="ltr">Hi Bill -
Yes, I am using custom federation adapter and could
authenticate users successfully. Will try out your
suggestions. Thanks.</div>
<div id="yui_3_16_0_1_1415414881609_2292" dir="ltr"><br>
</div>
<div id="yui_3_16_0_1_1415414881609_2356" dir="ltr">One
observation though in the 1.1 Beta1 version- Based on
debugging comments, it appears that for each authentication
attempt, the below methods in Federation Provider are called
multiple times (10 or 12 times)</div>
<div id="yui_3_16_0_1_1415414881609_2357" dir="ltr"><br>
</div>
<div id="yui_3_16_0_1_1415414881609_2377" dir="ltr">1) proxy</div>
<div id="yui_3_16_0_1_1415414881609_2378" dir="ltr">2) isValid</div>
<div id="yui_3_16_0_1_1415414881609_2379" dir="ltr">3)
getInstance (in Federation Factory)</div>
<div id="yui_3_16_0_1_1415414881609_2380" dir="ltr"><br>
</div>
<div id="yui_3_16_0_1_1415414881609_2383" dir="ltr">Thanks once
again.</div>
<div id="yui_3_16_0_1_1415414881609_2396" dir="ltr">Raghu</div>
<div id="yui_3_16_0_1_1415414881609_2384" dir="ltr"><br>
</div>
<div id="yui_3_16_0_1_1415414881609_2282" style="font-family:
HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida
Grande, sans-serif; font-size: 16px;">
<div id="yui_3_16_0_1_1415414881609_2281" style="font-family:
HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida
Grande, sans-serif; font-size: 16px;">
<div id="yui_3_16_0_1_1415414881609_2280" dir="ltr">
<hr id="yui_3_16_0_1_1415414881609_2304" size="1"> <font
id="yui_3_16_0_1_1415414881609_2279" face="Arial"
size="2"> <b><span style="font-weight: bold;">From:</span></b>
Bill Burke <a class="moz-txt-link-rfc2396E" href="mailto:bburke@redhat.com"><bburke@redhat.com></a><br>
<b><span style="font-weight: bold;">To:</span></b>
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a> <br>
<b><span style="font-weight: bold;">Sent:</span></b>
Friday, November 7, 2014 9:22 PM<br>
<b><span style="font-weight: bold;">Subject:</span></b>
Re: [keycloak-user] Api for adding roles to users<br>
</font> </div>
<div class="y_msg_container"
id="yui_3_16_0_1_1415414881609_2283"><br>
Are you writing a custom federation adapter? Two options:<br
clear="none">
<br clear="none">
* Define default roles within the admin console. When
your user is <br clear="none">
imported into a UserModel, the default roles will be added<br
clear="none">
* Extract role mappings from your external store, and
populate the user <br clear="none">
model with them when you import the user into the keycloak
database.<br clear="none">
<div class="qtdSeparateBR"><br>
<br>
</div>
<div class="yqt0540981941" id="yqtfd86387"><br
clear="none">
On 11/7/2014 4:46 PM, Raghuram wrote:<br clear="none">
> How do we add users to the default roles? I am
using the key cloak federation api to do custom
authentication for a realm. Noticed that the users are
not able to login to the application after being
authenticated unless roles are added manually to them.
Wondering if the roles can be added within the
federation provider code after authenticating the users?<br
clear="none">
><br clear="none">
> Sent from my iPhone</div>
<br clear="none">
> _______________________________________________<br
clear="none">
> keycloak-user mailing list<br clear="none">
> <a moz-do-not-send="true"
href="mailto:keycloak-user@lists.jboss.org" shape="rect"
ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br
clear="none">
> <a moz-do-not-send="true"
href="https://lists.jboss.org/mailman/listinfo/keycloak-user"
target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br
clear="none">
><br clear="none">
<br clear="none">
-- <br clear="none">
Bill Burke<br clear="none">
JBoss, a division of Red Hat<br clear="none">
<a moz-do-not-send="true"
href="http://bill.burkecentral.com/" target="_blank"
shape="rect">http://bill.burkecentral.com</a><br
clear="none">
_______________________________________________<br
clear="none">
keycloak-user mailing list<br clear="none">
<a moz-do-not-send="true"
href="mailto:keycloak-user@lists.jboss.org" shape="rect"
ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br
clear="none">
<a moz-do-not-send="true"
href="https://lists.jboss.org/mailman/listinfo/keycloak-user"
target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a>
<div class="yqt0540981941" id="yqtfd43147"><br
clear="none">
</div>
<br>
<br>
</div>
</div>
</div>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
keycloak-user mailing list
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>
<a class="moz-txt-link-freetext" href="https://lists.jboss.org/mailman/listinfo/keycloak-user">https://lists.jboss.org/mailman/listinfo/keycloak-user</a></pre>
</blockquote>
<br>
</body>
</html>