<html>
  <head>
    <meta content="text/html; charset=windows-1252"
      http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <div class="moz-cite-prefix">Hi,<br>
      <br>
      I agree that performance of LDAP (and UserFederationProvider in
      general) have some space for improvements. I've created JIRA for
      it: <a class="moz-txt-link-freetext" href="https://issues.jboss.org/browse/KEYCLOAK-838">https://issues.jboss.org/browse/KEYCLOAK-838</a> . Feel free to
      add more points.<br>
      <br>
      Marek<br>
      <br>
      On 8.11.2014 04:09, prab rrrr wrote:<br>
    </div>
    <blockquote
cite="mid:1111890366.379948.1415416166970.JavaMail.yahoo@jws100205.mail.ne1.yahoo.com"
      type="cite">
      <div style="color:#000; background-color:#fff;
        font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial,
        Lucida Grande, sans-serif;font-size:16px">
        <div><span></span></div>
        <div id="yui_3_16_0_1_1415414881609_2298" dir="ltr">Hi Bill -
          Yes, I am using custom federation adapter and could
          authenticate users successfully. Will try out your
          suggestions. Thanks.</div>
        <div id="yui_3_16_0_1_1415414881609_2292" dir="ltr"><br>
        </div>
        <div id="yui_3_16_0_1_1415414881609_2356" dir="ltr">One
          observation though in the 1.1 Beta1 version- Based on
          debugging comments, it appears that for each authentication
          attempt, the below methods in Federation Provider are called
          multiple times (10 or 12 times)</div>
        <div id="yui_3_16_0_1_1415414881609_2357" dir="ltr"><br>
        </div>
        <div id="yui_3_16_0_1_1415414881609_2377" dir="ltr">1) proxy</div>
        <div id="yui_3_16_0_1_1415414881609_2378" dir="ltr">2) isValid</div>
        <div id="yui_3_16_0_1_1415414881609_2379" dir="ltr">3)
          getInstance (in Federation Factory)</div>
        <div id="yui_3_16_0_1_1415414881609_2380" dir="ltr"><br>
        </div>
        <div id="yui_3_16_0_1_1415414881609_2383" dir="ltr">Thanks once
          again.</div>
        <div id="yui_3_16_0_1_1415414881609_2396" dir="ltr">Raghu</div>
        <div id="yui_3_16_0_1_1415414881609_2384" dir="ltr"><br>
            </div>
        <div id="yui_3_16_0_1_1415414881609_2282" style="font-family:
          HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida
          Grande, sans-serif; font-size: 16px;">
          <div id="yui_3_16_0_1_1415414881609_2281" style="font-family:
            HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida
            Grande, sans-serif; font-size: 16px;">
            <div id="yui_3_16_0_1_1415414881609_2280" dir="ltr">
              <hr id="yui_3_16_0_1_1415414881609_2304" size="1"> <font
                id="yui_3_16_0_1_1415414881609_2279" face="Arial"
                size="2"> <b><span style="font-weight: bold;">From:</span></b>
                Bill Burke <a class="moz-txt-link-rfc2396E" href="mailto:bburke@redhat.com">&lt;bburke@redhat.com&gt;</a><br>
                <b><span style="font-weight: bold;">To:</span></b>
                <a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a> <br>
                <b><span style="font-weight: bold;">Sent:</span></b>
                Friday, November 7, 2014 9:22 PM<br>
                <b><span style="font-weight: bold;">Subject:</span></b>
                Re: [keycloak-user] Api for adding roles to users<br>
              </font> </div>
            <div class="y_msg_container"
              id="yui_3_16_0_1_1415414881609_2283"><br>
              Are you writing a custom federation adapter?  Two options:<br
                clear="none">
              <br clear="none">
              * Define default roles within the admin console.  When
              your user is <br clear="none">
              imported into a UserModel, the default roles will be added<br
                clear="none">
              * Extract role mappings from your external store, and
              populate the user <br clear="none">
              model with them when you import the user into the keycloak
              database.<br clear="none">
              <div class="qtdSeparateBR"><br>
                <br>
              </div>
              <div class="yqt0540981941" id="yqtfd86387"><br
                  clear="none">
                On 11/7/2014 4:46 PM, Raghuram wrote:<br clear="none">
                &gt; How do we add users to the default roles? I am
                using the key cloak federation api to do custom
                authentication for a realm. Noticed that the users are
                not able to login to the application after being
                authenticated unless roles are added manually to them.
                Wondering if the roles can be added within the
                federation provider code after authenticating the users?<br
                  clear="none">
                &gt;<br clear="none">
                &gt; Sent from my iPhone</div>
              <br clear="none">
              &gt; _______________________________________________<br
                clear="none">
              &gt; keycloak-user mailing list<br clear="none">
              &gt; <a moz-do-not-send="true"
                href="mailto:keycloak-user@lists.jboss.org" shape="rect"
                ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br
                clear="none">
              &gt; <a moz-do-not-send="true"
                href="https://lists.jboss.org/mailman/listinfo/keycloak-user"
                target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br
                clear="none">
              &gt;<br clear="none">
              <br clear="none">
              -- <br clear="none">
              Bill Burke<br clear="none">
              JBoss, a division of Red Hat<br clear="none">
              <a moz-do-not-send="true"
                href="http://bill.burkecentral.com/" target="_blank"
                shape="rect">http://bill.burkecentral.com</a><br
                clear="none">
              _______________________________________________<br
                clear="none">
              keycloak-user mailing list<br clear="none">
              <a moz-do-not-send="true"
                href="mailto:keycloak-user@lists.jboss.org" shape="rect"
                ymailto="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br
                clear="none">
              <a moz-do-not-send="true"
                href="https://lists.jboss.org/mailman/listinfo/keycloak-user"
                target="_blank" shape="rect">https://lists.jboss.org/mailman/listinfo/keycloak-user</a>
              <div class="yqt0540981941" id="yqtfd43147"><br
                  clear="none">
              </div>
              <br>
              <br>
            </div>
          </div>
        </div>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
keycloak-user mailing list
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>
<a class="moz-txt-link-freetext" href="https://lists.jboss.org/mailman/listinfo/keycloak-user">https://lists.jboss.org/mailman/listinfo/keycloak-user</a></pre>
    </blockquote>
    <br>
  </body>
</html>