<p dir="ltr">Hi bill,</p>
<p dir="ltr">Thanks for the reply. For option 1, how can we make the random userid associated with the keycloak session?</p>
<p dir="ltr">For option 2, how can we implement this?</p>
<p dir="ltr">Please share your ideas. Thanks</p>
<div class="gmail_quote">On Mar 31, 2015 10:29 PM, &quot;Bill Burke&quot; &lt;<a href="mailto:bburke@redhat.com">bburke@redhat.com</a>&gt; wrote:<br type="attribution"><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">You need to configure PL SP Filter correctly.  PL SP Filter, by default<br>
asks for the &quot;transient&quot; nameid format which is a temporary randomly<br>
generated userid that is not stored or associated with the Keycloak<br>
session.  Other options include:<br>
<br>
persistent - randomly generated, but associated with the application<br>
email<br>
unspecified (which Keycloak will send the username instead).<br>
<br>
<br>
<br>
On 3/31/2015 7:42 AM, Chen Keong Yap wrote:<br>
&gt; Hi leornardo,<br>
&gt;<br>
&gt; My application is running on websphere app server  and the only way to<br>
&gt; talk to keycloak is to use picketlink spfilter because we are not<br>
&gt; allowed to use keycloak proxy.<br>
&gt;<br>
&gt; On Mar 31, 2015 7:19 PM, &quot;Leonardo Loch Zanivan&quot;<br>
&gt; &lt;<a href="mailto:leonardo.zanivan@gmail.com">leonardo.zanivan@gmail.com</a> &lt;mailto:<a href="mailto:leonardo.zanivan@gmail.com">leonardo.zanivan@gmail.com</a>&gt;&gt; wrote:<br>
&gt;<br>
&gt;     Chen,<br>
&gt;<br>
&gt;     You could set &quot;principal-attribute&quot; in the adapter config<br>
&gt;     (keycloak.json) as &quot;preferred_username&quot;.<br>
&gt;     <a href="https://issues.jboss.org/browse/KEYCLOAK-810" target="_blank">https://issues.jboss.org/browse/KEYCLOAK-810</a><br>
&gt;<br>
&gt;     On Tue, Mar 31, 2015 at 7:50 AM Chen Keong Yap<br>
&gt;     &lt;<a href="mailto:chenkeong.yap@izeno.com">chenkeong.yap@izeno.com</a> &lt;mailto:<a href="mailto:chenkeong.yap@izeno.com">chenkeong.yap@izeno.com</a>&gt;&gt; wrote:<br>
&gt;<br>
&gt;         Hi,<br>
&gt;<br>
&gt;         I was using picketlink spfilter for testing and noticed<br>
&gt;         sessionid is assigned to username. We don&#39;t have this problem in<br>
&gt;         keycloak 1.1.0 beta2 and this issue only<br>
&gt;         appear starting from keycloak 1.1.0 final and in master build.<br>
&gt;         Kindly advise.<br>
&gt;<br>
&gt;         Source :<br>
&gt;<br>
&gt;         Principal userPrincipal = (Principal)<br>
&gt;         session.getAttribute(GeneralConstants.PRINCIPAL_ID);<br>
&gt;         Welcome to the Employee Tool, &lt;b&gt;&lt;%=userPrincipal.getName()%&gt;&lt;/b&gt;.<br>
&gt;<br>
&gt;         Output :<br>
&gt;<br>
&gt;         Welcome to the Employee Tool,<br>
&gt;         G-155d13b0-a69d-4721-8187-cd1a16c90f3c.<br>
&gt;<br>
&gt;<br>
&gt;         On Tue, Mar 31, 2015 at 2:33 PM, Stian Thorgersen<br>
&gt;         &lt;<a href="mailto:stian@redhat.com">stian@redhat.com</a> &lt;mailto:<a href="mailto:stian@redhat.com">stian@redhat.com</a>&gt;&gt; wrote:<br>
&gt;<br>
&gt;             Can you please explain what the problem is? That issue is an<br>
&gt;             enhancement, not a bug.<br>
&gt;<br>
&gt;             ----- Original Message -----<br>
&gt;              &gt; From: &quot;Chen Keong Yap&quot; &lt;<a href="mailto:chenkeong.yap@izeno.com">chenkeong.yap@izeno.com</a><br>
&gt;             &lt;mailto:<a href="mailto:chenkeong.yap@izeno.com">chenkeong.yap@izeno.com</a>&gt;&gt;<br>
&gt;              &gt; To: <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
&gt;             &lt;mailto:<a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>&gt;<br>
&gt;              &gt; Sent: Tuesday, 31 March, 2015 8:20:26 AM<br>
&gt;              &gt; Subject: [keycloak-user] User ID should be used as &quot;user<br>
&gt;             reference&quot; not       username<br>
&gt;              &gt;<br>
&gt;              &gt; Hi,<br>
&gt;              &gt;<br>
&gt;              &gt; This issue is happened again in the master build.<br>
&gt;              &gt;<br>
&gt;              &gt; Can advise which object is causing the issue?<br>
&gt;              &gt;<br>
&gt;              &gt; Reference :<br>
&gt;              &gt;<br>
&gt;              &gt; <a href="https://issues.jboss.org/browse/KEYCLOAK-284" target="_blank">https://issues.jboss.org/browse/KEYCLOAK-284</a><br>
&gt;              &gt;<br>
&gt;              &gt;<br>
&gt;              &gt; _______________________________________________<br>
&gt;              &gt; keycloak-user mailing list<br>
&gt;              &gt; <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
&gt;             &lt;mailto:<a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>&gt;<br>
&gt;              &gt; <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt;         _________________________________________________<br>
&gt;         keycloak-user mailing list<br>
&gt;         <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a> &lt;mailto:<a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>&gt;<br>
&gt;         <a href="https://lists.jboss.org/__mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/__mailman/listinfo/keycloak-user</a><br>
&gt;         &lt;<a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a>&gt;<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; _______________________________________________<br>
&gt; keycloak-user mailing list<br>
&gt; <a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
&gt; <a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
&gt;<br>
<br>
--<br>
Bill Burke<br>
JBoss, a division of Red Hat<br>
<a href="http://bill.burkecentral.com" target="_blank">http://bill.burkecentral.com</a><br>
_______________________________________________<br>
keycloak-user mailing list<br>
<a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
<a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" target="_blank">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br>
</blockquote></div>