<html>
  <head>
    <meta content="text/html; charset=windows-1252"
      http-equiv="Content-Type">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <div class="moz-cite-prefix">In that case, I would likely use
      Keycloak with LDAP federation provider, which will point to some
      LDAP server in your environment. KC Federation provider needs to
      be declared with editMode "WRITABLE", so all users created through
      Keycloak will be synced to LDAP server as well including their
      password. Then the legacy product compatible just with LDAP will
      authenticate users against this LDAP server.<br>
      <br>
      Marek<br>
      <br>
      On 15/10/15 11:41, Valerij Timofeev wrote:<br>
    </div>
    <blockquote
cite="mid:CAOy2obEcJtzuCT3JF_cx=Ra1cwHLSWVF1Q7YvHeeVK5zMohBhg@mail.gmail.com"
      type="cite">
      <div dir="ltr">
        <div>
          <div>Hi all,<br>
            <br>
            we are interested to know if it is possible to authenticate
            users of pure LDAP client against Keycloak?<br>
            <br>
            Why? We are planning to migrate legacy user storage to
            Keycloak and we'd like to avoid dead end if for example some
            product (e.g. SaaS) does not support user authentication
            against Keycloak, but does against standard LDAP server. <br>
            <br>
            If it is impossible, has anybody succeeded to implement
            reverted direction of user federation synchronization (all
            users data from Keycloak should be copied to a fresh LDAP
            server installation)?<br>
            <span id="result_box" class="" lang="en"><span class=""><br>
              </span></span><span id="result_box" class="" lang="en"><span
                class="">Answers to these questions may be</span> <span
                class="">decisive for the Keycloak usage</span> <span
                class="">in our organization.</span></span><br>
            <br>
          </div>
          <div>Thank you in advance<br>
            <br>
          </div>
          <div>Valerij Timofeev<br>
          </div>
          <div>Software Engineer<br>
          </div>
          <div>Trusted Shops GmbH<br>
          </div>
        </div>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
keycloak-user mailing list
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>
<a class="moz-txt-link-freetext" href="https://lists.jboss.org/mailman/listinfo/keycloak-user">https://lists.jboss.org/mailman/listinfo/keycloak-user</a></pre>
    </blockquote>
    <br>
  </body>
</html>