Greetings,
I do not see the custom attributes from users created in Realm A, migrated
to Realm B.
I have configured in Realm A, using it for SSO, a user federation that
validates the credentials and fetches user data from a service (via a
custom UserStorageProvider), and populates a Keycloak user with name,
e-mail, and some corporate attributes like division (setting
singleAttributes from UserModel).
Then in realm B I have an Identity Provider that points to a Broker in
Realm A. In "first login flow" I have a custom Authentication flow, with
two execution steps:
- Create User If Unique
- Automatically Link Brokered Account
This allows me to automatically migrate this user to my realm.
So login from realm B ends in authentication in realm A, which pulls a user
according to our service. Then the process migrates user data to realm B -
but as I inspect this user I see e-mail, name (first & last) but I cannot
see my custom attributes.
Any hints?
Thanks,
Luis
"O emitente desta mensagem � respons�vel por seu conte�do e endere�amento. Cabe ao
destinat�rio cuidar quanto ao tratamento adequado. Sem a devida autoriza��o, a divulga��o,
a reprodu��o, a distribui��o ou qualquer outra a��o em desconformidade com as normas
internas do Sistema Petrobras s�o proibidas e pass�veis de san��o disciplinar, c�vel e
criminal."
"The sender of this message is responsible for its content and addressing. The
receiver shall take proper care of it. Without due authorization, the publication,
reproduction, distribution or the performance of any other action not conforming to
Petrobras System internal policies and procedures is forbidden and liable to disciplinary,
civil or criminal sanctions."
"El emisor de este mensaje es responsable por su contenido y direccionamiento. Cabe
al destinatario darle el tratamiento adecuado. Sin la debida autorizaci�n, su divulgaci�n,
reproducci�n, distribuci�n o cualquier otra acci�n no conforme a las normas internas del
Sistema Petrobras est�n prohibidas y ser�n pasibles de sanci�n disciplinaria, civil y
penal."
Show replies by date