[keycloak-user] User federation from multiple LDAP servers

Georgijs Radovs georgijsr at scandiweb.com
Thu Dec 22 11:32:31 EST 2016


Hello everyone!


Is it possible to set up User Federation from multiple replicating LDAP 
servers?

For example:

We have 2 FreeIPA servers, which are replicating between each other.

And, we have 2 Keycloak servers in standalone-ha mode, using S3_PING 
session failover.

How to add second FreeIPA server to User Federation?

We've tried to add second LDAP server in User Federation and set lower 
priority for it, but when user account sync happens, Keylcoak server 
shows, that user account from FreeIPA server 2 is already linked to 
FreeIPA server 1.



-- 
 <https://www.youtube.com/watch?v=bs0V2F06liw>


More information about the keycloak-user mailing list