[Freeipa-users] Re: keycloak - the other way around?

2022-06-29 Thread Rafael Jeffman via FreeIPA-users
On Tue, Jun 28, 2022 at 5:48 AM lejeczek via FreeIPA-users < freeipa-users@lists.fedorahosted.org> wrote: > > > > On 28/06/2022 07:08, Alexander Bokovoy wrote: > > On ma, 27 kesä 2022, lejeczek via FreeIPA-users wrote: > >> > >> > >> On 09/11/2021 06:40, Alexander Bokovoy wrote: > >>> On ti, 09

[Freeipa-users] Re: keycloak - the other way around?

2022-06-28 Thread lejeczek via FreeIPA-users
On 28/06/2022 07:08, Alexander Bokovoy wrote: On ma, 27 kesä 2022, lejeczek via FreeIPA-users wrote: On 09/11/2021 06:40, Alexander Bokovoy wrote: On ti, 09 marras 2021, Fraser Tweedale wrote: On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: Hi guys. I've only

[Freeipa-users] Re: keycloak - the other way around?

2022-06-28 Thread Alexander Bokovoy via FreeIPA-users
On ma, 27 kesä 2022, lejeczek via FreeIPA-users wrote: On 09/11/2021 06:40, Alexander Bokovoy wrote: On ti, 09 marras 2021, Fraser Tweedale wrote: On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: Hi guys. I've only stumbled upon whole Keycloak thing thus go easy

[Freeipa-users] Re: keycloak - the other way around?

2022-06-27 Thread lejeczek via FreeIPA-users
On 09/11/2021 06:40, Alexander Bokovoy wrote: On ti, 09 marras 2021, Fraser Tweedale wrote: On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: Hi guys. I've only stumbled upon whole Keycloak thing thus go easy on me please. I wonder if Keycload can be a "provider"

[Freeipa-users] Re: keycloak - the other way around?

2021-11-09 Thread lejeczek via FreeIPA-users
On 09/11/2021 06:40, Alexander Bokovoy wrote: On ti, 09 marras 2021, Fraser Tweedale wrote: On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: Hi guys. I've only stumbled upon whole Keycloak thing thus go easy on me please. I wonder if Keycload can be a "provider"

[Freeipa-users] Re: keycloak - the other way around?

2021-11-08 Thread Alexander Bokovoy via FreeIPA-users
On ti, 09 marras 2021, Fraser Tweedale wrote: On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: Hi guys. I've only stumbled upon whole Keycloak thing thus go easy on me please. I wonder if Keycload can be a "provider" to freeIPA in some way? One such a scenario where

[Freeipa-users] Re: keycloak - the other way around?

2021-11-08 Thread Fraser Tweedale via FreeIPA-users
On Mon, Nov 08, 2021 at 09:45:39PM +, lejeczek via FreeIPA-users wrote: > Hi guys. > > I've only stumbled upon whole Keycloak thing thus go easy on me please. I > wonder if Keycload can be a "provider" to freeIPA in some way? > One such a scenario where I think Keycloak might be a golden egg

[Freeipa-users] Re: Keycloak with FreeIPA federation / expired Password

2020-03-24 Thread Jonatan Zint via FreeIPA-users
Hey, m-( thanks a bunch that did the trick. Now everything works smoothly as expected, thanks! Is there some place this is documented? Besides the extensive Manual on how to set it up with AD I did not find any documentation on this procedure. Anyways, thanks a lot for guiding me. Jonatan Am

[Freeipa-users] Re: Keycloak with FreeIPA federation / expired Password

2020-03-23 Thread Rob Crittenden via FreeIPA-users
Jonatan Zint via FreeIPA-users wrote: > Hey rob, > > thanks for quick reply. Am I doing something utterly stupid? Usually I > use ADS for ldap adminstration, I confirmed i use cn=Directory Manager > for connection, and I am not able to find > cn=ipa_pwd_extop,cn=plugins,cn=config . > > Same

[Freeipa-users] Re: Keycloak with FreeIPA federation / expired Password

2020-03-23 Thread Jonatan Zint via FreeIPA-users
Hey rob, thanks for quick reply. Am I doing something utterly stupid? Usually I use ADS for ldap adminstration, I confirmed i use cn=Directory Manager for connection, and I am not able to find cn=ipa_pwd_extop,cn=plugins,cn=config . Same with ldapsearch: ldapsearch -x -D "cn=Directory Manager"

[Freeipa-users] Re: Keycloak with FreeIPA federation / expired Password

2020-03-23 Thread Rob Crittenden via FreeIPA-users
Jonatan Zint via FreeIPA-users wrote: > Hello! > > I have a simple setup running keycloak 9.0.0 setup with LDAP user federation > to my FreeIPA instance (4.8). > Runs smooth so far, but everytime a user changes his password in keycloak it > is marked expired in FreeIPA and gets prompted to

[Freeipa-users] Re: keycloak

2018-06-07 Thread Andrew Meyer via FreeIPA-users
Thanks for the clarification! On Thursday, June 7, 2018 2:32 PM, Jochen Hein via FreeIPA-users wrote: Rob Crittenden via FreeIPA-users writes: > I don't know where Keycloak upstream is. Look at http://www.keycloak.org Jochen -- This space is intentionally left blank.

[Freeipa-users] Re: keycloak

2018-06-07 Thread Jochen Hein via FreeIPA-users
Rob Crittenden via FreeIPA-users writes: > I don't know where Keycloak upstream is. Look at http://www.keycloak.org Jochen -- This space is intentionally left blank. ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To

[Freeipa-users] Re: keycloak

2018-06-07 Thread Rob Crittenden via FreeIPA-users
Andrew Meyer via FreeIPA-users wrote: > what is the difference between keycloak and freeipa? They are apples and oranges. IPA is an Identity Management system and keycloak is an IdP (for SAML2, OAuth, etc). > Is there a free version of this?  Is that what ipsilon is?  If not is > there a repo

[Freeipa-users] Re: keycloak

2018-06-07 Thread John Dennis via FreeIPA-users
On 06/07/2018 02:22 PM, Andrew Meyer via FreeIPA-users wrote: what is the difference between keycloak and freeipa? Is there a free version of this?  Is that what ipsilon is?  If not is there a repo for this? All 3 are IdP's (Identity Providers) of some ilk. FreeIPA is based on Kerberos and