Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Select which vendor is used, this will prefill the following next 4 fields with the correct sensible defaults:

For Active Directory, enter sAMAccountName as the Username LDAP attribute, so that users can login with a relatively short name which is unique to the domain.

For other vendors, review which attributes are available and choose something similar.

Image Removed

Review the defaults generated for the next 3 fields and make sure they are correct.

Enter the connection url, including the ldap:// prefix. The following command line command may assist in determining the correct url: nslookup -type=all _ldap._tcp.

...

Set Edit Mode to READ_ONLY

In order to test it, a AD user can try to sign in to the Account console for the Studio realm at http://<domain:port>/Keycloak/realms/<realm>/account