Friction

Pain point · Reliability & bugs · Blocks work

LDAP user rename deletes and recreates the Keycloak account

1 source thread · first seen 2020-04

Summary

When a username changes in LDAP, Keycloak deletes and recreates the account instead of renaming it, producing a new sub identifier in JWT assertions.

Affects
Teams using LDAP integration

Evidence

Excerpts are copied word for word from the source; follow the link to read it in full.

“when the username changes it will delete and recreate the account instead of updating the username”

Report this item