Workaround · Integrations · Blocks work
Disabling group inheritance preserves sync but loses AD structure
1 source thread · first seen 2022-04
Summary
Turning off Preserve Group Inheritance avoids the LDAP sync failure but loses the whole Active Directory group structure inside Keycloak.
- Affects
- Teams syncing Active Directory via LDAP
- Workaround
- Disable the Preserve Group Inheritance switch in the group mapper.
Evidence
Excerpts are copied word for word from the source; follow the link to read it in full.
“Disabling this switch results in losing the whole AD structure within Keycloak”