Class UserAttributeLDAPStorageMapper
- java.lang.Object
- 
- org.keycloak.storage.ldap.mappers.AbstractLDAPStorageMapper
- 
- org.keycloak.storage.ldap.mappers.UserAttributeLDAPStorageMapper
 
 
- 
- All Implemented Interfaces:
- Provider,- LDAPStorageMapper
 - Direct Known Subclasses:
- CertificateLDAPStorageMapper
 
 public class UserAttributeLDAPStorageMapper extends AbstractLDAPStorageMapper - Author:
- Marek Posolda
 
- 
- 
Field SummaryFields Modifier and Type Field Description static StringALWAYS_READ_VALUE_FROM_LDAPstatic StringATTRIBUTE_DEFAULT_VALUEstatic StringFORCE_DEFAULT_VALUEstatic StringIS_BINARY_ATTRIBUTEstatic StringIS_MANDATORY_IN_LDAPstatic StringLDAP_ATTRIBUTEstatic StringREAD_ONLYstatic StringUSER_MODEL_ATTRIBUTE- 
Fields inherited from class org.keycloak.storage.ldap.mappers.AbstractLDAPStorageMapperldapProvider, mapperModel, session
 
- 
 - 
Constructor SummaryConstructors Constructor Description UserAttributeLDAPStorageMapper(ComponentModel mapperModel, LDAPStorageProvider ldapProvider)
 - 
Method SummaryAll Methods Instance Methods Concrete Methods Modifier and Type Method Description voidbeforeLDAPQuery(LDAPQuery query)Called before LDAP Identity query for retrieve LDAP users was executed.protected voidcheckDuplicateEmail(String userModelAttrName, String email, RealmModel realm, KeycloakSession session, UserModel user)protected voidcheckDuplicateUsername(String userModelAttrName, String username, RealmModel realm, KeycloakSession session, UserModel user)Set<String>mandatoryAttributeNames()Method that returns the mandatory attributes that this mapper imposes on the entry.voidonImportUserFromLDAP(LDAPObject ldapUser, UserModel user, RealmModel realm, boolean isCreate)Called when importing user from LDAP to local keycloak DB.voidonRegisterUserToLDAP(LDAPObject ldapUser, UserModel localUser, RealmModel realm)Called when register new user to LDAP - just after user was created in Keycloak DBUserModelproxy(LDAPObject ldapUser, UserModel delegate, RealmModel realm)Called when invoke proxy on LDAP federation providerprotected voidsetPropertyOnUserModel(Property<Object> userModelProperty, UserModel user, String ldapAttrValue)- 
Methods inherited from class org.keycloak.storage.ldap.mappers.AbstractLDAPStorageMapperclose, getGroupMembers, getLdapProvider, getRoleMembers, onAuthenticationFailure, parseBooleanParameter, syncDataFromFederationProviderToKeycloak, syncDataFromKeycloakToFederationProvider
 
- 
 
- 
- 
- 
Field Detail- 
USER_MODEL_ATTRIBUTEpublic static final String USER_MODEL_ATTRIBUTE - See Also:
- Constant Field Values
 
 - 
LDAP_ATTRIBUTEpublic static final String LDAP_ATTRIBUTE - See Also:
- Constant Field Values
 
 - 
READ_ONLYpublic static final String READ_ONLY - See Also:
- Constant Field Values
 
 - 
ALWAYS_READ_VALUE_FROM_LDAPpublic static final String ALWAYS_READ_VALUE_FROM_LDAP - See Also:
- Constant Field Values
 
 - 
IS_MANDATORY_IN_LDAPpublic static final String IS_MANDATORY_IN_LDAP - See Also:
- Constant Field Values
 
 - 
IS_BINARY_ATTRIBUTEpublic static final String IS_BINARY_ATTRIBUTE - See Also:
- Constant Field Values
 
 - 
ATTRIBUTE_DEFAULT_VALUEpublic static final String ATTRIBUTE_DEFAULT_VALUE - See Also:
- Constant Field Values
 
 - 
FORCE_DEFAULT_VALUEpublic static final String FORCE_DEFAULT_VALUE - See Also:
- Constant Field Values
 
 
- 
 - 
Constructor Detail- 
UserAttributeLDAPStorageMapperpublic UserAttributeLDAPStorageMapper(ComponentModel mapperModel, LDAPStorageProvider ldapProvider) 
 
- 
 - 
Method Detail- 
onImportUserFromLDAPpublic void onImportUserFromLDAP(LDAPObject ldapUser, UserModel user, RealmModel realm, boolean isCreate) Description copied from interface:LDAPStorageMapperCalled when importing user from LDAP to local keycloak DB.- isCreate- true if we importing new user from LDAP. False if user already exists in Keycloak, but we are upgrading (syncing) it from LDAP
 
 - 
onRegisterUserToLDAPpublic void onRegisterUserToLDAP(LDAPObject ldapUser, UserModel localUser, RealmModel realm) Description copied from interface:LDAPStorageMapperCalled when register new user to LDAP - just after user was created in Keycloak DB
 - 
mandatoryAttributeNamespublic Set<String> mandatoryAttributeNames() Description copied from interface:LDAPStorageMapperMethod that returns the mandatory attributes that this mapper imposes on the entry.- Specified by:
- mandatoryAttributeNamesin interface- LDAPStorageMapper
- Overrides:
- mandatoryAttributeNamesin class- AbstractLDAPStorageMapper
- Returns:
- The list of mandatory attributes or null
 
 - 
checkDuplicateEmailprotected void checkDuplicateEmail(String userModelAttrName, String email, RealmModel realm, KeycloakSession session, UserModel user) 
 - 
checkDuplicateUsernameprotected void checkDuplicateUsername(String userModelAttrName, String username, RealmModel realm, KeycloakSession session, UserModel user) 
 - 
proxypublic UserModel proxy(LDAPObject ldapUser, UserModel delegate, RealmModel realm) Description copied from interface:LDAPStorageMapperCalled when invoke proxy on LDAP federation provider- Returns:
 
 - 
beforeLDAPQuerypublic void beforeLDAPQuery(LDAPQuery query) Description copied from interface:LDAPStorageMapperCalled before LDAP Identity query for retrieve LDAP users was executed. It allows to change query somehow (add returning attributes from LDAP, change conditions etc)
 
- 
 
-