Organization feature will only show linked IDPs if the user has already one linked #43295
Replies: 2 comments 4 replies
-
Hello Wilm, thank you for reaching out. I assume this is due to the assumption that a user has one IDP they log in with. A user can still be part of multiple organizations if they have been invited to those organizations. Still they would log in with their (one) IDP. Could elaborate when a user would have multiple IDPs connected, and how that would work in practice? Did you try to link a user to an IDP via the account console, and would that help in your setup? Maybe @keycloak/core-iam can add more to this. |
Beta Was this translation helpful? Give feedback.
-
Hi Alexander, Manually linking via the account console doesn't help. Honestly, I haven't seen the use case for a user to link his user via the account console. How is the user supposed to know what values to add in the linking dialog? But that's another story. Maybe there is a good reason not to show the other IDPs, but I can't see it. |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
I'm testing the organization feature with Keycloak 26.2 latest, and somehow I'm stuck. In my testing, I came to a blocker for me to use the organization feature. When a user is already linked to an IDP, a public IDPs or another IDPs connected to the organization, Keycloak doesn't show other public or organization IDPs on the login form anymore.
User not linked to any IDP:

Same user linked to an open (public) IDP:

Or when the user is linked to a hitten IDP:

Is this expected? In my opinion this behaviour is wrong.
Beta Was this translation helpful? Give feedback.
All reactions