Skip to main content
Microsoft
separator
https://catalogartifact.azureedge.net/publicartifacts/cloudimg1647283583153.keycloak-openldap-41c7c4d7-001a-446b-8352-6a8bbc7738c7/image4_logolarge.png

Keycloak with OpenLDAP Directory on Ubuntu 24.04 | 24/7 Support by cloudimg

by cloudimg

Need custom pricing or terms? Request a private offer directly from the seller - tailored for your organization.

Keycloak SSO with an OpenLDAP directory on Ubuntu 24.04 for centralized identity access.

Keycloak with OpenLDAP Directory on Ubuntu 24.04 by cloudimg

The canonical enterprise identity stack on one appliance: OpenLDAP slapd is the authoritative user and group directory, and Keycloak 26 is the modern identity provider in front of it — single sign-on (SSO), OAuth 2.0 / OpenID Connect, SAML 2.0 and multi-factor auth for accounts that live in LDAP. Keycloak user federation against the local directory is configured out of the box: a dedicated realm syncs users from LDAP, writes changes back in writable mode, and validates passwords against the directory itself, so applications authenticate against Keycloak while LDAP remains the single source of truth.

Why Choose cloudimg?

  • 24/7 Expert Support with guaranteed 24 hour response. support@cloudimg.co.uk
  • Federation proven, not just installed First boot wires the Keycloak LDAP user-federation provider against the local directory, runs a full user sync, and verifies a directory-stored user can sign in through Keycloak before handover
  • Production Ready from Launch Pre-configured, security-patched, validated
  • Azure Native Integration Azure Linux Agent, cloud-init, Gen2 Hyper-V
  • No default logins, ever Every VM generates unique passwords at first boot for the Keycloak administrator, the LDAP directory administrator and the sample directory user; the LDAP TLS certificate is regenerated per machine

What is Included

  • Keycloak 26.7.x (Quarkus distribution) from the official GitHub release tarball at /opt/keycloak, OpenJDK 21
  • OpenLDAP 2.6 slapd (MDB backend) from Ubuntu 24.04 LTS, base DN dc=example,dc=com with seeded people/groups OUs and a demo user
  • Keycloak realm 'cloudimg' with the LDAP user-federation provider pre-wired (writable edit mode, full sync at first boot)
  • Directory database on a dedicated 20 GiB data disk mounted at /var/lib/ldap
  • Keycloak admin console + OIDC/SAML endpoints on TCP 8080; LDAP on TCP 389 (StartTLS) and LDAPS on TCP 636
  • Per-VM credentials written to /root/keycloak-openldap-credentials.txt at first boot
  • Verbatim licences shipped in-image under /usr/share/cloudimg/licenses/

Licensing

Keycloak is Apache License 2.0; OpenLDAP is the OpenLDAP Public License (BSD-style, OSI-approved). Both are free open source — no separate software licence fee. The cloudimg charge covers packaging, security patching, image maintenance and 24/7 expert support.

Keycloak is a Cloud Native Computing Foundation project; OpenLDAP is a registered trademark of the OpenLDAP Foundation. All product names, logos and brands are property of their respective owners; use here is nominative and does not imply endorsement.

Deployment guide: https://www.cloudimg.co.uk/guides/keycloak-openldap-on-ubuntu-24-04-azure/

At a glance

https://catalogartifact.azureedge.net/publicartifacts/cloudimg1647283583153.keycloak-openldap-41c7c4d7-001a-446b-8352-6a8bbc7738c7/image2_screenshot01.png
https://catalogartifact.azureedge.net/publicartifacts/cloudimg1647283583153.keycloak-openldap-41c7c4d7-001a-446b-8352-6a8bbc7738c7/image6_screenshot02.png
https://catalogartifact.azureedge.net/publicartifacts/cloudimg1647283583153.keycloak-openldap-41c7c4d7-001a-446b-8352-6a8bbc7738c7/image3_screenshot03.png
https://catalogartifact.azureedge.net/publicartifacts/cloudimg1647283583153.keycloak-openldap-41c7c4d7-001a-446b-8352-6a8bbc7738c7/image5_screenshot04.png
English (United States)
Your Privacy Choices Opt-Out Icon Your Privacy Choices
Consumer Health Privacy Sitemap Contact Us Privacy & Cookies Terms of Use Trademarks About our ads Manage cookies