Enabled Organizations after upgrade: where is the `organization` Client scope?

304 views
Skip to first unread message

Jesse Bickel

unread,
Nov 13, 2024, 2:24:23 PM11/13/24
to Keycloak User

Good day,

After upgrading from Keycloak 23 to Keycloak 26, I enabled the Organizations feature.

At https://www.keycloak.org/docs/26.0.5/server_admin/index.html#mapping-organization-claims_server_administration_guide I read:

> The organization scope is a built-in optional client scope at the realm. Therefore, this scope is added to any client created in the realm by default. It also defines the Organization Membership mapper that controls how the organization membership information is mapped to the tokens.

But I do not see the organization client scope in the existing realm after upgrade. If I create a new realm, I do see it. If I create one, I find the Organization Membership mapper type exists and I can mimic what would have been created had I started with a new realm. Then I have to go and add that newly-created organization client scope to  all existing clients, one by one.

Is this expected behavior? The docs made it sound like after enabling Organizations I could expect the organization client scope to appear. Now I'm not sure.

Best, and thanks for the Organizations capability,

Jesse

P.S. Context is at https://github.com/PhilanthropyDataCommons/service/issues/1291#issuecomment-2474232693 and the following comment there.

Reply all
Reply to author
Forward
0 new messages