RH-SSO can federate users from external stores, such as LDAP and Active Directory providers.
You can create custom plugins by using the User Storage service provider interface to validate credentials from custom external databases.
Use mappers to synchronize LDAP user attributes into the RH-SSO user attributes.
You can configure RH-SSO as an identity broker that connects service providers with identity providers. RH-SSO can integrate two types of identity providers:
Social providers such as Google, Facebook, or Microsoft.
Standard-based providers compliant with specific standards such as SAML or OIDC.