Identity Service: Identity Providers
The Identity Service signs people in through one upstream identity provider (IdP) at a time. New installations use Zitadel. Which steps you follow depends on your installation:
- Installation that keeps Zitadel
- Installation that moves from Zitadel to Keycloak or Microsoft Entra ID
Both need istari-platform 6.4.0 or later, with Identity Service 2.1.0, the chart's default image. Moving to Entra needs istari-platform 6.5.0 or later.
Installation That Keeps Zitadel
An installation that signs people in through Zitadel and enables the Identity Service. Enable it as in Scenario 10. On an existing installation, the chart brings in your Zitadel organizations, people and administrators on that upgrade; see Tenants. People keep signing in through Zitadel as before.
Installation That Moves from Zitadel
An installation on Zitadel that moves to Keycloak or Microsoft Entra ID, keeping everyone's accounts. Enable the Identity Service on Zitadel first, as above, then follow Switching from Zitadel.