I'm loath to put more feature into the v2 LDAP support directly into the keystone charm as I think its a perfect use case for a domain specific identity driver - as provided by the keystone-ldap charm.
I'm loath to put more feature into the v2 LDAP support directly into the keystone charm as I think its a perfect use case for a domain specific identity driver - as provided by the keystone-ldap charm.