Using Nextcloud with UCS and Keycloak

With the changes to UCS when using SSO, I haven’t had any success setting up access to Nextcloud for webDAV users from Evolution via PC or mobile device via Android after installation.
Accessing Nextcloud via browser generally works.
It’s probably a problem related to the transfer of permissions through Keycloak.

In the past, after installing UCS, I installed “Nextcloud” in a VM alongside the “AD-Compatible DC” app.
Nextcloud was integrated via Docker, and users logged in via the UCS LDAP.

Now I’ve installed UCS 5.2-1 in a VM and installed “Keycloak 26.1.4-ucs2” in addition to the “AD-Compatible DC” app.
In another VM, I’ve installed Nextcloud 31.04 on Debian 12.

I’m fundamentally unclear about what needs to be installed and configured in Keycloak and Nextcloud.

Accessing Nextcloud via browser with Keycloak works because I adjusted the settings in Keycloak following a YouTube video and installed and configured the “Social Login” app in Nextcloud.

However, I don’t understand how they all work together. For example, should all groups and users be managed in Keycloak or in UCS? Does Nextcloud then have to obtain these users from Keycloak?

While researching, I read that the “OpenID Connect” app is required for access for webDAV users.

I haven’t been able to make any progress here for many days. Does anyone have any advice or can shed some light on the matter?

Hey @Thomas_M

Can’t help you with setting up the Evolution access but did you had a look at Keycloak - Migration Nextcloud SSO - #12 by dzidek23 and the entire thread regarding Keycloack and Nextcloud on separate server?

We use ’ SSO & SAML authentication’ app in nextcloud to enable SSO