At:
- split identity service implementation into read-only / writable.
- add LDAP-backed implementaiton for read-only identity service
- if LDAP is configured, all users from build in user management are ignored (even if they exist) --> relevant, when you change from build in to ldap
- add identity module to all distributions