Central Keycloak syncronization with Remote Keycloak instaces

Hi all.

I need advice on how to design a situation as following:

I want to have a central keycloak instance where all users management will happens and then several (100s) remote keycloak instances that will syncronize with this central instance. No user management in remote keycloak instances.

The client applications will authenticate with the remote instances via OAuth2.

The connectivity between remote instances and central instance is not always good, with sometimes low bandwitdh and several outages that normally don’t last more than 4 hours, but I would like that wouldn 't impact much the client applications, as the remote instances would have the majority of the users.

Can you please provide some guidance, as I am new to Keycloak.

Kind Regards