IAM sovereignty has become a strategic necessity rather than a purely technical option. IAM sovereignty has become a strategic necessity rather than a purely technical option. https://t.co/p9IV66ULyA
How to protect your privacy with a secondary email in Keycloak: when authenticating with external services via OAuth2/OpenID Connect, your primary email address is often shared... https://t.co/rr7Kec34Sj #keycloak#privacy#authentication#IAM
A custom http header to token claim mapper for Keycloak : we implement everything for our customers’ use cases. One of our clients asked us: how to pass the locale when authenticating in “client_credentials”? https://t.co/zXpTeNHnLx #keycloak#opensource#security#Authentication
ReCyF / NIS2: IAM at the heart of cyber compliance. Objective 10 — Identity and Access Management (IAM) — is a central pillar, . This article breaks down these requirements and explains how a sovereign IAM solution like Keycloak addresses them. https://t.co/U5JO7jtO2S
How to get self-locking sessions in Keycloak with PIN step-up authentication : with our partner Please-Open It with share with you this article. https://t.co/VRUNSZkK5o #keycloak#redhatSSO#CIAM#SSO#community
Get rid of your old Active directory/LDAP with keycloak and a small piece of custom software : just a POC for a LDAP bind proxy to log to KeyCloak with LDAP. https://t.co/RXwgtnci7f
#keycloak#redhatsso#IAM#CIAM#OpenSource
Keycloak OAuth2-Proxy Configuration Generator: we strongly advocate the use of authentication proxy pattern, the most efficient ways to secure applications without modifying their code. https://t.co/7VKqQg2pjD #keycloak#redhatSSO#SSO
What is and how to use Keycloak Authenticator. An « authenticator » is a step in an authentication process, called « Authentication flow ». An impressive list of authenticators are available with Keycloak : https://t.co/XlZ4GZFfeJ #keycloak#redhatSSO#SSO#CIAM#IAM
How to simplify authentication in any application with an authentication proxy ? Over the years, we’ve encountered the same challenges repeatedly. https://t.co/uySa8q1UXV #keycloak#redhatSSO#security#community
Keycloak roles restriction and full scopes. Learn with this article how and why you must restrict roles in tokens by turning off « full scope allowed » switch. https://t.co/VgtKQCg3T7
Keycloak has announced "workflows" as a preview feature. A welcome feature we already implemented years ago with... n8n.
This is how we did :
https://t.co/jeCdEOQJMz
Another module for Keycloak :
user attribute regexp mapper
Because in Keycloak user attributes are multivalued (with ability to aggregate them with "user attribute mapper"), we added a regexp filter only to send back attribute if it matches.
https://t.co/10kHpfnqcP
Keycloak roles restriction and full scopes : for security concerns, you must restrict roles to a subset through the « Full Scope Allowed »
https://t.co/VgtKQCfw3z
With our partner https://t.co/7QDJ1hPnEe we implement everything necessary for our customers’ use cases. . How to make your custom workflow with Keycloak ? https://t.co/vdDRXzq2JL #keycloak#IAM#SSO
A JWT decoder in the system tray, to enhance your productivity setting up KeycCloak. With our customers, we decode JWT tokens dozens of times a day. https://t.co/yroqDYCmrz #keycloak @redhatSSO #SSO#IAM
A custom http header to token claim mapper for Keycloak : Our main partner please-open-it implement everything necessary for our customers’ use cases.
And one of our clients asked us: how to pass the locale when authenticating in “client_credentials”? #keycloak#redhatsso
Keycloak User Agent Filter Authenticator: an authenticator that filters the user-agent header for Keycloak to exclude embedded webviews, ensuring compliance with specification requirements. The component reduces the attack surface https://t.co/Ou8JrtpY4P
Keycloak roles restriction and full scopes : for security concerns, you must restrict roles to a subset through the « Full Scope Allowed » Switch as by default a client has « roles » scope as « default » ... https://t.co/VgtKQCg3T7