Recent Blog Posts

March 1, 2021

Public Keycloak Trainings

In cooperation with two leading public training providers, I offer a public one-day Keycloak online training at theses dates:

Read more »
January 29, 2021

Keycloak & React.JS & Router Integration How To

Finally I managed to create a video series about my already several years existing demo application about how to setup a React.JS application and how to integrate with Keycloak for successful authentication and probably some kind of role-based authorization.

Read more »
December 23, 2020

Two-Factor Authentication with SMS in Keycloak

I often get asked by customers or from folks of the community, if there is a built-in option for SMS-based two-/multi-factor-authentication (2FA/MFA) in Keycloak. Unfortunately it is not! Keycloak only ships with a built-in 2FA option for Google Authenticator (and compatible apps). But why is that?

Read more »
December 20, 2020

Keycloak Session Restrictor - or: HIGHLANDER mode

Keycloak is a Single-Sign-On System and thus, you usually have one session per realm at the Keycloak server, even when working with multiple client applications. It’s the nature of a SSO system.

Read more »
December 18, 2020

Keycloak Events Logging

Keycloak has this feature of “events”. There are two kinds of events: login events and admin events. Login events are emitted every time a user-related action around authentication is executed, e.g. login, logout, code-to-token exchanges, registrations, etc. Also errors of these actions are emitted as an event. The event itself then contains some useful information about the action and the corresponding user and/or client. Admin events are emitted on every change of a resource via the Admin-API, no matter if via the web console, REST api, CLI, etc.

Read more »

All Blog Posts / Archive

Read all of my blog posts, find them either by tag or chronological:

All blog posts chronological »

All blog posts by tags »