Checking Keycloak configuration with Open Policy Agent Policies

522 views
Skip to first unread message

Thomas Darimont

unread,
Mar 12, 2021, 11:38:46 AM3/12/21
to Keycloak Dev
Hello Keycloak Developers,

a while ago there was a discussion about checking Keycloak realm / client configurations
against OAuth 2.x Security Best Current practices and similar guidelines.

I think I just found a neat way to express some checks from this guidelines via Open Policy Agent policies.

Here is a small example: https://github.com/thomasdarimont/keycloak-opa-config-validation if you are interested.

Cheers,
Thomas
Reply all
Reply to author
Forward
0 new messages