Keycloak Wildfly Adapter Deprecation

218 views
Skip to first unread message

Gregor Tudan

unread,
Dec 10, 2021, 11:55:28 AM12/10/21
to Keycloak User
Hi everyone!

The release notes for Keycloak 15.1 mention that the wildfly adapter is deprecated and will not be supported for Wildfly 25.


This feels a bit premature. The new OpenID-Connect Elytron adapter is brand new. It is also missing one important feature for us: multi-tenancy. The keycloak adapter had an important feature that allowed us to determine the config from the URL:


I haven't seen anything like this in the Elytron-Adapter. This would mean that some of us will be stuck on wildfly 24 until similar becomes available.

Any chance to reconsider the deprecation? Even a bit of grace time would give the community the chance to work things out with the elytron team.

Thanks, 
Gregor

Gregor Tudan

unread,
Jan 10, 2022, 12:49:25 PM1/10/22
to Keycloak User
After diving a bit into this, it looks even worse then expected. The new built in Adapter is definitely a good step forward, but lacks quiet a lot of commonly used features:

* bearer-only authentication: https://issues.redhat.com/browse/WFLY-15633
* Policy-Enforcement

There is an issue for improving the client: https://issues.redhat.com/browse/WFLY-15260

Just to get an idea: is it feasible to try and port the existing adapter to Wildfly 25? I'm definitely willing to give it a try, as it will probably take quiet a while for the Elytron Adapter to catch up with the legacy adapter. 

Tobias Häfner

unread,
Jan 11, 2022, 3:08:27 AM1/11/22
to Keycloak User

Multi-Tenancy-Support is really needed for a lot of projects. That should be fixed!
Reply all
Reply to author
Forward
0 new messages